Blog

jordiserrano.me|ClickFix|Kairos|IntelTracker
Blog » Wentworth

Wentworth

genesis ransomware

Wentworth

Wentworth - Ransomware Analysis

Wentworth - Ransomware Analysis

Date: 2026-05-30T19:52:44.013Z

Group: genesis

Description: the DC Metro area's premier design-build firm

Resumen

The DC Metro area's leading design-build company Wentworth was targeted by a ransomware attack, likely from the Genesis group. The incident occurred on May 30, 2026.

La Victima

Target: Wentworth (Design-Build)

Wentworth is described as "the DC Metro area's premier design-build firm," indicating a significant business impact in the Washington D.C. metropolitan region.

El Grupo Atacante

Group: genesis

The attack originated from the Genesis group, which is known for targeting organizations with critical infrastructure and design-build businesses.

Cronologia del Ataque

1. Initial Access: May 30, 2026
2. Ransomware Deployment: May 30, 2026 (Same day as initial access)
3. Impact Assessment: May 31, 2026 (Estimated)

Datos Comprometidos

No hay datos de impacto específicos públicos disponibles.

Indicadores de Compromiso (IOCs)

Tipo Valor/Contexto
Ransomware Payload No hay datos públicos disponibles.
Domain Name No hay datos públicos disponibles.
Email Domain No hay datos públicos disponibles.
IP Addresses No hay datos públicos disponibles.
Hashes (MD5/SHA-256) No hay datos públicos disponibles.
File Hashes No hay datos públicos disponibles.
Web URLs (CORS/Headers) No hay datos públicos disponibles.
Credentials No hay datos públicos disponibles.

Conclusion

The Genesis ransomware attack on Wentworth resulted in significant business disruption to the DC Metro area's design-build sector. Without public intelligence, specific technical indicators cannot be identified for future detection or response.

← Volver al blog

Jordi Serrano — Senior Cyber Threat Intelligence

LinkedIn Instagram GitHub jordiserrano.me