Engineered Tower Solutions Listed by dragonforce Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Engineered Tower Solutions was listed by the dragonforce ransomware group on December 14, 2024, after internal files were exfiltrated in a ransomware attack. The number of people affected has not been disclosed; anyone who may have shared data with the company should verify whether their information was exposed and take appropriate protective steps.
On December 14, 2024, Engineered Tower Solutions, PLLC (ETS) appeared on a listing associated with the dragonforce ransomware group. Public reporting indicates that internal files were exfiltrated in a ransomware attack, though the number of people affected remains unknown and further operational details have not been disclosed.
For an engineering firm that works on telecommunication towers and residential and commercial projects, any confirmed compromise of internal material raises practical questions about client records, project data, and employee information. At this stage the listing itself is a claim by the group; independent confirmation of the full scope has not been made public.
Inside the incident
According to the available record, Engineered Tower Solutions was listed by the dragonforce ransomware group on December 14, 2024. The reported summary states that internal files were exfiltrated in a ransomware attack. No public figures have been released for the volume of data taken, the exact date the intrusion began, the initial access method, or whether encryption of systems also occurred. The number of individuals potentially affected is listed as unknown. Beyond the group’s claim that the company was hit and that internal files left the network, concrete technical indicators remain undisclosed.
Who is dragonforce?
Dragonforce is a ransomware operation that has appeared in public reporting as a group that conducts double-extortion style attacks: encrypting systems while also claiming to steal data and threatening to publish it on a dedicated leak site if payment is not made. Like other ransomware actors active in recent years, the group typically advertises victims on its site, posts samples or file lists to pressure payment, and targets organizations across multiple sectors rather than a single industry. Public knowledge of the group’s tactics includes the use of common initial-access vectors such as compromised credentials or vulnerable remote services, followed by lateral movement and data staging before encryption or exfiltration. Specific claims made by dragonforce about any individual victim, including Engineered Tower Solutions, should be treated as unverified assertions until corroborated by the organization or independent investigators.
Who is Engineered Tower Solutions?
Engineered Tower Solutions, PLLC (ETS) is described as a full-service engineering company specializing in telecommunication towers as well as residential and commercial industries. Firms of this type routinely handle engineering drawings, structural calculations, site surveys, client contracts, project schedules, and correspondence with carriers, municipalities, and property owners. They also maintain ordinary business records such as employee information, vendor invoices, and financial documents. Because the work intersects critical communications infrastructure and private construction projects, a breach can affect both the company’s operational continuity and the privacy or competitive position of its clients and partners. Public detail on the precise size of ETS or its client roster is limited, but the sector itself routinely processes sensitive technical and personal data.
What was likely exposed
The facts state only that internal files were exfiltrated in a ransomware attack. No inventory of file types, folders, or data categories has been released. Organizations performing engineering work on telecommunication towers and commercial or residential projects typically hold design documents, site photographs, client contact lists, contracts, employee records, and financial materials. Whether any of those categories were among the files taken remains unconfirmed. Until ETS or investigators publish a verified list, the exact contents of the exfiltrated material cannot be stated as fact.
What's at stake
For individuals whose information may have been among the internal files, the practical risks include possible misuse of contact details, identity-related fraud if personal identifiers were present, or social-engineering attempts that reference real projects or colleagues. For the company, exposure of proprietary engineering data could affect competitive position or contractual obligations, while disruption from a ransomware event can delay project delivery and increase recovery costs. Clients and partners may also face secondary exposure if shared project files or correspondence were included. Because the scale and precise data types remain unknown, the concrete impact on any given person or organization cannot yet be quantified from public sources.
What to do if you're exposed
If you have a past or present relationship with Engineered Tower Solutions—as an employee, client, vendor, or contractor—treat the possibility of exposure seriously until more detail emerges. Practical first steps include:
- Monitor financial and credit accounts for unexpected activity and consider a fraud alert with the major credit bureaus.
- Change passwords on any accounts that reused credentials associated with ETS email or systems, and enable multi-factor authentication wherever available.
- Be alert for phishing or phone calls that reference real projects, invoices, or colleagues; verify requests through known channels before responding.
- If you receive notification from the company, follow the specific guidance it provides regarding credit monitoring or identity-protection services.
- Run a free exposure scan of your email address against known breach data sets to check whether your information has already appeared in public dumps.
Public reporting on this incident remains limited to the December 14, 2024 listing and the statement that internal files were allegedly exfiltrated. Further updates from the company or independent sources will be needed before the full scope can be assessed.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
Precision Walls Listed by dragonforce Ransomware GroupPhD Services Listed by dragonforce Ransomware GroupCarver Companies Listed by dragonforce Ransomware GroupCydcor Listed by dragonforce Ransomware GroupLatest breaches
Publicly posted by dragonforce — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.