RANSOMWARE VICTIMMANUFACTURING

Bosch

d1r📍 Germany (DE)📅 July 12, 2026
2
same group

Attack Intelligence

Bosch was compromised in a ransomware attack attributed to d1r in July 2026. The organization, operating in the Manufacturing sector in Germany, was added to the group's data leak site as part of an extortion campaign.

d1r operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Again, thanks to database Synopsys provided us with After analyzing technical leaks by other groups and cross-referencing targets from TARGETLIST.txt A company access was found and in the archives, a $10,000 gem: Bosch CAN module implementation Now it is going for free for every engineer and car enthusiast, thanks to Synopsys providing us with neat roadmap to tech sector Sorry, Bosch, you got third-partied! Call the Synopsys CEO and thank them for letting us all know where the valuable data is!

Additional Details

Other Victims — d1r (2)

Quick Facts

CountryGermany (DE)
SectorManufacturing
Attack DateJul 12, 2026
Intel Sourceransomlook

Threat Group

d1r
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.