# Ransomware Group Claims Tekko Data Breach

A ransomware-monitoring post dated September 30, 2026, says the Interlock group claimed that data associated with Tekko Enterprises, Inc.’s U.S. defense and infrastructure contracts was exposed; the claim is unverified. The reported data includes utility-system drawings, crane-related records, employee identifying information and security credentials, plus bid and financial records. The post identifies no specific agency, contract, award value, or procurement action.

- Contractors and subcontractors with shared systems or business relationships involving Tekko should assess whether their data or systems may be exposed.
- Organizations handling information connected to affected work should review applicable contract cybersecurity, incident-reporting, and data-protection obligations; the signal does not establish that any particular requirement was breached.
- The reported exposure of bid records and infrastructure drawings highlights potential risks to sensitive procurement information and operational security, even though the claim has not been verified.

**Jurisdictions:** federal
**Industries:** Defense & Military, Construction & Infrastructure
**Topics:** Cybersecurity
**Published:** September 29, 2026

### Vendors
- Tekko Enterprises, Inc. (Contractor associated with U.S. defense and infrastructure contracts)

### Sources
- [Tekko Enterprises, Inc. reported a ransomware breach tied to Interlock, exposing utility drawings, employee data, security IDs, and defense bid records across U.S. contracts. #UnitedStates #Ransomware #DFARS
https://t.co/DFmh53Lxii](https://x.com/TweetThreatNews/status/2105021148836573484) - twitter-regulatory