Ransomware group devman hits solidere
solidere — a construction target operating in LB has been listed by the devman ransomware group on 2025-12-06. The information below reflects what the threat actor has publicly claimed on their leak site; the details have not been independently verified.
Incident Report
| Target Organization | solidere |
|---|---|
| Threat Group | devman |
| Summary | [AI generated] Solidere, short for Société Libanaise de Développement et Reconstruction, is a Lebanese joint stock company responsible for the reconstruction, development, and management of Beirut’s Central District. Created in 1994, the firm is entrusted with restoring Beirut's historical buildings, attracting investments, and promoting tourism. It effectively serves as a private real estate company, but granted with governmental powers for urban development. |
| Date of Breach | 2025-12-06 |
| Discovery Date | 2025-12-07 |
| Region | LB |
| Target Domain | solidere |
| Business Sector | Construction |
| Severity | MEDIUM |
Claim by devman
[AI generated] Solidere, short for Société Libanaise de Développement et Reconstruction, is a Lebanese joint stock company responsible for the reconstruction, development, and management of Beirut’s Central District. Created in 1994, the firm is entrusted with restoring Beirut's historical buildings, attracting investments, and promoting tourism. It effectively serves as a private real estate company, but granted with governmental powers for urban development.
Posted by the devman threat actor on its public leak site. This is the group's own statement and has not been independently verified by HackerFeeds.
Sources
Victim website
solidere
Leak post (onion / Tor)
http://devmanblggk7ddrtqj3tsocnayow3bwnozab2s4yhv4shpv6ueitjzid.onion
Open this URL in Tor Browser. Browsing leak sites carries real risk — view passively, never click further.
Disclaimer
HackerFeeds does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.

