Synopsys finds no evidence of breach after D1R Bosch claims
Synopsys says its investigation found no evidence of unauthorized access after a ransomware group, D1R, claimed to have used a Synopsys vulnerability to obtain Bosch data.
Synopsys reported it has found no evidence of a data breach after a ransomware group calling itself D1R listed Synopsys and Bosch on a Tor-hosted leak site and demanded payment to avoid publishing data.
D1R claimed it exploited a vulnerability on a Synopsys website to access a corporate client database of about 40,000 entries and obtained intellectual property linked to Bosch. The group posted a screenshot it said proved the access and included both companies on its leak site.
The screenshot appears to match a user manual that is already publicly available. Synopsys said the image reduces the credibility of the group’s claim.
In a statement, Synopsys wrote, “The security of data and systems is a priority for Synopsys. We are continuously monitoring our network and have found no evidence of Synopsys or customer technical data being subject to unauthorized access.” The company added it has not been contacted by the threat actor.
Bosch declined to provide specific details and issued a statement noting it strengthens protection of its digital systems and expands its capabilities to respond quickly and in a coordinated way to potential cyber incidents. Bosch added it aims to protect critical systems based on risk to limit the impact of potential attacks.
Synopsys supplies electronic design automation software and pre-designed semiconductor blueprints used by companies including Bosch to design and test electronic components for vehicles and industrial systems. Those tools and blueprints are part of chip development and can include technical customer information.
D1R is a newly observed ransomware group using a Tor-hosted leak site to publicize alleged breaches and press for payments. Security teams note threat actors sometimes post exaggerated or fake samples to back extortion claims.
Synopsys said it completed an internal investigation and continues to monitor its network but reported no confirmed exposure. Bosch reiterated its cybersecurity statement and declined to comment on specifics of the alleged incident.








