Two firms file breach notifications describing ransomware affecting client matter data
Two US law firms filed breach notifications describing ransomware incidents affecting client matter data, together covering roughly forty thousand individuals. Both notifications state that data was exfiltrated before encryption. Neither firm named the vendor or system involved. State attorneys general published the notifications in their breach registries, which is how the incidents became public.
Sources2 articles across 2 outlets
International Association of Privacy Professionals Daily Dashboard
Legal IT Insider
Filed under
IncidentN.Y.Cal.U.S.California Consumer Privacy ActData protectionComplianceLitigationFor governanceFor practitioners