Live disclosure tracker · updated continuously

Law Firm Data Breaches

Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.

98B+
Records Exposed
11942
Incidents
94+
Countries
+104%
Breach Velocity YoY
Browse by sector
All breaches Healthcare Finance Government Technology Retail Education Legal
Browse by year
2024 2025 2026 2026 Index

Law Firm Data Breaches (11942 indexed)

medium · finance · Jul 15, 2026

NPM ecosystem

Attacks targeting developer ecosystems are increasing in frequency and sophistication, with Node.js developers firmly in this week’s crosshairs, as multiple npm packages belonging to the open-source AsyncAPI and Jscrambl

View incident → Original disclosure Indexed 1 month, 2 weeks ago
critical · other · Jul 14, 2026

Eduard Kovacs

Eduard Kovacs reports: A new ransomware group named D1R in recent days listed Synopsys and Bosch on its Tor-based leak website. The cybercriminals claimed to have exploited a vulnerability in Synopsys’ website to access

View incident → Original disclosure Indexed 1 month, 2 weeks ago
medium · other · Jul 14, 2026

Abror Shuhratov

Abror Shuhratov reports: xAI, the company founded by Elon Musk, has announced emergency measures following a serious controversy involving the unauthorized uploading of users’ private code and confidential informat

View incident → Original disclosure Indexed 1 month, 2 weeks ago
high · tech · Jul 14, 2026

SonicWall SMA1000 Appliances

SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability — SonicWall SMA1000 Appliances contain a server-side request forgery vulnerability that could allow a remote unauthenticated attacker to potentially

View incident → Original disclosure Indexed 1 month, 2 weeks ago
high · tech · Jul 14, 2026

Microsoft SharePoint Server

Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability — Microsoft SharePoint contains a missing authentication for critical function vulnerability that allows an unauthorized attacker to

View incident → Original disclosure Indexed 1 month, 2 weeks ago
critical · tech · Jul 14, 2026

SonicWall SMA1000 Appliances

SonicWall SMA1000 Appliances Code Injection Vulnerability — SonicWall SMA1000 Appliances contain a code injection vulnerability which in specific conditions could potentially enable a remote authenticated attacker as adm

View incident → Original disclosure Indexed 1 month, 2 weeks ago
high · finance · Jul 13, 2026

Fatima Abdullahi

Fatima Abdullahi reports: The Federal High Court in Abuja has fixed July 21, 2026, for the arraignment of Zenith Bank Plc and three other defendants over allegations of illegally accessing and disclosing the confidential

View incident → Original disclosure Indexed 1 month, 3 weeks ago
high · tech · Jul 13, 2026

Cisco IOS

Cisco IOS Cross-Site Request Forgery Vulnerability — Cisco IOS 12.4 contains multiple cross-site forgery vulnerabilities that allows remote attackers to execute arbitrary commands via (1) a certain "show privilege" comma

View incident → Original disclosure Indexed 1 month, 3 weeks ago
critical · government · Jul 11, 2026

Daryna Antoniuk

Daryna Antoniuk reports: Dutch police said Thursday they had uncovered evidence suggesting that Dutch criminals were involved in the cyberattack on telecom provider Odido that exposed the personal data of more than 6 mil

View incident → Original disclosure Indexed 1 month, 3 weeks ago