Live disclosure tracker · updated continuously

Law Firm Data Breaches

Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.

98B+
Records Exposed
10294
Incidents
94+
Countries
+104%
Breach Velocity YoY
Browse by sector
All breaches Healthcare Finance Government Technology Retail Education Legal
Browse by year
2024 2025 2026 2026 Index

Law Firm Data Breaches (10294 indexed)

critical · finance · Jul 19, 2026

Paidwork

23,272,765 records exposed — Bank account numbers, Dates of birth, Device information, Education levels and 10 more

View incident → Indexed 1 month, 1 week ago
medium · other · Jul 17, 2026

Ernst & Young

Ernst & Young is notifying customers of a data breach caused by the compromise of a third-party support ticket system used by its IT personnel. [...]

View incident → Original disclosure Indexed 1 month, 1 week ago
critical · other · Jul 17, 2026

The company

The company says the incident has not affected product quality and safety, nor Fairlife’s Canada production. The post Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack appeared first on SecurityWeek.

View incident → Original disclosure Indexed 1 month, 1 week ago
medium · other · Jul 17, 2026

Abbott Laboratories is

Abbott Laboratories is investigating two separate cybersecurity incidents after confirming unauthorized access to internal legacy Exact Sciences systems in its Cancer Diagnostics business, while also investigating a sepa

View incident → Original disclosure Indexed 1 month, 1 week ago
high · tech · Jul 16, 2026

Fortinet FortiSandbox

Fortinet FortiSandbox OS Command Injection Vulnerability — Fortinet FortiSandbox contains an OS command injection vulnerability that could allow an unauthenticated attacker to execute unauthorized code or commands via cr

View incident → Original disclosure Indexed 1 month, 1 week ago
high · tech · Jul 16, 2026

Microsoft SharePoint

Microsoft SharePoint Deserialization of Untrusted Data Vulnerability — Microsoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to execute code over a network.

View incident → Original disclosure Indexed 1 month, 1 week ago
critical · other · Jul 16, 2026

Coca-Cola

The Coca-Cola Company disclosed today that a ransomware attack impacting its Fairlife dairy subsidiary has disrupted operations, temporarily suspending production of Fairlife products across the United States. [...]

View incident → Original disclosure Indexed 1 month, 1 week ago
high · tech · Jul 16, 2026

Fortinet FortiSandbox

Fortinet FortiSandbox OS Command Injection Vulnerability — Fortinet FortiSandbox, FortiSandbox Cloud, and FortiSandbox PaaS contain an OS command injection vulnerability that allows an unauthenticated attacker to execute

View incident → Original disclosure Indexed 1 month, 1 week ago
high · retail · Jul 15, 2026

Goose Creek

6,574,121 records exposed — Email addresses, Names, Phone numbers, Physical addresses and 1 more

View incident → Indexed 1 month, 1 week ago
high · retail · Jul 15, 2026

Fluke

821,100 records exposed — Email addresses, Employers, Job titles, Names and 2 more

View incident → Indexed 1 month, 1 week ago
high · legal · Jul 15, 2026

Alex Ebert

Alex Ebert reports: Wilmer Cutler Pickering Hale & Dorr should pay millions of dollars in damages for loss of clients’ personal information in a May data breach, a putative class action claims. The lawsuit, filed Tue

View incident → Original disclosure Indexed 1 month, 1 week ago
high · tech · Jul 15, 2026

Oracle E-Business Suite

Oracle E-Business Suite Improper Privilege Management Vulnerability — Oracle E-Business Suite contains an improper privilege management vulnerability that allows an unauthenticated attacker with network access via HTTP t

View incident → Original disclosure Indexed 1 month, 1 week ago
medium · finance · Jul 15, 2026

NPM ecosystem

Attacks targeting developer ecosystems are increasing in frequency and sophistication, with Node.js developers firmly in this week’s crosshairs, as multiple npm packages belonging to the open-source AsyncAPI and Jscrambl

View incident → Original disclosure Indexed 1 month, 1 week ago