CSIDB logo
Incident

Fox Rothschild LLP

Incident posture

Attack window
May 2026
Location
United States of America
Status
Unknown
CIA posture
Available to members
Updated
2026-09-09 00:50

Linked entities

Victim
Fox Rothschild LLP
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
May 2026
Discovered
Undetermined
Disclosed
Jun 2026
Resolved
Pending

Summary

Fox Rothschild LLP was sued by a plaintiff who alleged the firm failed to adequately protect her data, potentially exposing her Social Security number, during a cyberattack attributed to the SilentRansomGroup. The incident follows a similar breach at Jones Day linked to the same threat actors. The lawsuit was filed in the US District Court for the Eastern District of Pennsylvania, referencing a public report by HookPhish that detailed the attack. The firm stated the intrusion occurred but did not disclose further technical specifics.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On June 9, 2026, a plaintiff filed a lawsuit against Fox Rothschild LLP in the United States District Court for the Eastern District of Pennsylvania, alleging that the firm failed to adequately protect her personal data, including her Social Security number, from cybercriminals. The plaintiff contends that the data may have been exfiltrated during a cyberattack attributed to the SilentRansomGroup. According to Fox Rothschild, the intrusion occurred on May 21, 2026, a date the firm disclosed in its statement. The complaint references a public report by HookPhish that details the alleged breach and the involvement of the ransomware group. The suit seeks damages for the alleged negligence in safeguarding client information.

Law firms such as Fox Rothschild routinely handle sensitive client material, including financial statements, medical records, and criminal histories, which makes them attractive targets for threat actors. The incident at Fox Rothschild follows a similar compromise of Jones Day that was also linked to SilentRansomGroup, indicating a pattern of targeting legal entities by the same group. The HookPhish report cited in the lawsuit provides additional context about the tactics used in the attack, though the article does not elaborate on specific technical details. The filing in the Eastern District of Pennsylvania marks the formal legal response to the alleged data exposure. No further statements from Fox Rothschild regarding remediation or containment are included in the source material.

Sources

Sources available to members: 1 source.

CSIDB