Skip to content
Two prominent US law firms Greenberg Traurig, Eckert Seamans disclose data breaches

Two prominent US law firms Greenberg Traurig, Eckert Seamans disclose data breaches

Teiss September 11, 2026

Greenberg Traurig and Eckert Seamans have each disclosed data security breaches exposing sensitive client information, marking the latest in a series of incidents underscoring mounting cyber threats to the legal sector.

Greenberg Traurig, founded in Miami and to more than 3,200 lawyers, told Reuters in a statement Thursday that an unauthorized actor gained access to a limited number of documents and subsequently posted them on the dark web. The firm said it has alerted a small number of affected clients and maintained that its firm systems were not compromised or breached, allowing operations to continue without disruption. In a notice filed with the Vermont attorney general this week, the firm said the exposed material included Social Security information.

Eckert Seamans, based in Pittsburgh and staffed by hundreds of lawyers, faces a different set of consequences following its own breach disclosure last week. Two proposed class actions were filed against the firm Wednesday in federal court in New York. The firm did not immediately respond to a request for on the litigation.

Court filings in the Eckert Seamans cases state that the firm notified affected individuals that an attorney there had been targeted in a social engineering attack in August, resulting in unauthorized access to a limited set of files. The firm identified dates of birth and Social Security numbers as among the data exposed. Attorneys representing the plaintiffs wrote in one filing that clients’ private information had been private before the breach and was no longer. The suits do not specify whether the two plaintiffs, residents of Ohio and Tennessee, were clients of the firm, and a lawyer representing them did not immediately respond to a request for .

Social engineering attacks, which rely on manipulating individuals into disclosing sensitive information or granting access to secure systems, have made law firms holding large volumes of confidential business and personal data an attractive target for cybercriminals.

Two additional major firms, Quinn Emanuel and McDermott Will & Schulte, recently disclosed breaches tied to social engineering tactics. McDermott described its incident as isolated, involving a single user and a limited number of documents, while Quinn Emanuel said a limited number of client documents were affected and that impacted parties had been notified.

At least three other firms, including Herbert Smith Freehills Kramer and Goodwin Procter, reported data breaches to U.S. state regulators last month. WilmerHale was named in a proposed class action filed in July in Washington over a breach affecting the firm and has retained Hogan Lovells Cadwalader to represent it in that litigation.

Please take 30 seconds to register

Already have an account? Sign in

"If we think of usability and security as mutually exclusive - we have failed" - Jerrod Chong, Yubico

#teissLondon2018: On the internet, nobody knows you are a fridge

1 in 6 gamers disable all AV in the pursuit of the highest possible speeds

10 malicious Python Libraries discovered on PyPI Repository

126,000 affected by cyberattack on New Zealand patient portal Manage My Health

"If we think of usability and security as mutually exclusive - we have failed" - Jerrod Chong, Yubico

#teissLondon2018: On the internet, nobody knows you are a fridge

1 in 6 gamers disable all AV in the pursuit of the highest possible speeds

10 malicious Python Libraries discovered on PyPI Repository

126,000 affected by cyberattack on New Zealand patient portal Manage My Health

19-year-old claims he hacked into over 25 Tesla cars in 13 countries

2020 cybersecurity trends and resolutions

2025 in review: why cyber-security became a boardroom crisis

Building cyber-resilience across your digital supply chain

Closing the exposure window — unifying continuous threat exposure management

Closing the AI control gap - architecting security across users, applications, and agents

Winston House, 3rd Floor, Units 306-309, 2-4 Dollis park, London, N3 1HF

Extracted Entities