Budapest Post

Cum Deo pro Patria et Libertate
Budapest, Europe and world news

A data breach is exposing Big Law firms who were using a 20-year-old system for handling sensitive documents. Here's what we know so far.

A data breach is exposing Big Law firms who were using a 20-year-old system for handling sensitive documents. Here's what we know so far.

Accellion, a top legal data vendor, was hit by a data breach. Here are firms that could be at risk in the legal industry's latest data security risk.
Leading law firm data vendor Accellion fell victim to a data breach now tied to hacks at least two big customers, the latest in a string of data-security failures that has affected the legal industry in recent years.

Accellion said this month that its aging File Transfer Appliance (FTA) product was compromised. For years, Accellion, which provides file transfer services, has been a top choice among Big Law to share sensitive files that are too big to be emailed, and is used by 35% of the largest law firms.

Accellion FTA is meant to help large companies like law firms securely transfer large and sensitive files through a private cloud system. The 20-year-old platform is being phased out, Accellion said this month, and will not allow renewals after April 30.

The Wall Street Journal on Tuesday reported that Jones Day, which has represented major corporate clients like Alphabet and Goldman Sachs, along with Donald Trump's presidential campaign, was among the firms impacted. The anonymous hacker who posted documents purported to be from Jones Day on the dark web told the Journal that it had accessed Jones Day servers and didn't obtain the information through Accellion, something Jones Day disputed.

"Jones Day's network has not been breached," the firm said in a statement, adding that the incident was still under investigation. "Jones Day has been informed that Accellion's FTA file transfer platform, which is a platform that Jones Day — like many law firms, companies and organization — used was recently compromised and information taken."

Goodwin Procter, another large firm that has used Accellion, experienced a data breach on Jan. 20, Bloomberg Law first reported. When reached by Insider on Wednesday, the firm declined to comment.

In addition to using Accellion, Goodwin Procter also represented an investor in the company in a $120 million financing round last year.

Many law firms have been mentioned in the Accellion's marketing material over the years, but several — including Cozen O'Connor, Seyfarth Shaw, Arent Fox, and Barnes & Thornburg — weren't impacted by the breach, according to statements by the firms or people familiar with the matter.

Rob Dougherty, an Accellion spokesman, told Insider that "the vast majority" of its law-firm clients no longer use FTA and have upgraded to its newer Kiteworks product, but didn't respond to a request for specific numbers.

Kiteworks was launched in 2014. FTA, meanwhile, is nearing the end of its product life, Accellion said in its Feb. 1 statement disclosing what it called a "sophisticated cyberattack."

Accellion has also touted Fragomen Del Rey Bernsen & Lowey; Cahill Gordon & Reindell; Willkie Farr & Gallagher; Squire Patton Boggs; Ropes & Gray; Dentons; Latham & Watkins; Foley & Lardner; and Cadwalader Wickersham & Taft as clients.

Representatives for Cahill, Squire, Ropes, Latham and Cadwalader said they weren't impacted by the breach. A Dentons representative said the firm does not use the DTA system. People at the other firms didn't respond to comment requests.

Law firms and the companies that manage their data have been targeted in privacy attacks in recent years: DLA Piper was hit in a major cybersecurity attack in 2017, in which hackers demanded a mere $300 in bitcoin for the firm to regain access to its computer systems. A 2019 Law.com report estimated that more than 100 Big Law firms have reported data breaches.

Frank Gillman, a law firm information technology consultant with Vertex Advisors, told Insider that he couldn't speak about Accellion specifically, but said software vendors are generally not looking to break the bank when they ask a firm to upgrade.

"Typically, software companies looking to get clients from an older iteration to a newer product line keep the overall price increase to a 10% to 15% range increase, with large incentives for longer subscription periods," he said in an email. "Otherwise, it's difficult to meet budgetary restrictions of the customer."

The responses from law firms and their third-party data storage partners to data breaches have varied. In some cases, hackers have threatened to erase or release files unless they are paid. In a late 2020 breach notification, Cadwalader reportedly told a regulator that one of its vendors was impacted by a ransomware attack and paid to have its systems unencrypted.

The Wall Street Journal reported that the hacker who claimed to have breached Jones Day said the firm hadn't responded to its outreach.
AI Disclaimer: An advanced artificial intelligence (AI) system generated the content of this page on its own. This innovative technology conducts extensive research from a variety of reliable sources, performs rigorous fact-checking and verification, cleans up and balances biased or manipulated content, and presents a minimal factual summary that is just enough yet essential for you to function as an informed and educated citizen. Please keep in mind, however, that this system is an evolving technology, and as a result, the article may contain accidental inaccuracies or errors. We urge you to help us improve our site by reporting any inaccuracies you find using the "Contact Us" link at the bottom of this page. Your helpful feedback helps us improve our system and deliver more precise content. When you find an article of interest here, please look for the full and extensive coverage of this topic in traditional news sources, as they are written by professional journalists that we try to support, not replace. We appreciate your understanding and assistance.
Newsletter

Related Articles

0:00
0:00
Close
U.S. and Hungarian Officials Talk About Economic Collaboration and Sanctions Strategy
Technology Giants Activate Lobbying Campaigns Against Strict EU Regulations
Pope Francis Admitted to Hospital in Rome Amid Increasing Speculation on Succession
Zelensky Calls on World Leaders to Back Peace as Tensions Rise with Trump
UK Leader Keir Starmer Calls for US Security Guarantee in Ukraine Peace Deal
NATO Chief Urges Higher Defense Expenditure in Europe
The negotiation teams of Trump and Putin meet directly, establishing the groundwork for a significant advancement.
Rubio Touches Down in Riyadh Before Key U.S.-Russia Discussions
Students in Serbian universities Unite to Hold Coordinated Protests for Accountability.
US State Department Removes Taiwan Independence Statement from Website
Abolishing opposition won't protect Germany from Nazism—this is precisely what led Germany to become Nazi!
Transatlantic Gold Rush: Traders Shift Bullion in Response to Tariff Anxieties and Market Instability
Bill Ackman Backs Uber as the Company Shifts Towards Profitability
AI Titans Challenge Nvidia's Supremacy in Light of New Chip Innovations
US and Russian Officials to Meet in Saudi Arabia Over Ending Ukraine Conflict. Ukraine and European leaders – who profit from this war – excluded from the negotiations.
Macron Calls for Urgent Summit as Ukraine Conflict Business Model is Threatened
Trump’s Defense Secretary: Ukraine Won’t Join NATO or Regain Lost Territories
Zelensky Urges Europe to Bolster Its Military in Light of Uncertain US Backing
Chinese Zoo Confesses to Dyeing Donkeys to Look Like Zebras
Elon Musk is Sherlock Holmes - Movie Trailer Parody featuring Donald Trump's Detective
Trump's Greenland Suggestion Sparks Sovereignty Discussions Amid Historical Grievances
OpenAI Board Dismisses Elon Musk's Offer to Acquire the Company.
USAID Uncovered: American Taxpayer Funds Leveraged to Erode Democracy in Europe Until Trump Put a Stop to It.
JD Vance and Scholz Did Not Come Together at the Munich Security Conference.
EU Official Participates in Discussions in Washington Amid Trade Strains
Qatar Contemplates Reducing French Investments Due to PSG Chief Investigation
Germany's Green Agenda Encounters Ambiguity Before Elections
Trump Did Not Notify Germany's Scholz About His Ukraine Peace Proposal.
Munich Car Attack Escalates Migration Discourse Before German Elections
NATO Allies Split on Trump's Proposal for 5% Defense Spending Increase
European Parliament Advocates for Encrypted Messaging to Ensure Secure Communications
Trump's Defense Spending Goal Creates Division Among NATO Partners
French Prime Minister Bayrou Navigates a Challenging Path Amid Budget Preservation and Immigration Discourse
Steering Through the Updated Hierarchy at the European Commission
Parliamentarian Calls for Preservation of AI Liability Directive
Mark Rutte Calls on NATO Allies to Increase Defence Expenditures
Dresden Marks the 80th Anniversary of the World War II Bombing.
Global Community Pledges to Aid Syria's Political Transition
EU Allocates €200 Billion for AI Investments, Introduces €20 Billion Fund for Gigafactories
EU Recognizes Its Inability to Close the USAID Funding Shortfall Due to Stalled US Aid
Commission President von der Leyen Missing from Notre Dame Reopening Due to Last-Minute Cancellation
EU Officializes Disinformation Code for Online Platforms, Omitting X
EU Fails to Fully Implement Key Cybersecurity Directives
EU Under Fire for Simplification Discussions Regarding Corporate Sustainability Reporting
Shein Encountering Further Information Request from the EU During Ongoing Investigation
European Commission Initiates Investigation into Shein as It Aims at Chinese E-Commerce Regulations
German Officials Respond to U.S. Proposal for Peace Talks with Russia
Senate Approves Robert F. Kennedy Jr. as Secretary of Health and Human Services.
Trump and Putin Engage in Discussions on Ukraine Peace Negotiations Amid Worldwide Responses
Honda and Nissan End Merger Talks
×