A ransomware group calling itself SilentRansomGroup claims to have targeted law firm Greenberg Traurig, according to a listing posted to the group’s own leak site on or around September 2, 2026. This listing was tracked and archived by ransomware.live, a security research platform that monitors public leak sites operated by ransomware and extortion groups. At this time, the claim has not been verified by Greenberg Traurig, by any independent security researcher, or by any regulator, and it should be treated strictly as an unconfirmed statement made by a criminal group seeking attention or leverage.
What we know — and don’t
- A group identifying itself as SilentRansomGroup posted a claim referencing Greenberg Traurig on its leak site, with the claim dated on or around September 2, 2026.
- Greenberg Traurig operates in the legal sector, providing legal and professional services.
- The specific types of data the group claims to have obtained — such as client records, employee information, or case files — have not been disclosed in the listing and have not been confirmed by any party.
- There is no independent confirmation from Greenberg Traurig, law enforcement, or a regulatory body that any systems were accessed or that any information was actually obtained.
- Ransomware groups have a documented history of exaggerating or fabricating claims to pressure victims, so the existence of a leak-site post is not proof that an intrusion occurred.
What should you do if you have an account with this company?
- Change your password for any account or portal associated with Greenberg Traurig, and avoid reusing that password anywhere else.
- Enable two-factor authentication (2FA) wherever it is offered, ideally using an authenticator app rather than SMS.
- Be alert to phishing attempts referencing this firm, including emails or calls claiming to relate to legal matters, case updates, or account verification.
- Avoid clicking links or downloading attachments from unexpected messages that reference legal correspondence or billing.
- Consider signing up for a service like Aura or LifeLock to monitor for signs of identity misuse in case any personal information tied to this firm is ever confirmed to have been exposed.
- Keep an eye on financial and credit accounts for unusual activity in the weeks following any such claim.
BreachLetter will update this page if Greenberg Traurig confirms this incident, if additional details emerge from credible sources, or if the matter is officially reported to regulators.