London Daily

Focus on the big picture.
Thursday, Sep 18, 2025

A data breach is exposing Big Law firms who were using a 20-year-old system for handling sensitive documents. Here's what we know so far.

A data breach is exposing Big Law firms who were using a 20-year-old system for handling sensitive documents. Here's what we know so far.

Accellion, a top legal data vendor, was hit by a data breach. Here are firms that could be at risk in the legal industry's latest data security risk.
Leading law firm data vendor Accellion fell victim to a data breach now tied to hacks at least two big customers, the latest in a string of data-security failures that has affected the legal industry in recent years.

Accellion said this month that its aging File Transfer Appliance (FTA) product was compromised. For years, Accellion, which provides file transfer services, has been a top choice among Big Law to share sensitive files that are too big to be emailed, and is used by 35% of the largest law firms.

Accellion FTA is meant to help large companies like law firms securely transfer large and sensitive files through a private cloud system. The 20-year-old platform is being phased out, Accellion said this month, and will not allow renewals after April 30.

The Wall Street Journal on Tuesday reported that Jones Day, which has represented major corporate clients like Alphabet and Goldman Sachs, along with Donald Trump's presidential campaign, was among the firms impacted. The anonymous hacker who posted documents purported to be from Jones Day on the dark web told the Journal that it had accessed Jones Day servers and didn't obtain the information through Accellion, something Jones Day disputed.

"Jones Day's network has not been breached," the firm said in a statement, adding that the incident was still under investigation. "Jones Day has been informed that Accellion's FTA file transfer platform, which is a platform that Jones Day — like many law firms, companies and organization — used was recently compromised and information taken."

Goodwin Procter, another large firm that has used Accellion, experienced a data breach on Jan. 20, Bloomberg Law first reported. When reached by Insider on Wednesday, the firm declined to comment.

In addition to using Accellion, Goodwin Procter also represented an investor in the company in a $120 million financing round last year.

Many law firms have been mentioned in the Accellion's marketing material over the years, but several — including Cozen O'Connor, Seyfarth Shaw, Arent Fox, and Barnes & Thornburg — weren't impacted by the breach, according to statements by the firms or people familiar with the matter.

Rob Dougherty, an Accellion spokesman, told Insider that "the vast majority" of its law-firm clients no longer use FTA and have upgraded to its newer Kiteworks product, but didn't respond to a request for specific numbers.

Kiteworks was launched in 2014. FTA, meanwhile, is nearing the end of its product life, Accellion said in its Feb. 1 statement disclosing what it called a "sophisticated cyberattack."

Accellion has also touted Fragomen Del Rey Bernsen & Lowey; Cahill Gordon & Reindell; Willkie Farr & Gallagher; Squire Patton Boggs; Ropes & Gray; Dentons; Latham & Watkins; Foley & Lardner; and Cadwalader Wickersham & Taft as clients.

Representatives for Cahill, Squire, Ropes, Latham and Cadwalader said they weren't impacted by the breach. A Dentons representative said the firm does not use the DTA system. People at the other firms didn't respond to comment requests.

Law firms and the companies that manage their data have been targeted in privacy attacks in recent years: DLA Piper was hit in a major cybersecurity attack in 2017, in which hackers demanded a mere $300 in bitcoin for the firm to regain access to its computer systems. A 2019 Law.com report estimated that more than 100 Big Law firms have reported data breaches.

Frank Gillman, a law firm information technology consultant with Vertex Advisors, told Insider that he couldn't speak about Accellion specifically, but said software vendors are generally not looking to break the bank when they ask a firm to upgrade.

"Typically, software companies looking to get clients from an older iteration to a newer product line keep the overall price increase to a 10% to 15% range increase, with large incentives for longer subscription periods," he said in an email. "Otherwise, it's difficult to meet budgetary restrictions of the customer."

The responses from law firms and their third-party data storage partners to data breaches have varied. In some cases, hackers have threatened to erase or release files unless they are paid. In a late 2020 breach notification, Cadwalader reportedly told a regulator that one of its vendors was impacted by a ransomware attack and paid to have its systems unencrypted.

The Wall Street Journal reported that the hacker who claimed to have breached Jones Day said the firm hadn't responded to its outreach.
Newsletter

Related Articles

0:00
0:00
Close
US Tech Giants Pledge Billions to UK AI Infrastructure Following Starmer's Call
Saudi Arabia cracks down on music ‘lounges’ after conservative backlash
DeepMind and OpenAI Achieve Gold at ‘Coding Olympics’ in AI Milestone
SEC Allows Public Companies to Block Investors from Class-Action Lawsuits
Saudi Arabia Signs ‘Strategic Mutual Defence’ Pact with Pakistan, Marking First Arab State to Gain Indirect Access to Nuclear Strike Capabilities in the Region
Federal Reserve Cuts Rates by Quarter Point and Signals More to Come
Effective and Impressive Generation Z Protest: Images from the Riots in Nepal
European manufacturers against ban on polluting cars: "The industry may collapse"
Sam Altman sells the 'Wedding Estate' in Hawaii for 49 million dollars
Trump: Cancel quarterly company reports and settle for reporting once every six months
Turkish car manufacturer Togg Enters German Market with 5-Star Electric Sedan and SUV to Challenge European EV Brands
US Launches New Pilot Program to Accelerate eVTOL Air Taxi Deployment
Christian Brueckner Released from German Prison after Serving Unrelated Sentence
World’s Longest Direct Flight China Eastern to Launch 29-Hour Shanghai–Buenos Aires Direct Flight via Auckland in December
New OpenAI Study Finds Majority of ChatGPT Use Is Personal, Not Professional
Hong Kong Industry Group Calls for HK$20 Billion Support Fund to Ease Property Market Stress
Joe Biden’s Post-Presidency Speaking Fees Face Weak Demand amid Corporate Reluctance
Charlie Kirk's murder will break the left's hateful cancel tactics
Kash Patel erupts at ‘buffoon’ Sen. Adam Schiff over Russiagate: ‘You are the biggest fraud’
Homeland Security says Emmy speech ‘fanning the flames of hatred’ after Einbinder’s ‘F— ICE’ remark
Charlie Kirk’s Alleged Assassin Tyler Robinson Faces Death Penalty as Charges Formally Announced
Actor, director, environmentalist Robert Redford dies at 89
The conservative right spreads westward: a huge achievement for 'Alternative for Germany' in local elections
JD Vance Says There Is “No Unity” with Those Who Celebrate Charlie Kirk’s Killing, and he is right!
Trump sues the 'New York Times' for an astronomical sum of 15 billion dollars
Florida Hospital Welcomes Its Largest-Ever Baby: Annan, Nearly Fourteen Pounds at Birth
U.S. and Britain Poised to Finalize Over $10 Billion in High-Tech, Nuclear and Defense Deals During Trump State Visit
China Finds Nvidia Violated Antitrust Laws in Mellanox Deal, Deepens Trade Tensions with US
US Air Force Begins Modifications on Qatar-Donated Jet Amid Plans to Use It as Air Force One
Pope Leo Warns of Societal Crisis Over Mega-CEO Pay, Citing Tesla’s Proposed Trillion-Dollar Package
Poland Green-Lights NATO Deployment in Response to Major Russian Drone Incursion
Elon Musk Retakes Lead as World’s Richest After Brief Ellison Surge
U.S. and China Agree on Framework to Shift TikTok to American Ownership
London Daily Podcast: London Massive Pro Democracy Rally, Musk Support, UK Economic Data and Premier League Results Mark Eventful Weekend
This Week in AI: Meta’s Superintelligence Push, xAI’s Ten Billion-Dollar Raise, Genesis AI’s Robotics Ambitions, Microsoft Restructuring, Amazon’s Million-Robot Milestone, and Google’s AlphaGenome Update
Le Pen Tightens the Pressure on Macron as France Edges Toward Political Breakdown
Musk calls for new UK government at huge pro-democracy rally in London, but Britons have been brainwashed to obey instead of fighting for their human rights
Elon Musk responds to post calling for the murder of Erika Kirk, widow of Charlie Kirk: 'Either we fight back or they will kill us'
Czech Republic signs €1.34 billion contract for Leopard 2A8 main battle tanks with delivery from 2028
USA: Office Depot Employees Refused to Print Poster in Memory of Charlie Kirk – and Were Fired
Proposed U.S. Bill Would Allow Civil Suits Against Judges Who Release Repeat Violent Offenders
Penske Media Sues Google Over “AI Overviews,” Claiming It Uses Journalism Without Consent and Destroys Traffic
Indian Student Engineers Propose “Project REBIRTH” to Protect Aircraft from Crashes Using AI, Airbags and Smart Materials
French Debt Downgrade Piles Pressure on Macron’s New Prime Minister
US and UK Near Tech, Nuclear and Whisky Deals Ahead of Trump Trip
One in Three Europeans Now Uses TikTok, According to the Chinese Tech Giant
Could AI Nursing Robots Help Healthcare Staffing Shortages?
NATO Deploys ‘Eastern Sentry’ After Russian Drones Violate Polish Airspace
Anesthesiologist Left Operation Mid-Surgery to Have Sex with Nurse
Tens of Thousands of Young Chinese Get Up Every Morning and Go to Work Where They Do Nothing
×