HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedPIILowContained
Fried, Frank, Harris, Shriver & Jacobson LLP
bd_1b53770f75bb0493 · schema v1 · pii pii-v1
Full breach record for Fried, Frank, Harris, Shriver & Jacobson LLP →Fried, Frank, Harris, Shriver & Jacobson LLP, a large international law firm, experienced a cybersecurity incident in which a single user account was compromised by an unauthorized third party. The attacker used the account to copy files from a shared network drive between October 23 and October 28, 2025. The firm discovered the breach on October 27, 2025, promptly contained it, engaged outside security experts, and notified law enforcement. Personal information of individuals associated with client representations was affected.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-617981
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 23, 2025
- Raw hash
- 1b19228331c141288a4cc007d51ba3fb9921da17308d0fca17bf71f724610561
Reporting entity
- Name
- Fried, Frank, Harris, Shriver & Jacobson LLPnorm: fried frank harris shriver jacobson
- Domain
- friedfrank.com
Victim entity
- Name
- Fried, Frank, Harris, Shriver & Jacobson LLPnorm: fried frank harris shriver jacobson
- Domain
- friedfrank.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1039 Data from Network Shared DriveT1119 Automated Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.