In May 2025, the FBI warned law firms that they were being targeted by the Silent Ransomware Group with fake tech support scams using phone calls (vishing) and targeted emails (spearphishing).
Bypassing encryption and ransom, SRG steals data and threatens to publish it if a payment is not made. These attacks are continuing. Last month, SRG published the names of 38 law firms that it claims to have compromised and refused to pay. It claims that more law firms, which it has not identified, have paid.
Beware of phone calls and emails that appear from law firm IT or service providers. Don’t click on a link or give access to your computer without verifying the legitimacy through a trusted communication channel.