On June 18, 2026, Burris & MacOmber PLLC, a Tucson, Arizona law firm specializing in civil litigation, international business law, real estate, and estate planning, appeared on the leak site of the ransomware group known as The Gentlemen. Public reporting indicates the firm’s internal files were exfiltrated during a ransomware attack, with the data now publicly listed for anyone to access.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Burris MacOmber
Get alerted the next time Burris MacOmber files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Burris MacOmber’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details of the Incident
Available reporting describes the listing on the group’s leak platform, hosted via ransomware.live at the URL tied to the firm’s name. The exposed material consists of internal files taken during the intrusion. The number of people whose information appears in the files remains unknown, as does the precise volume and sensitivity of every document. No confirmed timeline for the initial breach has been published beyond the June 18 leak date.
Why This Matters for You and Your Family
When a law firm’s internal records are dumped online, the people named in those files—clients, counterparties, employees, and their families—can face immediate risks. Legal documents often contain full names, addresses, dates of birth, Social Security numbers, financial details, and case notes. Once that information is loose on the internet, it never truly disappears. You or your family could see it surface in identity-theft attempts, insurance fraud, or targeted scams months or years later. Even if you never hired this specific firm, shared vendors, court records, or family connections can still place your data inside documents that now sit on a ransomware leak site.
The Doxxing and Identity-Chain Risks
A single breach rarely stays isolated. Attackers and opportunistic criminals combine the newly released files with data from earlier leaks to build detailed profiles. An email from one breach links to a phone number from another; a child’s gaming username ties back to a parent’s address listed in estate-planning paperwork. These identity chains let criminals move from simple identity theft to full doxxing—publishing your home address, children’s names and schools, or photos—often as leverage for extortion or harassment. Credential leaks like this one frequently cascade into account takeovers on email, banking, and gaming platforms.