On February 3, 2025, the Qilin ransomware group added the mesothelioma law firm Early, Lucarelli, Sweeney & Meisenkothen to its leak site, claiming that internal files had been exfiltrated from the firm’s systems during a ransomware attack.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Early
Get alerted the next time Early files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Early’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
What Public Reporting Shows
Public reporting indicates that ELSM Law Firm, also known as Early, Lucarelli, Sweeney and Meisenkothen, suffered a ransomware intrusion. The attackers claim to have stolen internal documents. No exact victim count or list of specific data types has been publicly detailed beyond the broad description of internal files. The firm, which specializes in asbestos claims and mesothelioma litigation, has not yet issued a public statement confirming the breach or the scope of data involved. Available reporting describes the listing on the Qilin leak site but does not specify when initial access was gained or the precise deadline for any extortion demands.
Why This Matters for You and Your Family
When a law firm that handles sensitive personal injury cases is breached, the information at risk often includes medical records, contact details, financial information, and legal correspondence tied to real people and their families. If you or a loved one have ever worked with a firm like ELSM, your name, address, phone number, email, date of birth, or health details could be among the stolen files. Once exposed, this data does not disappear. It can be sold, traded, or used to target you with identity theft, insurance fraud, or phishing attacks that feel personal because the criminals already know details only your lawyer should have.
The Doxxing and Identity-Chain Implications
Ransomware leaks rarely stop at one company. A single exposed email or phone number from a law firm file can be linked to your social-media accounts, online shopping profiles, or children’s gaming usernames. Attackers use these connections to build a complete picture of your household. What begins as a legal document can cascade into doxxing campaigns where your home address, family member names, and even children’s online handles are published together. Credential leaks like this one frequently lead to account takeovers on gaming platforms, email, and banking services because people reuse passwords across work, legal matters, and personal life.