On October 14, 2025, the San Mateo personal injury law firm Galine, Frye, Fitting & Frangos, LLP appeared on the leak site of the pear ransomware group. Internal files were allegedly exfiltrated during a ransomware attack, and the firm has been listed among the group’s victims.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Galine
Get alerted the next time Galine files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Galine’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details from Reports
Public reporting indicates that pear added the firm to its data leak site on October 14, 2025. The listing describes Galine, Frye, Fitting & Frangos as a “Highest-rated San Mateo personal injury attorney” practice. Available information shows the attackers claim to have taken internal files, though the exact volume and specific types of data remain unclear from current public reporting. No confirmed count of affected individuals has been released, leaving many current and former clients uncertain whether their case files, contact details, or other records were included.
Why This Matters for You and Your Family
When a law firm that handles personal injury cases suffers a breach, the people most at risk are ordinary clients whose medical records, accident reports, insurance details, and home addresses may have been stored in the compromised systems. If your information was among the internal files taken, it can be sold or published, exposing you to identity theft, insurance fraud, or unwanted contact. For families, a single breach can affect everyone listed on a claim—spouses, children, and sometimes extended relatives—because case files often contain household information. The uncertainty itself creates stress: you do not know what was taken or who now holds it.
The Doxxing and Identity-Chain Risks
Stolen legal files frequently contain multiple pieces of identifying information about the same person: full name, date of birth, address, phone number, email, and sometimes Social Security number. Attackers can chain these details with usernames found in other breaches to build a complete profile. This is exactly how credential leaks cascade into account takeovers. A gaming account belonging to you or your child that uses the same email or a reused password can be hijacked, then used to harass family members or demand ransom. Public reporting on similar incidents shows that once an identity chain begins, it is difficult to stop without deliberate, ongoing effort.