On January 11, 2024, Canadian law firm Shibley Righton LLP appeared on the leak site operated by the Alphv ransomware group. The listing states that internal files were exfiltrated during a ransomware attack on the firm, which provides business law, civil and commercial litigation, immigration, personal injury, and other legal services. Anyone whose documents, correspondence, or personal information passed through the firm in recent years may now face heightened exposure.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 580 companies.
See what is exposed about you — free scan →Watch Shibley Righton
Get alerted the next time Shibley Righton files a breach with any US regulator — the filing, dated and sourced. A free single-company slice of Signals; no account needed.
We’ll email you only about Shibley Righton’s future breach filings and how to watch a whole vendor list — not general marketing. Unsubscribe any time.
Watching your whole vendor list (50 to 500 companies, by tier) is GalaxyWarden Signals.
Reported Details from the Listing
The Alphv leak site entry, still accessible via its onion address as of the initial publication, states that Shibley Righton LLP data was stolen and is being held for extortion. The disclosure does not quantify the number of affected records, list specific data types beyond “internal files,” or provide a public ransom demand figure. It simply states that the firm suffered a ransomware incident and that exfiltrated material will be published if payment is not received. No client list, volume of documents, or exact breach date appears in the public portion of the listing.
Why This Matters for You and Your Family
When a law firm’s internal files are stolen, the information at risk often includes names, addresses, dates of birth, Social Insurance Numbers, financial records, immigration paperwork, injury claim details, and sensitive correspondence. Shibley Righton LLP handles both corporate and personal matters, so ordinary clients — not just large companies — can be affected. If your divorce papers, personal injury settlement, immigration application, or business contracts were managed by the firm, those records could surface on the dark web. Once published, they remain available indefinitely, increasing the chance that identity thieves, stalkers, or fraudsters will obtain them.
The Doxxing and Identity-Chain Risk
Ransomware leaks rarely stop at one company. A single exposed email or phone number from the firm’s files can be chained to your other accounts across social media, shopping sites, and gaming platforms. Threat actors routinely combine these fragments to build a complete profile: home address, family members’ names, and even children’s online handles. Credential leaks of this kind frequently cascade into account takeovers, especially for gaming accounts that use the same email address parents rely on for work or legal correspondence. The longer the data sits in criminal circles, the more links can be forged.