Urgent Alert: Texas State Bar Hit by Ransomware Attack, Confidential Data Exposed


INC Ransom
Red Report 2025

Overview of the Incident

The State Bar of Texas has issued an urgent warning, confirming a significant data breach instigated by the INC ransomware gang. This security compromise resulted in the unauthorized dissemination of sensitive data.

Importance and Scale of Impact

With over 100,000 licensed attorneys, the State Bar of Texas holds the distinction of being the second-largest bar association in the United States. It plays a crucial role in managing the legal profession in Texas, emphasizing licensing, education, ethical standards, and disciplinary measures.

Details of the Breach

The breach occurred over a span from January 28 to February 9, 2025. It was only identified on February 12, during which confidential information including full names and other sensitive details were stolen from the network.

Timeline and Method of Attack

Upon thorough investigation, it was revealed that there was a deliberate unauthorized access within the specified timeframe. Subsequently, the INC ransomware gang openly claimed responsibility for the attack by listing the State Bar of Texas on their dark web extortion page on March 9, 2025.

Extent of Information Leaked

The attackers have already begun leaking samples of ostensibly stolen files, consisting of critical legal case documents, thereby raising severe privacy concerns.

Verification and Response

While attempts to verify the authenticity of the leaked data are ongoing, the inquiry sent to the State Bar of Texas remains unanswered. Adding a layer of security, affected members have been provided complimentary credit and identity theft monitoring services by Experian, available until July 31, 2025.

Recommended Preventative Measures

  • Credit freeze implementation
  • Placement of fraud alerts on credit files

These steps are integral to safeguard against potential financial and identity theft risks following the data exposure.

Additional Information

Members impacted by the breach are urged to activate the recommended security measures promptly to mitigate the emerging risks efficiently.

Related: Unlocking the Truth: Oracle Confronts Legacy Cloud Security Breach Amidst Intense Scrutiny

Last Updated: April 3, 2025