Explore Legal.io

For Clients
Legal.io company logo
Hire Talent
Find the best fit for any legal role
For Members
Jobs
The best legal jobs, updated daily
Salaries
Benchmark compensation for any legal role
Learn
Learn and grow with our community
Events
Connect with peers at exclusive events
Apps
Tools to streamline legal work
Advertise on Legal.io
Post a job for free
Reach more qualified applicants quickly
Advertise with Us
Reach a targeted audience

For Clients

Hire Talent
Legal.io company logo
Solutions
Find the best fit for any legal role
New Hire
Get highly qualified candidates in days
Popular Roles
Data & Tools
Budget Calculator
Plan and manage your legal budget
Salary Insights
Compensation data for legal roles
Vendor Directory
The ultimate list of legal tech tools

Leading Australian Law Firm Struggles With Massive Cyberattack: A Growing Threat to the Legal Industry

A ransomware attack at HWL Ebsworth, one of Australia’s leading law firms, shows the importance of enforcing appropriate IT security measures.

Leading Australian Law Firm Struggles With Massive Cyberattack: A Growing Threat to the Legal Industry

In an era where digital information is increasingly becoming the lifeblood of organizations, the legal industry is no exception. Law firms, with their vast repositories of sensitive client and corporate data, are becoming lucrative targets for cybercriminals. The recent cyberattack on HWL Ebsworth, one of Australia’s leading law firms, underscores this growing threat.

On April 28, 2023, HWL Ebsworth fell victim to a ransomware attack orchestrated by the Russian-linked ALPHV/BlackCat ransomware group. On May 8, 2023, HWL Ebsworth communicated the incident to the Office of the Australian Information Commissioner (OAIC) – possibly a worrisome notification, since the OAIC is also a client of the firm. 

The firm initially learned about the attack through emails that were assumed to be spam. The attack resulted in the theft of client information and employee data. The hackers issued a ransom demand of $4.6M in bitcoin. They later published 1.1TB of the data they claimed to have stolen, which was later established to be 3.6TB worth of data.

The Impact

The cyberattack on HWL Ebsworth had far-reaching implications. It affected 65 Australian government departments and agencies that were clients of the firm. The national cybersecurity coordinator, Air Marshal Darren Goldie, revealed that some people and clients with personal information exposed in the hack have yet to be informed.

In response to the attack, HWL Ebsworth engaged McGrathNicol to investigate the incident and undertake containment and remediation actions. HWL Ebsworth has dedicated more than 5,000 hours and a quarter of a million dollars to combatting the hacking incident. After 16 weeks of support, the Australian government’s formal coordinated response to the incident ended, with HWL Ebsworth now able to manage its response without formal assistance from the Australian government.

A Growing Threat to the Legal Industry

The HWL Ebsworth incident is a stark reminder of the growing cyber threats facing the legal industry. Law firms handle vast amounts of sensitive client and corporate data, making them attractive targets for cybercriminals. Furthermore, many law firms are still using outdated IT systems and are slow to adopt cybersecurity policies, making them easy targets for hackers.

Basic security measures like using up-to-date security software, using current versions of operating systems and software, promptly applying patches to the operating system and all application software, employing effective backup, and training of attorneys and staff, can help protect against these kinds of threats. As the threat landscape continues to evolve, the legal industry must stay one step ahead to safeguard its data and maintain the trust of its clients.

Legal.io Logo
Welcome to Legal.io

Connect with peers, level up skills, and find jobs at the world's best in-house legal departments

More from Legal.io

EU Scrutinizes Apple, Google, and Meta Under New Laws

The European Union's regulatory actions, such as the Digital Markets Act, target major tech companies like Apple, Google, and Meta to ensure fair competition and consumer rights.

EU Scrutinizes Apple, Google, and Meta Under New Laws
Technology
Legal.io Newsletter - December 23, 2022 Edition #138

Published weekly on Friday, the Legal.io Newsletter covers the latest in legal, talent & tech.

Legal.io Newsletter - December 23, 2022 Edition #138
Legal OperationsTechnologyIn-House Counsel
BriefCatch Secures $3.5M Seed Round for Expansion and Inclusion of AI Features

LawCatch Inc., the company behind BriefCatch legal editing software, has successfully raised $3.5 million in an oversubscribed seed round of funding. The lead investor in the funding round was TIA Ventures (www.tiaventures.com), and other notable participants included RiverPark Ventures, C2 Ventures, and Wilson Sonsini Investments Co. This investment round enables TIA Ventures to take a seat on LawCatch's board as well.

Newsletter
Legal Departments’ Work Volumes Increase, Budgets Decrease, Survey Finds

The 2023 Legal Department Operations Index found that the industry is facing a technology conundrum, with growing legal tech use but insufficient budgets.

Legal Departments’ Work Volumes Increase, Budgets Decrease, Survey Finds
Legal OperationsIn-House CounselLaw Firms
Legal.io Webinar Series: Atlassian's AI-Driven Legal Approach

In our recent webinar, distinguished legal trailblazers convened to delve into the various routes leading to leadership positions in legal operations. This enlightening session empowered participants with crucial tools, strategies, and perspectives to unleash their leadership capabilities and thrive within corporate in-house legal departments.

Legal.io Webinar Series: Atlassian's AI-Driven Legal Approach
Legal Operations
DOJ Proposes Breakup of Google to Restore Online Search Competition

DOJ pushes Google to sell Chrome, share data, and consider divesting Android to address its search monopoly, drawing criticism from Google as extreme and overreaching.

DOJ Proposes Breakup of Google to Restore Online Search Competition
Those of you who made it to leadership roles: what are the pros & cons?

I’m only Legal Counsel but seeing what my manager has to go through on a daily basis, I’m not sure I want their role (besides the prestige and money, or course).

Those of you who made it to leadership roles: what are the pros & cons?
Career
U.S. Senate Grills Tech CEOs in Heated Hearing on Child Online Safety

Hearing exposes tech giants' child safety gaps, demands stronger measures.

U.S. Senate Grills Tech CEOs in Heated Hearing on Child Online Safety
Technology
Legal.io Logo
Welcome to Legal.io

Connect with peers, level up your skills, and find jobs at the world's best in-house legal departments