Thomson Reuters C-Track breach exposes court data across Canada and 11 US states

Thomson Reuters disclosed a breach of its C-Track court software, exposing sensitive case data in Ontario and 11 US states. No evidence of financial systems compromise or data misuse has emerged.

Thomson Reuters C-Track breach exposes court data across Canada and 11 US states

Thomson Reuters court software breach leaks sensitive legal records in Canada and US

Thomson Reuters has disclosed a cybersecurity incident affecting its C-Track court management software, scworld.com reports, exposing sensitive case data across multiple jurisdictions in Canada and the United States.

The breach was detected on June 30 and compromised the C-Track Canada system, with files from three Ontario courts exposed. Potentially affected data includes individuals' names, personal information, and confidential or sealed records.

In the United States, appellate courts in 11 states and the US Virgin Islands were also hit, along with West Publishing Corporation, a Thomson Reuters subsidiary. Exposed US court records may contain Social Security numbers, driver's license numbers, medical information, dates of birth, and health insurance details.

Thomson Reuters stated the incident did not originate from the courts' own systems, though the exact method of access has not been determined. No evidence has emerged of financial transaction systems being compromised or of the affected data being misused.

Court records are a known target for a range of threat actors — including nation-states seeking intelligence and cybercriminals pursuing extortion — underscoring the persistent risks surrounding sensitive legal information held in centralized software platforms.

Source: Google News VI — Crime