<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data]]></title><description><![CDATA[<p dir="auto">Thomson Reuters has confirmed that an unauthorized party accessed files from <strong>C-Track</strong>, the court case management platform operated by its <strong>West Publishing Corporation</strong> subsidiary. The breach was discovered on <strong>June 30, 2026</strong>, though the initial access occurred in <strong>March 2026</strong>.</p>
<p dir="auto">The incident affects courts across <strong>11 U.S. states</strong>, the <strong>U.S. Virgin Islands</strong>, and <strong>Ontario, Canada</strong>. A subset of the compromised court records may contain sensitive personal information, including individuals' names and, in some cases, <strong>Social Security numbers</strong>. Additionally, the exposed data may include materials that were filed under seal, raising concerns about the confidentiality of judicial proceedings.</p>
<p dir="auto">Key details from the disclosure:</p>
<ul>
<li>The affected product is <strong>C-Track</strong>, a platform used by courts for case management.</li>
<li>The breach was discovered months after the initial unauthorized access, suggesting a prolonged period of exposure.</li>
<li>Potentially exposed data includes names, <strong>SSNs</strong>, and sealed court documents.</li>
<li>The exact scope of affected individuals has not yet been fully determined.</li>
</ul>
<p dir="auto">Organizations and courts using <strong>C-Track</strong> should review their data handling practices and watch for any official guidance from Thomson Reuters regarding notification or remediation steps. Individuals who believe their information may be involved should monitor credit reports and consider placing fraud alerts.</p>
<p dir="auto">Source: <a href="https://thehackernews.com/2026/09/thomson-reuters-court-software-breach.html" target="_blank" rel="noopener noreferrer nofollow ugc">The Hacker News</a></p>
<p dir="auto">Given that the breach went undetected for roughly three months, are any of you implementing stricter detection timelines or audit logging for third-party court management systems in your jurisdictions?</p>
]]></description><link>https://xploitlk.com/topic/210/thomson-reuters-court-software-breach-may-have-exposed-ssns-and-sealed-data</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 12:36:32 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/210.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 04 Sep 2026 06:30:20 GMT</pubDate><ttl>60</ttl></channel></rss>