Find notable cyber news and cases, enriched with sources, timelines, and signals.

Thomson Reuters hit by cyberattack

Incident
First reported
Last updated
Happening score
H score 21
1 unique sources, 1 articles

Summary

Hide ▲

Thomson Reuters disclosed a cybersecurity incident in C-Track that exposed sensitive court records across Canada and the US. The activity was detected on June 30, and an investigation found that an unauthorized party obtained certain Canada court files tied to three Ontario courts. Affected records may include names, Social Security numbers, driver’s license numbers, medical information, dates of birth, and health insurance information.

Related Happenings

Thomson Reuters C-Track court records data leak

Data Leak
H score20 First: 03.09.2026 15:00 Last: 03.09.2026 15:00 Sources 1

How related: a subsequent investigation discovered that an unauthorized party obtained certain C-Track Canada files associated with three Ontario courts - the Court of Appeal for Ontario, the Ontario Superior Court of Justice and the Ontario Court of Justice.

About this happening: The Thomson Reuters C-Track data leak exposed sensitive court records across Ontario and 11 US states, creating privacy and fraud risk for people named in court files....

Timeline

  1. 03.09.2026 15:00 1 articles · 1h ago

    Thomson Reuters detects suspicious activity in C-Track on June 30

    Detection Ioc Update

    Thomson Reuters detected activity affecting information held in its C-Track digital case management system on June 30, and a subsequent investigation identified an unauthorized party that obtained certain C-Track Canada files tied to the Court of Appeal for Ontario, the Ontario Superior Court of Justice and the Ontario Court of Justice.

    Show sources
  2. 02.09.2026 03:00 2 articles · 1d ago

    Thomson Reuters discloses C-Track breach affecting Ontario and US court records

    Initial Disclosure

    On September 2, Thomson Reuters disclosed a cybersecurity incident in its C-Track court management software that affected sensitive case data across Canada and the US. The disclosed scope included three Ontario courts and appellate courts in 11 US states and the US Virgin Islands, with affected records potentially containing names, Social Security numbers, driver’s license numbers, medical information, dates of birth and health insurance information; the company also said there is no evidence that financial transaction systems were impacted.

    Show sources