Ransomware victim disclosure
← All victimsTaylor Oballa Murray Leyland LLP
listed as TOMLLAWYERS.COM · Claimed by Cl0p · listed 5 months ago
Status timeline
- ListedJan 25, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileTaylor Oballa Murray Leyland LLP is an entertainment and media law firm based in Toronto, Ontario, Canada, also servicing Vancouver, BC. Founded in 2006, the firm represents musicians, record companies, film and television producers, songwriters, actors, and other entertainment industry clients across Canada and worldwide. The firm handles transactional matters, copyright, trademark, privacy, and regulatory compliance.
- Industry
- Entertainment & Media Law
- Address
- Toronto, Ontario, Canada
- Employees
- 1-10
- Founded
- 2006
Attack summary
Severity: high — The firm is a law practice holding privileged and confidential client data including contracts, IP filings, and potentially financial and personal information for entertainment industry clients; data_published status indicates exfiltration and public release of sensitive legal records.Cl0p has listed Taylor Oballa Murray Leyland LLP as a victim with a disclosed data_published status, suggesting data has been published. No specific details on encryption or exfiltration scope are provided in the leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Client legal files
- Contracts and agreements
- Copyright and trademark records
- Personally identifiable information (clients and staff)
- Business correspondence
- Financial records
Original description
AI-summarised, not from the leak postN/A
Sources
- Victim siteTOMLLAWYERS.COM
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

