Ransomware victim disclosure
← All victimsThe Law Offices of Eric Hershler, APC
listed as Hersher Law · Claimed by INC Ransom · listed 3 months ago
Status timeline
- ListedMar 3, 2026
- Data leakeddate unknown
At a glance
- Group
- INC Ransom
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Mar 3, 2026
About the victim
AI dossier — public-source company profileThe Law Offices of Eric Hershler, APC is a Los Angeles-based law firm that focuses exclusively on personal injury cases. The firm operates as a professional corporation in California. No further details on scale or headcount are publicly available from the provided sources.
- Industry
- Personal Injury Law
- Address
- Los Angeles, California, United States
Attack summary
Severity: critical — A personal injury law firm holds highly sensitive client PII, medical records, financial settlement data, and attorney-client privileged communications at scale. Data has been confirmed published by the threat actor, constituting exfiltration of regulated and sensitive personal and legal data.INC Ransom claims to have attacked The Law Offices of Eric Hershler, APC, and has published data (disclosed status: data_published), indicating confirmed exfiltration of firm data. The specific data types and volume have not been detailed in the truncated leak post.
Data the group says was taken
AI dossier — extracted from the leak post- Client legal records
- Personal injury case files
- Client personally identifiable information (PII)
- Attorney-client privileged communications
What the group claims
The Law Offices of Eric Hershler, APC, in Los Angeles, focuses exclusively on personal injury cases.
Source
Indexed 3 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

