Ransomware victim disclosure
← All victimsJethmalani & Nallaseth PLLC
listed as JN attorney · Claimed by Hunters · listed 2 years ago
Status timeline
- ListedNov 25, 2024
- Data leakeddate unknown
At a glance
- Group
- Hunters
- Status
- Data leaked
- Country
- United States
- Sector
- Business Services
- Listed on leak site
- Nov 25, 2024
About the victim
AI dossier — public-source company profileJethmalani & Nallaseth PLLC is a U.S. immigration law firm based in New York specializing in work visas (H-1B, PERM, employment-based green cards), family-based immigration, citizenship, and student visas. The firm serves clients ranging from large multinationals to individuals and operates with a focus on high-volume case processing and specialized expertise.
- Industry
- Legal Services - Immigration Law
- Address
- 42 Broadway Suite 1548, New York, NY 10004, United States
Attack summary
Severity: high — Confirmed exfiltration of sensitive personal data from an immigration law firm. Client records typically contain PII, passport information, employment history, and family details of individuals undergoing immigration proceedings—a vulnerable population. Data is published with no ransom demand, indicating hostile disclosure.The hunters group claims to have exfiltrated data from the firm. No encryption of systems is mentioned. The group has published the data.
Data the group says was taken
AI dossier — extracted from the leak post- Client case files
- Immigration documents
- Personal identification information
- Visa application records
- Employment information
- Family relationship documentation
What the group claims
Country : United States of America - Exfiltraded data : yes - Encrypted data : no
Sources
Source
Indexed 2 years agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

