Ransomware victim disclosure
← All victimsCozen O'Connor
Claimed by SilentRansomGroup · listed 5 hours ago
Status timeline
- ListedSep 22, 2026
- Data leakeddate unknown
At a glance
- Group
- SilentRansomGroup
- Status
- Data leaked
- Country
- United States
- Sector
- Professional Services
- Listed on leak site
- Sep 22, 2026
About the victim
AI dossier — public-source company profileCozen O'Connor is a full-service law firm headquartered in Philadelphia, Pennsylvania, founded in 1970. The firm provides counsel across multiple practice areas including litigation, corporate law, insurance, real estate, labor and employment, cybersecurity, and government relations, serving clients across the United States and internationally.
- Industry
- Legal Services
- Address
- Philadelphia, Pennsylvania, US
- Founded
- 1970
Attack summary
Severity: medium — Data has been published by the threat actor (disclosed_status: data_published), indicating confirmed exfiltration. However, no specific inventory of sensitive data types is detailed in the leak post, and no proof files or screenshots are referenced, preventing a higher severity assessment.SilentRansomGroup claims to have targeted Cozen O'Connor and published data. No specific details are provided in the leak post regarding what data was exfiltrated or the nature of the attack (encryption, exfiltration, or both).
Original description
AI-summarised, not from the leak postCozen O'Connor is an American full-service law firm headquartered in Philadelphia, Pennsylvania. Founded in 1970, it operates in the legal services industry, providing counsel across practice areas including litigation, corporate law, insurance, real estate, labor and employment, cybersecurity, and government relations. The firm serves clients across the United States and internationally, with offices throughout the U.S. and abroad.
Source
Indexed 5 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

