Ransomware victim disclosure
← All victimsSpilker McNally Tucker (SMT Lawyers)
listed as SMTLAWYERS.CA · Claimed by Clop · listed 4 months ago
Status timeline
- ListedFeb 7, 2026
- Data leakeddate unknown
At a glance
About the victim
AI dossier — public-source company profileSMT Lawyers, operating as Spilker McNally Tucker, is a law firm rooted in the Kootenays region of British Columbia, Canada. The firm provides legal services to individuals, families, and businesses across BC and Alberta, with offices in Nelson and Fernie. Their practice areas include litigation, real estate transactions, and business matters.
- Industry
- Legal Services
- Address
- Nelson, British Columbia, Canada (also serving Fernie and broader BC and Alberta)
Attack summary
Severity: high — A law firm holds highly sensitive privileged client data including personal, financial, and litigation information. The status is 'data_published' by Clop, a sophisticated threat actor known for mass exfiltration, indicating actual data release rather than a mere listing. Legal privilege and PII exposure elevate severity.The Clop ransomware group listed SMT Lawyers as a victim with a disclosed status of data_published, indicating data has been released. The leak post itself contained only a redirect/queue message and did not detail specific claims of encryption or exfiltration.
Data the group says was taken
AI dossier — extracted from the leak post- Client legal files
- Business records
- Personal information of clients
- Real estate transaction documents
- Litigation records
Original description
AI-summarised, not from the leak post"SMTLAWYERS.CA" is a Canadian law firm, officially known as Simpson, McMurchy, and Tuma. They offer a variety of legal services, particularly specializing in Real Estate law, Civil and Commercial Litigation, Pet Injuries, Wills, and Trusts. Their team of experienced attorneys is dedicated to providing high-quality legal service, tailored to every client's unique needs. With their in-depth knowledge and expertise, SMTLAWYERS.CA aims to achieve the best possible outcomes for their clients.
The leak post
captured from the group's siteYou have been placed in a queue, awaiting forwarding to the platform. Please do not refresh the page, you will be automatically redirected.
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

