Ransomware victim disclosure
← All victimsMassey, Stotser & Nichols
Claimed by Insomnia · listed 2 days ago
Status timeline
- ListedSep 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Insomnia
- Status
- Data leaked
- Country
- United States
- Sector
- Professional Services
- Listed on leak site
- Sep 14, 2026
About the victim
AI dossier — public-source company profileMassey, Stotser & Nichols is a Birmingham, Alabama-based law firm providing corporate, litigation, real estate, family law, and estate planning services to Fortune 500 companies, regional businesses, and individuals. The firm operates offices in Birmingham and Vestavia Hills.
- Industry
- Legal Services – Law Firm
- Address
- 1780 Gadsden Hwy, Birmingham, AL 35235 (main office); 3109 Blue Lake Dr, Suite 215, Vestavia Hills, AL 35243 (secondary office)
Attack summary
Severity: medium — Law firm data typically includes sensitive client information (PII, financial records, legal documents), but the leak post contains no proof files, no confirmed exfiltration details, and only a generic announcement. Classification is elevated from low due to the inherent sensitivity of law-firm records and the confirmed 'data_published' status, but remains medium pending actual proof.The insomnia group claims to have compromised Massey, Stotser & Nichols and states that the company's data will be published. No specific details of exfiltration or encryption are provided in the leak post; the post is a preliminary announcement.
What the group claims
Massey, Stotser & Nichols is a Birmingham, AL law firm offering real estate, family law, and civil/corporate litigation. They serve Fortune 500, businesses, and individuals, delivering personalized solutions with big-firm capability.
The leak post
captured from the group's siteLaw Firms & Legal Services **This company's data will be available soon. So check back daily for updates on this company.**
Screenshot of the leak post

Sources
Source
Indexed 2 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

