Horwitz Law, Horwitz & Associates Listed by alphv Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
The Horwitz Law, Horwitz & Associates Listed by alphv Ransomware Group (reported May 4, 2022) is an unverified claim; the data involved is undisclosed belonging to roughly unknown people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.
What happened
The incident was first noted through alphv’s leak-site posting on May 4, 2022. The group stated that it had accessed the firm’s network and copied data, describing the material as including client records and internal documents. No independent confirmation of the volume of data, encryption of systems, or ransom demands has been made public. The listing constitutes the group’s claim; the firm has not verified or disputed the account in available records.
Who is alphv?
ALPHV, also tracked publicly as BlackCat, is a ransomware-as-a-service operation that began appearing in late 2021. The group supplies encryption tools to affiliates and routinely pairs file encryption with the threat of data publication. Public reporting has linked the group to intrusions across multiple sectors, with data-leak sites used to pressure victims after initial access. Listings on the site represent the group’s assertions rather than independently verified events.
About Horwitz Law, Horwitz & Associates
Horwitz Law, Horwitz & Associates is a law firm that handles civil and personal legal matters. Organizations of this type routinely maintain client intake forms, correspondence, medical documentation, and case files that contain dates of birth, Social Security numbers, and other identifying details. Such records are protected under attorney-client privilege and various privacy regulations because they often concern sensitive personal circumstances.
What was likely exposed
The alphv listing claims that internal files containing client dates of birth, Social Security numbers, personal data, medical records, and descriptions of legal cases were downloaded. The exact categories and volume of data have not been confirmed by the firm or by any public investigation. Organizations in this sector commonly store the types of information referenced in the listing, yet the specific contents of any exfiltrated material remain unverified beyond the group’s statements.
Why it matters
Legal-case files frequently include detailed personal and medical information that, if disclosed, can affect employment, insurance, family proceedings, or personal safety. Individuals whose records appear in such files may face prolonged privacy exposure because the data cannot be changed as readily as a password. For the firm, the incident raises questions about client trust and regulatory obligations tied to the handling of protected information, regardless of whether the group’s claims are later substantiated.
If your data was in this claimed breach
Individuals who were clients of the firm during the relevant period should contact Horwitz Law, Horwitz & Associates directly for information on any notifications or protective measures offered. Practical steps include reviewing credit reports, placing fraud alerts with credit bureaus, and monitoring financial and medical accounts for unusual activity. Readers can also run a free exposure scan of their email address against known breach data sets to check for prior appearances of their information.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
CR&R Listed by alphv Ransomware GroupProtecmedia Listed by alphv Ransomware GroupNovak Law Offices Listed by alphv Ransomware GroupLJ Hooker Palm Beach Listed by alphv Ransomware GroupLatest breaches
Publicly posted by alphv — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.