Lung Rose Voss Wagnild Listed by anubis Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
Lung Rose Voss Wagnild was listed by the Anubis ransomware group on November 13, 2025, with internal files reported as exfiltrated and the number of affected individuals undisclosed. Individuals should verify whether their information was exposed and follow any guidance issued by the firm.
Inside the incident
The only confirmed information is the group’s listing itself. It identifies Lung Rose Voss Wagnild as the target and asserts that internal files were taken. No data volume, file categories, or attack date have been disclosed. The firm has not issued a public statement confirming or disputing the claim, and no regulatory filing or law-enforcement notice has been referenced in available reports.
The group behind it: anubis
Anubis is a ransomware operator that maintains a leak site where it lists organizations it claims to have compromised. The group typically follows a double-extortion pattern: encrypting systems and threatening to publish stolen data if a ransom is not paid. Its listings appear regularly on the site, though independent verification of each claim is often limited to what the group chooses to publish. In this case, the entry for Lung Rose Voss Wagnild stands as an unverified assertion by the group.
Who is Lung Rose Voss Wagnild?
Lung Rose Voss Wagnild is described as one of Hawaii’s leading law firms. Organizations of this type routinely handle client matters that involve contracts, litigation records, financial arrangements, and personal identifiers. Because legal work frequently requires access to sensitive personal and corporate information, a breach at such a firm can expose data belonging to clients as well as the firm’s own internal records.
The information in question
The listing refers only to “internal files exfiltrated in ransomware attack.” No inventory of specific document types or data fields has been released. Law firms commonly store client names, addresses, identification numbers, financial details, and privileged communications, yet the precise contents of the claimed exfiltration remain unconfirmed.
The real-world impact
Until the scope of the data is clarified, the primary concern is the potential loss of confidentiality for any clients whose records were among the files. Individuals may face risks of identity misuse or targeted fraud if personal information is later published. The firm itself could encounter regulatory scrutiny and reputational effects, though the extent of either outcome cannot be assessed from current information.
If your data was in this claimed breach
Monitor financial and legal accounts for unusual activity and consider placing fraud alerts with credit agencies. Review any recent correspondence from the firm for guidance on protective steps. Individuals can also run a free exposure scan of their email address against known breach data to determine whether their information appears in public listings from this or other incidents.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
First Defense Fire Protection Listed by anubis Ransomware GroupSamuel I. White, PC Listed by anubis Ransomware GroupSchlam Stone & Dolan LLP Listed by anubis Ransomware GroupLaw Offices of Thomas J Skinner, IV Listed by anubis Ransomware GroupLatest breaches
Read GalaxyWarden’s full analysis of the Lung Rose Voss Wagnild Listed by anubis Ransomware Group →
Publicly posted by anubis — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.