MATITIAHU BRUCHIM Law office Listed by mosesstaff Ransomware Group: Ransomware Claim — What’s Alleged & What To Do
The MATITIAHU BRUCHIM Law office Listed by mosesstaff Ransomware Group (reported December 18, 2021) is an unverified claim; the data involved is undisclosed belonging to roughly unknown people. If you have an account with them, your information may now be circulating on the open web and with data brokers. Here’s exactly what happened, how to check if you were affected, and what to do next.
On December 18, 2021, the MATITIAHU BRUCHIM Law office appeared on a leak site operated by the ransomware group mosesstaff. The listing indicated that internal files had been taken from the firm, though the number of individuals affected and the precise contents of any data remain undisclosed in public reporting.
The incident is one of many claims made by ransomware operators against professional-service organizations. Its significance lies in the nature of the target: a law office whose records routinely contain sensitive client information protected by legal privilege and data-protection obligations.
Inside the incident
Public information is limited to the leak-site listing itself. The group asserted that it had exfiltrated internal files during a ransomware operation against the firm. No independent confirmation of the volume of data, the encryption status of systems, or any ransom demand has been released by the organization or by investigators. The date the data was first accessed, the duration of any unauthorized presence, and whether the files were subsequently published are not publicly documented.
Who is mosesstaff?
Mosesstaff is a ransomware group that has been publicly tracked since at least 2021. Like other operators in this category, it typically gains access through common initial vectors such as compromised remote-access services or phishing, deploys encryption malware, and exfiltrates selected files. The group maintains a leak site where it lists organizations it claims to have targeted, using the listings as leverage in ransom negotiations. Its activity has been reported against entities in multiple countries and sectors, though each listing remains an unverified claim until corroborated by the victim or by law-enforcement findings.
MATITIAHU BRUCHIM Law office and its sector
MATITIAHU BRUCHIM Law office is a legal practice. Firms of this type maintain case files, correspondence, contracts, and identifying information belonging to clients, opposing parties, and witnesses. Israeli data-protection rules and professional-conduct standards require lawyers to safeguard such material. A breach at any law firm therefore carries implications beyond the organization itself, because client confidentiality is a foundational obligation of the profession.
What data was at risk
The only detail released is the group’s claim that internal files were taken. The exact categories of documents, the presence or absence of personal data, financial records, or privileged communications, and the number of individuals whose information may be involved have not been disclosed. Organizations in the legal sector commonly store client names, addresses, identification numbers, case-related evidence, and financial details; however, whether any of these specific elements were among the files referenced in the listing is unconfirmed.
What's at stake
For individuals whose information appears in law-firm records, exposure can lead to misuse of identity documents, targeted fraud, or unwanted disclosure of private legal matters. For the firm, the incident raises questions about client trust and regulatory compliance obligations. Because the scale and content of any exfiltrated material remain unknown, the concrete consequences for any particular client or employee cannot yet be assessed from public sources.
If your data was in this claimed breach
Individuals concerned about possible exposure should monitor their financial accounts and official correspondence for unusual activity. Changing passwords for any accounts linked to the firm and enabling multi-factor authentication where available are standard first steps. Readers may also run a free exposure scan of their email address against known breach data sets to determine whether their information has appeared in previously published collections.
AICompiled with AI assistance from public sources and published under our editorial standards.
How this breach connects
More recent breaches
AHEC Tax Solutions Listed by mosesstaff Ransomware GroupV-ON Listed by mosesstaff Ransomware GroupUnit 8200 Listed by mosesstaff Ransomware Group3D imagery of israel Listed by mosesstaff Ransomware GroupLatest breaches
Publicly posted by mosesstaff — unverified claim, pending independent verification
Breach listings — particularly those originating from ransomware or leak sites — are third-party claims that may be unverified, incomplete, or inaccurate. A listing does not by itself confirm that a breach occurred or that any specific data was exposed. Severity is an automated assessment, not a definitive rating. Verification status is shown where available.
Attributions to threat groups and methods reflect public reporting and, in some cases, unverified claims made by the groups themselves; they may be incomplete or later revised. Recent Breaches and GalaxyWarden are independent and are not affiliated with, and do not endorse, any company or group named on this page. This information is aggregated from public sources for awareness only and is not legal, security, or investment advice.