Seyfarth Shaw, LLP Data Breach Exposes Names and Social Security Numbers

Published: 21 September 2026
Other Commercial data breach illustration
Breach Discovery: August 2026Breach Notification: September 2026

Seyfarth Shaw, LLP discovered in August 2026 that documents containing names and Social Security numbers were mistakenly emailed to an unauthorized recipient. The firm confirmed no broader network access occurred and notified affected individuals in September 2026. Anyone who received a notice should enroll in the free credit monitoring offered and consider placing a fraud alert or credit freeze right away.

CompanySeyfarth Shaw, LLP
IndustryOther Commercial
Data Types ExposedFull Name, Social Security Number
People AffectedNot Publicly Disclosed
Attack MethodMisdirected Email
Regulators NotifiedCalifornia Attorney General

Were you affected by this breach?

You may be owed compensation.

Data breach victims can recover money for identity-theft losses, out-of-pocket costs, wasted time, and the ongoing risk of fraud — usually with no upfront cost, and no fee unless you win.

Check if you qualify — free review

What Happened in the Seyfarth Shaw, LLP Data Breach?

Seyfarth Shaw, LLP has notified individuals that some of their personal information was caught up in a security incident. The firm discovered the issue in August 2026. According to the notice, an unauthorized person acquired a limited number of documents containing personal details.

The root cause traced back to an email sent to the wrong recipient. As a result, a small set of documents reached someone outside the firm who should never have received them. Because Seyfarth handles sensitive legal matters for clients, some of those documents contained personal identifying information.

Once the firm identified the problem, it moved quickly to secure its systems. Seyfarth then launched an investigation to figure out exactly what happened and how far it reached. That investigation found no evidence that the firm’s broader network had been accessed by an outsider.

Instead, investigators determined the exposure was contained to the documents mistakenly emailed out. Seyfarth sent notification letters to affected individuals in September 2026. The letters explain the incident and outline steps recipients can take to protect themselves.

Who was affected?

The individuals affected appear to be people whose personal information Seyfarth obtained while providing legal services. In other words, this breach likely touches clients, opposing parties, or other individuals connected to matters the firm handled. Because law firms routinely gather sensitive data for litigation and business transactions, the exposed population could include people who never had direct contact with Seyfarth themselves.

The exact number of people affected has not been publicly disclosed. However, the notification letter indicates the incident was limited to a small number of documents. This suggests a narrower scope compared to many large-scale corporate breaches.

Still, even a limited number of exposed files can carry serious consequences for the people named in them. Individuals affected may reside anywhere in the country, since law firms often represent clients and handle matters across state lines. There is no indication in the notice that minors were specifically involved, but the letter’s enclosed instructions do note that credit monitoring enrollment is not available to those under 18.

What Information Was Potentially Exposed?

According to Seyfarth’s notification, the compromised documents contained specific personal identifiers. This type of information is highly sensitive because it can be used to open new accounts or file fraudulent tax returns. Below is a summary of what the firm confirmed was involved.

  • Full name
  • Social Security number

Even though this list is short, the combination of a name and a Social Security number is one of the most dangerous data pairings in identity theft. Criminals can use this pairing to apply for credit, open bank accounts, or file fraudulent unemployment claims. Because Social Security numbers do not expire or change easily, this type of exposure creates risk that can last for years.

In addition to financial fraud, exposed Social Security numbers can enable criminals to commit tax fraud or medical identity theft in some cases. For example, a bad actor could file a tax return in someone else’s name to claim a refund before the real taxpayer does. As a result, affected individuals should treat this incident seriously, even though the number of documents involved was limited.

What is the company doing?

Seyfarth responded to the incident by confirming the security of its network and launching a formal investigation. The firm also stated it maintains network monitoring, external access restrictions, and employee training programs as ongoing safeguards. In response to this incident specifically, Seyfarth is adding further employee training and awareness notifications to reduce the chance of a similar mistake happening again.

Additionally, Seyfarth is offering affected individuals free access to single bureau credit monitoring, along with a single bureau credit report and credit score. These services include alerts for twenty-four months from the date of enrollment whenever a change occurs on the monitored credit file. The firm also arranged proactive fraud assistance through Cyberscout, a TransUnion company that specializes in fraud remediation support.

Seyfarth also filed formal notification of this incident with the California Attorney General. This filing is a standard step required when a breach affects residents of California. Consumers can review that filing for the firm’s official account of the incident.

What Should Affected Individuals Do?

Enroll in the Offered Credit Monitoring

Affected individuals should take advantage of the free credit monitoring services Seyfarth is offering. These services can alert you the same day a change occurs on your credit file. This early warning gives you a chance to catch fraudulent activity before it spreads further.

To enroll, individuals need to use the unique code provided in their notification letter. Because enrollment must happen within 90 days of the letter’s date, it is important not to delay. If you lost your letter or have questions, you can call the number Seyfarth provided for assistance.

Place a Fraud Alert or Credit Freeze

Since Social Security numbers were involved, placing a fraud alert or credit freeze is a smart precaution. A fraud alert requires businesses to verify your identity before extending new credit in your name. This step is free and can be requested through any of the three major credit bureaus.

A credit freeze offers even stronger protection by blocking access to your credit report entirely without your consent. Because of this, it can prevent someone from opening new accounts in your name. Keep in mind that a freeze may slow down your own legitimate credit applications, so plan ahead if you need to apply for credit soon.

Monitor Financial Accounts and Watch for Phishing

Beyond enrolling in monitoring services, affected individuals should review their bank and credit card statements regularly. If you notice unfamiliar charges or accounts, report them immediately to your financial institution and to law enforcement. Acting quickly can limit the damage from fraudulent activity.

It is also wise to stay alert for phishing emails or phone calls that reference this incident. Scammers sometimes use news of a breach to trick victims into revealing more personal information. Therefore, avoid clicking links or sharing details with anyone who contacts you unexpectedly claiming to represent Seyfarth or a credit bureau.

Request Your Free Annual Credit Reports

Under federal law, every consumer can request one free credit report per year from each of the three major bureaus. You can request these reports through the official annualcreditreport.com website or by phone. Reviewing these reports lets you check for accounts or inquiries you do not recognize.

Because this breach involved a Social Security number, checking your full credit history is especially important. If you spot suspicious activity, you can escalate to a fraud alert or credit freeze right away. For added peace of mind, consider consulting a data breach attorney to understand what legal options may be available to you.

Get a Free Case Review

Tell us how this breach affected you. A data breach attorney will review your situation at no cost and with no obligation — it takes about two minutes.



More Information

Official data breach notification from California Attorney General

Related Data Breaches

Browse all recent data breaches →