FILE PHOTO: The Thomson Reuters logo is displayed on the company's building in Times Square, New York City, U.S., August 6, 2025. REUTERS/Jeenah Moon/File Photo

Thomson Reuters detects cybersecurity incident, says unauthorized party accessed files

· CNA · Join

Read a summary of this article on FAST.
Get bite-sized news via a new
cards interface. Give it a try.
Click here to return to FAST Tap here to return to FAST
FAST

Sept 2 : A unit of Thomson Reuters detected a cybersecurity incident in 11 U.S. states, the U.S. Virgin Islands and Canada on June 30 involving the company's C-Track case management platform, according to a notice from the company on Wednesday and a statement by the chief justices of three Ontario courts, which use the platform for digital court record management.

A subsequent investigation by Thomson Reuters found that an unauthorized party obtained certain C-Track files in March, the company said on a website created to provide information about the incident. The company's investigation found some court records were "affected" and they included names and personal information, the website said.

A website set up by the West Publishing unit of Thomson Reuters to answer questions about the hack said it hit court systems in Alabama, Pennsylvania, Kentucky, Montana, Nevada, North Dakota, South Carolina, Tennessee, Ohio, New Hampshire, Wyoming and the U.S. Virgin Islands.

The statement from the chief justices of the Court of Appeal for Ontario, the Ontario Superior Court of Justice, and the Ontario Court of Justice said Thomson Reuters detected unauthorized activity in one of its cloud environments, and had taken steps to contain the activity, working with Ontario's Ministry of the Attorney General and the courts.

CNA Games

Guess Word
Crack the word, one row at a time

Buzzword
Create words using the given letters

Mini Sudoku
Tiny puzzle, mighty brain teaser

Mini Crossword
Small grid, big challenge

Word Search
Spot as many words as you can
Show More
Show Less

"We are advised that Thomson Reuters responded by taking steps to contain the activity, engaging external cybersecurity experts to advise and investigate, notifying law enforcement, and securing the C-Track environment," the statement said.

Toronto-based Thomson Reuters confirmed that it took containment and security steps and that affected customers have been notified.

"There has been no operational disruption to C-Track as a result of this incident," a Thomson Reuters spokesperson said. "Our products and services remain fully operational and are safe to continue to use. Independent cybersecurity experts assisted in the investigation and validated the remediation measures implemented."

It is unclear what information may have been compromised, the chief justices' statement said. They said that individuals involved in court proceedings or mentioned in court documents could have had personal information relating to them involved in the incident.

Reuters could not independently determine who was responsible for the incident or specific details about the information that was compromised. Reuters News is a division of Thomson Reuters.

The chief justices' statement said Thomson Reuters Canada would respond to all inquiries and would set up a call center that will be active on September 4. The Thomson Reuters spokesperson confirmed the company was responding to inquiries in the U.S. and Canada and will have a contact center.

Source: Reuters

Newsletter

Week in Review

Subscribe to our Chief Editor’s Week in Review

Our chief editor shares analysis and picks of the week's biggest news every Saturday.

Sign up for our newsletters

Get our pick of top stories and thought-provoking articles in your inbox

Subscribe here

Get the CNA app

Stay updated with notifications for breaking news and our best stories

Download here

Get WhatsApp alerts

Join our channel for the top reads for the day on your preferred chat app

Join here