Back to Blog
MBM Law Ransomware Attack: Disruption by Dragonforce (July 2026)
ransomware

MBM Law Ransomware Attack: Disruption by Dragonforce (July 2026)

breachwire TeamAug 1, 20265 min read

MBM Law: What Happened

On July 2026, MBM Law (Moore Bradley Myers), a prominent law firm based in South Carolina, was targeted in a ransomware attack. The incident has been attributed to the threat actor known as dragonforce, who publicly claimed responsibility for the compromise. The attack resulted in a ransomware demand and caused disruption to the firm's legal operations. At this stage, the full extent of data exposure or exfiltration has not been confirmed, but the operational impact on MBM Law is verified.

Attack Vector & Technical Detail

While the precise intrusion vector exploited by dragonforce remains unconfirmed, the attack aligns with recent ransomware campaigns targeting legal sector organizations in North America. No specific CVEs or Indicators of Compromise (IOCs) have been disclosed in relation to this incident. However, the tactics observed are consistent with MITRE ATT&CK techniques commonly used in ransomware operations, such as Initial Access via phishing or exploitation of remote services, followed by Impact through data encryption and ransom demands. The absence of public IOCs or technical details limits immediate attribution of the infection method, but the operational disruption suggests a successful compromise of critical systems within MBM Law’s environment.

Confirmed Impact

The ransomware attack directly impacted MBM Law’s ability to deliver legal services, with operational disruption noted as a primary consequence. As the firm is based in South Carolina, the incident falls under North American jurisdiction, potentially triggering regulatory scrutiny regarding data protection and client confidentiality. At this time, there is no confirmation of specific client data exposure or regulatory notification requirements, but the nature of legal sector breaches often raises concerns about sensitive information at risk. The attack underscores the vulnerability of law firms to targeted ransomware campaigns and the potential for significant business interruption.

What This Means for Your Organization

The MBM Law incident highlights the persistent threat posed by ransomware actors such as dragonforce, particularly to organizations handling sensitive client data. Legal sector entities should prioritize the review and strengthening of email security, remote access controls, and regular backup procedures. Proactive network monitoring and employee awareness training remain critical in detecting and preventing similar attacks. Organizations are advised to assess their incident response plans and ensure that business continuity strategies are robust against ransomware-driven operational disruptions.

Detection & Response

  • Immediate: Isolate affected systems and initiate incident response protocols to contain the ransomware spread.
  • Hunt: Monitor for behavioral indicators consistent with ransomware activity, such as anomalous file encryption processes or unauthorized access attempts.
  • Patch: N/A (no CVE identified in this incident).

Source: https://www.hendryadrian.com/ransom-www-mbmlawsc-com-jul-2026/

Start Your 14-Day Free Trial

Get curated cyber intelligence delivered to your inbox every morning at 6 AM. No credit card required.

Get Started Free
Share this article: