Four Big Law Breaches in Three Weeks: Why August 2026 Turned Law Firm Security Into an Architecture Question, Not a Training Question
Herbert Smith Freehills Kramer, Taft Stettinius & Hollister, Mayer Brown, and Goodwin Procter have all reported data breaches to regulators in recent weeks — with reports that some firms are paying millions to suppress stolen client data. These are firms with real security budgets and mandatory training. That is precisely why mid-market firms should stop treating security as a behavior problem and start treating it as a question about how many systems hold their client data.