Thomson Reuters said an unauthorized party obtained certain C Track court files in March 2026; the activity was detected on June 30. Potentially affected files may have contained names, Social Security numbers, driver’s license numbers, dates of birth, and medical or health insurance information; some jurisdictions...
Published byEdited with GPT-5.6 TerraImages generated with GPT Image 2
Research answer

Create a landscape editorial hero image for this Studio Global article: What happened in the cybersecurity incident involving Thomson Reuters’ C-Track case-management platform—including when and where unauthorize. Article summary: Thomson Reuters’ C-Track platform was accessed by an unauthorized third party in March 2026; C-Track detected the activity on June 30 and said the incident was contained and investigated with outside cybersecurity expert. Topic tags: general, news, general web, user generated. Style: premium digital editorial illustration, source-backed research mood, clean composition, high detail, modern web publication hero. Use reference image context only for broad subject, composition, and topical grounding; do not copy the exact image. Avoid: logos, brand marks, copyrighted characters, real person likenesses, fake screenshots, UI text, readable text, watermarks, charts w
Thomson Reuters disclosed a cybersecurity incident involving C-Track, its court case-management platform. The company said an unauthorized third party obtained certain C-Track files in March 2026 and that it detected the activity on June 30, 2026. The incident reached court customers in the United States, the U.S. Virgin Islands and Ontario, Canada. 1
The company said the intruder obtained a subset of C-Track court files. Depending on the court and file, those records may have contained names and sensitive personal information, including Social Security numbers, driver’s-license numbers, dates of birth, medical information and health-insurance information. Some affected materials may also have included confidential, redacted or sealed records. 1
The disclosure did not establish how many people were affected, provide a complete file-by-file inventory, or confirm that every potentially sensitive data field was viewed or taken. The identity, motive and affiliation of the attacker had not been publicly identified at the time of disclosure, and C-Track reported no evidence then of fraud or misuse of the information. 1
The affected U.S. court systems were in Alabama, Pennsylvania, Kentucky, Montana, Nevada, North Dakota, South Carolina, Tennessee, New Hampshire, Ohio and Wyoming, as well as the U.S. Virgin Islands. 1
Reportedly affected systems included:
In Canada, the affected courts were the Court of Appeal for Ontario, Ontario Superior Court of Justice and Ontario Court of Justice. Ontario’s three chief justices publicly acknowledged the incident and said they were working with Thomson Reuters/C-Track and justice-sector partners to investigate the effect on court information and communicate with affected people. 1
C-Track said it contained the unauthorized activity, secured the affected environment, added security measures and notified affected court customers. It said the incident was not caused by the courts’ own systems or networks, and that it found no evidence that systems handling financial transactions were affected. 1
Importantly for court users, operations continued and Thomson Reuters said C-Track services were not disrupted. That does not resolve the privacy questions around the files, but it distinguishes the incident from an outage of court services. 1
For people affected through U.S. court customers, C-Track said it planned to provide 12 months of Experian IdentityWorks credit monitoring and identity-theft restoration support. The incident call center was listed as 1-833-918-5294, available weekdays from 8 a.m. to 8 p.m. Central time; TTY users could call 711. 1
For Canadian-affected individuals, C-Track Canada said it planned to offer 12 months of no-cost TransUnion myTrueIdentity membership, including credit monitoring, identity-restoration assistance, dark-web monitoring and eligible expense-reimbursement insurance. The listed contact number was 1-833-918-4543, weekdays from 8 a.m. to 8 p.m. Eastern time. 1
People who may be affected should use the incident-notification information provided by their court or C-Track, since eligibility and the records involved can vary by jurisdiction. The central unresolved issue remains the same: public disclosures confirmed that some court files were obtained, but not the complete set of files or individuals affected. 1
Studio Global AI
This page includes a source-backed answer you can continue inside Studio Global.
Thomson Reuters said an unauthorized party obtained certain C Track court files in March 2026; the activity was detected on June 30.
Thomson Reuters said an unauthorized party obtained certain C Track court files in March 2026; the activity was detected on June 30. Potentially affected files may have contained names, Social Security numbers, driver’s license numbers, dates of birth, and medical or health insurance information; some jurisdictions could also have had confidential,...
C Track said services and court operations continued, while Thomson Reuters and Ontario court leaders investigated and arranged identity monitoring support for potentially affected people.