Key players include Jones Day (clients like Goldman Sachs, McDonald's, GM, and past Trump campaign representation), SRG hackers, and targeted partner Greg Castanias. The FBI warned in May 2025 of SRG's social engineering tactics against law firms, using fake IT calls and in-person device insertions to steal sensitive data with minimal traces.[1][2][4][5][6] This follows Jones Day's 2021 breach via Accellion file transfer software exploited by Clop ransomware.[1][2][5]
The attack unfolded March 20-28 with failed negotiations, public leak on March 30, and firm disclosure April 6 amid SRG's Spring 2023 shift to law firms for valuable data.[5][6] It's newsworthy as part of rising cyberattacks on high-profile firms holding sensitive corporate and government info, spotlighting cybersecurity gaps despite prior warnings.[1][4][6]