Breaking News

American Bar Association Suffers Data Breach and Member Information Exposed to Third-Party
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading...

The American Bar Association (ABA) has revealed that an unauthorized third party gained access to its computer network starting from March 6, 2023. The incident led to the unauthorized acquisition of usernames and passwords of ABA members. In a letter to affected members, ABA’s Senior Associate Executive Director and General Counsel, Annaliese Fleming, confirmed the incident and informed members of the steps taken by the association to address the situation.

An investigation into the incident, which took place on March 23, 2023, revealed that the unauthorized third party had obtained usernames and “hashed” and “salted” passwords used to access online accounts on an older version of the ABA website prior to 2018 and/or on the ABA Career Center since 2018.

Hashing is a process that converts a password into a string of letters and/or numbers using an encryption algorithm. This means that even if a website is hacked, cybercriminals cannot gain access to the full password, but only to the encrypted “hash” created by the password.

  
What
Where


The National Security Agency (NSA) confirms that a random “salt” is often added to a password before hashing, making it more difficult for cybercriminals to use precomputed hashes to reverse the password. In the case of the ABA breach, plain text passwords were not exposed.

Take control of your legal job search and sign up for LawCrossing today.

The ABA reassured its members that passwords were not exposed in plain text. Instead, they were both hashed and salted, making it more difficult for cybercriminals to use them. Moreover, in many instances, the password may have been the default password assigned to a member by the ABA if they never changed their password on the old ABA site.

Get JD Journal in Your Mail

Subscribe to our FREE daily news alerts and get the latest updates on the most happening events in the legal, business, and celebrity world. You also get your daily dose of humor and entertainment!!




In its email, the ABA explained that it was notifying all affected individuals out of an abundance of caution. The ABA is taking the security of its members seriously and has taken measures to reduce the likelihood of future cyber-attacks. This includes removing the unauthorized third party from the ABA network and reviewing network security configurations to address continually evolving cyber threats.

Although the ABA has not received any reports of the misuse of anyone’s information, it urges members to change any passwords that may be the same as or similar to the password at issue in this incident. Members are also advised to remain vigilant against unauthorized access to their online accounts.



The ABA data breach underscores the importance of strong password practices and maintaining an up-to-date and secure IT infrastructure. Cyber threats continue evolving, and organizations must continuously review and improve their security measures to protect themselves and their members from attacks.

The ABA is taking the necessary steps to address the data breach and prevent any future occurrences. Members can take steps to protect themselves by changing their passwords and remaining vigilant against any unauthorized attempts to access their accounts.



 

RELEVANT JOBS

Litigation Employment Attorney (Remote) in Burbank, CA.

USA-CA-Burbank

     We are a small and highly respected Burbank based REMOTE employment litigation d...

Apply now

Litigation Attorney

USA-CA-Torrance

​Position: Associate Attorney Firm: The Legacy Lawyers, P.C. Culture: "America First Pat...

Apply now

Litigation Attorney

USA-CA-Irvine

​Position: Associate Attorney Firm: The Legacy Lawyers, P.C. Culture: "America First Pat...

Apply now

Associate Attorney - Defense Litigation Experience

USA-TX-Dallas

Galloway\'s Dallas office is seeking an Associate Attorneys with 1 - 2 years of experience...

Apply now

BCG FEATURED JOB

Locations:

Keyword:



Search Now

Education Law Attorney

USA-CA-El Segundo

El Segundo office of a BCG Attorney Search Top Ranked Law Firm seeks an education law attorney with ...

Apply Now

Education Law Attorney

USA-CA-Carlsbad

Carlsbad office of a BCG Attorney Search Top Ranked Law Firm seeks an education law attorney with 4-...

Apply Now

Education Law and Public Entity Attorney

USA-CA-El Segundo

El Segundo office of a BCG Attorney Search Top Ranked Law Firm seeks an education law and public ent...

Apply Now

Most Popular

SEARCH IN ARCHIVE

To Top