Pennsylvania Court Data Exposed in C-Track Breach

A six-month intrusion into the C-Track case management system compromised the personal records of court users.

Updated on Sept. 21, 2026 in Cybersecurity

Bold flat-color editorial illustration showing a stylized, navy-blue filing cabinet with a sharp, blood-red geometric gap, symbolizing a data security breach.
A cybersecurity intrusion into the C-Track case management system has potentially exposed sensitive personal information across Pennsylvania state courts. AI Illustration. Upload story photo >

Live Poll

Do you trust that your personal information is secure in public digital record systems?

A cybersecurity incident involving the C-Track case management system affected three Pennsylvania common pleas courts and the state Environmental Hearing Board. The breach, which remained active from March 2026 until it was detected on June 30, 2026, resulted in the potential exposure of sensitive personal information.

Why it matters

The incident highlights the risks inherent in centralized judicial data platforms, exposing sensitive legal records to unauthorized access. By impacting multiple jurisdictions, the breach underscores the vulnerability of widely used third-party administrative software.

The breach affected 3 common pleas courts in Allegheny, Monroe, and Washington counties, plus the state Environmental Hearing Board. While the system remained operational, potentially exposed data includes names, Social Security numbers, driver's license numbers, and medical records.

The players

West Publishing

A legal information and software provider that manages the C-Track case management platform for judicial systems.

Pennsylvania Environmental Hearing Board

A state-level quasi-judicial agency that adjudicates disputes concerning Department of Environmental Protection actions.

The details

The unauthorized activity involved the C-Track case management system, a software platform used by courts to organize case filings and dockets. West Publishing, the system operator, engaged third-party security experts to contain the intrusion and implemented additional security measures to harden the infrastructure. The exposure included confidential, redacted, or sealed court documents, necessitating a retrospective review of the compromised digital environment.

Timeline

  1. March 2026: Unauthorized activity began on the C-Track system.

  2. June 30, 2026: West Publishing detected the unauthorized activity.

  3. September 2, 2026: West Publishing announced the formal data breach report.

The Tech Race

The breach of the C-Track system across 24 nationwide locations highlights the fragility of unified case management platforms. As jurisdictions compete to modernize court record systems, this event serves as a critical test for the cybersecurity standards of the vendors managing legal data.

Affected individuals in Allegheny, Monroe, and Washington counties may have had their Social Security and medical data compromised. Those concerned can contact the dedicated support line at 833-918-5294 for further information regarding their specific records.

The takeaway

The incident demonstrates the cascading risk of centralized software vulnerabilities within the public sector. Residents should monitor their financial and medical accounts for any signs of unauthorized activity following the September 2026 disclosure.

Further reading

For broader trends in digital infrastructure security, see the Cybersecurity section.

More information

For official updates and guidance, visit the C-Track incident notification and support page.

Live Poll

Do you trust that your personal information is secure in public digital record systems?