Thomson Reuters Canada reported an unauthorized access incident on its C‑Track case management platform that resulted in a data breach affecting Ontario courts. The breach was identified on June 30, 2026, after the company detected activity that it could not attribute to legitimate users.

C‑Track is the digital case management system supplied by Thomson Reuters Canada for use by courts across the province. The platform stores and processes information related to court filings, schedules, and other judicial records, forming a core component of the province’s judicial administration.

According to the company's statement, the unauthorized activity was discovered during routine monitoring of the system. Upon detection, Thomson Reuters Canada initiated its internal incident‑response procedures and began an investigation to determine the scope of the breach and the nature of the data accessed.

The incident underscores the reliance of Ontario’s justice system on third‑party technology providers and raises concerns about the protection of sensitive legal information. While the full extent of the compromised data has not been disclosed, the company indicated that it is working with court officials to mitigate any potential impact and to reinforce security controls on the platform.

Thomson Reuters Canada said it will continue to cooperate with relevant authorities as the investigation proceeds. The organization also noted that it will provide updates to affected courts and stakeholders as additional information becomes available.

In response, Thomson Reuters Canada is reviewing system logs to identify the entry point and is evaluating authentication mechanisms to prevent future incidents. The firm has also engaged cybersecurity experts to assist with the analysis and to recommend additional safeguards for the C‑Track environment.