Data Breach Alert: ESOP Direct and LockBit
In a concerning development for employees and businesses alike, ESOP Direct, a prominent equity compensation consulting firm, has fallen victim to a data breach orchestrated by the notorious cybercriminal group known as LockBit. Discovered on January 2, 2026, this breach raises significant concerns about the security of sensitive employee information and corporate data globally.
About ESOP Direct
ESOP Direct is a leading provider of Employee Stock Option Plan (ESOP) services based in India. The company specializes in designing, implementing, administering, and ensuring compliance for ESOPs, offering valuation and advisory services to corporations and startups across the globe. With a mission to empower businesses through effective equity compensation strategies, ESOP Direct plays a crucial role in facilitating employee engagement and investment.
What Happened
On January 2, 2026, it was discovered that LockBit had successfully breached the security systems of ESOP Direct. While the exact size of the data leak remains unknown, the implications of this breach could be far-reaching. LockBit, known for its sophisticated ransomware attacks, targets organizations to steal sensitive data and demand ransoms, putting both corporate and personal information at risk.
Next Steps
If you believe you have been affected by the ESOP Direct data breach, it is crucial to take immediate action. We encourage all affected parties to reach out to us at Srourian Law Firm (SLF) to discuss your options and understand your rights. Our team is ready to assist you in navigating this challenging situation and exploring potential legal remedies.
LINKS:

Srourian Law Firm is investigating a potential class action lawsuit against ESOP Direct for a recent data breach.
If you received a NOTICE OF DATA BREACH letter from ESOP Direct, complete the form below so we can discuss your legal options.
Submit Your Information
