PowerSchool hacker now extorting individual school districts

"PowerSchool is aware that a threat actor has reached out to multiple school district customers in an attempt to extort them using data from the previously reported December 2024 incident," PowerSchool shared in a statement to BleepingComputer. In response to the breach, PowerSchool paid a ransom to prevent the public release of the stolen data and received a video from the threat actor claiming the data had been deleted. PowerSchool is warning that the hacker behind its December cyberattack is now individually extorting schools, threatening to release the previously stolen student and teacher data if a ransom is not paid. Security experts and ransomware negotiators have long advised against companies paying a ransom to prevent the leaking of data, as threat actors are increasingly failing to keep their promise to delete stolen data. In the days following our discovery of the December 2024 incident, we made the decision to pay a ransom because we believed it to be in the best interest of our customers and the students and communities we serve," continued the PowerSchool statement. These databases contained different information depending on the district, including students' and faculty's full names, physical addresses, phone numbers, passwords, parent information, contact details, Social Security numbers, medical data, and grades. This was recently seen in UnitedHealth's Change Healthcare ransomware attack, in which they paid a ransom to the BlackCat ransomware gang to receive a decryptor and not leak data. As first reported by BleepingComputer, the hacker claimed to have stolen the data of 62.4 million students and 9.5 million teachers for 6,505 school districts across the U.S., Canada, and other countries. "Any organization facing a ransomware or data extortion attack has a very difficult and considered decision to make during a cyber incident of this nature. It is believed that UnitedHealth paid a second ransom to once again prevent the leaking of the data.

This Cyber News was published on www.bleepingcomputer.com. Publication date: Wed, 07 May 2025 18:30:00 +0000


Cyber News related to PowerSchool hacker now extorting individual school districts

PowerSchool hacker now extorting individual school districts - "PowerSchool is aware that a threat actor has reached out to multiple school district customers in an attempt to extort them using data from the previously reported December 2024 incident," PowerSchool shared in a statement to BleepingComputer. In ...
2 weeks ago Bleepingcomputer.com
PowerSchool previously hacked in August, months before data breach - Although the company has not officially disclosed the number of people impacted by this incident, BleepingComputer first reported that the threat actor claimed to have stolen the data of 72 million people, including students and teachers. In that ...
2 months ago Bleepingcomputer.com
Despite ransom payment, PowerSchool hacker now extorting individual school districts | The Record from Recorded Future News - In February, Recorded Future News reported that the breached data in some cases includes student special education status, mental health details, disciplinary notes and parental restraining orders. PowerSchool — which was breached in late December, ...
2 weeks ago Therecord.media
As SAT Goes Digital, Schools Must Prepare for Disruption - COMMENTARY. As technology continues to reshape every aspect of our lives, it is no surprise that even time-honored institutions like the Scholastic Aptitude Test are embracing the digital revolution. In 2024, the College Board, the organization ...
1 year ago Darkreading.com
Hackers launch ‘serious’ attacks against Georgia school district, New Mexico university | The Record from Recorded Future News - Albion College reported a data breach last week after the Medusa ransomware gang claimed an attack in December and Southern Arkansas University Tech confirmed a breach after the RansomHub gang said it attacked the school in February. Alvin ...
2 weeks ago Therecord.media Medusa Ransomhub
Toronto school district says data not deleted after ransom was paid to hacker | The Record from Recorded Future News - The Toronto District School Board (TDSB) told parents and staff on Wednesday that it was sent an extortion letter even after a hacker was paid off by the ed tech giant PowerSchool to prevent the leak of sensitive data. TDSB has told parents and staff ...
2 weeks ago Therecord.media
Data theft plaguing K-12 schools after holiday season attacks - Schools across the U.S. remain fertile targets for hackers, with a slate of K-12 entities contending with cyberattacks and data thefts following the holiday season. Since the start of the year, a handful of schools have reported data breaches ...
1 year ago Therecord.media
Inside America's School Internet Censorship Machine - When it was passed in 2000, CIPA was immediately challenged by the American Library Association and the ACLU, which argued in a series of lawsuits that that the law's web-filtering requirement placed unconstitutional restrictions on library patrons' ...
1 year ago Wired.com
Hacker Conversations: Chris Evans, Hacker and CISO - Chris Evans is CISO and chief hacking officer at HackerOne. SecurityWeek's Hacker Conversations series seeks to understand the mind and motivations of hackers by talking to hackers. Evans challenges the common perception of both hackers and their ...
10 months ago Securityweek.com Silence
K-12 schools in Tucson, Nantucket respond to cyberattacks - Schools in Tucson, Arizona, and Nantucket, Massachusetts, are dealing with cyberattacks as U.S. schools continue to face a barrage of threats in the first weeks of 2023. A spokesperson from Tucson Unified School District told The Record that they ...
2 years ago Therecord.media
Pennsylvania's Scranton School District dealing with ransomware attack - Schools in Scranton, Pennsylvania, are dealing with a ransomware attack, the district confirmed in a Friday message to students. On Facebook, the Scranton School District warned that it is dealing with widespread technology outages as a result of the ...
1 year ago Therecord.media
Classes cancelled as 'sinister' school cyber-attacks rise - BBC. Cancelled lessons and snaking lunchtime queues are among the ways pupils are being affected by an increasing number of cyber attacks on schools. New figures from the Information Commissioner's Office show 347 cyber incidents were reported in the ...
1 year ago Bbc.com
School Wi-Fi Security Guidelines - When choosing a strong Wi-Fi password for your school network, it is crucial to follow proper guidelines to ensure maximum security. School network security heavily relies on robust Wi-Fi encryption and effective wireless network protection measures. ...
1 year ago Securityzap.com
Multiple colleges, K-12 schools facing outages after cyberattacks - Several K-12 schools, colleges and universities are dealing with significant technology outages due to cyberattacks this week. A spokesperson for North Carolina Central University told Recorded Future News that the school was alerted to a cyberattack ...
1 year ago Therecord.media
Hacker 'ShinyHunters' Pleads Not Guilty in Cybercrime Case - A hacker known as 'ShinyHunters' has pleaded not guilty in a case of cybercrime. The hacker is accused of taking part in illegal activities to steal data from victims, including passwords, credit card information, and other personal details. The ...
2 years ago Blog.cloudflare.com Hunters
Hacking Protected Java-Based Programs - This article provides examples of hacking techniques that can help Java developers avoid vulnerabilities in their programs. It is not intended to train hackers but rather for naive developers who think that standard obfuscators will save them from ...
1 year ago Feeds.dzone.com
West Virginia students returning to class after days-long outage following cyberattack - Nearly 20,000 students in West Virginia were forced to miss classes on Monday due to a cyberattack that crippled their school. Berkeley County Schools said on Friday it was experiencing an internet and phone outage on Friday and spent the weekend ...
2 years ago Therecord.media
Attempted extortion of UK school by ransomware group using confidential information about vulnerable children - On Thursday, the Vice Society ransomware group claimed to have stolen sensitive data from Guildford County School, the latest British educational institution to be victimized. Hundreds of files, believed to have been taken from the school on January ...
2 years ago Therecord.media
Hacker Conversations: Stephanie 'Snow' Carruthers, Chief People Hacker at IBM X-Force Red - Social engineering is effectively hacking human thought processes. Social engineering is a major factor in the overall process but is not directly part of repurposing electronic systems. A social engineer is usually classified as a hacker, and is ...
1 year ago Securityweek.com
GTA 6 Hacker: Life in Secure Hospital for Cybercrime Intent - The teenage hacker who leaked details about Grand Theft Auto 6 is now facing a life sentence in a guarded institution, which is a surprise development. The person, identified as Lapsus, was placed under an indefinite hospital order because of worries ...
1 year ago Cysecurity.news
Navigating Cybersecurity Budget Constraints for K-12 Schools - More than 647, 000 US students were impacted by hacks or attacks on their schools in 2021 alone, according to GAO.gov. Attacks against schools are increasing by 30% quarter-to-quarter. School districts may not seem like lucrative targets, especially ...
1 year ago Securityboulevard.com
US School Shooter Emergency Plans Exposed in a Highly Sensitive Database Leak - Every year, hundreds of millions of files, personal records, and documents are accidentally exposed online. Owners of dating apps, colossal marketing databases, and even a spy agency have published information to the web by leaving it in unsecured ...
1 year ago Wired.com
OpenAI AI Text Classifier: Detect AI-Generated Text - OpenAI has released an AI text classifier that attempts to detect whether input content was generated using artificial intelligence tools like ChatGPT. The AI Text Classifier is a fine-tuned GPT model that predicts how likely it is that a piece of ...
2 years ago Bleepingcomputer.com
Seattle cancer center confirms cyberattack after ransomware gang threats - A prominent cancer center based in Seattle is dealing with a cyberattack claimed by a notorious cybercrime gang that currently appears to be extorting the healthcare facility. On Friday morning, the Hunters International ransomware group listed the ...
1 year ago Therecord.media LockBit Hunters
How Azusa Unified School District Increasing Visibility & Control in Google & Microsoft 365 - Azusa's technology team reduces phishing and other cyber risks in the cloud with ManagedMethods' Cloud Monitor Background. Like many school districts, state-of-the-art technology is at the forefront of Azusa Unified's educational mission. As Director ...
1 year ago Securityboulevard.com

Cyber Trends (last 7 days)