PrivacySignal
Breach

KR: Sogang University data breach exposes 180,000 student, staff accounts

DataBreaches.net · · International · Data Breaches

Sogang University in South Korea disclosed a cyberattack that exposed personal data linked to roughly 180,000 students, alumni, and staff accounts. The university confirmed the breach involved its integrated login system, with an unidentified outside party responsible.

Why this matters: A university login system is a master key. One set of credentials can open email, academic records, financial data, and more. When 180,000 accounts are tied to a single breach, the damage is not just the data stolen in the attack. It is every other account where people reused the same password. Universities collect a lot of sensitive information on young people at a formative point in their lives. They need security that reflects what is actually at stake.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

Breach
DataBreaches.net · · International

Data breach incident targets prisoner medical records at 2 Mass. jails

A cybersecurity incident has compromised the electronic health record system used at two Suffolk County jails in Massachusetts. The system provider, Computer Systems Integrated Inc., confirmed it is investigating the breach, which exposed prisoner medical and health data stored on its EHRs-C platform.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Former US Air Force members sent to prison over BEC attacks

Two former members of the United States Air Force were sentenced to a combined 189 months in federal prison for their roles in a multi-year series of business email compromise (BEC) scams and phishing campaigns. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
Microsoft Threat Intelligence · · International

​​Beyond source code: A path to the keys to the kingdom

Explore how Storm-3068 turned a compromised identity into broader cloud access and the steps organizations can take to defend their identities, pipelines, and cloud infrastructure. The post ​​Beyond source code: A path to the keys to the kingdom appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Automated AI agent used to breach cybersecurity nonprofit DIVD

The Dutch Institute for Vulnerability Disclosure (DIVD) suffered an AI-driven cyberattack that the organization described as "loud and very, very messy." [...]

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#security Read original →
Breach
CyberScoop · · US Federal

Alleged ShinyHunters leader arrested in the Netherlands

Dutch authorities arrested a 24-year-old Amsterdam man alleged to be a leader of the ShinyHunters hacking group. The arrest came roughly one week before the group carried out a separate hack against the FBI.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →