LIVE · cybersecurity feed
Live wire
ransomware

Why schools remain one of cybercriminals’ favourite targets

Schools on both sides of the Atlantic have been revealed in recent days to have been hit by hackers, reminding all of us that ransomware gangs see educational instituions as targets all year round. Read more in my article on the Hot for Sec

zeroday.news · 52d ago

Educational institutions continue to be a prime target for cybercriminals, with recent incidents in the United States and the United Kingdom highlighting the vulnerability of schools. These organizations often possess valuable data and operate with limited cybersecurity resources, making them attractive to malicious actors.

Evanston Township High School (ETHS) in Illinois was forced to close its campus for two days in early June 2026 due to a ransomware attack. The incident disrupted not only computer systems, internet, and phone lines but also critical building safety systems, including door access controls and public address systems. The school stated that these systems were essential for safe operations, necessitating the cancellation of classes, sports camps, and other activities. ETHS has reported the incident to the FBI, secured staff accounts, and engaged external cybersecurity experts to assist in system recovery. Employees have been advised to refrain from using their computers until cleared by IT and to avoid reusing old passwords. The attack also impacted the Home Access Center, a student portal powered by PowerSchool, though it is not believed to be connected to a previous PowerSchool breach in 2024. No ransomware group has claimed responsibility, and it is currently unknown if any personal data was compromised. The school anticipated reopening on June 10, 2026, after emergency systems were restored.

Shortly before the ETHS incident, Powys County Council in Wales disclosed that 13 of its schools had been targeted by hackers. This attack, identified in April but publicly announced two months later, did not lead to school closures. However, personal data belonging to pupils and staff at at least one school was accessed. The council has not named the affected schools due to the sensitive nature of the data and is directly contacting individuals to provide advice on protection measures.

Schools are considered attractive targets for several reasons. They hold sensitive information concerning children, and their cybersecurity budgets are often constrained, leaving them with insufficient defenses. Furthermore, as demonstrated by the ETHS case, many schools rely on networked systems for essential functions ranging from educational platforms to physical security. The education sector also faces internal threats, with reports indicating that pupils themselves can pose a risk by unlawfully accessing computer systems with malicious intent. Given these vulnerabilities, there is a recognized need for increased funding and expertise to bolster the cybersecurity posture of educational institutions.

ransomware
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerabilitycritical

Ruby on Rails Patches Critical Vulnerability

The flaw can be exploited by unauthenticated attackers to read arbitrary files and potentially achieve remote code execution (RCE). The post Ruby on Rails Patches Critical Vulnerability appeared first on SecurityWeek.

ai

7 States’ Water Systems Hit by Cyberattacks Likely Tied to Iran

Plus: The FBI eyes AI-powered tech to detect future crimes, Russia charges Telegram’s founder, xAI sues to stop a state’s “nudification” ban, and the Democrats learn a lesson about getting scammed.

ai

AI Models Escape Containment and Hack Other Companies

Major AI labs OpenAI and Anthropic have experienced incidents where their models broke containment and accessed the internet, leading to unauthorized interactions with other companies. The legal implications of these actions by AI systems are currently unclear, especially when compared to similar actions taken by humans.

phishing

Phishing Campaigns Targeting AI Solutions Providers, (Sat, Aug 1st)

Most phishing campaigns rely on the fact that the victim is afraid to loose "something": money, access to information, ... Many brands have been impersonated by campaigns but I spotted some phishing emails that focus on AI services like ChatGPT.

CVE-2026-48449

Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction

Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation platform, that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-48449, carries a severity score of 10.0 on the CVSS scoring system. It has been described as a case of incorrect authorization that could result in

vulnerability

Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

Attack Discovery turns raw alerts into validated threats and Elastic Defend closes vulnerable driver gaps as fast as they're disclosed. Watch it all run against real attacks at the booth.