HackingData MishandlingSupply Chain (3P Vendor)Customer Data InvolvedPIILowActive
Culdesac School District No. 342
bd_7523effe0b012236 · schema v1 · pii pii-v1
Full breach record for Culdesac School District No. 342 →Culdesac School District No. 342 (Idaho) notified the Idaho Attorney General on January 21, 2025, regarding a cybersecurity incident involving its PowerSchool student information system. The district was among those affected by a nationwide breach of the third-party vendor. The district is notifying students and families and working with PowerSchool to assess the scope of the unauthorized data disclosure.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.ag.idaho.gov/content/uploads/2025/01/1-21-2025-Culdesac-School-District-No.-342.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 21, 2025
- Raw hash
- 9ff9659fd2f792166ee26949d0ee8cd88da051d608b875dffb4d4e975aa5ac64
Reporting entity
- Name
- Culdesac School District No. 342norm: culdesac school district no 342
- Domain
- sd342.org
Victim entity
- Name
- Culdesac School District No. 342norm: culdesac school district no 342
- Domain
- sd342.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jan 21, 2025
- Affected individuals
- Not disclosed
- Data types
- PII
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- External
- Third party
- via PowerSchool
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.