HackingStolen CredentialsCustomer Data InvolvedPIIIDENTITY_BASICLowContained
Morgan Hill Unified School District
bd_db8aede92876eb4f · schema v1 · pii pii-v1
Full breach record for Morgan Hill Unified School District →Morgan Hill Unified School District experienced unauthorized access to an employee's email account between September 11, 2022, and October 11, 2022. The attacker used valid credentials to access the account, potentially viewing emails and attachments containing personal information of students and staff. The district secured the account, engaged a cybersecurity firm, and notified law enforcement. Affected individuals were offered one year of complimentary credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-562349
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 27, 2023
- Raw hash
- 0225ebca26da389764face4d53ffcd7ab5c08ec5dbb9850dee10e463033e5479
Reporting entity
- Name
- Morgan Hill Unified School Districtnorm: morgan hill unified school district
- Domain
- mhusd.org
Victim entity
- Name
- Morgan Hill Unified School Districtnorm: morgan hill unified school district
- Domain
- mhusd.org
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.