Fairfield-Suisun Unified School District
bd_f94bf65c1bc40596 · schema v1 · pii pii-v1
Full breach record for Fairfield-Suisun Unified School District →Fairfield-Suisun Unified School District notified parents and students of a data breach involving the Aeries Student Information System. In late November 2019, an unauthorized individual exploited a vulnerability in the Aeries software to access student and parent information, including names, addresses, phone numbers, and hashed passwords. The breach was discovered by Aeries and reported to the District in May 2020. The District implemented mandatory password resets and installed a software patch to remediate the vulnerability. Law enforcement investigated and believes the suspect is in custody.
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-190718
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 8, 2020
- Raw hash
- 41dae0df6021f9452e038b817040878e9a4e3bcf29ea2374f2fc59198e099f05
Reporting entity
- Name
- Fairfield-Suisun Unified School Districtnorm: fairfield suisun unified school district
- Domain
- fsusd.community.highbond.com
Victim entity
- Name
- Fairfield-Suisun Unified School Districtnorm: fairfield suisun unified school district
- Domain
- fsusd.community.highbond.com
Incident
- Discovered
- May 6, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 5 weeks(33 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.