FeedExploreAsk AIAlertsSavedProfile

Categories

AICybersecurityInfrastructureDatabaseTech Updates

Tech news that matters.

FeedExploreAskAlertsSavedProfile
Back to feed
Cybersecurity·High

Hackers Stole School Data Through Salesforce

An IT professional in an office environment reviews a security alert on a computer screen.
Salesforce logo
Salesforce news →

TL;DR: The ShinyHunters gang stole data from 137,000 school staff accounts by targeting the Infinite Campus K-12 system. The breach highlights the security risks of third-party platforms, as Salesforce was the point of entry.

By Neeraj Dhiman·3h ago·1 min read·updated 1h ago
Source

Key facts

Category
Cybersecurity
Impact
High
Published
3h ago
Source
BleepingComputer

Full summary

Hackers stole data from 137,000 school staff accounts after breaching a K-12 system through its Salesforce community platform.

The ShinyHunters extortion group has claimed responsibility for a significant data breach targeting Infinite Campus, a widely used K-12 student information system. The attack, which occurred in March, compromised the personal information of more than 137,000 school staff members. The threat actors did not breach Infinite Campus's core infrastructure directly. Instead, they gained access through a third-party community platform hosted by Salesforce, which the company used for customer support and communication. This method allowed the attackers to exfiltrate sensitive data belonging to school employees who were registered on the platform. The incident highlights a common attack vector where peripheral systems, rather than the main product, become the weakest link in an organization's security.

This breach serves as a critical case study in supply chain risk, demonstrating how vulnerabilities in a trusted third-party service can lead to a major security incident for a company and its customers. For CTOs and security teams, it underscores the necessity of thoroughly vetting and continuously monitoring the security posture of all integrated SaaS platforms. The reliance on external vendors like Salesforce for critical functions means that an organization's security is only as strong as its partners'. The incident also puts a spotlight on the ShinyHunters group, a notorious cybercrime gang known for large-scale data theft and extortion campaigns. Their involvement suggests the stolen data may be sold on dark web forums or used for further targeted attacks, increasing the long-term risk for the individuals affected. Organizations must prepare for incidents originating outside their direct control and have response plans that account for complex, multi-party breaches.

Related on Notifire

  • ResearchKubernetes security
  • ResearchSupply-chain security
  • ResearchCritical CVEs of 2026
  • CompareSSO vs SCIM

✦ Notifire newsletter

Get more Cybersecurity intelligence

Join engineers getting Notifire’s verified tech briefings — short, sourced, and free. No spam, unsubscribe anytime.

The day's most important tech briefings. No spam, unsubscribe anytime.

Related stories

Primary source: BleepingComputer

Part of our research on

  • Critical CVEs of 2026 →

Tech intelligence for engineering teams

Short, verified briefings on AI, cybersecurity, infrastructure, and data — with the analysis and action steps that matter. Every briefing is sourced, fact-checked, and bylined to a named editor.

[email protected]Story tips & corrections welcomeHow we report →

The Notifire briefing

Verified tech intelligence in your inbox — AI, security, infra, and data.

The day's most important tech briefings. No spam, unsubscribe anytime.

Sections

  • AI
  • Cybersecurity
  • Infrastructure
  • Database
  • Tech Updates
  • Web3 & Chains

Newsroom

  • About Notifire
  • Editorial team
  • Editorial standards
  • Methodology
  • AI disclosure
  • Corrections

Resources

  • Explore
  • Research hubs
  • Comparisons
  • Tech glossary
  • FAQ
  • Alerts & watchlists

Follow

  • RSS feed
© 2026 NotifirePrivacyTermsCorrections
An independent, AI-assisted publication. Built at </Alpheric>
IntelligenceLive panel
Live

Top trending

Last 24h

    Popular tags

    Add to watchlist

    +OpenAI+Claude+PostgreSQL+Kubernetes+Cloudflare+AWS+CVE Critical

    Notifire score

    0–100 priority signal — combines impact, freshness, trending velocity, and source credibility.

  1. Atom feed
  2. LinkedIn
  3. X / Twitter
  4. Facebook
  5. Instagram
  6. YouTube