The FBI has issued a Private Industry special notification informing U.S. colleges and universities of a critical exposure of academic login credentials. Stolen higher education credential information, including usernames and passwords, were discovered advertised for sale on online criminal marketplaces (dark web) and in publicly accessible forums.
This exposure of sensitive credential and network access information, especially privileged user accounts, could lead to subsequent cyberattacks against individual users and affiliated educational institutions.
The full FBI notification, along with recommendations and mitigation strategies, is available at: https://www.ic3.gov/Media/News/2022/220526.pdf
Contact Information
If you had a breach or have any questions about the information included in this announcement, please contact FSASchoolCyberSafety@ed.gov.