Minnesota School Knocked by Data Breach

Metropolitan State University went public this month with the news that a hacker had broken into one of its servers containing personal information about faculty, staff and students. In a president's letter to the community, the institution said it did not "believe this server contained any financial data or credit card information"; however, several databases did contain employee Social Security numbers. The extent of the damage is unknown.

When the breach was discovered Jan. 2, the university contacted the office of the Minnesota State Colleges & Universities system, of which it is a member, as well as the IT division of the state of Minnesota. The affected server was "isolated" from the network, and law enforcement was notified.

According to a question and answer document online, Metropolitan found out about the breach when it was contacted by a "private information sharing community of trusted research and higher education partners." The service had come across a "blog posting by a computer hacker who claimed to have accessed numerous Web sites and data servers." Although the service wasn't named, the Minnesota system is a member of REN-ISAC, the Research and Education Networking Information Sharing and Analysis Center.

The university reported that it was moving its Web site to a new server as a result of the breakin. That migration was expected to cause "some disruption" of site's functionality.

The investigation is still ongoing, the institution said, and it expected to notify those whose personal information may have been stolen through mail and "other means."

"The university sincerely regrets this apparent breach and any inconvenience it may cause," said Interim President Devinder Malhotra in his letter.

About the Author

Dian Schaffhauser is a former senior contributing editor for 1105 Media's education publications THE Journal, Campus Technology and Spaces4Learning.

Featured

  • digital data protection and cyber security

    White House Launches New AI Security Framework

    President Donald Trump has issued a new executive order aimed at maintaining United States AI leadership while addressing the security risks posed by increasingly powerful AI systems.

  • Binary code flows through a digital pathway with red and blue lights in a dark background

    Survey: Enterprises Say They Are Ready for Agentic AI Failures, but Few Test Recovery Often

    Most enterprise organizations say they are ready to recover from disruptions involving agentic AI, but a new survey of more than 300 IT decision-makers from Australia, New Zealand, Europe, the United Kingdom, and the United States suggests relatively few test those plans often enough to prove it.

  • Abstract neural network 3D illustration

    IntelĀ® AI EmpowerED: The AI-Ready Campus, Delivered

    Artificial intelligence is transforming higher education, prompting institutions to rethink how they manage infrastructure, security, governance, and workforce readiness. Successful adoption requires a strategic, institution-wide approach that aligns AI initiatives with educational goals, faculty enablement, and scalable operational frameworks.

  • person typing on a touch screen schedule plan calendar

    DOJ Extends Deadline for ADA Title II Compliance

    Institutions working to meet the Americans with Disabilities Act Title II regulations for digital accessibility have received a temporary reprieve: The United States Department of Justice has published an interim final rule to push back the compliance deadline by one year.