Consensus: Decentralized IT Led to Boulder Hack

The University of Colorado at Boulder reported that a hacker May 12 exposed about 45,000 students' names and Social Security numbers. The incident affected students enrolled at any time from 2002 to the present, the school said.

The hacked server was in the College of Arts and Sciences' academic advising center. Dan Jones, director of the Campus IT Security Office, told the Denver Post that the center's firewall was turned off, and a patch was not properly installed on the system's anti-virus program.

School administrators said they would cut their practice of distributing IT responsibilities among colleges, schools, departments, and programs and assigned the school's central information technology department to take over the IT management of the center.

University officials also told the Post they do not believe the hacker targeted students' personal information. "It looked like someone was trying to seize control of the machine and not the data,"' a school spokesman told the newspaper. "And in the process of that, the data was exposed. But we're erring on the side of caution."

Read More:

About the Author

Paul McCloskey is contributing editor of Syllabus.

Featured

  • Interface buttons of Generative AI tool

    Report: No Foolproof Method Exists for Detecting AI-Generated Media

    Microsoft has released a new research report warning that no single technology can reliably distinguish AI-generated content from authentic media, and that deepening reliance on any one method risks misleading the public.

  • illustration of people collaborating around large interlocking gears and data charts

    Why ERP and AI Initiatives Stall at the Execution Layer: A CIO Perspective

    Higher education institutions are investing heavily in ERP modernization, analytics, and AI-driven capabilities. Yet even with these investments, many are running into the same issue: turning insight into coordinated, timely action.

  • large group of college students sitting on an academic quad

    Student Readiness: Learning to Learn

    Melissa Loble, Instructure's chief academic officer, recommends a focus on 'readiness' as a broader concept as we try to understand how to build meaningful education experiences that can form a bridge from the university to the workplace. Here, we ask Loble what readiness is and how to offer students the ability to 'learn to learn'.

  • digital lock on a virtual background

    Encryptionless Extortion on the Rise as Ransomware Groups Shift Tactics

    Ransomware attacks continued to climb in 2025 as attackers increasingly timed operations around year-end staffing gaps and shifted away from traditional file encryption, according to new research from NordStellar.