The California Office of the Attorney General reported a data breach involving the Riverside County Office of Education on November 7, 2023. The breach occurred between May 27 and May 31, 2023, due to a cybersecurity vulnerability in the MOVEit Transfer software, potentially affecting personal information of students. Specific information compromised included student names, academic information, and other related data, with the number of individuals affected not specified.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-576190
TPRM report: https://www.rankiteo.com/company/rcoe
"id": "rco125072625",
"linkid": "rcoe",
"type": "Vulnerability",
"date": "5/2023",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Education',
'location': 'Riverside County, California',
'name': 'Riverside County Office of Education',
'type': 'Educational Institution'}],
'attack_vector': 'Software Vulnerability',
'data_breach': {'personally_identifiable_information': ['student names'],
'type_of_data_compromised': ['student names',
'academic information',
'other related data']},
'date_detected': '2023-11-07',
'date_publicly_disclosed': '2023-11-07',
'description': 'The California Office of the Attorney General reported a data '
'breach involving the Riverside County Office of Education on '
'November 7, 2023. The breach occurred between May 27 and May '
'31, 2023, due to a cybersecurity vulnerability in the MOVEit '
'Transfer software, potentially affecting personal information '
'of students. Specific information compromised included '
'student names, academic information, and other related data, '
'with the number of individuals affected not specified.',
'impact': {'data_compromised': ['student names',
'academic information',
'other related data']},
'references': [{'date_accessed': '2023-11-07',
'source': 'California Office of the Attorney General'}],
'title': 'Data Breach at Riverside County Office of Education',
'type': 'Data Breach',
'vulnerability_exploited': 'MOVEit Transfer software vulnerability'}