St. Louis Community College suffered a data breach after more than 5100 students and employees had their personal information accessed via a phishing scam.
Cybercriminals targeted employees and students through “a series of email phishing attacks” which ultimately gave them access to data stored in employee email accounts.
The leaked information included names, personal and work cellphone numbers, college email and personal email addresses, dates of birth, and addresses.
Even 71 people had their Social Security numbers compromised as well.
TPRM report: https://scoringcyber.rankiteo.com/company/st-louis-community-college
"id": "sai2136161122",
"linkid": "st-louis-community-college",
"type": "Data Leak",
"date": "02/2020",
"severity": "60",
"impact": "3",
"explanation": "Attack with significant impact with internal employee data leaks"
{'affected_entities': [{'customers_affected': 'More than 5100 students and '
'employees',
'industry': 'Education',
'location': 'St. Louis, MO',
'name': 'St. Louis Community College',
'type': 'Educational Institution'}],
'attack_vector': 'Phishing',
'data_breach': {'number_of_records_exposed': 'More than 5100',
'personally_identifiable_information': ['Names',
'Personal and work '
'cellphone numbers',
'College email and '
'personal email '
'addresses',
'Dates of birth',
'Addresses'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Personal Information',
'Social Security numbers']},
'description': 'St. Louis Community College suffered a data breach after more '
'than 5100 students and employees had their personal '
'information accessed via a phishing scam.',
'impact': {'data_compromised': ['names',
'personal and work cellphone numbers',
'college email and personal email addresses',
'dates of birth',
'addresses',
'Social Security numbers'],
'systems_affected': 'Employee email accounts'},
'initial_access_broker': {'entry_point': 'Email Phishing'},
'threat_actor': 'Cybercriminals',
'title': 'St. Louis Community College Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Email Phishing'}