Infinite Campus says a March breach of its Salesforce environment exposed data from 137,100 school staff accounts tied to U.S. K-12 districts. The company said the attacker accessed its Salesforce instance rather than customer student databases; leaked records analyzed by Have I Been Pwned reportedly include names, email addresses, employers, job titles, phone numbers, physical addresses, usernames, and support tickets. ShinyHunters claimed responsibility and published a 1.2GB archive of alleged stolen data.
Why it matters: Schools and staff may face targeted phishing, impersonation, and follow-on fraud using exposed contact and support data. Districts using Infinite Campus should warn employees, watch for suspicious messages or password-reset attempts, and review any Salesforce-connected access and monitoring.
info@thehackernews.com (The Hacker News)
2026.07.14
93% relevant
This article appears to directly expand on the same underlying ShinyHunters-linked Salesforce data-theft activity, adding Microsoft's view that the attackers used three access paths over roughly a year to steal data from Salesforce environments.
Sergiu Gatlan
2026.06.15
100% relevant
This article establishes a distinct breach event at Infinite Campus with identified scope, affected population, attack path through Salesforce, and public attribution to ShinyHunters.
← Back to all stories