Data Breaches

55,000 Impacted by Cyberattack on California School Association 

The Association of California School Administrators (ACSA) is informing nearly 55,000 individuals that they have been impacted by a ransomware attack.

The Association of California School Administrators (ACSA) is informing nearly 55,000 individuals that they have been impacted by a ransomware attack.

The Association of California School Administrators (ACSA) is informing nearly 55,000 individuals that their information may have been compromised as a result of a cyberattack.

ACSA describes itself as the largest umbrella association for school leaders in the United States, serving more than 17,000 California educators, including superintendents, principals, vice-principals, and classified managers.

The incident occurred last year. ACSA discovered on September 24, 2023, that some files in its environment had been encrypted, which indicates that the organization was targeted in a ransomware attack. 

An investigation revealed that a threat actor had gained access to ACSA systems between September 23 and 24, and they accessed and possibly exfiltrated certain types of information. 

The exposed files contained information such as name, address, date of birth, Social Security number, driver’s license number, payment card information, medical information, health insurance information, tax ID, student report card and test score, employer-assigned identification number, and online account credentials. 

ACSA completed its investigation and identified the impacted individuals in early May 2024, when it started notifying them about the data breach.

Advertisement. Scroll to continue reading.

The organization told the Maine Attorney General that roughly 54,600 people are affected.

ACSA said it found no evidence of “any actual or attempted identity theft or fraud as a result of this event”, but impacted individuals are being provided credit monitoring services for 12 months.

The Association of California School Administrators does not appear to have been listed on the website of any known ransomware group. 

Related: Ransomware Leads to Nantucket Public Schools Shutdown

Related: Computer Attack Disables California School District’s System

Related: K-12 Schools Improve Protection Against Online Attacks, but Many Are Vulnerable to Ransomware Gangs

Related: 900 US Schools Impacted by MOVEit Hack at National Student Clearinghouse

Related Content

Data Breaches

Roughly two dozen companies have notified their customers of the Klue-Salesforce incident impact.

Data Breaches

Over a dozen Klue customers have confirmed that hackers stole data from their Salesforce instances.

Data Breaches

Hackers stole customers’ names, addresses, email addresses, phone numbers, and account information.

Data Breaches

Threat actors gained access to personal and protected health information that Xsolis received from its clients.

Data Breaches

HackerOne, Huntress, Jamf, OneTrust, Recorded Future, Snyk, and Tanium are among the affected Klue customers.

Data Breaches

Hackers stole personal information after breaching the systems of a third-party license vendor serving TPWD.

Data Breaches

Kodak told SecurityWeek it believes there is no threat to its systems or operations as a result of the cybersecurity incident.

Malware & Threats

The attackers deployed a new Go-based backdoor that uses Microsoft Teams servers for command-and-control.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version