Get Full Government Meeting Transcripts, Videos, & Alerts Forever!
Get email alerts on the Cybersecurity topic
No spam. Unsubscribe anytime.
District says PowerSchool vendor portal was breached; limited user table data accessed, passwords not taken
Summary
District IT and leadership reported that a PowerSchool vendor portal was breached and that a limited set of database tables were accessed; officials said passwords were not accessed and that the district will notify staff and the community if further action is needed.
Get email alerts on the Cybersecurity topic
No spam. Unsubscribe anytime.
District staff informed the board that an external security incident affected PowerSchool (the student information system vendor). According to the briefing, the breach occurred through a PowerSchool portal and a limited set of database tables were accessed.
District officials said the data in the accessed tables did not include highly sensitive fields such as Social Security numbers. In the meeting staff said passwords were not accessed through the incident, and advised PowerSchool users that they can change their passwords via their PowerSchool user profile; one board member asked specifically whether passwords were affected and the answer on the record was that passwords were not accessed.
Officials said the district is working with the vendor to learn more about the incident and will notify staff and the community if additional information or actions are required. The district also said it will begin notifying affected staff/community members as appropriate and described the incident as limited based on available information.
No specific remediation steps or list of affected users were provided on the record during the meeting; the district said it would provide updates if the scope grows.

