Security & Privacy


NIST Releases Update to Cybersecurity Framework

The National Institute of Standards and Technology (NIST) has released an update to its Cybersecurity Framework, the often-referenced set of guidelines and best practices for cybersecurity strategy. The refresh is the first since the guidance document was issued in 2014.

A screenshot from April 26, 2023 shows the dark web leak site of The Royal Ransomware gang and its threat to release data it claimed to have stolen from EdisonLearning

EdisonLearning Breach in 2023 Subject of Class-Action Inquiry as Official Notification is Posted

Attorneys working with ClassAction.org are “investigating whether a class-action lawsuit can be filed” against EdisonLearning on behalf of individuals whose name and Social Security number were among files stolen during a ransomware attack in early March 2023.

Side by side screenshots show a fake KeePass website that a malicious ad takes visitors to, and the real KeePass website

Ransomware Targeting K–12 Rose 92% in 2023, Malwarebytes Reports

New research from Malwarebytes ThreatDown analysts shows that 2023 was the "worst year on record" for education, with a 105% jump in known ransomware attacks targeting the sector and a 92% rise in ransomware targeting K–12 education specifically — with nearly half of those targeting U.S. school districts.

Bluum Adds New Solutions for Esports, STEAM Curricula, School Security

Ed tech company Bluum has introduced customizable kits with five new solutions for K–12 and higher education, it announced at its recent Impact 2024 conference.

'Too Small and Too Slow': FCC Cybersecurity Pilot Proposal Draws Criticism

A week remains for K–12 stakeholders to submit comments on the Federal Communications Commission’s proposed 3-year, $200 million Schools and Libraries Cybersecurity Pilot Program, and so far, most comments submitted have expressed significant concerns that it is too "too small and too slow" to help public schools defend against emerging cyber threats.

Lightspeed Introduces Multifunctional Audio Platform Cascadia

Instructional audio company Lightspeed has announced Cascadia, a networked audio platform for K–12 schools. The new platform allows easy projection of the teacher's voice as well as instant communication outside the classroom and help in an emergency.

Screenshot of security research identifying API vulnerabilities in Edulog school bus tracking platform

Vulnerabilities in Edulog Portal Revealed Bus Location Data, Parent Logins for 6M Students

Security researchers said this week that API vulnerabilities in the Edulog school bus tracking platform made the names and geolocation data of 6 million student riders available to anyone, and while the vulnerability has been fixed, schools that post their Edulog sign-up code on their websites are still at risk.

EdSAFE AI Alliance Relaunched to Promote AI 'Safety' in Education

New York City-based InnovateEDU has announced the revival of the EdSAFE AI Alliance to promote the responsible use of AI in education on a global scale. The organization is a coalition of education/learning and technology partners dedicated to fostering AI policy, collaboration, and best practices in K–12 education.

Centegix Debuts Safety Platform Uniting Its Emergency Response Tech Solutions

Incident response technology vendor Centegix has launched a new integrated, cloud-based Safety Platform that unites its various school safety solutions and connects with emergency responder partners, the company said in a news release.

a bar graph shows how E-rate applicants are using funds for connectivity in schools and libraries

Annual E-rate Survey Shows Majority of Schools, Libraries Want Cybersecurity Services Added

An overwhelming majority of E-rate applicants want the FCC to include cybersecurity services in the program, according to the 14th annual E-rate Trends Report released today by Funds For Learning.