DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Update: About 9,200 people affected by Clarksville-Montgomery County School System hacking

Posted on August 3, 2012 by Dissent

Adam Tamburin reports:

On Thursday, the school system began notifying about 9,200 people that elements of their personal data were accessed during a June security breach.

That total includes about 4,900 employees and 4,300 students, according to James Prendergast, an attorney with Nelson Levine de Luca & Hamilton, a law firm the school system enlisted to help with notifications.

Hackers gained access to nine of Clarksville-Montgomery County School System’s databases on June 11, which included, among other things, names, Social Security numbers and birthdays of some current and former students and employees, according to a news release from CMCSS spokeswoman Elise Shelton.

Read more on TheLeafChronicle.

A statement posted to CMCSS’s web site reads:

The Clarksville-Montgomery County School System discovered on June 11, 2012 that an unknown individual gained access to nine of its computer databases that contained the names, addresses, and Social Security numbers of certain current and former CMCSS employees, as well as the names, addresses, Social Security numbers, dates of birth, and student identification numbers of certain current and former CMCSS students.  Beginning today, August 2, 2012, CMCSS is notifying each individual whose information was accessed during this intrusion and advising each individual of the elements of personal information exposed.  CMCSS is not aware of any misuse of the personal information accessed during this illegal intrusion at this time; however, CMCSS also is advising affected individuals of steps that can be taken to protect identity and credit from fraud and theft.

Upon discovery of this criminal access, CMCSS retained privacy and data security legal counsel and forensic computer analysts to assist with its investigation of, and response to, this incident.  CMCSS also notified local law enforcement and the Tennessee Bureau of Investigation, which is working in conjunction with the FBI to investigate this incident.    The criminal investigation into this incident is ongoing.

Through the notification process, CMCSS is providing affected individuals with contact information for a call center, which has been established to respond to questions regarding this incident. We appreciate your patience and understanding throughout this process. Thank you.

The school system’s report seems to conflict significantly with claims made by hackers calling themselves Spex Security, who claimed to have acquired data on 110,000. The hackers later dumped 14,500 of the compromised records online on the Internet. So where is this 9,200 figure coming from? Is the school system saying that these were the only records acquired?  I’ve sent an inquiry to the school system’s attorney to request clarification. If I get a response, I’ll update this.


Related:

  • Will Beacon Health Solutions' incident prompt OCR to start enforcing notification "without undue delay?"
  • Attorney General James and DFS Superintendent Harris Secure $11.3 Million from Auto Insurance Companies over Data Breaches
  • Attorney General James Secures $975,000 from Auto Insurance Company over Data Breach
  • k-12 school districts fall prey to Pysa ransomware
  • "I'm Not Pro-Russia and I'm Not a Terrorist!" —- InfraGard and Airbus Hacker “USDoD” Unveils His New Campaigns
Category: Breach Incidents

Post navigation

← FL: Palm Beach County Health Department employee pilfered patient information
Willingboro woman sold IDs of TD Bank customers, used them to take money from accounts: police →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Telus Digital confirms breach after ShinyHunters claims 1 petabyte data theft
  • China’s CERT warns OpenClaw can inflict nasty wounds
  • Bell Ambulance data breach impacted over 238,000 people
  • Lotte Card fined 9.6 billion won for leaking users’ social registration numbers
  • Handala claims responsibility for attack on medical device maker Stryker
  • Police Scotland fined £66k for extracting and sharing mobile phone data
  • The rise of teen hackers ‘makes for a good headline’, but cyber crime activities peak later in life
  • Viral ‘Quittr’ Porn Addiction App Exposed the Masturbation Habits of Hundreds of Thousands of Users
  • New Report Finds One in Two U.S. School Districts Experienced a Cybersecurity Incident in 2025
  • Foreign hacker in 2023 compromised Epstein files held by FBI, source and documents show

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Petition filed over misuse of protesters’ data by Kenyan government and telcos
  • When Miscarriage Is Recast As Murder
  • The Government Uses Targeted Advertising to Track Your Location. Here’s What We Need to Do.
  • Santa Ana homeowner says insurance company used drone to inspect her roof without telling her
  • Ring’s Jamie Siminoff is still trying to calm privacy fears, but his answers may not help

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: Dissent.73

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: Dissent.73
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.