<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Mathspace discloses data breach affecting over 1 million people]]></title><description><![CDATA[<p dir="auto">Australian edtech provider Mathspace has disclosed a data breach impacting over <strong>1 million</strong> students, staff, and parents. The attack targeted its internal <strong>Metabase</strong> reporting system, which was compromised by unauthorised actors. While the company has not specified the exact intrusion method, it confirmed that sensitive personal information was exfiltrated from the platform.</p>
<p dir="auto">The breached data includes names, email addresses, school names, and user roles. For a subset of affected individuals, additional fields such as phone numbers and student academic records may also have been exposed. Mathspace has stated that it does not store payment card details or government-issued identifiers like Social Security numbers, and it believes the risk of identity theft is limited. Still, the sheer volume of records involved—exceeding one million—places this among the larger edtech incidents in the region.</p>
<p dir="auto">Affected users should be aware of the following:</p>
<ul>
<li>The breach was discovered after unauthorised access to the <strong>Metabase</strong> analytics dashboard.</li>
<li>Notifications are being sent directly to impacted users via email.</li>
<li>The company has engaged external cybersecurity experts and is coordinating with relevant data protection authorities.</li>
</ul>
<p dir="auto">Mathspace has urged users to remain cautious of phishing attempts that may reference the incident. It also recommends enabling multi-factor authentication on any accounts associated with the platform, although the compromised data did not include passwords. The company says it has since secured the reporting system and deployed additional monitoring to prevent further unauthorised access.</p>
<p dir="auto">The disclosure means that for any organisation or family using Mathspace, the immediate concern is not just the exposed records but how quickly the vendor can confirm the full scope of the exfiltration. Given that the data includes academic records, institutions should consider reviewing what information they have shared with third-party learning platforms.</p>
<p dir="auto">Source: <a href="https://www.bleepingcomputer.com/news/security/mathspace-discloses-data-breach-affecting-over-1-million-people" target="_blank" rel="noopener noreferrer nofollow ugc">BleepingComputer</a></p>
<p dir="auto">Have you or your institution received a breach notification from Mathspace, and how are you approaching the risk related to the exposed academic records?</p>
]]></description><link>https://xploitlk.com/topic/250/mathspace-discloses-data-breach-affecting-over-1-million-people</link><generator>RSS for Node</generator><lastBuildDate>Sat, 12 Sep 2026 06:10:16 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/250.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 07 Sep 2026 14:30:30 GMT</pubDate><ttl>60</ttl></channel></rss>