Vtdigger Slate Valley School District Declines Ransom Payment Amid Data Breach Threat
Article Content
- •Slate Valley Unified School District was attacked by the Kairos ransomware group.
- •The hackers demanded a ransom for the personal information of over 1,500 teachers.
- •The school board voted against paying the ransom, and an investigation is ongoing.
The Slate Valley Unified School District in Vermont experienced a ransomware attack in early September 2026, compromising personal information of over 1,500 teachers. The district's internet system was breached, leading to a demand for hundreds of thousands of dollars in ransom from the Kairos ransomware group. Superintendent Brooke Olsen-Farrell confirmed that the district's server was hacked, and the board voted on October 2 to decline the ransom payment. The hackers claimed to possess sensitive data, including Social Security numbers and addresses, threatening to leak it. The district is currently investigating the incident with assistance from the FBI and cybersecurity firms. As of October 2, the district has restored its internet services but has not confirmed whether any student data was compromised. The ongoing investigation aims to determine the extent of the breach and the identity of the attackers.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Kairos Ransomware Group and Slate Valley Unified School District in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What data was compromised?
Is there an ongoing investigation?
What steps should the district take now?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…