[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1x3ioqaxtfnou":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":28,"seoTitle":15,"seoTitleEn":29,"seoDescription":15,"seoDescriptionEn":30,"logoUrl":31,"isVerified":4,"isSensitive":32,"isSpamList":32,"isMalware":32,"company":33},"68e3266eda11adda4882537c","sphero","Sphero Data Breach","sphero.com","2023-09-09T00:00:00.000Z","2023-10-20T07:16:25.000Z","2026-07-03T14:58:02.905Z","2026-07-18T23:58:05.696Z","Third party breach","",[],832255,"known",null,"unknown","High",[23,24,25,26,27],"Dates of birth","Email addresses","Geographic locations","Names","Usernames","\u003Cp>The Sphero data breach is an incident associated with Sphero, known for educational robots and STEM learning products, that occurred in September 2023. The record includes 832,255 unique email addresses. Data classes include birth dates, email addresses, geographical locations, names, and usernames. Due to the educational technology context, it poses privacy and identity matching risks for students, teachers, and school accounts.\u003C\u002Fp>\u003Ch2>Leaking Data Types and Risks\u003C\u002Fh2>\u003Cp>Email, name, and username form the basic account identity. When the date of birth and geographic location fields are added, inferences can be made about the user's age group and school or regional context. Although these fields do not contain a password, they may be sufficient to target users in an educational environment.\u003C\u002Fp>\u003Cp>When fields such as name, email, phone, address, username, or location come together, attackers can prepare messages that appear as if the user has a real service relationship. This information alone does not always mean account takeover; however, it can be used for phishing, fake support requests, delivery notifications, account verification, and personalized fraud flows. Since children or students may also be included in educational technology data, unnecessary specificity should be avoided; however, the presence of birth date and location fields increases the significance of the risk. Fake class invitations, contests, STEM events, teacher notifications, or account verification messages can exploit this context.\u003C\u002Fp>\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\u003Cp>The incident date is September 9, 2023, and the number of affected email addresses is recorded as 832,255. Security records show that more than a million rows of data were shared, containing 832 thousand unique email addresses along with names, usernames, dates of birth, and locations. The existing data classifications are consistent with this scope.\u003C\u002Fp>\u003Cp>When explaining the scope, fields such as passwords, payment information, or student grades should not appear to have been leaked. The correct risk is the matching of the educational technology account with personal identity and location context. It should not be assumed that the birth date or location field is complete in every row.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>Users at risk may be students, teachers, parents, and accounts associated with educational institutions who have a Sphero account. People who use the same email address as a school account or a personal account carry a greater targeting risk.\u003C\u002Fp>\u003Cp>The teacher and school context can make messages about fake classes, competitions, robotics clubs, or assignment links appear convincing. Since birth date and location information are more sensitive for students, parents should also assess account security.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>Users in the matching field should check that the Sphero account and the school or education accounts linked with the same email use a unique password. Even if there is no password in the record, the email can be combined with a password in other violations. Parents or school administrators should be informed about student accounts.\u003C\u002Fp>\u003Cp>Instead of opening incoming links directly, the user should log in through the known web address or official application of the relevant service. Knowing the caller's name, email, address, order, or profile information does not prove that they are trustworthy. One-time verification codes, payment card information, or account passwords should not be shared in any support conversation.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>In the long term, the habit of using a password manager, unique passwords, two-factor authentication, and removing unnecessary personal information from accounts reduces risk. Reusing the same email address on different platforms makes it easier to combine data from different breaches; therefore, using a separate email or alias for critical accounts can be considered.\u003C\u002Fp>\u003Cp>In educational technology accounts, sharing real name, date of birth, and location should be minimized. Schools should standardize measures such as a separate email policy for student accounts, strong passwords, and multi-factor authentication.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>LeakData check indicates whether the queried email address is present in this record. A positive result does not necessarily mean that all data fields definitely belong to that user; however, it is a sufficient warning for precautionary measures. A negative result only indicates that there is no match in this dataset and does not eliminate the possibility of appearing in other breaches.\u003C\u002Fp>\u003Cp>A positive result is important in terms of educational account and identity matching risk. A negative result means that there is no match within this record; the same email address should also be checked on other educational platforms.\u003C\u002Fp>","Sphero Data Breach (832.3 Thousand Reported Records)","Sphero Data Breach. 832.3 Thousand reported records were reported. Reported data: Dates of birth, Email addresses, Geographic locations. Review the scope…","\u002Fuploads\u002Flogo\u002Fsphero_com.webp",false,{"name":34,"sector":35,"country":36,"website":9,"websiteArchiveUrl":15,"websiteStatus":15,"websiteCheckedAt":19},"Sphero","Education Technology","United States"]