[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f1ld3xw351ax9x":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"modifiedDate":12,"contentUpdatedAt":12,"source":13,"sourceUrl":14,"sourceUrls":15,"pwnCount":19,"affectedCount":19,"affectedCountStatus":20,"affectedCountLowerBound":21,"affectedCountUnit":22,"hasEnglishDescription":4,"severity":23,"dataClasses":24,"description":32,"seoTitle":33,"seoTitleEn":34,"seoDescription":33,"seoDescriptionEn":35,"logoUrl":36,"isVerified":4,"isSensitive":4,"isSpamList":37,"isMalware":37,"company":38},"6a701b5867efdb927dda03ae","MonroeUniversity2024","Monroe University 2024 Data Breach","monroe-university-2024","monroeu.edu","2024-12-09T00:00:00.000Z","2026-08-03T04:38:48.973Z","Monroe University","https:\u002F\u002Foag.ca.gov\u002Fecrime\u002Fdatabreach\u002Freports\u002Fsb24-616960",[14,16,17,18],"https:\u002F\u002Foag.my.site.com\u002Fdatasecuritybreachreport\u002Fapex\u002FDataSecurityReportsPage","https:\u002F\u002Fwww.mass.gov\u002Fdoc\u002F2026-52-monroe-university\u002Fdownload","https:\u002F\u002Fwww.in.gov\u002Fattorneygeneral\u002Fconsumer-protection-division\u002Fid-theft-prevention\u002Ffiles\u002FDB-Year-to-Date-Report-7_2026.pdf",320973,"known",null,"people","High",[25,26,27,28,29,30,31],"Names","Social security numbers","Driver's license numbers","Government issued IDs","Medical information","Health insurance information","Financial account information","\u003Cp>\u003Cstrong>The 2024 Monroe University data breach\u003C\u002Fstrong> involved unauthorized access to certain university computer systems and the copying of files from its network. Official records state that 320,973 people were affected.\u003C\u002Fp>\u003Cp>The unauthorized party was determined to have access between December 9 and December 23, 2024. The university completed its review of the involved files on September 30, 2025 and began sending notices on January 2, 2026.\u003C\u002Fp>\u003Ch2>How did the incident happen?\u003C\u002Fh2>\u003Cp>According to Monroe University's official notice, an unauthorized third party temporarily accessed certain computer systems and acquired copies of some files on the network during that period. The university secured its systems and began an investigation after discovering the incident.\u003C\u002Fp>\u003Cp>Public documents do not disclose how the actor gained initial access, whether a specific vulnerability was used, or who was responsible. The event should therefore not be attributed to an unconfirmed technique or threat group.\u003C\u002Fp>\u003Ch2>What information may have been involved?\u003C\u002Fh2>\u003Cp>Official state records list names, Social Security numbers, driver license numbers, government identification such as passports or state IDs, medical information, health insurance information, and financial account information among the possible data types.\u003C\u002Fp>\u003Cp>The scope of the fields varied by person. The full list should not be assumed to apply to every affected individual or to have been accessed together.\u003C\u002Fp>\u003Ch2>What does the 320,973 figure mean?\u003C\u002Fh2>\u003Cp>The Indiana Attorney General's 2026 report ties the December 9, 2024 Monroe University event to 320,973 affected people nationwide. It separately lists 173 affected Indiana residents.\u003C\u002Fp>\u003Cp>This is the reported affected-person total. It does not mean that every person had the same fields involved, that the information was misused, or that each file represented one person.\u003C\u002Fp>\u003Ch2>Why do these data types matter?\u003C\u002Fh2>\u003Cp>A Social Security number, government identifier, or financial account detail combined with a name can increase the risk of identity theft, fraudulent account opening, and financial fraud.\u003C\u002Fp>\u003Cp>Medical or health insurance information can make messages impersonating a healthcare provider or insurer appear more convincing. A message containing an accurate school or health detail is not necessarily authentic.\u003C\u002Fp>\u003Ch2>What should affected people do?\u003C\u002Fh2>\u003Cp>Notice recipients should regularly review credit reports, bank accounts, and health insurance explanation-of-benefits statements and report transactions or applications they do not recognize.\u003C\u002Fp>\u003Cp>Monroe University's sample notice offered eligible recipients two years of triple-bureau credit monitoring. That was the offer at the time of notification; use only enrollment details in the letter sent directly to you or through a verified university channel.\u003C\u002Fp>\u003Cp>Never provide a Social Security number, driver license detail, bank information, password, or verification code during an unsolicited call. Open monroeu.edu independently instead of following a link in a suspicious message.\u003C\u002Fp>\u003Ch2>Confirmed scope\u003C\u002Fh2>\u003Cp>The confirmed scope consists of the December 9–23, 2024 access period, copied files, 320,973 affected people, and recipient-variable identity, financial, and health information. The initial access method, actor identity, and incident-related misuse were not confirmed.\u003C\u002Fp>","","Monroe University 2024 Data Breach (321 Thousand People Affected)","The Monroe University data breach affected 320,973 people. Review the December 2024 timeline, exposed data types, and practical safety steps.","\u002Fuploads\u002Flogo\u002Fmonroe-university-official.png",false,{"name":13,"sector":39,"country":40,"website":10,"websiteArchiveUrl":33,"websiteStatus":41,"websiteCheckedAt":12},"Education","United States","active"]