SHINDO2

Nihon University College of Science and Technology

Personal data50records

POSSIBLE LEAKPhishing · Contained

Open in the live monitor ▶
Disclosed
Sep 8, 2026
Detected
Aug 19, 2026
Detection to disclosure
20 days
Leak
Leak possible
Type
Phishing
Status
Contained
Security spend
Not checked yet
Compensation
Not announced

What leaked

UnspecifiedPersonal information

How many

  • Recipients of suspicious emails 50 records

Who is affected

  • Recipients inside and outside the university

Cause

A staff member opened a link in a phishing email, credentials were stolen and the email account was abused

Timeline

  1. Intrusion began
  2. Detected
  3. First disclosure

Response

  • MFA
  • Staff training

Introducing multi-factor authentication and strengthening security training

What you should do

  1. You can be affected without ever using this service (parcel recipients etc.). Check any notice you receive
  2. Check the company's notice to see if you're affected

Lessons for companies

  1. Passkeys or MFA for every account; monitor leaked credentials and rotate API keys
  2. Report to the PPC: preliminary in 3–5 days, final in 30 (60 if malicious)
  3. Run red teaming and AI-assisted hardening, and publish how much you invest

Sources