Overview
- The Department for Education disclosed a breach after attackers targeted its external helpdesk and Turing Scheme systems and posted contact records on the dark web, reporting the incident on Wednesday.
- Reporters have seen dark‑web posts claiming responsibility by a group calling itself ExfilSquad and cited about 607,000 records that include names, job titles, emails and phone numbers.
- The DfE says the data accessed is limited to customer‑service contact details, it has contained the incident, informed the Information Commissioner’s Office, and is working with the NCSC and NCA.
- Security experts warn the exposed contact list can be used to craft targeted phishing and social‑engineering attacks and urge individuals and schools to treat unsolicited messages with caution.
- The breach highlights recurring weaknesses in public‑sector IT and service‑desk security, prompting calls for stronger proactive cyber defences and faster investment to protect staff and students.