company allegedly hacked as reported by DarkForums with details: We have Breached Ellucian PowerCampus. The stolen data comes from a couple schools that it affects. The amazon s3 bucket and cerulean blobs were left unsecured and misconfigured in are latest drive Operation Cloud. The schools affected are below: 1. Primary Affected schooling Groups These schools have the largest volume of data exposed including sensitive Aadhaar numbers and plain-text passwords: - UNACCO schooltime group : Multiple branches are involved . This includes UNACCO schooltime Meitei and others in Imphal and Bishnupur. - Bethesda school Group: Located in Manipur and Meghalaya . Data includes children from Nursery to form 10. - Triveni public school / Triveni school management : . This exposure includes very recent April 2026 enrollment data and photos. 2. Other Identified Institutions These schools appear in specific folders containing staff salaries pupil leave requests or exam results: - Little flower schooltime : . Specifically involves UKG and staff mass enrollment data. - Junior High school : . Data includes marksheets and certificates for the 2024-2025 academic cycle. - Jovial school Management : . This schooltime has detailed and monthly student reports exposed. - DAV School: Identified in the trial bucketful within folders like DAV_Class1_MarkBulk. - PCHSS & dad Schools: . These specifically involve form 11 and division 12 student id cards. 3. Regional summary The transgress is heavily concentrated in North-East India affecting schools in: - Manipur - Meghalaya it contains the following: the place is Ellucian PowerCampus platform which affects Neoskool and the following schools below. the schools involved in this breach is the following below: These schools are all clients of Neoskool and are using the Ellucian PowerCampus platform managed by them. - 1. Primary Schools - UNACCO school : Identified by multiple IDs . This is one of the largest schools involved. The data includes student id cards mass enrollment CSVs and quarterly fee payments. - Bethesda school / Bathestha : Identified by BESS2484 and BESS7843. Data includes full year lists Nursery to class 10 prep and internal health notifications. Triveni public school / Triveni school Management: Identified by TPS9779 and TSM-2026. Data includes bulk updates for Pre-Nursery and student photos uploaded as recently as April 2026. everything stolen is below: 1. The identity layer This is the most sensitive data as it involves the safety of children and the privacy of employees. - pupil id Cards: Full directories containing photos names and class levels from Nursery to class 12. - bulk Staff Lists: .csv files containing full names mobile numbers and emails of teachers and administrators. - student bulk Files: Massive spreadsheets containing thousands of rows of enrollment data. - leave Requests: Private photos and notes detailing why students were absent. 2. The Financial & Academic Layer This data is used by ShadowByt3$ to prove and extort the school for lost revenue. - Fee Payments: bulk_fee_payment.csv files containing transaction records and amounts paid by parents. - Student Discounts: student_discounts.xlsx revealing private financial assist and concession details. - mark Sheets & Results: PDF and XLSX files display the full grades for students. - Certificates: Official CharacterCertificate.pdf and Transfer_certificate.pdf files used for legal school transitions. 3. The This is what you mentioned at the very beginningthe that reserve the group to stay inside the system. - AWS Canary File: aws-programmatic-access-test-object This proves they experience write/delete access to the cloud. - Manifests & Configs: MyReport-Manifest.json and slide.json These files reveal the API endpoints and database structures Neoskool uses and the