Original Release Date: 5/22/2023
Brightly Software distributed notifications to current and former users regarding a security incident impacting accounts associated with the SchoolDude software suite application. This online platform is used by educational institutions to manage maintenance work orders. Through unauthorized access, a threat actor was able to obtain information regarding current and former SchoolDude users, including name, email address, account password, phone number, and school district name. Brightly reset impacted users’ passwords; however, those users are highly advised to also change passwords for accounts using the same credentials. Due to the exposure of users’ email addresses and associated district names, affected users may be at an increased risk of receiving spearphishing emails and should, therefore, remain cautious with received communications.