Skip to content
Cyber Security Firms
ConfirmedEducation

Glendale Community College Data Breach (July 2026)

Glendale Community College in California was hit by a ShinyHunters extortion campaign in June 2026, and Have I Been Pwned has verified 793,925 records holding names, dates of birth, contact details, government issued IDs and academic records.

Disclosed Updated
Organization
Glendale Community College
Sector
Education
Country
United States, CA
Incident date
June 15, 2026
Disclosed
July 11, 2026
Records affected
794,000
Attack type
Undisclosed
Threat actor
ShinyHunters
Status
Confirmed
Data exposed
  • Academic records
  • Dates of birth
  • Email addresses
  • Genders
  • Government issued IDs
  • Names
  • Phone numbers
  • Physical addresses
Timeline
  1. The incident date recorded for the breach, per the Have I Been Pwned listing.
  2. The college is notified of a potential cyber security incident and moves to isolate and secure its network, according to its own Cyber Security Update notice.
  3. Have I Been Pwned loads the verified records, covering 793,925 unique email addresses.

What Happened

Per the Have I Been Pwned entry, Glendale Community College was the target of a ShinyHunters pay or leak extortion campaign in June 2026, and data said to have come from the college was later published online. The listing counts 793,925 records and describes almost 800,000 unique email addresses alongside names, addresses, phone numbers, Social Security numbers and other fields tied to student enrollments.

In its own Cyber Security Update notice, the college says it was notified of a potential cyber security incident on June 16, 2026, then took immediate steps to isolate and secure its network and engaged third party specialists to help contain and investigate the activity. The notice states that certain data related to student educational records was potentially copied without authorization.

The same notice says the information involved may include a name together with one or more of a Social Security number, driver's license number, financial aid information, or health related information, and that the college is notifying potentially impacted individuals and offering complimentary credit monitoring and identity protection. Have I Been Pwned loaded the verified records on July 11, 2026. Neither source says how the college's systems were reached.

What Was Exposed

8 classes of data across 793,925 records, per Have I Been Pwned, Glendale Community College breach entry: academic records, dates of birth, email addresses, genders, government issued ids, names, phone numbers and physical addresses.

Names, dates of birth, government issued IDs, addresses and phone numbers sitting in one record set are the core inputs for identity theft and account takeover, and the attached academic records make an impersonation attempt read as legitimate to college staff.

What to Do If You Are Affected

The full sequence, and what to do in what order, is in what to do after a data breach.

What Is Not Known Yet

The college has not said publicly how its systems were reached, and its notice names no threat actor. No source reviewed here gives the number of people the college has notified.

Sources

  1. Have I Been Pwned, Glendale Community College breach entry
  2. Glendale Community College, "Cyber Security Update" official notice
On this page
Reviewed by

Daniel Reyes

  • CISSP
  • 12 years in security operations
  • Austin, TX

Daniel Reyes is a CISSP who spent twelve years in security operations, most recently leading a detection and response team for a mid-sized healthcare group in Texas. He reviews every resource and breach report on Cyber Security Firms for technical accuracy before it publishes.

Most of the people he has trained arrived having been told too much: a dozen acronyms, six vendors, and no clear idea which risk was theirs. His approach is to explain what an attack actually does before naming the tool that stops it, on the basis that most breaches start with something a reader could have recognised.

Read the full bio and how we research →