Frontline Education is alerting school districts across the United States that attackers accessed its systems and stole employee information, including Social Security numbers, after exploiting a flaw in third-party software. The edtech company provides administration and workforce management software and services to school districts. In a breach notification sent to at least one affected district, Frontline said its security team found the third-party software vulnerability on August 14, 2026, and that it allowed unauthorized access to part of its environment.
The notification states that Frontline investigated with an independent cybersecurity firm, fixed the vulnerability, contacted law enforcement and took additional steps to strengthen its systems. The company has not said which third-party application was involved or when the unauthorized access began. For the district whose notification was reviewed, a source said every employee was affected, with Social Security numbers, email addresses and physical addresses exposed.
News of the breach first circulated among school IT administrators, who reported on the K12SysAdmin subreddit that district officials were receiving similar notifications. One administrator said their superintendent and business manager received a notice on October 1 from frontline@notifications.cyberscout.com, but Frontline support had not yet confirmed whether the message was genuine. Other administrators later said they had independently verified the notifications were legitimate, with one reporting verbal contact with their Frontline representative. Another administrator shared a Frontline notice stating that 1,210 employees tied to their district were impacted and that Social Security numbers, email addresses and addresses were exposed.
Frontline will manage notifications to affected individuals on behalf of impacted school districts unless a district opts out by October 16. Districts can opt out through www.frontline-transunion.com or by calling 833-516-8792. If a district opts out, Frontline says it will not provide notification services or reimburse the district for the cost of sending its own notices.
Affected adults are being offered two years of free credit monitoring and identity theft protection through TransUnion, while minors will receive cyber monitoring services. Frontline says it will also handle required notifications to state attorneys general and cover the costs of individual notifications and the identity protection services.
The incident adds to a growing set of cybersecurity problems affecting US education technology providers, whose systems hold personal data on school employees and students. Frontline has not publicly disclosed how many districts or individuals were affected, and the company did not respond to an email seeking comment.
More cybersecurity news from TechManNews.




