CSIDB logo
Incident

Redborne Upper School and Community College

Incident posture

Attack window
Mar 2021
Location
United Kingdom
Status
Historical
CIA posture
Available to members
Updated
2025-10-25 00:00

Linked entities

Victim
Redborne Upper School and Community College
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Mar 2021
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A cyber-attack on Redborne Upper School and Community College destroyed pupils' coursework and caused significant data loss by rendering servers unreadable, though no data was exfiltrated or accessed by unauthorized parties. The school rebuilt its systems but lost student user areas, impacting coursework crucial for some exam submissions; however, personal data and academic records remained secure on a separate server. Officials engaged exam boards to implement mitigation measures ensuring no student would be disadvantaged, maintaining confidence in awarding accurate grades using preserved assessment data.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On March 24, 2021, Redborne Upper School and Community College in Ampthill, Bedfordshire, experienced a significant cyber-attack that compromised its servers. The attack rendered the school's primary servers unreadable, causing irreversible data loss affecting student user areas. While no data was exfiltrated or accessed by unauthorized parties, the destruction of stored information included coursework files critical for upcoming assessments. The school confirmed the incident in a parent communication dated March 26, 2021, disclosing that IT teams had already rebuilt the compromised servers by that time. Academic records and student personal data remained secure as they were stored on a separate, unaffected server system. Immediate operational impacts included disrupted access to digital resources, though core administrative functions relying on the isolated student data server continued without interruption.

The data loss directly impacted coursework required for examination grading in certain subjects, though the school emphasized it retained sufficient alternative academic records to submit grades to exam boards. Within two days of the attack, administrators initiated contact with examination boards to establish contingency arrangements, assuring parents that no students would face academic disadvantage due to the incident. Mitigation efforts focused on reconstructing lost coursework evidence through remaining assessment data and teacher evaluations. The school reaffirmed its ability to generate accurate summer 2021 grades using preserved academic records, while acknowledging the irreversible loss of specific project-based coursework. No ransom demands or threat actor claims were referenced in the school’s public statements, and authorities did not publicly attribute the attack to a specific group or motive.

Sources

Sources available to members: 1 source.

CSIDB