CSIDB logo
Incident

DePauw University

Incident posture

Attack window
Oct 2023
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2025-11-27 00:00

Linked entities

Victim
DePauw University
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Oct 2023
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

DePauw University experienced a cybersecurity incident that disrupted its network environment, leading to widespread operational impacts including internet outages, inaccessibility of online learning platforms, campus printers, email services, and local network resources while classes remained in session. The institution engaged forensic experts to restore systems and investigate the incident, acknowledging the complexity of such investigations and committing to protecting sensitive data, though it remained unclear whether personal information was compromised. This event occurred amid a reported rise in ransomware attacks nationally.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On October 31, 2023, DePauw University experienced a cybersecurity incident that disrupted its computer systems starting around 9:00 AM. The incident forced the shutdown of internet access, email services, the Moodle online learning platform, campus printers, and the university’s local network. Despite these outages, in-person classes remained in session, though students and faculty faced significant operational challenges due to the loss of critical digital resources. A parent of a student reported these disruptions to WISH-TV, highlighting the immediate impact on academic and administrative functions. The university confirmed the incident publicly, stating it had engaged forensic experts to investigate and restore affected systems. Initial assessments indicated the event was part of a broader national trend of increasing cyberattacks targeting educational institutions and other organizations.

DePauw University’s response included initiating a comprehensive investigation expected to span several weeks, with no immediate confirmation of whether student or employee data was compromised. The institution emphasized its commitment to safeguarding personal information and system security while apologizing for the inconvenience caused. Restoration efforts focused on rebuilding the network environment with external forensic support, though no specific timeline for full recovery was provided. The incident occurred amid a reported 65% rise in publicly disclosed ransomware attacks nationwide in 2023, contextualizing the event within wider cybersecurity challenges. Enrollment data indicated 1,752 students and 228 faculty were potentially affected by the disruptions, though academic continuity was maintained through alternative means during the outage.

Sources

Sources available to members: 1 source.

CSIDB