// UNCLASSIFIED // CLEARED FOR PUBLIC RELEASE //
FILE BRC-hibpDTG 0600Z
ColdRecon / Breach Radar / University of Nottingham
Breach Record

University of Nottingham

DISCLOSED 2026-06-09 · STOLEN CREDS · 454,635 RECORDS EXPOSED

In June 2026, the University of Nottingham was the target of a cyber attack, later linked to a ShinyHunters "pay or leak" extortion campaign. Tens of gigabytes of data were subsequently published online and included 455k unique email addresses along with extensive personal information including names, addresses, phone numbers, ethnicities, disabilities, passport numbers and...

The record

What we know

Disclosed
2026-06-09
Attack vector
Stolen Creds
Records exposed
454,635
Domain
nottingham.ac.uk
Data classes exposed
Academic recordsCitizenship statusesDates of birthDisabilitiesEmail addressesEthnicitiesGendersIP addressesNamesPassport numbersPhone numbersPhysical addressesPurchasesSalutationsUsernames
Sources

Cited reporting

Similar vector · recent

Other stolen creds breaches on file

This page is the permanent ColdRecon entry for the University of Nottingham disclosure. It updates if new public reporting emerges. All tracked breaches →

University of Nottingham just lived through this. Your next prospect doesn't have to.

ColdRecon turns every disclosed breach into a daily intelligence brief from the seller's seat — normalized to the factors that move a deal, written in the Handler's voice. Request clearance and the first lands tomorrow at 0600.

Request Clearance →