Bennett College Data Breach Exposes Info of 30,000 Individuals
The Greensboro-based HBCU notified the North Carolina Attorney General after the Incransom ransomware group claimed responsibility.
Bennett College, a historically black liberal arts college for women in Greensboro, North Carolina, has suffered a significant data breach. The incident compromised the personal information of at least 30,065 individuals.
According to a notification filed with the North Carolina Attorney General's Office, the breach affected a wide range of people, including 10,875 residents of North Carolina. The security failure was linked to the ransomware group known as Incransom, which listed the college's domain, bennett.edu, on its leak site on December 6, 2025.
The Vulnerability of Higher Education
As a private four-year HBCU, Bennett College manages vast amounts of sensitive personal and financial data for students, faculty, and alumni. This makes such institutions prime targets for ransomware operators who encrypt critical systems or leak private data to extort payments. The use of leak sites by groups like Incransom is a common tactic designed to pressure victims into paying by publicly announcing the theft of their data.
Industry Implications
This breach underscores a growing trend of cyberattacks targeting educational institutions, which often struggle with legacy infrastructure and limited cybersecurity budgets. When personal data for over 30,000 individuals is exposed, the risk of identity theft and phishing attacks increases substantially for the affected parties.
Furthermore, the incident highlights the critical role of state-level reporting requirements. By filing with the Attorney General's Office, the college provides a necessary layer of transparency that allows affected individuals to take protective measures, such as freezing credit or monitoring accounts.
Next Steps
While the college has officially reported the breach to state authorities, the full extent of the stolen data remains a primary concern. It is not yet confirmed exactly what types of personal identifiers—such as Social Security numbers or financial records—were accessed by Incransom.
Observers will be watching for further disclosures from the college regarding the specific remediation steps taken to secure their network and whether any recovery efforts were successful in preventing the full release of the compromised data. The incident serves as a stark reminder for small liberal arts colleges to prioritize cybersecurity investments to protect their community's privacy.