Intruders retrieved email addresses from superseded tech kept running for an internal system UK education software provider Bromcom has notified customers of a personal data breach affecting its single sign on SSO technology. In a September 24 EduGeek post , an account named Bromcom_Alastair said an unauthorized third party had accessed and retrieved email addresses and limited information associated with affected SSO registrations. The incident involved legacy SSO registration functionality...

Read the full article at The Register