Mathspace

Sep 2026 · Graded Attested · Technology and Software · Beyond the filings
MathspaceSep 2026
Mathspace's internal reporting system was reached through a known vulnerability in a self-hosted install, left unpatched from August 10 to August 27. The company puts the toll at 1,079,819 people: names, usernames, emails, login and activity metadata, though it says academic records, credentials, and school links stayed clear. A patch that exists and simply wasn't applied is not an attack; it is a maintenance doorway with a sign that tells the bad guys, "come on in, take what you want".
More than 1 million users affected in Mathspace data breach across Australia and New Zealand
Not yet quantified
AAttestedTechnology and Software
About this record
This incident is beyond the filings: attributed to a company statement, a regulator or court record, or a news report, and graded Attested or Inferred. Every figure links to the source it was read from; if we have read one wrong, tell us at info@hackerinahoodie.com. This index never sums figures across incidents. See the methodology.
← The complete Beyond the Filings ledger ← Back to the index