Info Gov

The Northern Ireland Education Authority (EA) has been hit by a cyber attack on its systems, leading the authority to advise schools and their pupils in Northern Ireland to renew their connections to the authority's system and for schools, individual pupils and staff to reset their passwords.

All online and IT systems in Northern Irish schools are provided through the C2K network, managed by the EA. On 5th April, users - including pupils - found that they were unable to log in to their systems as the result of a security breach.

The authority said today (9th April 2026) that the incident had been "contained" and that its systems managers are now in the "remediation phase".

The authority said that there is no evidence to date of data exfiltration or corruption but that a full investigation is being undertaken and that the situation will continue to be monitored. It also said that it is engaging with the Information Commissioner's Office and relevant authorities.

Also in this section

Aug 12, 2026

ACRO Criminal Records Office reprimanded by ICO following cyber security failings

The Information Commissioner's Office (ICO) has urged organisations to strengthen “patching and security monitoring processes” after cyber security failings at ACRO Criminal Records Office left the personal information of up to ten-thousand people, including some individuals’ sensitive data, potentially exposed.
Aug 05, 2026

Third AI platform goes rogue during cyber testing

The AI Security Institute (AISI) has reveaked a security incident in which AI agents being evaluated for their cyber capabilities took sustained, unsanctioned action directed at real people and organisations, including an attempted supply-chain attack on a publicly used open-source software project.
Jul 30, 2026

New NCSC guidance sets out three-stage framework for cyber attack recovery

The National Cyber Security Centre (NCSC) has published new guidance setting out a three-stage framework to help organisations respond to and recover from highly disruptive cyber attacks, warning that recovery from the most serious incidents can take weeks or months and that victims must plan for consequences extending well beyond their technology estate.

InfoGov Masthead Newsletter 800