Skip to content

Brazosport College cybersecurity incident

Summary

Brazosport College logo

Brazosport College identified a cybersecurity incident affecting its network on August 10, 2026, and took academic, communications and student-record systems offline for phased restoration. D2L returned August 17, and most campus internet and Wi-Fi services were restored by August 20, but guest Wi-Fi remained unavailable. On August 26, the college required students whose passwords predated the incident to reset them, while Qilin’s claim of internal data remained unverified.

Key facts

Timeline

  • First public signal:
    ? Earliest public indication of an outage, disruption, closure or other observable incident impact. The signal does not need to mention cybersecurity.
  • First public cyber evidence:
    ? Earliest credible public information connecting the incident or disruption to malicious cyber activity.
  • Official cyber disclosure:
    ? First official acknowledgment by the affected organization or an authoritative public body that the incident was cyber-related.
  • Last impact seen:
    ? Latest public indication that disruption, degraded operations, recovery work or unresolved impact was still ongoing.

Primary victim organization

Impacted location

Organization types

Critical infrastructure sector

Incident characteristics

Assessments

DD-CIT assessment

The organization publicly identifies the event as cyber-related. The organization publicly documents the resulting service disruption.

Attack mechanisms

  • Unknown cyber mechanism

    The incident is confirmed to be cyber-related, but the specific attack mechanism is unknown.

Data impacts

  • Unknown data impact

    The incident is cyber-related, but available evidence does not establish whether or how data was affected.

Operational impacts

  • Email disruption

    Email sending, receiving, access, or related messaging functions were unavailable or materially impaired.

  • Website unavailable

    A public-facing website was unavailable, disabled, or inaccessible.

  • Online portal unavailable

    A public, customer, employee, student, patient, vendor, or partner portal was unavailable or materially impaired.

  • Internal systems unavailable

    Internal business, administrative, operational, or staff-facing systems were unavailable.

  • Payment processing disruption

    The organization could not process, receive, issue, reconcile, or record payments normally.

  • Records access disruption

    Staff, customers, patients, students, residents, or other users could not access records or case information normally.

  • Records processing disruption

    The organization could not create, update, search, file, approve, transmit, or otherwise process records normally.

  • Educational operations disrupted

    Instruction, student services, school administration, learning platforms, transportation, or other educational operations were materially affected.

  • Service delay

    Services continued but with longer processing, response, delivery, or completion times.

  • Manual workaround required

    Staff or users had to rely on paper, telephone, in-person, offline, or other manual processes.

  • Alternate service channel required

    The organization redirected users to a different website, office, telephone number, email address, provider, or service channel.

  • Staff unable to work normally

    Employees or contractors were unable to perform normal duties because systems, data, facilities, or communications were unavailable.

Extortion indicators

  • Leak-site listing

    The victim was listed on a threat actor or ransomware data-leak site as an alleged target or nonpaying victim.

Incident narrative

Analyst assessment

DysruptionHub assesses with high confidence that Brazosport College experienced a confirmed cyber incident that materially disrupted academic and administrative systems beginning Aug. 10, 2026. In an official Aug. 10 disclosure, the college said its information technology team identified a cybersecurity incident affecting the network after becoming aware of an outage at about 6:30 a.m. It secured systems, engaged outside specialists and kept affected services offline for investigation and phased restoration.

The available evidence does not establish the initial access vector, exploited vulnerability, compromised account, malware family or other technical mechanism. Qilin later listed Brazosport College on its leak site and claimed internal data, but the allegation remains unverified and does not prove ransomware deployment, encryption, data theft or actor responsibility.

Operational significance

The incident affected D2L/Virtual Campus, college email, myBC NEXT and enrollment-related services. Work requiring student records could not be completed normally, and the college directed students to telephone and limited in-person alternatives. It extended summer final-exam and grade deadlines, moved the payment deadline and delayed Fall and Fall I classes until Aug. 31, shortening both terms by one week.

Recovery proceeded in stages. D2L returned Aug. 17. In an Aug. 20 update, the college said campus internet and most Wi-Fi services were restored, but BCGuest remained unavailable and teams were continuing to restore and stabilize services.

In an Aug. 26 alert, the college required students whose BC passwords had been set on or before Aug. 10 to reset them. The precaution documents a continuing incident-related access requirement but does not establish credential theft or unauthorized account use.

Disclosure posture

The college initially described a network outage on Aug. 10 and publicly attributed it to a cyber incident later that day. This affected-organization-first sequence supports OC-OD classification.

An Aug. 14 statement said there was no indication, based on information then available, that student, faculty or staff information was accessed or acquired. That statement was preliminary, and the college said it would notify affected people if the investigation found personal information was involved.

Extortion claim

GalaxyWarden reported that Qilin listed Brazosport College on Aug. 25 and claimed internal data. The report characterized the allegation as unverified and said the listing did not supply proof, a sample, a record count or data categories. DysruptionHub records the stable claim with low ransomware and actor confidence while preserving the college’s earlier preliminary no-indication statement.

Current status

The incident is presumed resolved under the registry’s time-based operational-status policy as of Sept. 26. Aug. 26 remains the latest supported incident-related operational observation. Thirty-one days have elapsed without a newer cyber-specific impact notice or final IT restoration statement. The college’s Sept. 1 weather notice said classes, services and campus operations would continue as scheduled, but did not establish that every affected system was restored. Presumed resolved is not an official all-clear.

Confidence and uncertainty

Confidence is high that a cyber-related disruption occurred and materially affected college operations because the college issued repeated dated statements. Ransomware and Qilin attribution are assessed at low confidence because a stable claim exists without corroborating technical evidence or affected-organization confirmation. Data impact remains unresolved.

Analytic gaps

The public record does not establish when malicious activity began, the initial access vector, compromised accounts or hosts, vulnerability exploitation, malware family, dwell time, persistence, lateral movement, encryption, exfiltration, ransom demand, payment, affected data categories, restoration method or full recovery date.

Threat actor and claim

Listed as: Brazosport CollegeSource: otherPublished: Discovered:

Claim details

Qilin listed Brazosport College and claimed internal data on August 25, 2026. An accessible tracker characterized the allegation as unverified and said the listing supplied no proof, sample, record count or data categories. The claim does not independently prove ransomware deployment, encryption, data theft or Qilin responsibility.

Organizations involved

Impacted location

Sources

Brazosport College cybersecurity incident delays two fall terms in Texas

Our reporting documented that phased recovery continued Aug. 14 without a full-restoration announcement. Core academic and administrative systems remained offline, two fall terms were delayed one week and no public responsibility claim had been found.

Brazosport College cyber incident update for Aug. 10

President Vincent Solis said a network outage was caused by a cyber incident affecting college systems. The college became aware at about 6:30 a.m., secured systems, engaged cybersecurity professionals and kept myBC NEXT, D2L/Virtual Campus and student-record services offline while extending academic and payment deadlines.

Brazosport College network outage alert

Brazosport College said a network outage was temporarily affecting all campus services. Services requiring student-record access, including registration, were unavailable, while Enrollment Services remained open for limited in-person assistance.

Brazosport College network outage update for Aug. 11

The college said D2L/Virtual Campus and student-record services remained unavailable or limited. It described in-person and telephone alternatives, extended academic deadlines, dual-credit support, limited food-pantry services and continuing in-person tutoring.

Brazosport College network outage update for Aug. 12

The college said restoration continued without significant change. D2L/Virtual Campus and services requiring college systems or student records remained limited, some requests could not be completed, and the outage continued affecting coursework, assignments and final exams.

Brazosport College network outage afternoon update for Aug. 13

The college extended final-exam and final-grade deadlines, delayed and shortened Fall and Fall I by one week, extended the payment deadline and announced in-person registration assistance while myBC NEXT, D2L/Virtual Campus and email remained unavailable.

Brazosport College network outage morning update for Aug. 13

Brazosport College said systems remained unavailable while it finalized academic and payment adjustments. In an official reply, the college said it could not process or mail transcripts until system access was restored and would then process pending requests.

Cause unknown in Brazosport College cyber incident

Brazosport College identified a cybersecurity incident on Aug. 10 and engaged third-party forensic specialists. Key systems remained offline four days later, including D2L/Virtual Campus, email, myBC NEXT and services requiring college systems or student records; the college extended summer deadlines, limited registration and advising, delayed payment deadlines and moved the fall semester start to Aug. 31.

Archive platform: Archive.todayHistorical archive · not yet verifiedView archived copy
A message to the community from Brazosport College President Vincent Solis

Solis said a significant cybersecurity incident disrupted many technology systems and normal operations. Systems were being restored in phases, the forensic investigation remained ongoing, and the college had no indication at that time that student, faculty or staff information was accessed or acquired.

Brazosport College network outage update for Aug. 17

Brazosport College said D2L/Virtual Campus was available again August 17. Instructors needed time to review courses and communicate remaining requirements, while the college continued offering in-person registration, advising and financial-aid assistance.

Network Outage Update — Thursday, August 20, 2026

Brazosport College said campus internet and most Wi-Fi services had been restored by August 20, but BCGuest remained unavailable. It said teams continued working to restore and stabilize services and warned of higher support wait times.

Brazosport College allegedly breached by Qilin ransomware

GalaxyWarden reported that Qilin listed Brazosport College on August 25 and claimed internal data. It described the allegation as unverified and said the listing supplied no proof, sample, record count or data categories.

Student password reset required

Brazosport College said Aug. 26 that students whose BC passwords were set on or before Aug. 10 had to reset them. Students who set or reset passwords after Aug. 10 did not need to act. The notice documents a continuing incident-related access requirement but does not establish credential theft.

REMINDER: Student Password Reset Required

Students with passwords set on or before Aug.10 must reset them; later resets require no further action. College describes precautionary access requirement, not evidence of credential theft.

About Brazosport College

Brazosport College states that it is located in Lake Jackson, Texas, has served students in southern Brazoria County since 1968, and offers associate and baccalaureate degree programs as well as certificates and transferable courses.

Geographic profiles for selected U.S. locations

Official geographic reference used with local and state material to verify place names, jurisdiction types and location context for brazoria, lake jackson.

See something that needs correction?

Signed-in members can report an error, update, or missing source.