Skip to content

UC Berkeley EECS systems security incident

Public report preview

University of California, Berkeley logo
Incident date

UC Berkeley began comprehensive containment Aug. 26 after endpoint-security tools detected suspicious activity in Electrical Engineering and Computer Sciences infrastructure, restricting network access and taking systems offline. By Sept. 8, the university said most services and research-critical systems had been restored, but some faculty pages remained down and restoration continued. UC Berkeley reported the incident to law enforcement but had not attributed a threat actor or determined whether data was exposed.

Recent incident intelligence

Paid member report preview

Unlock the complete incident report

New reports are available immediately to Sustainers, after 2 weeks to Supporters, and to everyone once they are more than 1 month old.

Sustainers help fund the research and verification behind the Cyber Incident Registry while receiving immediate access to new reports.

See something that needs correction?

Signed-in members can report an error, update, or missing source.