LMU Munich student-registration data incident

LMU Munich disclosed unauthorized access to student registration data.

Last modified

Summary

  • Environment: Student admissions system
  • Operational impact: Registration interrupted; other systems isolated for checks
  • Financial impact: No incident cost established in the reviewed evidence
  • Record status: Developing record. Reviewed October 7, 2026; updated as evidence emerges.

What happened

LMU Munich disclosed unauthorized access to student registration data. [2]

Impact

Its September 28 update estimated 600,000 affected records spanning approximately 50 years. [1]

Depending on the record, information included identity, contact, bank and study-related details. [1]

The initial notice reported a short registration interruption. [2]

Timeline

  1. Public disclosure

    LMU issued its initial notice.

    [2]
  2. Scope update

    LMU published expanded findings.

    [1]
  3. Briefing updated

    This briefing was last reviewed and updated on October 7, 2026.

Threat Group & Attack Vector

The reviewed disclosure does not establish the initial access method.

Actors

  • No threat actor group has been identified in the reviewed public evidence.

TTPs

  • No specific MITRE ATT&CK technique is currently mapped for this case.

Response

LMU isolated the affected system and engaged authorities and external specialists. [2]

It announced restricted course-catalogue access would resume September 30 after security checks. [1]