2018 Teachable — suspected legacy Fedora/Bitfountain account compromise; password resets
Data compromised
Email and password fields for impacted legacy accounts per user-shared notification text
Technical writeup
In early December 2018, Teachable emailed users describing suspected unauthorized access affecting a slice of accounts created between September 17, 2013, and November 21, 2015, tied in community-archived notifications to Fedora rebranding and Bitfountain-era schools. Disclosures summarized on forums cited potential exposure of email addresses and passwords and mandatory password resets; no standardized public victim count accompanied the customer mailings.
Root cause
Suspected credential or datastore compromise on legacy account population (specific chain not detailed in public archives)