HathiTrust data breach | University of Michigan Library

August 22, 2026 1 Min Read 0

Threat Intelligence Brief

Curated summary with source attribution

Source: lib.umich.edu

Threat Risk: Medium
Victim: HathiTrust
Incident: Unauthorized exfiltration of over 1.3 million digital items from a digital preservation repository.
Impact: Unauthorized public distribution of copyrighted works and compromise of repository integrity.
Attacker: Unidentified threat actors (associated with Anna’s Archive)
Analysis: A significant breach of the HathiTrust digital collection resulted in over 1.3 million items being leaked to Anna’s Archive. The inclusion of tens of thousands of copyrighted works indicates a failure in access controls or infrastructure security. This incident underscores the vulnerability of large-scale digital preservation repositories to targeted data scraping or exfiltration.
Recommendations: Audit and harden access control lists for digital asset repositories; Implement rate limiting and monitoring to detect bulk data exfiltration patterns; Review API security and authentication protocols for member institutions
Source: University of Michigan Library

Editorial note: this post summarizes third-party reporting and links to the original source.
View Original Source

Leave a Reply

Your email address will not be published. Required fields are marked *