Two hackers have been arrested in the United Kingdom after allegedly breaching the database of an international preschool chain and stealing sensitive information on approximately 8,000 children. The suspects reportedly posted the stolen photos and personal data of the children on the dark web with ransom demands.
:max_bytes(150000):strip_icc():format(jpeg)/Kido-International-Nursery-100725-01cf178b60904b289dc64dc98814a912.jpg)
The individuals, known only as a 17-year-old and a 22-year-old, were apprehended by authorities and are currently under investigation. The hackers, operating under the alias “Radiant,” are said to have targeted Kido International, a preschool with locations in London, the United States, China, and India. The motive behind the cyber attack was purely financial, as one of the suspects indicated to the BBC, stating, “We do it for money, not for anything other than money.”


The London Metropolitan Police and Kido International Preschool are yet to release official statements regarding the incident. However, reports suggest that the preschool chain reported the breach to the Information Commissioners Office in the UK, which is now evaluating the extent of the data compromise. The affected children’s safety and privacy remain a top priority, with efforts being made to support those impacted by the breach.
According to sources like The New York Times and CNN, the hackers demanded a ransom in bitcoin amounting to approximately £600,000 ($809,700) from parents of the affected children. Despite the threats, Kido International did not comply with the hackers’ demands, resulting in no financial gain for the perpetrators. Ciaran Martin, the former head of the National Cyber Security Centre, reassured the public that the risk of physical harm to the children is minimal.
The software company allegedly implicated in the cyber attack, Famly, has confirmed that there was no breach of its security systems or infrastructure. The CEO of Famly, Anders Laustsen, denounced the hack as a “barbaric new low” and emphasised the company’s commitment to data security and privacy. Meanwhile, the British data protection agency is actively cooperating with relevant stakeholders to address the aftermath of the breach.
In a brazen move, the suspected hackers contacted a news agency following the dissemination of reports about the incident. One of the suspects admitted to engaging in criminal activities solely for monetary gain, revealing that they had enlisted others to make ransom demands. Despite acknowledging their criminal behaviour, the alleged hackers remained unapologetic, hinting at the possibility of future cyber attacks.
As the investigation unfolds, concerns loom over the implications of such breaches on child safety and data security. The incident serves as a stark reminder of the vulnerabilities in online systems that store sensitive information, particularly concerning minors. Authorities are working diligently to apprehend and prosecute those responsible for compromising the privacy and security of thousands of children and their families.
Ultimately, the arrest of these hackers sheds light on the ever-evolving landscape of cybersecurity threats and the critical need for robust protective measures to safeguard personal data. The fallout from this breach underscores the urgency for organisations to fortify their digital defences and implement stringent security protocols to prevent similar incidents in the future.
