Full Breakdown
Cyber Attack on Kido Nursery Chain: A Disturbing Breach of Child Data
9/27/2025, 2:34:35 AM
Overview of the Incident
A significant cyber attack has targeted Kido International, a nursery chain operating across London and in several locations in the United States, India, and China. Hackers, identifying themselves as "Radiant," have stolen sensitive data, including photos, names, and addresses of over 8,000 children and their families. The criminals have threatened to release this information on the dark web unless a ransom is paid.
Details of the Breach
The breach reportedly occurred through data hosted by Famly, a software service used by Kido to manage communications and information sharing with parents. The hackers initially posted profiles of 10 children online, subsequently threatening to release additional profiles and sensitive employee data. The leaked information includes medical records, incident reports, and personal contact details of both children and staff.
Official Responses and Investigations
Kido has reported the incident to the Information Commissioner's Office and is cooperating with the Metropolitan Police's Cyber Crime Unit, which is currently investigating the breach. Kido's chief executive, Catherine Stoneman, emphasized that the company is treating the incident with the utmost seriousness and has engaged independent IT forensic experts to assess the situation. The nursery chain has communicated with affected families, assuring them that they will be contacted if their data has been compromised.
Criticism and Concerns
The attack has drawn widespread condemnation from cybersecurity experts and parents alike. Ciaran Martin, former head of the National Cyber Security Centre, described the hackers' actions as "absolutely horrible" but urged calm, noting that the risk of physical harm to children remains low. Graeme Stewart from Check Point Software labeled the incident as "the most outrageous" he has witnessed, highlighting the moral depravity of targeting children. Parents have expressed alarm over the potential exposure of their children's sensitive information, with one parent stating that the children are "completely innocent victims."
Perspectives from Parents
Parents have reacted with a mix of concern and frustration. Some have received threatening phone calls from the hackers, demanding that they pressure Kido to pay the ransom. Others, like Sean, a parent at Kido, have expressed sympathy for the nursery staff, suggesting that anger should be directed at the criminals rather than the institution. He acknowledged the inherent risks of using digital platforms for child-related services.
Conflicting Reports and Gaps
While Kido has confirmed the breach, details regarding the exact nature of the data accessed and the number of affected families remain unclear. Some parents reported not receiving direct communication from Kido about the breach, raising questions about the nursery's communication strategy during the crisis.
Verbatim Quotes
- “This malicious attack represents a truly barbaric new low, with bad actors trying to expose our youngest children's data to make a quick buck,” — Anders Laustsen, CEO of Famly
- “Cyber criminals will target anyone if they think there is money to be made, and going after those who look after children is a particularly egregious act.” — Jonathon Ellison, NCSC Director for National Resilience
- “We do it for money, not for anything other than money.” — Anonymous Hacker
Conclusion
The Kido nursery cyber attack underscores the vulnerabilities of digital systems used in childcare and the alarming trend of targeting sensitive data for ransom. As investigations continue, the focus remains on protecting the affected families and preventing future incidents.
