# The Dean's List: Seven Technology Priorities for U.S. Higher Education, 2026–2028

- **AI system/product:** Muse (Meta's personal AI agent)
- **Model name/version:** Muse Spark 1.3
- **Date:** September 23, 2026
- **Web research used:** Yes — conducted September 2026 across higher-education, government, and industry sources (see Sources). Rankings and judgments are the author's own; facts are sourced as cited.

---

## THE DEAN'S LIST

#1 — AI and the credibility of the degree
Why it matters: Nearly 9 in 10 students use AI in their learning while detection tools have been discredited, leaving institutions to redesign assessment at scale or watch the meaning of their credentials erode.

#2 — Cybersecurity and institutional resilience
Why it matters: Ransomware attacks on higher education are rising, ransom demands are up over 50%, and federal agencies name colleges as primary targets — at the same time budget pressure is weakening defenses.

#3 — Enterprise AI strategy, cost, and data control
Why it matters: Vendors are racing to own the campus AI layer with billion-dollar offers and multi-million-dollar contracts, forcing leaders to decide what AI the institution buys, builds, governs — and what student and research data it surrenders.

#4 — Identity fraud and program integrity
Why it matters: Bot-driven "ghost student" schemes are siphoning federal aid at scale, triggering strict new federal identity-verification mandates that reshape admissions, online learning, and aid administration.

#5 — Digital accessibility compliance
Why it matters: Federal rules now require public colleges' websites, apps, and course content to meet WCAG 2.1 AA by 2027–2028, and institutions remain legally liable for inaccessible third-party and vendor-provided content.

#6 — The financial sustainability of campus technology
Why it matters: ERP projects are running hundreds of millions over budget, IT staff are stretched thin, and the enrollment cliff is accelerating — technology spending is now a survival-level financial decision, especially for tuition-dependent colleges.

#7 — Research security and research computing under pressure
Why it matters: Defense cybersecurity certification is now phasing into contracts, research-security programs are becoming mandatory, and federal grant volatility is squeezing the computing infrastructure that research universities depend on.

---

## DEEPER ANALYSIS

### #1 — AI and the credibility of the degree

**The issue and why it ranks first.** This is the top priority because it strikes at the institution's core product: the meaning of a grade and a degree. AI use among students is near-universal — 88% use AI in learning and 77% of faculty use it in teaching, per the Digital Education Council's 2026 global survey of 45,398 respondents — yet the enforcement apparatus for academic integrity has effectively collapsed. A growing list of universities including Yale, Vanderbilt, Johns Hopkins, Indiana, Northwestern, Georgetown, and NYU have banned or disabled AI-detection tools, driven by false positives, bias against non-native English writers, and student lawsuits; 73% of faculty report having dealt with AI-related integrity issues ([Inside Higher Ed, August 5, 2026](https://www.insidehighered.com/news/tech-innovation/artificial-intelligence/2026/08/05/ai-detectors-are-out-new-approaches-are)). Washington State University's provost quantified the detector problem in a February 2026 memo: across 148,547 assessed submissions, even a 1% false-positive rate implies roughly 1,485 wrongly flagged assessments, and a third of AI-related misconduct cases ended in "not responsible" findings ([WSU Office of the Provost, February 11, 2026](https://provost.wsu.edu/documents/2026/02/cancellation-of-turnitin-ai-detection-software_memo-to-instructors_provost-office_spring-2026.pdf)). EDUCAUSE's 2026 Horizon Report frames the moment as a crisis of trust, urging assessment models that value "depth of understanding and thinking processes over polished output" ([eCampus News summary, May 29, 2026](https://www.ecampusnews.com/campus-leadership/2026/05/29/educause-horizon-report-higher-education-leaders/)). My judgment: no other technology issue so directly threatens what institutions sell.

**What may change in the next 12–24 months.** Detectors will exit misconduct processes entirely; accreditors will begin asking how institutions assure assessment validity; employers will discount credentials from institutions perceived as lax; and agentic AI capable of completing multi-step assignments will force redesign beyond the essay toward supervised, staged, and authentic work. The 57% of students who say assessments carry inadequate AI guidance signal that institutional silence is itself becoming a liability ([ETIH summary of the Digital Education Council survey, ~July 2026](https://www.edtechinnovationhub.com/news/q6zw9wco2mttajdbd1jyeonjnpiovu)).

**Implications by institution type.** Large public universities face the brutal economics of scale — oral defenses and staged assessment for thousands of students. Community colleges with open-access online programs operate in the hardest integrity environment of all. Selective privates face brand risk if their degrees are perceived as AI-assisted. All face real faculty workload increases; UCF's teaching center notes redesign is viable mainly with smaller classes or in-person deliverables.

**Questions leaders should ask now.** What share of our current assessments could a competent AI complete unsupervised? What is our stated institutional position on AI detectors in misconduct cases? Who owns assessment redesign — and is it funded, or an unfunded mandate on faculty?

### #2 — Cybersecurity and institutional resilience

**The issue and why it ranks second.** This is the highest-probability existential operational risk. Comparitech's H1 2026 roundup found ransomware attacks on higher education rose 8% versus H2 2025, driven by the "The Gentlemen" operation (up 275%), with the U.S. the most-targeted country and the median education-sector ransom demand reaching $420,620 — up 53% ([Infosecurity Magazine, ~September 2026](https://www.infosecurity-magazine.com/news/university-ransomware-attacks-rise/); [GovTech, ~August 2026](https://www.govtech.com/education/k-12/ransomware-attacks-on-k-12-trend-down-higher-ed-trend-up-in-2026)). Sophos data shows 66% of higher-education organizations were hit in the most recent year, with data-encryption rates rising and fewer than a third fully recovering within a week ([TechRadar Pro, 2026](https://techradar.com/pro/security/schools-and-universities-are-paying-higher-ransomware-demands)). Federal advisories explicitly name education as a primary target: the joint CISA/FBI/HHS/MS-ISAC advisory on Interlock ransomware ([AA25-203A, July 22, 2025](https://www.cisa.gov/news-events/alerts/2025/07/22/joint-advisory-issued-protecting-against-interlock-ransomware)) and the CISA/NSA/FBI warning on Russian state-supported LAUNDRY BEAR activity against Zimbra, with education listed among targeted sectors ([CISA, 2026](https://www.cisa.gov/news-events/news/cisa-nsa-fbi-and-partners-warn-zimbra-collaboration-suite-users-ongoing-russian-state-supported)). Meanwhile a spring 2026 attack on Instructure's Canvas exposed data on millions of users, and 31% of institutions say financial pressure is lowering their cybersecurity preparedness ([Boldyn Networks, October 2025](https://storage.pardot.com/990902/1763760542cggBk1QR/10.20.2025_Final_BoldynNetworksReport.pdf)). My judgment: rising threat times weakening defense equals the sector's most acute operational risk.

**What may change in the next 12–24 months.** AI-supercharged phishing and social engineering (including "ClickFix"-style lures) will raise attack success rates; double extortion will become standard; cyber-insurance requirements will tighten; and shared security operations through MS-ISAC and REN-ISAC will become the only viable model for under-resourced campuses. EDUCAUSE's 2026 Top 10 puts "collaborative cybersecurity" first — an acknowledgement that going it alone no longer works ([Taylor & Francis, 2025](https://www.tandfonline.com/doi/abs/10.1080/07317131.2025.2599621)).

**Implications by institution type.** Small tuition-dependent colleges are soft targets with no security operations center. Research universities face state actors and controlled-data obligations. University systems have a genuine opportunity to pool defenses and monitoring.

**Questions leaders should ask now.** When did we last successfully restore critical systems from backup — not just back them up? Do we run tabletop exercises that include the president and the board? What is our patching cadence for internet-facing systems, where most attacks begin?

### #3 — Enterprise AI strategy, cost, and data control

**The issue and why it ranks third.** The vendor land-grab for the campus AI layer is happening now, and contracts signed today will set costs and data terms for years. The California State University system's ChatGPT Edu deal — $17 million for the first year, renewed at $13 million per year — drew fierce faculty criticism as campuses simultaneously cut courses and laid off faculty, with unclear learning impact and inconsistent usage rules ([GovTech, ~August 2026](https://www.govtech.com/education/higher-ed/students-faculty-mixed-on-ai-as-csu-system-continues-to-invest)). Contrast Colorado State's approach: a private-tenant "RamGPT" built with Microsoft so submitted data is not used to train broader models — a "secure, private fence" ([TechXplore, January 22, 2026](https://techxplore.com/news/2026-01-colorado-state-university-ai-partnering.pdf)). Vendors are competing with free tiers and mega-pledges: Anthropic's Claude for Education (April 2025; Northeastern signed for 50,000 users) ([TechTarget, April 3, 2025](https://www.techtarget.com/ai/news/366621957/Anthropic-brings-AI-to-students-with-Claude-for-Education)), Google's $1 billion three-year commitment with 100+ universities signed on ([Reuters, August 6, 2025](https://www.reuters.com/world/us/google-commits-1-billion-ai-training-us-universities-2025-08-06/?ref=dispatch.techoversight.org)), and Microsoft's $4 billion education pledge (July 2025). EDUCAUSE's 2026 Top 10 reflects the strategic turn: "the human edge of AI," "knowledge management for safer AI," and "AI-enabled efficiencies" all rank ([Taylor & Francis, 2026](https://www.tandfonline.com/doi/abs/10.1080/07317131.2025.2599621)). My judgment: institutions drifting into AI via scattered individual licenses will wake up with ungoverned data flows and uncapped costs. This belongs at #3 because the decisions are being made now and are hard to reverse.

**What may change in the next 12–24 months.** Introductory pricing will reset upward at renewal; data-use terms will face FERPA and state-law scrutiny; private-tenant architectures will become best practice; and AI governance committees plus procurement review will become standard — the institutions that build them early will negotiate from strength.

**Implications by institution type.** University systems have negotiating leverage and should use it. Small colleges risk "free" tools whose real price is data. Research universities must keep sensitive research data out of training corpora — a single lab's prompts can leak years of work.

**Questions leaders should ask now.** What institutional data leaves campus when someone pastes into an AI tool? Who must approve AI procurement, and against what criteria? What is our projected three-year total cost of AI — licenses, integration, training, and governance?

### #4 — Identity fraud and program integrity

**The issue and why it ranks fourth.** Industrial-scale financial-aid fraud is forcing structural change in admissions, enrollment, and aid administration. The Department of Education says it has blocked more than $1 billion in fraudulent aid since January 2025, after enhanced controls rolled out in June 2025 targeting AI- and bot-driven "ghost student" schemes; first-time aid applicants must now verify identity in person or via live video ([The College Investor, ~March 2026](https://thecollegeinvestor.com/77350/what-are-ghost-students-financial-aid-fraud-explained/); [Shufti Pro, ~August 2026](https://shuftipro.com/news/education-department-id-checks-block-1b-dollar-student-aid-fraud/)). The scale is staggering: 31.4% of all applications to California's 116 community colleges were fraudulent in 2024; more than 1,800 ghost students collected $12.5 million in Minnesota; the University of Montana's Missoula College lost $673,745 in federal funds in 2025 ([ScamDrill, ~June 2026](https://scamdrill.com/blog/ghost-student-fafsa-identity-fraud); [Daily Montanan via NewsMe, September 17, 2026](https://newsmeapp.com/ghost-students-steal-673k-from-missoula-college-in-nationwide-financial-aid-fraud-scheme/)). Enforcement is escalating: the House Education and Workforce Committee cites nearly $90 million disbursed to fraudsters in 2025, Rep. Thompson introduced the Student Aid Fraud Oversight and Accountability Act in March 2026, and criminal prosecutions are underway ([Gannett News, March 17, 2026](https://gantnews.com/2026/03/17/thompson-introduces-student-aid-fraud-oversight-and-accountability-act/)). The January 2025 program-integrity final rule (effective July 1, 2026) adds distance-education enrollment reporting to federal systems ([Federal Student Aid Knowledge Center, January 3, 2025](https://fsapartners.ed.gov/knowledge-center/library/federal-registers/2025-01-03/final-regulation-program-integrity-and-institutional-quality-distance-education-and-return-title-iv-hea-funds)), and vendors are responding — Instructure partnered with Veriff in September 2026 to embed identity verification in transcript services ([PRNewswire, September 2026](https://www.prnewswire.com/news-releases/instructure-partners-with-veriff-to-give-institutions-a-new-defense-against-rising-credential-fraud-302873609.html)). My judgment: this rewrites front-door processes for the most access-oriented institutions — a mission-level issue, not merely a compliance one.

**What may change in the next 12–24 months.** Identity verification at enrollment, assessment, and credential issuance will become standard infrastructure; federal legislation may codify verification duties; and fraudsters will respond with better synthetic identities and deepfakes, escalating an arms race institutions cannot win with manual review.

**Implications by institution type.** Community colleges and online-heavy institutions bear the brunt — and the cost. Added verification friction risks deterring legitimate low-income and first-generation students, creating a genuine equity tension leaders must manage explicitly.

**Questions leaders should ask now.** Where is our exposure — low-touch online programs, noncredit-to-credit pathways, high-aid populations? Are admissions, the registrar, financial aid, and IT operating from one fraud playbook? Can we verify identity at the point of assessment, not just at admission?

### #5 — Digital accessibility compliance

**The issue and why it ranks fifth.** A hard federal deadline now looms over a vast remediation backlog. The DOJ's April 2024 Title II rule made WCAG 2.1 Level AA the enforceable standard for public colleges' websites, mobile apps, LMS course content, portals, forms, and PDFs. Then, on April 20, 2026 — four days before the original deadline — DOJ issued an interim final rule extending compliance to April 26, 2027 for larger entities and April 26, 2028 for smaller ones, explicitly citing that generative AI does not yet reliably automate remediation at scale ([Campus Technology, April 27, 2026](https://campustechnology.com/articles/2026/04/27/doj-extends-deadline-for-ada-title-ii-compliance.aspx); [Duane Morris alert, ~April/May 2026](https://www.duanemorris.com/alerts/doj_extends_ada_title_ii_digital_accessibility_deadlines_one_year_0426.html)). Critically, institutions remain liable for content "provided or made available" through vendors — third-party accessibility failures are the institution's legal problem — and existing ADA obligations apply regardless of the extension. My judgment: the extension is a reprieve, not relief. The work — captioning, PDF remediation, procurement reform — is unchanged, and the clock is now visible to plaintiffs and regulators alike.

**What may change in the next 12–24 months.** Remediation sprints will run through 2027; accessibility warranties and remediation timelines will become standard edtech contract language; private institutions will face continued Title III litigation even outside Title II's reach; and DOJ is expected to confirm the extension in a final rule — which leaders should monitor rather than assume.

**Implications by institution type.** Large publics face the biggest content inventories (decades of course shells, PDFs, videos). Community colleges have the thinnest staffing to do the work. Privates aren't covered by Title II but remain exposed to lawsuits.

**Questions leaders should ask now.** Do we have a complete inventory of public-facing digital content and its conformance status? Do our vendor contracts assign accessibility responsibility with remediation timelines? What is the funded plan — with a named owner — to hit the deadline?

### #6 — The financial sustainability of campus technology

**The issue and why it ranks sixth.** Technology spending is colliding with a deteriorating financial outlook, and the sector's ERP history counsels humility. Washington University in St. Louis disclosed a Workday implementation totaling over $265 million across seven-plus years, amid protests and four consecutive years of budget prorations ([Student Life, December 10, 2025](https://www.studlife.com/news/2025/12/10/breaking-down-workdays-265-million-cost)). Minnesota State's integration budget grew from $151.1 million to $290.4 million, with auditors finding payroll problems increased after go-live and the student module pushed to fall 2029 ([The Register, April 8, 2026](https://www.theregister.com/off-prem/2026/04/08/minnesota-payroll-problems-grew-after-workday-say-auditors/5221270)). Miami University pushed its Workday Student rollout to 2027–28 after spending $14 million ([The Miami Student, October 2025](https://www.miamistudent.net/article/2025/10/workday-student-rollout-pushed-back-to-2027?ct=content_open&cv=cbox_featured)). Meanwhile 37% of institutions report high financial pressure (up 7 points), 41% report IT staffing shortages, 38% cut IT project budgets, and 54% now outsource some IT functions ([Boldyn Networks, October 2025](https://storage.pardot.com/990902/1763760542cggBk1QR/10.20.2025_Final_BoldynNetworksReport.pdf)). WICHE projects an ~11% decline in high-school graduates between the classes of 2025 and 2037; Othot's analysis of 454 colleges found 80% will likely see enrollment declines between 2021 and 2028 ([Othot report](https://www.othot.com/hubfs/Content/Reports/Demographic%20Cliff%20Report/othot-report-futureprooting-institutions-against-demographic-cliff.pdf)). Inside Higher Ed tracked 16 nonprofit closures in 2025, Penn State is closing 7 campuses, and Huron warns up to 442 private nonprofits could face financial exigency in the next decade ([Inside Higher Ed, December 18, 2025](https://www.insidehighered.com/news/business/mergers-collaboration/2025/12/18/colleges-couldnt-survive-2025); [The College Fix, 2026](https://www.thecollegefix.com/442-colleges-could-close-in-next-decade-over-financial-exigency-report/)). My judgment: for tuition-dependent institutions, every major technology commitment is now a bet-the-institution decision.

**What may change in the next 12–24 months.** Shared-services and system-level consolidation will accelerate as a survival strategy; AI will be sold as labor savings — though 56% of IT teams say AI is currently growing their workloads; and distressed mergers will force brutal system integrations (the Saint Joseph's–USciences merger required unifying 90 mostly-duplicative applications) ([EdTech Magazine, 2023](https://edtechmagazine.com/higher/article/2023/11/integrating-it-operations-when-colleges-merge)).

**Implications by institution type.** Small privates face existential stakes. Regionals must do more with less. Systems hold the consolidation lever — and the political pain that comes with it.

**Questions leaders should ask now.** What is the fully loaded five-year cost of our ERP, and what enrollment assumptions underpinned its approval? Which systems could we sunset, share, or consolidate? Does our technology roadmap assume growth that demographics will not deliver?

### #7 — Research security and research computing under pressure

**The issue and why it ranks seventh.** The compliance perimeter around federally funded research is hardening just as funding wobbles. The DoD's Cybersecurity Maturity Model Certification is now live: DFARS integration took effect November 10, 2025, phasing certification requirements into contract solicitations and awards over three phases ([EDUCAUSE Review, November 2025](https://er.educause.edu/articles/2025/11/dfars-changes-to-integrate-cmmc-requirements-effective-november-10)). Level 2 demands all 110 controls of NIST SP 800-171 plus extensive documentation — system security plans often exceeding 100 pages — a heavy lift for decentralized, open research environments ([CampusGuard, 2026](https://campusguard.com/post/cmmc-for-higher-education/)). The Council on Governmental Relations warns that "fundamental research" does not shield work the DoD deems controlled unclassified information ([COGR, October 2025](https://www.cogr.edu/sites/default/files/2025-11/COGR_CMMC_Overview_Update%2010-6-25_0.pdf)). Separately, NSPM-33 requires institutions receiving over $50 million annually in federal R&D to certify research-security programs covering cybersecurity, foreign-travel security, training, and export controls, with agencies still coordinating implementation as of late 2025 ([NSF SECURE Center](https://www.secure-center.org/_files/ugd/855211_ff77a3c370fd4c6a904be04c47a8aa43.pdf)). Meanwhile NIH and NSF funded roughly 6,500 fewer projects in 2025 than the annual norm ([Chemical & Engineering News, December 2025](https://cen.acs.org/policy/nih-nsf-ostp-science-research-funding-cuts/103/web/2025/12)), the attempted 15% cap on indirect costs was blocked by courts and Congress — for now ([American Council on Education](https://www.AceNet.edu/Policy-Advocacy/Pages/Law-Courts/Association-Lawsuit-NIH-FA.aspx)) — and the July 2025 AI Action Plan ties AI competitiveness to tightened export controls and secure academic compute ([Thompson Hine, July 2025](https://admin.thompsonhine.com/wp-content/uploads/2025/07/AI-Update-White-House-Releases-Sweeping-AI-Action-Plan.pdf)). My judgment: ranked seventh only because it concentrates on research-intensive institutions — for them, it is top-three.

**What may change in the next 12–24 months.** CMMC phases 2 and 3 will expand the contracts requiring certification; NSPM-33 certification deadlines will bite; the indirect-cost fight will continue (the sector's proposed FAIR cost model signals a long contest); and AI-driven research demand will strain computing budgets even as grant funding wobbles.

**Implications by institution type.** R1 universities need enclaved environments for controlled work and full-time compliance capacity. Emerging research institutions must weigh compliance costs against research ambitions. Non-research institutions are largely unaffected — which is itself useful clarity for their planning.

**Questions leaders should ask now.** Which labs, systems, and collaborations hold controlled unclassified information? Is our CMMC scope defined and our system security plan underway? Can we segregate DoD-sponsored work into compliant enclaves rather than certifying the whole institution?

---

## Cross-Cutting Observations

1. **AI is the thread through all seven priorities** — reshaping teaching, powering both fraud and phishing, offered (unreliably) as the fix for accessibility remediation, and driving vendor strategy. Leaders need one institution-wide AI conversation with shared governance, not seven disconnected ones.
2. **Enforcement has replaced guidance.** The Department of Education lost roughly half its staff and its Office of Educational Technology was eliminated entirely ([Brookings, ~February 2026](https://www.brookings.edu/articles/faqs-checking-in-on-the-department-of-education/)). The era of helpful federal playbooks is over; what remains are hard mandates — identity verification, CMMC, Title II, distance-education reporting — that institutions must implement with thinner support.
3. **The bill is coming due all at once.** AI licenses, ERP overruns, accessibility remediation, fraud defenses, and research-security programs all demand new spending just as enrollment softens and federal funding wobbles. Technology budgeting is now institutional strategy, and the CFO must be in the room for every one of these seven decisions.
4. **Data governance is the prerequisite beneath everything.** Safe AI deployment, learning analytics, accessibility inventories, fraud detection, and research compliance all depend on knowing what data you hold, where it lives, and who controls it — which is why EDUCAUSE's 2026 Top 10 puts building a data-centric culture and knowledge management at the center.

## What Might Be Underestimated

1. **Autonomous AI agents in student-facing workflows.** Advising and enrollment agents are moving from pilots to production — Lone Star College's "Ellis C." has handled 70,000+ conversations, Harvard is deploying a ChatGPT Edu advising bot, and Inside Higher Ed describes "the rise of the agentic AI university" ([Lone Star College, May 22, 2026](https://www.lonestar.edu/news/119214.htm); [The Harvard Crimson, April 2, 2026](https://api.thecrimson.com/article/2026/4/2/harvard-ai-chatbot-advising/); [Inside Higher Ed, January 7, 2026](https://www.insidehighered.com/opinion/columns/online-trending-now/2026/01/07/rise-agentic-ai-university-2026)). When agents give wrong degree advice or mishandle records, liability, FERPA obligations, and appeal rights are unresolved. Watch for the first agent-error lawsuits.
2. **Post-quantum cryptography.** With NIST standards published, "harvest now, decrypt later" collection threatens long-lived research datasets and decades of student records. Migration is a multi-year inventory-and-upgrade project; the planning window is now, even though the payoff is years out.
3. **The collapse of the federal evidence base.** With the Office of Educational Technology eliminated and an Inspector General review finding 90 grants terminated ($504M) and 129 contracts halted, the shared research on what works in educational technology is thinning ([The EDU Ledger, ~June 2026](https://www.theeduledger.com/latest-news/article/15828645/watchdog-warns-education-dept-cuts-axed-legally-required-roles-and-studies)). The sector will need to fund its own evidence — through EDUCAUSE, foundations, and institutional research — or make large technology bets blind.

## Sources

- EDUCAUSE 2026 Horizon Report (Teaching and Learning Edition) — via eCampus News summary, May 29, 2026 — https://www.ecampusnews.com/campus-leadership/2026/05/29/educause-horizon-report-higher-education-leaders/
- "AI Detectors Are Out, New Approaches Are In" — Inside Higher Ed, August 5, 2026 — https://www.insidehighered.com/news/tech-innovation/artificial-intelligence/2026/08/05/ai-detectors-are-out-new-approaches-are
- "Cancellation of Turnitin AI Detection software" (memo to instructors) — WSU Office of the Provost, February 11, 2026 — https://provost.wsu.edu/documents/2026/02/cancellation-of-turnitin-ai-detection-software_memo-to-instructors_provost-office_spring-2026.pdf
- "AI in higher education survey 2026" (Digital Education Council Global Survey 2026) — via ETIH EdTech News, ~July 2026 — https://www.edtechinnovationhub.com/news/q6zw9wco2mttajdbd1jyeonjnpiovu
- "Ransomware Attacks Targeting Universities on the Rise" (Comparitech H1 2026 data) — Infosecurity Magazine, ~September 2026 — https://www.infosecurity-magazine.com/news/university-ransomware-attacks-rise/
- "Ransomware Attacks on K-12 Trend Down, Higher Ed Trend Up in 2026" — GovTech, ~August 2026 — https://www.govtech.com/education/k-12/ransomware-attacks-on-k-12-trend-down-higher-ed-trend-up-in-2026
- "Schools and universities are paying higher ransomware demands" (Sophos data) — TechRadar Pro, 2026 — https://techradar.com/pro/security/schools-and-universities-are-paying-higher-ransomware-demands
- Joint advisory AA25-203A on Interlock ransomware — CISA / FBI / HHS / MS-ISAC, July 22, 2025 — https://www.cisa.gov/news-events/alerts/2025/07/22/joint-advisory-issued-protecting-against-interlock-ransomware
- CISA/NSA/FBI warning on Russian state-supported activity targeting Zimbra — CISA, updated 2026 — https://www.cisa.gov/news-events/news/cisa-nsa-fbi-and-partners-warn-zimbra-collaboration-suite-users-ongoing-russian-state-supported
- "Students, Faculty Mixed on AI as CSU System Continues to Invest" — GovTech, ~August 2026 — https://www.govtech.com/education/higher-ed/students-faculty-mixed-on-ai-as-csu-system-continues-to-invest
- "Colorado State University goes all in on AI" (RamGPT) — TechXplore, January 22, 2026 — https://techxplore.com/news/2026-01-colorado-state-university-ai-partnering.pdf
- "Google commits $1 billion for AI training at US universities" — Reuters, August 6, 2025 — https://www.reuters.com/world/us/google-commits-1-billion-ai-training-us-universities-2025-08-06/?ref=dispatch.techoversight.org
- "Anthropic brings AI to students with Claude for Education" — TechTarget, April 3, 2025 — https://www.techtarget.com/ai/news/366621957/Anthropic-brings-AI-to-students-with-Claude-for-Education
- "FAQs: Checking in on the Department of Education" — Brookings Institution, updated ~February 2026 — https://www.brookings.edu/articles/faqs-checking-in-on-the-department-of-education/
- "DOJ Extends Deadline for ADA Title II Compliance" — Campus Technology, April 27, 2026 — https://campustechnology.com/articles/2026/04/27/doj-extends-deadline-for-ada-title-ii-compliance.aspx
- "DOJ Extends ADA Title II Digital Accessibility Deadlines by One Year" — Duane Morris, ~April/May 2026 — https://www.duanemorris.com/alerts/doj_extends_ada_title_ii_digital_accessibility_deadlines_one_year_0426.html
- "What Are Ghost Students? Financial Aid Fraud Explained" — The College Investor, updated ~March 2026 — https://thecollegeinvestor.com/77350/what-are-ghost-students-financial-aid-fraud-explained/
- "Thompson Introduces Student Aid Fraud Oversight and Accountability Act" — Gannett News, March 17, 2026 — https://gantnews.com/2026/03/17/thompson-introduces-student-aid-fraud-oversight-and-accountability-act/
- "Instructure Partners With Veriff" (identity verification) — PRNewswire, September 2026 — https://www.prnewswire.com/news-releases/instructure-partners-with-veriff-to-give-institutions-a-new-defense-against-rising-credential-fraud-302873609.html
- "Breaking down Workday's $265 million cost" — Student Life (WashU), December 10, 2025 — https://www.studlife.com/news/2025/12/10/breaking-down-workdays-265-million-cost
- "Minnesota payroll problems grew after Workday, say auditors" — The Register, April 8, 2026 — https://www.theregister.com/off-prem/2026/04/08/minnesota-payroll-problems-grew-after-workday-say-auditors/5221270
- "Under Pressure: How Financial Constraints Are Reshaping Higher Ed IT" (Future of Higher Ed IT 2026) — Boldyn Networks, October 2025 — https://storage.pardot.com/990902/1763760542cggBk1QR/10.20.2025_Final_BoldynNetworksReport.pdf
- "The Colleges That Couldn't Survive 2025" — Inside Higher Ed, December 18, 2025 — https://www.insidehighered.com/news/business/mergers-collaboration/2025/12/18/colleges-couldnt-survive-2025
- "DFARS Changes to Integrate CMMC Requirements Effective November 10" — EDUCAUSE Review, November 2025 — https://er.educause.edu/articles/2025/11/dfars-changes-to-integrate-cmmc-requirements-effective-november-10
- "'A huge rupture in everything': US science faced major upheaval in 2025" — Chemical & Engineering News, December 2025 — https://cen.acs.org/policy/nih-nsf-ostp-science-research-funding-cuts/103/web/2025/12
- "The Rise of the Agentic AI University in 2026" — Inside Higher Ed, January 7, 2026 — https://www.insidehighered.com/opinion/columns/online-trending-now/2026/01/07/rise-agentic-ai-university-2026
- "Survey: How High Schoolers Are Using AI in College Search" (EAB survey) — Inside Higher Ed, February 25, 2026 — https://www.insidehighered.com/news/quick-takes/2026/02/25/survey-how-high-schoolers-are-using-ai-college-search
- "Post-Pandemic, Online Ed Has 'Staying Power'" — Inside Higher Ed, September 8, 2026 — https://www.insidehighered.com/news/tech-innovation/teaching-learning/2026/09/08/post-pandemic-online-ed-has-staying-power
