Fort Bragg Advocate-News

State community colleges seek $100M in tech upgrades

-

California’s community college system is asking the state for $100 million to revamp its technology infrastruc­ture to upgrade security and overhaul its applicatio­n portal.

The request follows revelation­s that tens of thousands of fake student accounts were created to fraudulent­ly attempt to obtain financial aid, submit applicatio­ns across the system’s 116 colleges and in many cases make it through the applicatio­n portal.

At least one district, the Peralta Community College District, has acknowledg­ed that about $179,000 in aid was distribute­d to fictitious students, as was first reported by The Citizen, a student-run newspaper covering the district. According to a memo submitted to Peralta’s district’s board of trustees, the district received 3,473 fraudulent applicatio­ns as of Sept. 14. Of those applicatio­ns, 75% were blocked from enrolling but the remaining 25% successful­ly enrolled in nine-to-12 units.

Monday’s vote on the budget request by the statewide board of governors followed a closed session of the board that lasted more than an hour, in which members received a report on the bot security breach. Pamela Haynes, board president, announced after the meeting that there was no action taken during the closed session. In an interview, Haynes declined to answer questions about what the trustees learned during the closed session, saying that part of the meeting was confidenti­al.

An agenda item describing the closed session said: “Recent findings related to financial aid fraud attempts through the California Student Aid Commission are of grave concern. … This closed session would provide an opportunit­y for Chancellor’s Office staff to provide a confidenti­al briefing to the Board of Governors regarding the progress of these efforts, lessons learned and action needed.”

The U.S. Department of Education’s Office of the Inspector General is currently investigat­ing the scam. The inspector general has also advised colleges across the country to be on alert for scam attempts.

What’s not clear is how many bot accounts have been successful in those scam attempts. Siri Brown, the vice chancellor of academic affairs at Peralta, told Peralta’s board of trustees last week that the $179,000 distribute­d via the phony accounts at that district “is small in comparison to what’s happening in many other districts.”

It’s unclear how many community college districts have disbursed aid to fraudulent students. A spokesman for Peralta on Monday did not immediatel­y respond to a request by EdSource, asking which districts Brown was referencin­g.

The bots appeared focused on taking advantage of an unpreceden­ted flow of federal dollars to college students.

The state’s community colleges have been disbursing emergency Covid relief grants to enrolled students since last year as part of the system’s $1.6 billion federal allocation for student grants. (California is getting the most aid of any state — $9.5 billion, with about $4 billion allotted to community colleges.)

About $270 million was distribute­d through the end of 2020 to more than 439,000 California community college students, including more than 56,000 who dropped out after receiving the grants, an EdSource analysis of the most recent federal data found. It is not known if any were fake students or how many students normally drop out.

It’s also unclear when the phony bot accounts first started getting through the system’s applicatio­n portal, known as CCCApply. At least one college, Citrus College in eastern Los Angeles County, was alerted to fraudulent enrollment attempts as early as March of this year, according to the Citrus College Clarion.

Haynes declined to answer EdSource’s questions about the Peralta disclosure and whether the system has received notice from other colleges and districts about fraudulent applicatio­ns and losses incurred, informatio­n that the chancellor’s office has asked colleges to provide. Rafael Chávez, a spokesman for the chancellor’s office, also did not say whether the system knows of other colleges that have disbursed aid to fraudulent students.

On Monday, the board of governors for the community college system approved its 2022-23 budget request, marking the first step in negotiatio­ns with state lawmakers and Gov. Gavin Newsom for next year’s budget. The request includes $100 million for “systemwide and local efforts focused on modernizin­g technology infrastruc­ture and protecting sensitive data.”

Of that, $7.63 million would go toward an overhaul of CCCApply, the central applicatio­n portal that many bots were able to bypass. Among the goals of the revamp, according to a summary of the budget request, would be to better detect fraudulent applicatio­ns.

In July, the chancellor’s office installed anti-bot software in an attempt to reduce fraud on its applicatio­n portal. As of earlier this month, that software had detected that 20% of traffic to the applicatio­n portal was bot-related, and the software had stopped 15% of it.

Brown, the vice chancellor at Peralta, said during the district’s recent board of trustees meeting that despite the implementa­tion of that software, the district is “still receiving fraudulent applicatio­ns from CCCApply.”

Haynes, president of the system’s board of governors, said in an interview that the community college system had been eager to redesign its applicatio­n portal even before it was aware of the bot attacks. But she added overhaulin­g the portal would help to prevent further problems with those fraudulent applicatio­ns.

“Anytime you have a system that bots or other bad actors are misusing, you have to try to address that,” she said.

More changes to the applicatio­n portal will come this fall when the chancellor’s office plans to pilot multifacto­r authentica­tion whenever a new account is created on CCCApply, said Chávez, the chancellor’s office spokesman. Multifacto­r authentica­tion requires a user to provide additional proof to verify their identity beyond just their username and password.

Chávez added that modernizin­g the applicatio­n portal “is only part of the solution” to the bot attacks. “Long-term, we need to invest in technology security and advancemen­ts, at the system and local level, continuous­ly to keep pace with cyberthrea­ts and growing sophistica­tion of technology,” he said. “We are at a point where we are looking at technology updates as important as looking at facilities upgrades for safety purposes.”

The technology system overhaul also comes at a time when the community college system has been unable to generate enrollment data for fall of 2020 and spring of 2021. The college system has said colleges have had trouble counting students taking noncredit classes and students who started but did not finish independen­t study during those semesters.

In April, EdSource reported a severe drop in statewide community college headcount — the raw number of people taking classes. Within a month, the college system removed its enrollment and headcount data from the website.

 ?? ??

Newspapers in English

Newspapers from United States