What the Canvas breach tells us about the state of education security
ID: 542735b2-daf3-5115-b85f-3b9f9dcb3531
STIX ID: report--542735b2-daf3-5115-b85f-3b9f9dcb3531
Feed Name: Jamf Blog
Threat Score
### Executive summary Instructure's Canvas was breached by the criminal group ShinyHunters, who accessed cloud resources and a Salesforce instance to extract names, emails, student IDs and private messages impacting thousands of educational institutions; the report outlines the attack vectors (API-based extraction, compromised credentials, insufficient MFA) and provides immediate mitigation steps and long-term security recommendations for education organizations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
