Canvas Owner Reaches Agreement With Cybercriminals After Ransomware Attack
ID: e569138c-c211-5018-96af-06e5a6ed29f1
STIX ID: report--e569138c-c211-5018-96af-06e5a6ed29f1
Feed Name: Infosecurity Magazine (News)
Instructure's Canvas LMS was breached via an undisclosed flaw in the Free-For-Teacher support ticket system, resulting in the exfiltration of roughly 275 million records affecting nearly 9,000 institutions; the ShinyHunters-linked extortion group also defaced login portals at ~330 schools. Instructure reports it reached an agreement with the actor, received returned data and digital confirmation of destruction, revoked credentials and tokens, rotated keys, and is conducting forensic reviews while warning customers to expect phishing and other follow-on attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
