Dependency attack takes down ed-tech platform at scale
ID: d2dadff4-30d6-5546-970e-fcd8bb446460
STIX ID: report--d2dadff4-30d6-5546-970e-fcd8bb446460
Feed Name: ReversingLabs Blog
**Executive summary:** Shiny Hunters executed a supply-chain-style ransomware and data-extortion attack against Canvas (Instructure), affecting roughly 275 million users and prompting widespread outages during finals; Instructure reportedly negotiated payment to prevent public disclosure. The article highlights the operational impact on educational institutions and presents five supply-chain security lessons: visibility, procurement security, component/code review, vendor monitoring, and resiliency planning.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
