logo

Canvas breach spotlights cybercriminal appetite for student data

ID: 4681706e-2f53-567f-bba4-2d4648487630

STIX ID: report--4681706e-2f53-567f-bba4-2d4648487630

Feed Name: Nextgov Cybersecurity

Threat Score
72/100

Date Published: 2026-05-11

Date Updated: 2026-05-11

Author: David DiMolfetta

...
...

A criminal group, ShinyHunters, claimed responsibility for a breach of Instructure’s Canvas learning platform that reportedly impacted roughly 9,000 customers (including major universities). The attackers posted an extortion demand, claimed to have accessed names, emails, student IDs and private messages, and reportedly exploited a vulnerability in the Free for Teacher support-ticket system; Canvas services were later restored and the FBI and U.S. House committee have been reported to be investigating.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.