Instructure breach update: ShinyHunters claim second hack, deface school websites

0
712

Instructure Canvas hack update: ShinyHunters claim second hack, deface school websites

ShinyHunters apparently isn't done with edutech giant Instructure.

The now-infamous hacking and extortion collective known as ShinyHunters has once again breached Instructure, the education technology company best known for its popular Learning Management System (LMS) application Canvas. ShinyHunters originally breached Instructure's systems just over a week ago, stealing data connected with nearly 9,000 schools worldwide.

According to a report from TechCrunch, this week, ShinyHunters hackers defaced Canvas login pages for several schools that use the coursework and messaging platform.

TechCrunch says that it saw at least three school login pages compromised with a message via an injected HTML file from ShinyHunters threatening to publicly release stolen data on May 12 unless Instructure agrees to “negotiate a settlement."

Instructure confirmed that it had been breached by the same bad actors responsible for the previously reported breach into the company. This marks a second breach into Instructure, though into a different part of its infrastructure this time.

Mashable Light Speed

Mashable 101 Fan Fave: Vote for your favorite creators today

Instructure took Canvas offline temporarily while it investigated the second breach. The company says that it found that the hackers "exploited an issue related to our Free-For-Teacher accounts." The company has since temporarily shut down these accounts and restored Canvas access for its users.

Earlier this month, ShinyHunters claimed responsibility for a breach that Instructure later confirmed. According to ShinyHunters, the stolen data linked to the original breach is associated with 275 million Instructure users and affects 8,809 schools worldwide. The stolen data belongs to students, teachers, and school staff who use Instructure's products and contains users' names, email addresses, student IDs, and private messages exchanged on the Canvas platform.

The request from ShinyHunters to "negotiate a settlement" has become par the course for the group, which actively seeks to profit from its excursions.

Over the past year, ShinyHunters have claimed responsibility for data breaches at companies such as Panera Bread, Crunchyroll, Bumble, ADT, and Rockstar Games, among others.

Αναζήτηση
Κατηγορίες
Διαβάζω περισσότερα
Technology
The Anker Solix C300 power station is down to its lowest price of 2026 — save $80 at Amazon
Best portable power station deal: Save $80 on Anker Solix C300...
από Test Blogger7 2026-03-12 13:00:20 0 2χλμ.
Home & Garden
I'm a Home Expert, and These 10 Wayfair Pieces Impressed Me with Their Clever Designs—from $36
I Shop Wayfair for a Living, and Have Never Seen Anything Like These 10 Clever Furniture...
από Test Blogger9 2026-02-28 18:00:29 0 2χλμ.
Food
5 Ways To Revive Hardened Honey
5 Ways To Revive Hardened Honey...
από Test Blogger1 2026-06-15 17:00:07 0 280
άλλο
North America Physical Identity and Access Management Market: Key Drivers and Leading Players
The Physical Identity and Access Management (PIAM) market in the North America region is...
από Monica Scott 2026-06-24 14:06:03 0 177
Παιχνίδια
Slay the Spire 2 nerfs card removal, buffs shivs, and adds a new reward system
Slay the Spire 2 nerfs card removal, buffs shivs, and adds a new reward system Mega Crit's...
από Test Blogger6 2026-04-03 11:00:12 0 1χλμ.