Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Instructure Faces Cyberattack, Data Breach Reported

Instructure Faces Cyberattack, Data Breach Reported

Posted on May 4, 2026 By CWS

Over the weekend, Instructure, a prominent education technology company, experienced a significant cybersecurity incident that led to a data breach. Known for Canvas, a widely utilized learning management system, Instructure faced disruptions caused by the attack.

Based in Salt Lake City, Utah, Instructure revealed the cyberattack on April 30. The attack caused issues with tools dependent on API keys, which were largely resolved by May 3, when access to the Canvas Data 2 platform was reinstated.

Details of the Cyberattack

On May 1, Instructure confirmed that cybercriminals were responsible for the breach and had engaged external forensic experts to conduct an investigation. The company emphasized their commitment to understanding the full scope of the incident and minimizing its impact.

By the following day, the breach was contained, with certain application keys reissued. Users were required to reauthorize access to affected tools. Instructure took additional steps by revoking privileged credentials and access tokens, deploying security patches, and enhancing monitoring protocols.

Compromised Information

Instructure disclosed that the attackers accessed personal data, including names, email addresses, and student ID numbers. However, they assured users that passwords, birth dates, government identifiers, and financial information remained unaffected.

The company has not yet disclosed the number of affected institutions or individuals, nor have they identified the threat actor responsible for the attack.

ShinyHunters’ Involvement

On May 3, the notorious ShinyHunters extortion group claimed responsibility, listing Instructure on their Tor-based leak site. They alleged to have stolen 3.65 terabytes of data, affecting 275 million users across nearly 9,000 educational institutions worldwide. Additionally, they claimed that Instructure’s Salesforce system was compromised.

Efforts to contact Instructure for further details are ongoing. Updates will be provided as new information becomes available.

Related reports include data breaches at Sandhills Medical, Checkmarx, Vimeo, and Rituals, highlighting a concerning trend in cybersecurity threats.

Security Week News Tags:API keys, Canvas, Cyberattack, data breach, data protection, Edtech, Forensics, Instructure, Security, ShinyHunters

Post navigation

Previous Post: Global Crypto Scam Crackdown: 276 Arrests, $701M Seized
Next Post: AI Accelerates Zero-Day Exploits, Increasing Cyber Risks

Related Posts

Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack Popular Scraping Tool’s NPM Package Compromised in Supply Chain Attack Security Week News
Stragglers From Myanmar Scam Center Raided by Army Cross Into Thailand as Buildings are Blown Up Stragglers From Myanmar Scam Center Raided by Army Cross Into Thailand as Buildings are Blown Up Security Week News
Cybersecurity Highlights: Recruiter Scam, Anti-Deepfake Tech Cybersecurity Highlights: Recruiter Scam, Anti-Deepfake Tech Security Week News
Arkanix Stealer Malware Ceases Operations Quickly Arkanix Stealer Malware Ceases Operations Quickly Security Week News
Google Warns UK Retailer Hackers Now Targeting US Google Warns UK Retailer Hackers Now Targeting US Security Week News
Empirical Security Raises  Million for AI-Driven Vulnerability Management Empirical Security Raises $12 Million for AI-Driven Vulnerability Management Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Apple SoCs Vulnerable to New BootROM Exploit
  • Outdated REDCap Servers Pose Cybersecurity Risks
  • INC Ransomware Dominates 2026 with Over 830 Attacks
  • Hackers Exploit SQL Server 2025 AI for Data Theft
  • Critical NGINX Vulnerabilities Patched by F5

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Apple SoCs Vulnerable to New BootROM Exploit
  • Outdated REDCap Servers Pose Cybersecurity Risks
  • INC Ransomware Dominates 2026 with Over 830 Attacks
  • Hackers Exploit SQL Server 2025 AI for Data Theft
  • Critical NGINX Vulnerabilities Patched by F5

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark