· 1 min read

Published by theseaheight

Edited by theseaheight at

Canvas (by Instructure) suffers major security breach

Over ~9,000 schools have been impacted

Summarized by AIBETA

A third-party tool linked to Instructure’s Canvas LMS was exploited to access limited user data (names, emails, class details), prompting the company to disable the tool and urge schools to enhance security measures.

A recent hack involving Instructure, the company that runs the Canvas learning system, has affected schools and students. Hackers were able to get access through a connected third-party tool, which allowed them to see some user information like names, email addresses, and class details. Instructure said that passwords and financial information were not affected.

This image was taken from Canvas LMS websites during the hack.
This image was taken from Canvas LMS websites during the hack.

After discovering the issue, Instructure quickly shut down the tool that caused the problem and began investigating what happened. Schools using Canvas were told to check their accounts and improve security, such as turning on extra login protection. The company also said that Canvas itself was not directly hacked, but the issue came from an outside connection.