Skip to main content
  1. Home
  2. Computing
  3. News

Canvas hack hit students at the worst time, and it’s a wake up call for schools everywhere

Canvas hack exposed the weak links in digital classrooms

Add as a preferred source on Google
Logo
Instructure

A cyberattack on Canvas could not have come at a worse time. The learning platform, used by schools and universities for assignments, exams, grades, lecture materials, and class communication, went down during finals week, leaving students and instructors scrambling for alternatives.

The incident has been linked to ShinyHunters, a hacking group known for data theft and extortion. According to BleepingComputer, Canvas login portals at hundreds of institutions were defaced with a ransom-style message warning that stolen student data would be leaked unless the attackers were contacted. The group claimed to have obtained data tied to millions of students, teachers, and staff across thousands of schools.

What went wrong inside Canvas?

Instructure, the company behind Canvas, said hackers exploited an issue related to its Free-for-Teacher accounts, forcing it to temporarily shut down the platform to investigate the matter. This outage caused major chaos during the ongoing finals season as students and teachers were suddenly locked out of a platform.

During the initial outage, the Canvas login screen reportedly displayed a message from ShinyHunters claiming it had breached Instructure “again” and warning schools to make contact before a May 12, 2026, deadline to prevent stolen data from being published. The message also included a list of affected schools, making it clear the attack was part of an extortion attempt.

Why did this hit students so hard?

This hack resulted in some institutions postponing exams, while others asked faculty to be flexible with deadlines and course requirements. For students already in the middle of finals, the outage created more stress around study materials, submissions, and exam schedules.

Recommended Videos

While Instructure has claimed that passwords or financial details were not compromised in this attack, the hackers did get access to millions of user names, email addresses, student IDs, and internal messages. This information could easily be used for phishing attacks that mention real classes, schools, or instructors.

Haven’t we seen ShinyHunters before?

ShinyHunters has been connected to several major breaches in the past, including incidents involving Ticketmaster and Rockstar. Even Instructure has had previous run-ins with the hacker group. In September 2025, ShinyHunters targeted Instructure’s Salesforce environment through social engineering to access business systems, but Instructure said no Canvas product data was accessed and that the exposed information was mainly public business contact details.

What now?

Canvas coming back online does not end the problem. Hackers are still holding data from millions of users for ransom, which means the risk remains. That said, ShinyHunters has reportedly removed Instructure from its “Pay or Leak” portal, suggesting negotiations may be underway.

The attack should be a wake-up call for every school that relies on a few digital platforms to run classes, exams, and communication. These tools are now essential to how schools operate, which means they need stronger cybersecurity to protect student data and backup plans in case another outage or attack happens.

Sudhanshu Kumar Mangalam
I’ve got about 4 years of experience, mostly covering gaming, PC hardware, and smartphones. In my free time, I like…
Copilot could soon help diagnose issues with your PC
A new PC Insights feature will help you find what's slowing down your PC, though Copilot itself may be one of the main problems.
Microsoft Copilot Banner Featured

Copilot's next trick is diagnosing your PC's problems, but the catch is that the assistant doing the diagnosing is itself part of the problem. Windows Latest reports that Microsoft is testing a new Copilot feature called PC Insights, which will let you ask the AI assistant natural language questions about your computer's hardware and storage instead of digging through the Task Manager or Settings. The feature will reportedly allow users to ask questions like, "Do I have enough space for a 100GB game?" and Copilot will check the available storage to offer a response. Users will also be able to ask about CPU usage, battery health, etc., to diagnose issues.

What Copilot will be able to see

Read more
OpenAI just took the handcuffs off your ChatGPT Work and Codex usage limits, at least for now
The 5 hour limit is gone for now, your usage counter just reset, and GPT 5.6 Sol is about to get a lot lighter on your allowance.
OpenAI logo on Microsoft surface

It seems that OpenAI has been on a gallop lately, releasing new updates left and right. Just a few days back, the company launched its GPT-5.6 Sol, Terra, and Luna models for the general public, and now it's back with another update that will please its users even more. 

The headline change is that the 5-hour usage limit restriction in ChatGPT Work and Codex is being temporarily removed for all Plus, Business, and Pro plans. If you have ever been in the middle of a long working session and watched the limit message appear at the worst possible moment, this one is for you. 

Read more
This app gives your Mac a music player you’ll actually enjoy using
Apple Music on the Mac is a chore. Liqoria is the fix, and it plays nice with Spotify and YouTube too.
Liqoria music player

The Apple Music app on the Mac is not up to the mark. I don’t like how it looks or behaves, and Apple should take some inspiration from Spotify to make the app more modern and useful. Until that happens, we are stuck with a subpar app experience.

That’s why I never use the Apple Music app on my Mac and rely on third-party apps that let me control music. Today I am featuring one of the latest apps I discovered. It’s called Liqoria, and it’s probably the only music player app you will ever need.

Read more