Security incident

2026 Canvas Security Incident

Impacted Institutions

Loading archive…

Open the raw text file

Associated Media

  • The ShinyHunters hacking message seen when logging into an affected Canvas instance.
  • Carousel slide: The 2026 Canvas Security Incident.
  • Carousel slide, What happened: Instructure, the company that owns Canvas LMS, announced a cybersecurity incident on May 1, then said things were contained but that your data has been stolen: names, email addresses, ID numbers, even messages.
  • Carousel slide, Who did it: the criminal hacking group ShinyHunters took credit on May 3.
  • Carousel slide, Who is affected: ShinyHunters has claimed over 9,000 schools worldwide have been affected.
  • Carousel slide, What is the risk: the data is already out there, and the biggest risk is phishing, fake emails asking for your information.
  • Carousel slide, What happens next: watch your institution's news, double-check who sent each email, and confirm strange emails through alternate means such as a phone call to campus IT.

Sources