In
  • 410 words


Two months after Instructure made a deal with hackers to salvage troves of stolen user data, the company—which owns the popular learning management system Canvas—has paused the delivery of data related to the breach because of a potential security threat with a third-party delivery platform. 

In May, a criminal extortion group known as ShinyHunters twice hacked Canvas and claimed that it gained access to the personal identifying information of 275 million people across 9,000 institutions. At the time, the company said the leaked information included names, email addresses, student ID numbers and user messages, but it “found no evidence that passwords, dates of birth, government identifiers, or financial information were involved.” 

In the aftermath, Instructure CEO Steve Daly vowed to be “transparent about what happened” and provide K–12 schools and higher education institutions “with information as quickly as we responsibly could.” Over the past two months, Instructure has worked “to conduct a detailed forensic review of the data involved in this incident,” Daly said in a memo last week.

On Tuesday, the company was set to deliver to institutions the first wave of data related to the breach.

Instead, Daly said Tuesday that the company is “pausing data delivery out of an abundance of caution” after learning that “the third-party platform we’ve selected to deliver your data may have been subject to a security threat.” (In a previous memo, Instructure said institutions would receive the data “through a secure, permissioned ShareFile link sent directly from Sharefile only to the security contact(s) your institution has designated.”)

Daly assured customers—which includes the 41 percent of higher education institutions in North America that use Canvas for course delivery—that though their “data remains secure,” the company “will proceed only when we are confident the third-party platform is safe … Security is paramount, and before we upload your data, we want to take the time to assess the platform’s safety or find an alternative.”

This article was updated to clarify that the potential security threat was with a third-party provider. Instructure has not experienced a data breach.



Source link

Author

Related Posts

In

Yemen’s Houthis claim attacks on Red Sea tankers as US launches 12th night of strikes on Iran – Middle East crisis live – The Guardian

Yemen’s Houthis claim attacks on Red Sea tankers as US launches 12th night of strikes on Iran – Middle East crisis live  The...

Read out all
In

Lil Wayne backs Trump’s White House ballroom plans, slams critics

NEWYou can now listen to Fox News articles! Lil Wayne is throwing his support behind one of President Donald Trump‘s most talked-about...

Read out all
In

Trump attends return of US soldiers killed in Iran war – Reuters

Trump attends return of US soldiers killed in Iran war  Reuters Latest combat deaths show risk has shifted to troops far from Iran’s...

Read out all
In

Valencia vs Eldense – Pronóstico, dónde ver, horario y alineaciones 22-07-2026

El Valencia y el Eldense se enfrentan en un partido amistoso de pretemporada, parte de los Amistosos de Clubs 2026. El encuentro...

Read out all
In

World Cup 2026: Argentina react to final defeat and Messi questions

The actions of the Argentina players on the pitch were heavily criticised by former England internationals. Ex-England captain Alan Shearer said: “Paredes...

Read out all
In

Here’s When ‘Masters of the Universe’ Is Streaming on Prime Video

Amazon MGM Studios and Mattel’s Masters of the Universe will be streaming on Prime Video this Wednesday, July 22. That reps a...

Read out all