:

INSTRUCTURE BREACH EXPOSES DATA FROM 8,800 SCHOOLS

AI DESK1 MIN READ
TUE, MAY 5, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A hacker claims to have stolen 280 million data records from nearly 8,800 educational institutions using Instructure's learning management platform. The breach affects students, staff, and administrators across colleges, school districts, and online education platforms.

Instructure, which operates Canvas—a widely-used learning management system—confirmed the security incident. The alleged theft represents one of the largest education sector breaches on record. The hacker has publicly disclosed the breach and claims access to student records, staff information, and institutional data. The scope spans institutions globally, though specific details about compromised data categories remain unclear. Instructure said it discovered unauthorized access and launched an investigation with cybersecurity experts. The company is notifying affected institutions and working to secure its systems. Educational institutions relying on Canvas serve millions of students worldwide. Breaches of this scale raise concerns about data protection standards in edtech infrastructure and potential identity theft risks for students and staff. Instructure has not disclosed the breach's technical cause or timeline. Affected schools are expected to announce notification procedures separately.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Hacking group FulcrumSec claims to have stolen 86 GB of data from Manchester Airports Group. Security researchers confirmed the breach included detailed customer, booking, and travel records.

JUST NOWAI Desk

Multiple extensions in the Chrome Web Store and Microsoft Edge delivered malware that stole cryptocurrency, browser data, and user history while injecting fraudulent ClickFix lures.

JUST NOWIndustry Desk

A new survey reveals strong public opposition in the UK to government surveillance of encrypted communications. The findings highlight growing concern over privacy rights as lawmakers continue debating message scanning proposals.

JUST NOWIndustry Desk

PaperCut has released a second emergency security update for its NG and MF print management software after researchers discovered bypass methods for the initial fixes. The vulnerabilities are currently being exploited in the wild.

4H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.