Canvas Pays Ransom to Hackers After Breach Exposing 275 Million User Records
Instructure, the operator of the widely used educational learning platform Canvas, has agreed to pay a ransom to cybercriminals following a significant data breach. The attack, which occurred last week, paralyzed the platform's services globally, forcing approximately 8,000 educational institutions to postpone courses and denying students access to their learning materials. The hackers threatened to publish sensitive data belonging to 275 million users if their demands were not met. Just before the deadline on Monday, Instructure capitulated to the extortion attempt to prevent the mass release of user information. Canvas is a critical infrastructure for many prestigious universities, including Ivy League institutions like Columbia University in New York City. This incident highlights the growing vulnerability of educational technology providers to sophisticated ransomware attacks and the difficult decisions companies face when balancing financial costs against user privacy and data security. The disruption had immediate operational impacts on schools worldwide, underscoring the platform's extensive reach and dependence in the modern education sector.
Editorial responsibility
- No named human review is recorded for this page.
- Reports are grouped by semantic similarity and deterministic rules. Language models may assist titles, summaries, translation and cross-source analysis; the page itself is projected from evidence records.
- Current automated evidence projection