惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
Stack Overflow Blog
Stack Overflow Blog
人人都是产品经理
人人都是产品经理
Y
Y Combinator Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
D
DataBreaches.Net
GbyAI
GbyAI
Microsoft Security Blog
Microsoft Security Blog
博客园_首页
大猫的无限游戏
大猫的无限游戏
Jina AI
Jina AI
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Engineering at Meta
Engineering at Meta
IT之家
IT之家
MongoDB | Blog
MongoDB | Blog
The GitHub Blog
The GitHub Blog
月光博客
月光博客
U
Unit 42
Hugging Face - Blog
Hugging Face - Blog
博客园 - 叶小钗
腾讯CDC
B
Blog RSS Feed
博客园 - Franky
爱范儿
爱范儿

Silicon Republic

After Amazon, Google commits up to $40bn in Anthropic Cohere buys Aleph Alpha to forge sovereign AI alternative to US Big Tech 4 easy ways to stay on top of cybersecurity in the workplace 15 companies you’ll see at NIBRT Careers in Biopharma 2026 Bloomberg: Bezos’ Project Prometheus bags $10bn at $38bn value Meta to lay off 10pc of its workforce amid an AI push China's DeepSeek unveils long-awaited V4 AI model Intel’s shares soar as Q1 results signal brighter future MongoDB to create 200 new jobs as it invests €74m into Irish operations Why it's full STEAM ahead for young people upskilling in Ireland's west Swedish legal-tech Legora buys AI legal research start-up Qura Belfast’s Cloudsmith eyes ‘massive growth’ with $72m raise France's Univity raises €27m to allow European telecoms compete with Starlink France's Univity raises €27m to allow European telecoms to compete with Starlink AI race intensifies with Google's new agent management platform Government launches new AI initiative for greater access to essential skills Free and inexpensive cybersecurity courses to undertake in 2026 UL looking for ‘changemakers’ amid Research Week 2026 OpenAI taps Airbnb exec as first EMEA managing director EAM platform Blue Mountain acquires Cork’s CompuCal Calibration Solutions SpaceX agrees right to buy AI coding darling Cursor for $60bn Anthropic probing reported Mythos leak on Discord Professional job openings across Ireland increased in Q1, finds report Contract hiring evidence of a cautious jobs market, finds report Can you rely on AI chatbots for medical advice? €6.9m awarded to final four National Challenge Fund winners Amazon investing up to $25bn in Anthropic AI infrastructure deal Vodafone Ireland to invest €360m over the next four years Tim Cook passes Apple leadership to hardware head John Ternus Stripe alum's Seapoint raises €7.5m as ‘financial home’ to start-ups
Canvas parent settles with hacker group that stole user data
Suhasini Srinivasaragavan · 2026-05-12 · via Silicon Republic

Instructure did not say what it had given the hacker group in exchange for the terms.

Instructure, the parent company behind Canvas, the education management platform reportedly hacked by ShinyHunters, has reached an agreement with the cyber gang, it said yesterday (11 May). Hackers had given affected universities until tomorrow (12 May) to negotiate a settlement.

As per the agreement, the cyber extortion group has returned stolen data and deleted copies, and has agreed not to extort the institutions affected in the hack, Instructure said. The company did not say what it had given the hacker group in exchange for the terms.

Reportedly formed around 2020, ShinyHunters has claimed responsibility for an array of high-profile, financially motivated attacks in recent years on organisations such as Salesforce, Allianz Life, SoundCloud, Ticketmaster and Tinder-parent Match Group.

The group was linked to a breach of the European Commission’s Europa.eu platform in March, where 350GB of data, across multiple databases, was reportedly accessed and stolen.

Hackers seemingly began targeting edtech giant Instructure late last month; the company started noticing unauthorised activity in Canvas on 29 April, and later on 7 May.

ShinyHunters claimed responsibility for the attacks and said it stole 280m records. The threat actor also published a list of more than 8,800 institutions that were affected by its attacks on Canvas. In a 3 May ransom note, it threatened to leak “several billions of private messages among students and teachers”.

In Ireland, the platform is used by the likes of University of Galway and Munster Technological University – both of which faced disruptions following the hack.

Instructure, at the time, said the stolen information includes user identifying information such as names, email addresses, messages and student ID numbers at affected institutions. It has reported the breach to the FBI, the US Cybersecurity and Infrastructure Security Agency and other law enforcement agencies, it said.

In its latest update, the company said that the unauthorised actor exploited an issue related to its ‘free-for-teacher’ accounts to hack Canvas. As a result, the feature was temporarily shut down; all services, however, are now fully operational, it added.

“ShinyHunters timed this attack to sting as much as possible,” said Raluca Saceanu, the CEO of Smarttech247.

“With exam season underway and academic years drawing to a close, schools and universities needed Canvas working. That dependency gave ShinyHunters the leverage to lay out the terms of their deal. For Canvas, and its parent Instructure, it was agree to terms or lose customers.

“While technical recovery time from ransomware attacks is accelerating, attackers are responding by shifting their focus and making the broader organisational consequences more damaging than ever.

“It’s not just a question of causing as much potential damage as possible. From the attackers’ point of view, these newer approaches are faster, cheaper, stealthier and carry lower technical risk. And the core law of extortion anywhere holds – even if a victim pays, there’s no guarantee data won’t be exposed anyway, and the organisation has now marked itself as a valuable target.”

Don’t miss out on the knowledge you need to succeed. Sign up for the Daily Brief, Silicon Republic’s digest of need-to-know sci-tech news.