Breaking News

Source

ShinyHunters Hits Canvas Again: 275M Records at Risk Across 9K Schools

The criminal extortion group ShinyHunters has struck Instructure a second time in less than a year, claiming to have stolen records tied to 275 million users across nearly 9,000 schools worldwide. The targeted platform—Canvas, which supports course delivery, assignments, grades, and messaging for more than 30 million active users—went offline for stretches this week as the company scrambled to respond. The timing is particularly damaging: finals season is underway at institutions across the country.

Instructure first disclosed a cybersecurity incident on May 1, initially describing it as contained. The company confirmed that names, email addresses, student ID numbers, and messages among users were likely accessed. In a statement, Instructure said it found no evidence that passwords, dates of birth, government identifiers, or financial data were compromised. But the exposure of private messages—which on Canvas platforms frequently include disclosures of medical conditions, accommodation requests, and Title IX communications—raises the stakes considerably.

On May 7, ShinyHunters re-emerged, defacing login pages at multiple universities with an extortion message claiming Instructure had “done some security patches” rather than negotiate. The group set a new deadline of May 12 to leak data unless contacted. Among the institutions where the ransom message appeared were Harvard, Princeton, Columbia, and Georgetown universities.

Read the full article

Key Points that Matter

  1. Educational institutions remain prime cyber targets, where voice attacks can accelerate credential theft and account compromise.
  2. Stolen identities increase the effectiveness of vishing, enabling attackers to impersonate trusted staff, students, and service providers.
  3. Protecting voice communications helps reduce initial access opportunities, limiting attackers before they can exploit human trust.

You Can Stop Voice-Based Threats

The Voice Channel has become the most exploited pathway for threat actors. Voice Security is no longer a nice to have, but a critical mandate.

Mutare’s Voice Security Platform defends the voice channel as critical infrastructure. Operating as a technical control at the network edge, it stops vishing, social engineering, spoofed calls, spam storms, and GenAI-powered attacks.

We understand that every organization is at a different stage of its Voice Security journey.
Some are just beginning to understand the risks. Others are evaluating solutions or validating technologies. Take a moment to check out Test Drive to choose your path towards understanding the voice security landscape and learning about a comprehensive defense solution.

Learn More About Voice Security

We’ve curated the latest information and events about Voice Security:

Articles

Voice Security Has Reached a Tipping Point

The 2026 Voice Threat Survey reveals why voice can no longer be treated as an overlooked communications channel. It has become one of the fastest-growing cyber threat vectors in the enterprise.

Events

WEBINAR: AI-Ready Voice Security

What was once limited to nuisance robocalls has evolved into a continuous stream of unwanted voice traffic, now amplified by automation, spoofing, and AI-driven attack campaigns.

ViVE, Feb 2026, Los Angeles, CA

Please join us in Los Angeles February 22-25 and connect with a member of the Mutare Team to discuss patient experience, patient care, and risk management.

Case Studies