Cyberattack on Education Platform Canvas Causes Chaos During Finals
Students and teachers face major disruptions after hackers target a widely used online learning tool.
🕒 生成時間: (台北時間)
Summary · 摘要
The popular education platform Canvas went offline following a cyberattack by a group called ShinyHunters. The incident occurred during a critical time for students, as many were in the middle of final exams. Instructure, the company that owns Canvas, confirmed that personal information like names and email addresses was accessed. Schools across the United States had to postpone exams and find new ways to manage assignments. Experts warn that users should stay alert for potential scams following the data breach.
熱門教育平台 Canvas 在遭受名為「閃亮獵人」的組織發動網路攻擊後離線。這起事件發生在學生期末考的關鍵時刻。Canvas 的母公司 Instructure 確認,包括姓名與電子郵件地址在內的個人資訊遭到存取。全美各地的學校被迫推遲考試並尋找管理作業的新方式。專家警告,在資料外洩後,使用者應對潛在的詐騙保持警覺。
Thousands of students and teachers across North America faced a difficult week after the popular education platform Canvas went offline. The service, which is used by millions to manage courses, submit assignments, and view grades, stopped working on Thursday due to a cyberattack. This disruption happened at a very bad time for many students, as it occurred during the busy final exam period.
According to NPR, the platform is used by about half of all higher education institutions in North America. When users tried to log in on Thursday, they were met with a black screen and a message from a hacking group known as ShinyHunters. This group claimed responsibility for the attack and stated that they had accessed data from 275 million students, teachers, and staff members at nearly 9,000 schools around the world.
ShinyHunters is a well-known group that has been linked to other major cyberattacks, including one against the ticket sales company Ticketmaster in 2024. Rachel Tobac, the CEO of SocialProof Security, described the group as a loose collection of young hackers who work together like a ransomware gang. Ransomware is a type of malicious software that hackers use to lock computer systems or steal private data, demanding payment to restore access or keep the information secret.
Instructure, the parent company of Canvas, confirmed that they detected unauthorized activity on their network starting in late April. On Thursday, they decided to take the platform offline after the hackers made visible changes to the site while students were logged in. Instructure stated that the stolen data included names, email addresses, student ID numbers, and private messages. However, the company noted that they have no evidence that passwords, birth dates, or financial information were stolen.
As reported by Ars Technica, the outage caused immediate chaos at many schools. Because students could not access their course materials or submit their final work, many universities had to change their plans. For example, the University of Illinois postponed all final exams and assignments scheduled for that weekend. Other schools, such as the University of Massachusetts Dartmouth, chose to extend deadlines to give students more time to finish their work.
Deutsche Welle noted that some schools even tried to reach out to the hackers to negotiate, as the group had encouraged individual institutions to talk to them directly. The hackers had set a deadline of May 12 for their demands to be met, threatening to leak the stolen data online if they were not satisfied. It remains unclear whether any ransom was paid to bring the platform back online.
By Friday, Instructure announced that Canvas was fully restored. The company explained that they had fixed the security issue that allowed the hackers to enter their system through 'Free-for-Teacher' accounts. In a statement, Instructure expressed regret for the worry and inconvenience the situation caused for students and faculty members.
Despite the platform being back online, experts warn that the danger is not necessarily over. Rachel Tobac advised users to remain very careful. She suggested that students and teachers should watch out for 'phishing' messages. Phishing is a common trick where hackers send fake emails or messages pretending to be from a trusted source—like a professor or the Canvas support team—to steal passwords or other personal information. Because the hackers now have access to names and email addresses, they might try to use this information to trick people into giving away more details.
This incident is part of a growing trend of cyberattacks against educational technology. Last year, another company called PowerSchool, which provides software to millions of K-12 students, also suffered a major data breach. As schools rely more and more on digital tools to manage learning, these platforms become more attractive targets for hackers. For now, students and teachers are returning to their studies, but the event serves as a strong reminder of the importance of digital security in modern education.
選擇題練習 · Quiz
共 4 題
- 細節 Detail
1.What specific observation led Instructure to take the Canvas platform offline on Thursday?
- 推論 Inference
2.What can be inferred about the 'Free-for-Teacher' accounts mentioned in the article?
- 單字情境 Vocabulary
3.In the context of the article, what does the word 'disruption' most closely mean in the first paragraph?
- 主旨 Main Idea
4.What is the main idea of this article?
易誤解詞彙 · Words to watch
這些字字面意思和文中用法不同,或是不常見的詞性/片語。
- met with phrasal verb
- To experience or encounter something (usually something unpleasant).
- 遭遇、碰到(通常指不好的事)。
- 💡 常見於「見面」之意,這裡指遭遇狀況。文中:When users tried to log in on Thursday, they were met with a black screen and a message from a hacking group known as ShinyHunters.
- loose adjective
- Not strictly organized or connected; informal.
- 鬆散的、非嚴密組織的。
- 💡 常見作「寬鬆」之意,這裡形容組織結構鬆散。文中:Rachel Tobac, the CEO of SocialProof Security, described the group as a loose collection of young hackers who work together like a ransomware gang.
- reach out to phrasal verb
- To try to communicate with someone, often to ask for help or negotiate.
- 主動聯繫、接觸(以尋求協助或協商)。
- 💡 常見作「伸手」之意,這裡指主動聯繫對方。文中:Deutsche Welle noted that some schools even tried to reach out to the hackers to negotiate, as the group had encouraged individual institutions to talk to them directly.
- watch out for phrasal verb
- To stay alert and pay attention to something dangerous.
- 提防、留意(危險事物)。
- 💡 常見作「看著外面」,這裡指保持警覺以防範危險。文中:She suggested that students and teachers should watch out for 'phishing' messages.
原始來源 · Sources
本文內容由 AI 從以下來源綜合改寫。事實請以原始來源為準。
gemini/gemini-3.1-flash-lite-preview