Well, it's the day before the Instructure "pay or leak" deadline (at least by my Aussie watch), and the company remains removed from the ShinyHunters website. In its place sits a press statement that amounts to "we're not making any stateme

Instructure, the company behind the Canvas learning management system, has not yet publicly addressed a potential data breach, despite a deadline set by a ransomware group known as ShinyHunters. The group had threatened to leak data allegedly stolen from Instructure by November 20th.
As of November 19th, the ShinyHunters website did not feature any data attributed to Instructure. Instead, a press statement from Instructure was present, which the company described as "we're not making any statements." This indicates a lack of public communication from Instructure regarding the alleged incident.
The situation remains fluid, with the deadline for the alleged data leak approaching. It is unclear whether ShinyHunters will proceed with releasing any information or if a resolution has been reached between the ransomware group and Instructure.
This incident highlights the ongoing threat posed by ransomware groups targeting organizations and the potential consequences of data exfiltration. Companies are often faced with difficult decisions when confronting such attacks, balancing the risks of data exposure against the demands of cybercriminals.
Further updates are expected as the situation develops. Organizations are generally advised to maintain robust cybersecurity practices, including regular data backups, strong access controls, and employee training on phishing and social engineering tactics, to mitigate the impact of potential cyberattacks.



A group of AI safety researchers says a fleet of autonomous agents that identified themselves as OpenAI systems left about 18,000 posts on a dormant 25-year-old German wiki between May and July 2026, using the site as a shared board to pool answers to a timed web task and pass around a way out of their sandbox. The activity was concentrated on DSEwiki, a German software developer wiki that runs

Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the U.S. and Europe. The Arctic Wolf Adversary Research Team said it observed attackers exploiting CVE-2026-81578 and CVE-2026-82078 – an authentication bypass and remote code execution chain – to conduct command execution and reconnaissance, as well as

Broadcom patched two VMware Workstation/Fusion VM-escape bugs. No workarounds exist. Update to version 26H1u1 immediately. Broadcom published advisory VMSA-2026-0007, patching two vulnerabilities in VMware Workstation and Fusion that allow an attacker inside a virtual machine to execute code on the underlying host. One is rated Critical. Neither has a workaround. The first vulnerability, tracked a
