{"id":1408,"date":"2026-05-07T14:15:21","date_gmt":"2026-05-07T21:15:21","guid":{"rendered":"https:\/\/www.bellevuecollege.edu\/its\/?p=1408"},"modified":"2026-05-11T16:10:29","modified_gmt":"2026-05-11T23:10:29","slug":"canvas-security-incident","status":"publish","type":"post","link":"https:\/\/www.bellevuecollege.edu\/its\/2026\/05\/07\/canvas-security-incident\/","title":{"rendered":"Canvas Security Incident"},"content":{"rendered":"<div class=\"block-wrapper alignstandard\">\n<h2 class=\"wp-block-heading\">Update: May 11, 4:00 PM<\/h2>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Words matter, and can carry legal implications, especially when used incorrectly. At this moment, this is a <strong>vendor-related security incident. &nbsp;<\/strong>&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Below are&nbsp;a few tips on how to communicate about this matter:<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<ol class=\"wp-block-list\">\n<li><strong>What does &#8220;vendor-related security incident&#8221; mean?<\/strong> &nbsp;Bellevue College&#8217;s infrastructure, email, passwords, ctcLink were not in scope or at risk; only the vendor&#8217;s infrastructure was. The bad actors gained unauthorized access to Instructure&#8217;s infrastructure, including thousands of Canvas LMS instances, affecting institutions globally.<\/li>\n\n\n\n<li><strong>Was this a data breach? <\/strong>We <em>cannot speak to or confirm<\/em> <em>that<\/em> until Instructure&#8217;s forensic investigation provides us with the specifics regarding our data. Please refrain from using such language and refer to this as a &#8220;vendor-related security incident.&#8221;<\/li>\n\n\n\n<li><strong>Is there a need to change my Bellevue College NetID or ctcLink credentials? <\/strong>At this time, we have no evidence that those passwords were exposed, but users are free to change them if they feel the need to be overly cautious.<\/li>\n\n\n\n<li><strong>I&#8217;m a student, and I have <\/strong><strong>questions about deadlines or assignment submissions:<\/strong> Please address your questions to your instructors.<\/li>\n\n\n\n<li><strong>I&#8217;m a faculty member who needs assistance: <\/strong>Please connect with <a href=\"https:\/\/www.bellevuecollege.edu\/elearningfaculty\/\">eLearning<\/a> for tips on how to update coursework and assignment due dates, grant extra assignment or test attempts, export course content, and more.<\/li>\n\n\n\n<li><strong>Concerned about sensitive information shared within the Canvas platform? <\/strong>Feel free to reach out directly to Bellevue College&#8217;s Dean of Student Support <a href=\"mailto:megan.kaptick@bellevuecollege.edu\" data-type=\"mailto\" data-id=\"mailto:megan.kaptick@bellevuecollege.edu\">Megan Kaptik<\/a> or Bellevue College&#8217;s IT Security Manager <a href=\"mailto:agnes.figueroa@bellevuecollege.edu\">Agnes Figueroa<\/a>. If disability specific, reach out to the <a href=\"https:\/\/www.bellevuecollege.edu\/drc\/\">Disability Resource Center<\/a>.<\/li>\n<\/ol>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<h2 class=\"wp-block-heading\">Update: May 8, 10:03 AM<\/h2>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Canvas services have been restored for Bellevue College users. If you are still encountering issues logging in, please clear your browsers cache and cookies then close your browser. If you are still encountering issues after that please <a href=\"https:\/\/www.bellevuecollege.edu\/servicedesk\">submit a ticket<\/a> separately and we can assist you.<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<h2 class=\"wp-block-heading\">Update: May 8: 12:53 AM<\/h2>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Instructure has posted additional information about the incident on its website. <a href=\"http:\/\/www.instructure.com\/incident_update\">View Instructure&#8217;s Incident Website<\/a>.<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<h2 class=\"wp-block-heading\">Update: May 7, 4:57 PM<\/h2>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Instructure, the company that&nbsp;operates&nbsp;Canvas, recently notified Bellevue College that an unauthorized third party obtained data associated with our Canvas environment. Based on what Instructure has shared so far, the data involved may include some personal information, but Instructure has not yet provided details about what was obtained or what accounts at our college were affected. &nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Instructure has&nbsp;stated&nbsp;publicly that names, email addresses, student ID numbers, and user-to-user Canvas messages were potentially involved across the broader incident. Instructure has also reported no&nbsp;indication&nbsp;that passwords, dates of birth, Social Security&nbsp;numbers&nbsp;or financial account information were involved. If Instructure\u2019s findings change, we will update affected community members.&nbsp; &nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>As good general practice, please be alert to unexpected emails, text messages, or phone calls that ask for personal information or that direct you to log in through unfamiliar links. If you receive a message that looks suspicious, mark it as spam, do not click links in it, and <a href=\"https:\/\/www.bellevuecollege.edu\/servicedesk\">submit a ticket<\/a> if you need assistance. <\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>We will share&nbsp;additional&nbsp;information as confirmed details become available.&nbsp;Thank you. &nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<h2 class=\"wp-block-heading\">Original Post: May 7<\/h2>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Bellevue College is sharing information on a security incident involving Canvas, the learning management system used at our college and at colleges across the country.&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Instructure \u2014 the company that&nbsp;operates&nbsp;Canvas \u2014 recently notified Bellevue College that an unauthorized third party obtained data associated with our Canvas environment. This incident was not specifically directed at Bellevue College.&nbsp;Instructure serves many institutions, and this appears to be a vendor-driven incident affecting multiple education customers. Instructure has&nbsp;stated&nbsp;that the broader incident affected many institutions in the United States.<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Federal law enforcement, including the FBI and the U.S. Cybersecurity and Infrastructure Security Agency (CISA), has been notified by Instructure.&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>What was involved at our college: Based on the information Instructure has provided to us so far, the data involved may include personal information; however, Instructure has not yet provided the exact data elements or affected user count for our college. Instructure has&nbsp;stated&nbsp;publicly that, across the broader incident, names, email addresses, ID numbers, and user-to-user Canvas messages were potentially involved. We have asked&nbsp;Instructure&nbsp;to confirm specifically what was involved, including whether Canvas messages were affected and how many users were&nbsp;impacted, and we will share&nbsp;additional&nbsp;information as we receive it.&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>What was&nbsp;reportedly not&nbsp;involved: Instructure has&nbsp;stated&nbsp;that there is no&nbsp;indication&nbsp;that passwords, dates of&nbsp;birth, Social&nbsp;Security numbers, or financial account information were involved. If Instructure\u2019s findings change, we will update affected community members.&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>What we are doing: Bellevue College is working with the State Board for Community and Technical Colleges (SBCTC), to&nbsp;press Instructure for&nbsp;additional&nbsp;information about what was specifically involved at our college. We will provide further updates on this page as&nbsp;additional&nbsp;confirmed information becomes available.&nbsp;<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Instructure has&nbsp;indicated&nbsp;that organization-specific resources, including identity-protection services for affected individuals, may follow. We will share details as they become available.<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p>Anyone with questions can contact <a href=\"mailto:servicedesk@bellevuecollege.edu\">servicedesk@bellevuecollege.edu<\/a>. Out of an abundance of caution, members of our community are&nbsp;encouraged to be alert to phishing attempts or unexpected messages requesting personal information.<\/p>\n<\/div>\n\n<div class=\"block-wrapper alignstandard\">\n<p><\/p>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>Update: May 11, 4:00 PM Words matter, and can carry legal implications, especially when used incorrectly. At this moment, this is a vendor-related security incident. &nbsp;&nbsp; Below are&nbsp;a few tips&hellip;<\/p>\n","protected":false},"author":3353,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[26],"tags":[27],"class_list":["post-1408","post","type-post","status-publish","format-standard","hentry","category-security-incidents","tag-canvas"],"acf":{"summary":"Bellevue College is sharing information on a security incident involving Canvas, the learning management system used at our college and at colleges across the country. ","featured_media_type":"image_horizontal","featured_image_horizontal":"","featured_image_vertical":null,"featured_video_url":"","caption":"","author_override":"IT Security","contact":""},"_links":{"self":[{"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/posts\/1408","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/users\/3353"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/comments?post=1408"}],"version-history":[{"count":5,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/posts\/1408\/revisions"}],"predecessor-version":[{"id":1418,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/posts\/1408\/revisions\/1418"}],"wp:attachment":[{"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/media?parent=1408"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/categories?post=1408"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.bellevuecollege.edu\/its\/wp-json\/wp\/v2\/tags?post=1408"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}