Sunderland University hit by global cybersecurity issue

 <i>(Image: Google Maps)</i>
(Image: Google Maps)
This article is brought to you by our exclusive subscriber partnership with our sister title USA Today, and has been written by our American colleagues. It does not necessarily reflect the view of The Herald.

A university has warned that personal data may have been affected in a cybersecurity incident.

The incident, which has reportedly affected around 175m users globally, has affected the use of Canvas, an online learning platform widely used by educational institutions.

The University of Sunderland has confirmed that names, email addresses, student numbers, and messages sent through the platform may have been exposed.

A spokesman for the University of Sunderland said: "The University is aware of a cybersecurity incident affecting the Canvas virtual learning environment, identified by its supplier, Instructure, on 1 May 2026.

"The University is now working to investigate and manage the situation, and additional security measures have been put in place as a precaution.

"Systems remain safe to use, and we will continue to keep our student community updated as further information becomes available."


Read more:


No passwords, dates of birth, government identifiers, or financial details are believed to be included in the breach.

The university said that its single sign-on system ensured account security for most users, though a small number of users did have passwords changed as a precaution.

Emails have been sent to students and staff to inform them of the incident and recommend extra vigilance regarding suspicious emails or communications.

Get involved
with the news

Send your news & photos