6/17/2026
Dear Campus Community,
We are writing to share a final update regarding the recent cybersecurity incident affecting Instructure, the third-party company provider of our Canvas learning management system.
As noted in our May 12, 2026 message, this broader Instructure breach impacted more than 8,000 institutions, including Puget Sound. Instructure immediately undertook a full review of the data involved in this incident to determine how many institutions were directly affected. That review is now complete, and Instructure has officially informed us that University of Puget Sound’s data was not involved. While you may see continued reports in the media about this nationwide breach and its resolution, we want to confirm that there was no direct compromise of Puget Sound systems or infrastructure. Canvas remains fully operational and safe to use.
Security Reminders
We recommend the following steps to protect your data and university credentials:
- Watch for Phishing. Be cautious of unexpected emails requesting login credentials or personal information, even if they appear to come from university sources or Canvas.
- Verify Links. Before clicking links, verify that they direct to a legitimate university or Canvas-related domains.
- Report Suspicious Activity. Report suspicious emails, account activity, or unusual behavior within Canvas to Technology Services immediately.
- Follow Standard Protocols. Continue following standard cybersecurity practices, including using strong, unique passwords and multi-factor authentication where available.
As always, we encourage everyone to remain vigilant against cybercrime and promptly report any suspicious emails or account activity to Technology Services at servicedesk@pugetsound.edu.
Sincerely,
Francisco Chavez, MBA | Chief Information Officer