Skip to main content
To KTH's start page

Suspected data breach in Canvas

Published May 08, 2026

There has been a cybersecurity incident and a probable data breach on the Canvas learning platform. KTH has stepped up monitoring of the system and has implemented technical security measures.

Updated on 14 May 2026 at 20:30 by the removal of previously provided information about the operational disruption.

Updated on 8 May 2026 at 16:40 with information that Canvas is available again after being inaccessible during Friday 8 May, and that KTH has reported an information security incident to the Swedish Civil Defence and Resilience Agency (MCF).

KTH is one of many higher education institutions that have been affected in Sweden and internationally. The information that may have been exposed includes user data such as name, email address, student ID, and messages exchanged between users in Canvas. This means that phishing emails in the near future may be more sophisticated, for example, containing familiar names and relevant information mixed with manipulated content.

Currently, there is no information indicating that passwords have been compromised. If you are a student you may, as a precaution, choose to change your password. Remember to use strong and unique passwords.

Information on KTH account and how to change your password

The incident has been reported

KTH has received information about the cybersecurity incident from Sunet (Swedish University Computer Network) and Canvas’s provider, Instructure. An investigation is ongoing at Instructure, together with external security experts. KTH is closely monitoring the situation and maintains ongoing dialogue with Sunet and Instructure.

KTH has reported a suspected personal data incident to the Swedish Authority for Privacy Protection (IMY). The incident has also been reported to the Swedish Civil Defence and Resilience Agency (MCF). KTH is also conducting our own assessment of the incident in accordance with applicable regulations.

The information is updated continuously.

What you can do

As a precautionary measure, we recommend that you:

  • Be extra alert to suspicious emails or login requests

  • Do not share your login credentials

If you notice anything unusual in Canvas or wish to report suspected phishing emails, please contact IT Support.

Report suspicious email to IT-Support