Notice: Canvas (Instructure) security incident
Published on 12/05/2026 by
Blackpool and The Fylde College (B&FC) is aware of a recent cybersecurity incident affecting Canvas, the learning platform provided by our third-party supplier, Instructure.
Instructure has confirmed that an unauthorised party had accessed parts of its systems.
Based on the information available at this time, some data may have been accessed including learner names, B&FC email addresses, student identification numbers and messages within the Canvas platform.
Importantly, there is no evidence that passwords, financial information or highly sensitive personal data (such as bank details or national identifiers) have been affected, as this information is not stored in Canvas. Core learning data, including course content and submissions, has also not been impacted.
The incident occurred within Instructure’s systems and not within B&FC’s own IT environment.
Instructure has confirmed that the issue has been contained and that Canvas remains safe to use.
As a precaution, we are advising our students and apprentices to remain vigilant for any unexpected or suspicious emails or messages, particularly those claiming to be from Canvas or B&FC. Passwords and login details should never be shared.
We are continuing to monitor updates from Instructure and will provide further information if required.
Protecting the data of our college community is extremely important to us and we are working closely with Instructure to ensure appropriate steps continue to be taken.
Students or apprentices with any concerns should contact the IT Service Desk.