The Lab · 2026-04-03 13:27:01 · GitHub Issues
A critical security vulnerability pattern has been identified within the OpenSchoolEd platform, exposing student data to unauthorized access and manipulation. The flaw is an Insecure Direct Object Reference (IDOR) affecting core administrative functions. While view and list operations correctly restrict data based on u...
The Lab · 2026-05-08 08:20:45 · r/privacy
A boarding school in the Los Angeles area has been exposed for installing a hidden camera disguised inside a smoke detector in a bathroom sink area used by 9th and 10th grade students — all minors. The camera was discovered on a floor housing younger students, while older students' facilities were left unmonitored. Sch...
The Lab · 2026-05-11 18:18:24 · r/privacy
The hacking group ShinyHunters has given Instructure, parent company of the widely-used learning management system Canvas, until May 12 to pay ransom or face the release of 275 million student records. Tomorrow's deadline places immense pressure on the education technology company as it remains unclear whether any paym...