Moodle, Canvas, custom LMS — often outdated with public CVEs
05
Payment integration
Tuition fees, course purchases — PCI-DSS scope on payment pages
06
Brand/subdomain takeover
Universities have hundreds of subdomains; many are dangling and ripe for phishing
Who this is for
Universities, schools, EdTech SaaS companies, exam-prep platforms, online learning providers, and any organisation handling student personal and academic records.