Article Archive #2
Service navigation

Importance of Security
Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.
-
What is a Purple Teamer?
A purple teamer is a cybersecurity professional who works to bridge the gap between red teams (offensive security) and blue teams (defensive security). Their role involves fostering collaboration and ensuring that both teams’ efforts align to enhance an organization’s security posture. Here are some key aspects of what a purple teamer does: By combining the…
-
What is a Red Teamer?
A red teamer is a cybersecurity professional who simulates real-world attacks on an organization’s systems, networks, and applications to identify vulnerabilities and weaknesses. The primary goal of a red teamer is to think and act like a malicious hacker to test and improve an organization’s security posture. Key Aspects of What a Red Teamer Does …
-
Why Reporting Phishing Emails Benefits UT
Reporting phishing emails seems like a small thing, but it can have a large impact on security and UT. Reporting phishing emails is crucial for UT to maintain a strong security posture. In our most recent phishing test, about thirty-five percent of the people in the test simply deleted the email. Around thirteen percent forwarded…

Scam Types
Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.
-
Pretexting
Now more than ever, cybercriminals are using a tactic known as pretexting to catch you off guard. Pretexting is when a cybercriminal impersonates a real person and asks you for help with a fake scenario. They often carry on a conversation with you and use public information to convince you that they are who they…
-
Permission to Hack
Malware researchers recently discovered a trojan app on the Google Play Store. Trojans are malicious applications or software that appear legitimate. Thousands of users downloaded this app before knowing it was malicious. So, it’s important to learn how to spot malicious apps. In this scam, cybercriminals uploaded a malicious screen recording app on the Google…
-
PayPal Payment Ploy
Recently, cybercriminals have taken advantage of the popular (and international) online payment platform, PayPal. Cybercriminals are spoofing PayPal to try and steal your personal or financial information. Cybercriminals in this PayPal ploy send you a phishing email saying that one of your payments didn’t process and that you must act fast. The email contains a…
-
Smishing for Bank Information
A smishing attack(a phishing attack through SMS, or “text” messaging) was recently used by a ring of cybercriminals to steal credit card information. The cybercriminals used this stolen bank information to purchase cryptocurrency (BITCOIN) that they then exchanged for cash. Cybercriminals sent SMS messages pretending to be a bank. The message says that a security…

Benefits & Tips for You
In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.
-
Tips for Securing macOS
It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…
-
MFA + Strong Passwords: Your Best Defense Against Account Attacks
Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…
-
Find Out If Your Data Was Exposed in a Breach
Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

Protecting University Data
Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.
-
Tips for Securing Windows
Many people use Microsoft Windows as their primary operating system for work, school, personal computing, and even gaming. The most recent Windows Operating System is Windows 11, but there are still many people on Windows 10. Fortunately making your operating system more secure is very similar in both versions. Tips to help secure your Windows…
-
Secure File Transfer
Vault (UT Secure Courier) is a secure file transfer application that allows users to easily share large files, including executables, quickly and securely. Files are uploaded and downloaded via SSL-encrypted HTTP and stored in an encrypted data store. Using Vault is as easy as sending an email with an attachment, and it can be used…
-
Protecting University-Owned Devices from Infostealers
In recent months, a surge in infostealer malware has been making headlines, posing a significant threat to individuals and organizations alike. Infostealers are a type of malware designed to infiltrate systems and steal sensitive information such as passwords, cookies, and search histories. This stolen data can then be sold on the dark web or used…

Explore
Write
Chat
Call