Skip to content Skip to main navigation Report an accessibility issue
Information Security

Article Archive #2


Service navigation


Security Learning Icon One

Importance of Security

Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.

  • Think Before You Share: What the Claude Search Exposure Teaches Us About AI Privacy

    Recent reporting found that some Claude chats and Artifacts shared by public links appeared in Google search results. Reported examples included internal documents, health-related information, contact details, and API keys. This does not appear to mean that all private Claude chats were exposed, but it is an important reminder that a shared AI link may be far more…

    Read article…

  • Two-Factor Authentication (2FA) Prompt Bombing

    Two-factor authentication (also known as, “Multi-factor Authentication (MFA)”) provides an extra layer of security for your accounts, but it’s important to think before you click. Cybercriminals can use an attack method called 2FA prompt bombing to bypass 2FA protections and overwhelm you with prompts via the Push feature of Duo. For example, cybercriminals may try to log…

    Read article…

  • When ‘Too Good to Be True’ Comes from Someone You Know

    For years, cybercriminals have used social media to post fake sales listings for popular items such as furniture or electronics. As these scams have gained in popularity, most of us have learned to use caution when buying items online from strangers. Now, cybercriminals are impersonating people you trust to lure you into their fake listing…

    Read article…


Scam Types

Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.

  • Permission to Hack

    Malware researchers recently discovered a trojan app on the Google Play Store. Trojans are malicious applications or software that appear legitimate. Thousands of users downloaded this app before knowing it was malicious. So, it’s important to learn how to spot malicious apps.  In this scam, cybercriminals uploaded a malicious screen recording app on the Google…

    Read article…

  • PayPal Payment Ploy

    Recently, cybercriminals have taken advantage of the popular (and international) online payment platform, PayPal. Cybercriminals are spoofing PayPal to try and steal your personal or financial information. Cybercriminals in this PayPal ploy send you a phishing email saying that one of your payments didn’t process and that you must act fast. The email contains a…

    Read article…

  • Smishing for Bank Information 

    A smishing attack(a phishing attack through SMS, or “text” messaging) was recently used by a ring of cybercriminals to steal credit card information. The cybercriminals used this stolen bank information to purchase cryptocurrency (BITCOIN) that they then exchanged for cash. Cybercriminals sent SMS messages pretending to be a bank. The message says that a security…

    Read article…

  • Watch Out! FedNow Scams

    FedNow is a new instant payment service created by the Federal Reserve. This service allows banks from all over the US to provide instant funds to any of their customers. Any consumer could use FedNow to send and receive payments instantly. In the coming months, we expect to see an influx of cybercriminals trying to…

    Read article…


Benefits & Tips for You

In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.

  • Tips for Securing macOS

    It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…

    Read article…

  • MFA + Strong Passwords: Your Best Defense Against Account Attacks

    Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…

    Read article…

  • Find Out If Your Data Was Exposed in a Breach

    Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

    Read article…


Protecting University Data

Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.

  • Tips for Securing Windows

    Many people use Microsoft Windows as their primary operating system for work, school, personal computing, and even gaming. The most recent Windows Operating System is Windows 11, but there are still many people on Windows 10. Fortunately making your operating system more secure is very similar in both versions. Tips to help secure your Windows…

    Read article…

  • Secure File Transfer

    Vault (UT Secure Courier) is a secure file transfer application that allows users to easily share large files, including executables, quickly and securely. Files are uploaded and downloaded via SSL-encrypted HTTP and stored in an encrypted data store. Using Vault is as easy as sending an email with an attachment, and it can be used…

    Read article…

  • Protecting University-Owned Devices from Infostealers

    In recent months, a surge in infostealer malware has been making headlines, posing a significant threat to individuals and organizations alike. Infostealers are a type of malware designed to infiltrate systems and steal sensitive information such as passwords, cookies, and search histories. This stolen data can then be sold on the dark web or used…

    Read article…