Article Archive #2
Service navigation

Importance of Security
Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.
-
Agentic AI Browsers and Associated Risks
Unlike traditional browsers, which rely on user clicks and keystrokes, Agentic AI browsers integrate autonomous agents into the browsing experience. These tools interpret natural language commands and are capable of executing multi-step tasks across websites. Popular AI Browser examples include: These browsers aim to boost productivity by automating tasks like booking appointments, comparing products, or…
-
Don’t Delete That Suspicious Email
Phishing emails are among the most common threats facing universities today. These messages appear legitimate, enticing you to click on malicious links, download harmful attachments, or give away sensitive information. At UT, we rely on your help to identify and stop these threats. That’s why reporting suspicious emails is essential—not just deleting them. What Happens…
-
Understanding Passwordless Authentication
Passwordless authentication is a modern security practice that eliminates the need for traditional passwords to verify a user’s identity. Instead, it relies on alternative methods such as biometrics, physical security keys, or cryptographic keys stored on a device to grant access. This approach reduces security risks such as reused passwords, stolen credentials, and weak authentication…

Scam Types
Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.
-
Safeguarding Against QR Code Fishing
In the ever-evolving landscape of cybersecurity threats, one emerging tactic is the use of QR codes in phishing emails. This deceptive technique poses a significant risk to both end users and IT professionals. Understanding QR Code Fishing: QR code phishing involves embedding malicious URLs or content within a seemingly innocuous QR code within emails, on…
-
Safeguarding Against QR Code Fishing
In the ever-evolving landscape of cybersecurity threats, one emerging tactic is the use of QR codes in phishing emails. This deceptive technique poses a significant risk to both end users and IT professionals. UNDERSTANDING QR CODE FISHING: QR code phishing involves embedding malicious URLs or content within a seemingly innocuous QR code. These codes can…
-
.zip Domains
Recently, .zip top-level domains have become available for public purchase. A top-level domain is the final section of a domain name. So, in utk[dot]edu, “.edu” is the top-level domain. Unsurprisingly, cybercriminals have begun purchasing and using .zip domains for their own malicious purposes. In the coming months, we expect to see an influx of cybercriminals…
-
Phishing with Images
Cybercriminals use images in phishing emails to impersonate real organizations. By using images like official logos (i.e., UT, UPS, FedEx, etc.) and promotional materials, cybercriminals hope to trick you into thinking the email is legitimate. In one recent incident, cybercriminals spoofed Delta Airlines to try to steal sensitive information. The body of the email consists…

Benefits & Tips for You
In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.
-
Tips for Securing macOS
It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…
-
MFA + Strong Passwords: Your Best Defense Against Account Attacks
Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…
-
Find Out If Your Data Was Exposed in a Breach
Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

Protecting University Data
Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.
-
Look, No Hands—Let OIT Continuously Monitor Your Systems
One of the responsibilities of every user of UT’s IT resources is to continuously monitor their UT Owned workstations, laptops, and servers. What does that even mean? HOW? WHO? Who does ANYTHING continuously? These two words, continuous monitoring,” would imply that you (or somebody) should be looking at a computer(s) 24 hours a day, 365 days per year. Thankfully, this…
-
Plans and Programs and Controls, Oh My!
Information security conversations often include words like “IT security plans,” “systems,” and “program plans.” What do these terms mean in the context of cyber security, and why should we care? Three reasons WHY we are talking about cyber security: Human Resource (HR) or Fiscal (FI) policies provide a governance structure for conducting university business, the…
-
File Sharing Options for Sensitive Information
We regularly receive questions about sharing or storing sensitive information. While we have several recommendations, first, let’s talk about why you should be concerned about how you share or store sensitive information. ALL users are responsible for ensuring that their use of sensitive information services complies with laws, regulations, and policies where applicable; it is EVERYONE’s responsibility.…

Explore
Write
Chat
Call