Skip to content Skip to main navigation Report an accessibility issue
Information Security

Article Archive #2


Service navigation


Security Learning Icon One

Importance of Security

Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.

  • The Importance of Software Updates

    There is always a bit of annoyance when we see that our computer needs an update. It always seems to happen when we are right in the middle of important work. We begrudgingly either install the updates or pick a time for the inevitable reboot. But did you know that generally, those updates only cover…

    Read article…

  • Reporting Cybercrime

    We all know that we should report any cyber incidents to the OIT HelpDesk and eventually OIT Security. This is the most important thing you can do following a cyber incident with university devices and data. What if, however, it’s your data and your devices?  Thankfully it is National Cyber Security Awareness Month and the…

    Read article…

  • What is Encryption?

    You’ve probably heard of encryption at some point. Encryption is a key technology in both business and consumer applications. Perhaps you’ve used encryption in messaging applications or your emails without even knowing. So, what is encryption and how does it work? Encryption is a process used to protect data by converting it into a coded…

    Read article…


Scam Types

Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.

  • Typosquatting: When a Tiny Typo Leads to Big Trouble

    Have you ever mistyped a website address? Maybe you accidentally hit “goggle.com” instead of “google.com”? Well, that seemingly innocent slip-up can lead you down a treacherous path—one paved with cyber traps. What Is Typosquatting? Typosquatting is like a cunning chameleon. It preys on our human tendency to fumble our keystrokes. Here’s how it works: Why…

    Read article…

  • Spotting and Avoiding Phishing Attacks

    Phishing is essentially someone trying to get you to do something via email, usually by asking you to volunteer personal information or click a link, which enables them to compromise you, your accounts, or your computer. Other kinds of phishing may require you to open an attachment or a link, which can infect your computer…

    Read article…

  • Obscured, Obfuscated Links

    Recently, researchers have discovered another technique cybercriminals use to steal your information. In this technique, cybercriminals use obfuscated links to show IP addresses like XXX.XXX.XXX.XXX, instead of websites. Obfuscated links are URLs that have been modified to hide the real location of a website.   In this attack method, cybercriminals send an urgent email that appears to come from a legitimate source and…

    Read article…

  • Phishing and Phishing and Phishing

    Cybercriminals know the best strategies for gaining access to the university’s sensitive data – Social Engineering. They simply manipulate your trust by posing as something or someone you trust. According to experts at IBM, human error accounts for 95% of security incidents. Protect your data by familiarizing yourself with the various techniques and telltale signs of…

    Read article…


Benefits & Tips for You

In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.

  • Tips for Securing macOS

    It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…

    Read article…

  • MFA + Strong Passwords: Your Best Defense Against Account Attacks

    Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…

    Read article…

  • Find Out If Your Data Was Exposed in a Breach

    Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

    Read article…


Protecting University Data

Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.

  • Look, No Hands—Let OIT Continuously Monitor Your Systems

    One of the responsibilities of every user of UT’s IT resources is to continuously monitor their UT Owned workstations, laptops, and servers. What does that even mean? HOW? WHO? Who does ANYTHING continuously? These two words, continuous monitoring,” would imply that you (or somebody) should be looking at a computer(s) 24 hours a day, 365 days per year. Thankfully, this…

    Read article…

  • Plans and Programs and Controls, Oh My!

    Information security conversations often include words like “IT security plans,” “systems,” and “program plans.” What do these terms mean in the context of cyber security, and why should we care? Three reasons WHY we are talking about cyber security: Human Resource (HR) or Fiscal (FI) policies provide a governance structure for conducting university business, the…

    Read article…

  • File Sharing Options for Sensitive Information

    We regularly receive questions about sharing or storing sensitive information.  While we have several recommendations, first, let’s talk about why you should be concerned about how you share or store sensitive information. ALL users are responsible for ensuring that their use of sensitive information services complies with laws, regulations, and policies where applicable; it is EVERYONE’s responsibility.…

    Read article…