Article Archive #2
Service navigation

Importance of Security
Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.
-
It’s the Simple Things
The vast majority of cyberattacks, 98%, start with phishing attacks that contain NO zero-days and NO malware. They simply trick us into clicking on a link or opening an attachment, thereby turning over our passwords to the bad guys. Zero-days are bugs in software that the software company does not know exist. That’s why they’re…
-
Don’t Become a victim!
Here are a few facts that illustrate the dramatic increase in cybercrime; 2,244 cyberattacks happen daily, according to the University of Maryland! Cyberattacks have increased 37% month-to-month due to the COVID-19 pandemic! An estimated $108M in losses are due to scams in a recent 6-month period. Cybercrime is big business—and happens more often than you…
-
No! Really! You are a target!
Cybercriminals are very effective at getting what they want. They have learned that the easiest way around the university’s defenses isn’t hacking and cracking; it’s tricking you into letting them in. They will use everything in their toolbox to implement their attacks. Social engineering is the art of manipulating, influencing, or deceiving you into taking some…

Scam Types
Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.
-
ClickFix: Don’t Be Tricked by a Fake “Fix”
Cybercriminals are using a tactic called ClickFix to trick people into compromising their own devices. These scams use fake error messages, security warnings, or fake CAPTCHA verification prompts that tell users to take steps to “fix” a problem. One common trick is instructing users to press Windows + R to open the Run box, then press Ctrl + V to paste…
-
Triggers Hackers Use to Trick You: Urgency, Authority, and Curiosity
Hackers don’t rely on technology alone—they rely on human psychology. Most attacks rely on three simple triggers to get people to act quickly without thinking. The first trigger is a sense of urgency, with messages like “act now or lose access” or “your account will be locked,” creating pressure that pushes users to respond immediately…
-
Understanding QR Code Phishing
In the dynamic world of cybersecurity, threat actors continue to innovate using methods like QR code phishing. This technique, which seemed emergent just a few years ago, has now become more refined and widespread. QR code phishing, also known as “Quishing,” remains a threat as these codes are now ubiquitously used for convenience in many…
-
Typosquatting: When a Tiny Typo Leads to Big Trouble
Have you ever mistyped a website address? Maybe you accidentally hit “goggle.com” instead of “google.com”? Well, that seemingly innocent slip-up can lead you down a treacherous path—one paved with cyber traps. What Is Typosquatting? Typosquatting is like a cunning chameleon. It preys on our human tendency to fumble our keystrokes. Here’s how it works: Why…

Benefits & Tips for You
In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.
-
Tips for Securing macOS
It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…
-
MFA + Strong Passwords: Your Best Defense Against Account Attacks
Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…
-
Find Out If Your Data Was Exposed in a Breach
Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

Protecting University Data
Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.
-
Incident what?
Information Security type individuals, as well as auditors, frequently talk about “Incident Response.” The term gets mentioned so much that it may be assumed that everyone knows what the term means. Incident response is an organized approach to addressing and managing the aftermath of a security breach or cyberattack. The goal of an Incident Response…
-
Compromised Workstations/Laptops
Is your workstation or laptop running “slow”? Does it take FOREVER for an application to start? Do you come in after being away from your desk to often find that your computer has restarted, displaying some sort of cryptic message about a problem? Your machine may be compromised or infected. Security incidents come in all…
-
Data Loss Prevention (DLP)
One of the biggest risks that we face is the loss of our data. Whether it is cyber-breach, a stolen mobile device, or a stack of spreadsheets accidentally thrown away in an unsecured receptacle, the result is the same: our information falls into the hands of folks who are not authorized to view it. We can mitigate or…

Explore
Write
Chat
Call