Skip to content Skip to main navigation Report an accessibility issue
Information Security

Article Archive #2


Service navigation


Security Learning Icon One

Importance of Security

Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.

  • Can You Identify a Phishing Website?

    A phishing website is a malicious site designed to steal sensitive information such as login credentials, credit card numbers, and other personal data. These websites often mimic legitimate sites to trick users into interacting with the website. Recognizing the signs of a phishing website and knowing how to protect yourself can help prevent identity theft…

    Read article…

  • Can You Identify a Phishing Email?

    Phishing emails are a common tactic used by cybercriminals to steal personal information, such as passwords, credit card numbers, and other sensitive data. Understanding and identifying these malicious emails can help protect you from falling prey to scams and potential security breaches. What is a Phishing Email? A phishing email is a fraudulent message that…

    Read article…

  • Passwords, Passwords Everywhere!

    Did you know that the average person uses the same three to seven passwords to log in to over 170 online accounts? In addition to being reused, these passwords are often weak and easily guessed by cybercriminals. If cybercriminals successfully guess these weak passwords, they can access most of their victims’ online accounts. Even worse,…

    Read article…


Scam Types

Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.

  • Watch Out for High Profile Scams

    The US-based Silicon Valley Bank (SVB) recently shut down due to failure to meet its financial obligations. This collapse has caused public panic, and unfortunately, like all major news events, cybercriminals take advantage of high-profile news stories to catch your attention and manipulate your emotions. Cybercriminals will use every tool in their arsenal to prey on…

    Read article…

  • Keep IT Private and Separate

    “YOU” exist in digital form all over the Internet. It is thus important to ensure that the “digital YOU” matches what you intend to share. It is also critical to guard your privacy — not only to avoid embarrassment but also to protect your identity and finances! The following are specific steps you can take…

    Read article…

  • IT or Cybercriminal?

    Coinbase, a cryptocurrency platform, is the latest victim of a social engineering attack. Social engineering occurs when cybercriminals manipulate you to try to steal your sensitive information.  In this Coinbase attack, a cybercriminal sent smishing (SMS phishing) messages to their employees containing a link directing them to log in to their company accounts. Shortly after…

    Read article…

  • There was PHISHING. Then, there was SMISHING!

    A single sign-on (SSO) service allows you to log in to multiple accounts using one login credential, such as your NETID and the Central Authentication Service (CAS). Unfortunately, you aren’t the only one who benefits from this service. Cybercriminals are taking advantage of SSO services in a recent smishing (SMS phishing) scam. A SMISHING scam…

    Read article…


Benefits & Tips for You

In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.

  • Tips for Securing macOS

    It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…

    Read article…

  • MFA + Strong Passwords: Your Best Defense Against Account Attacks

    Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…

    Read article…

  • Find Out If Your Data Was Exposed in a Breach

    Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

    Read article…


Protecting University Data

Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.

  • I’ve been hacked!

    Determining whether or not your computer or mobile device has been hacked can be difficult. Nonetheless, there are a few common issues that will indicate your computer has been hacked. If your browser’s homepage has unexpectedly changed or is taking you to websites you have never visited, this could be an indication. Also, if your…

    Read article…

  • Phishing Ourselves

    In September of 2021, the UTK Administration asked that OIT develop and carry out a phishing campaign. The phishing will continue until the clicks improve, and they ARE improving! A couple of Frequently Asked Questions (FAQs) about the phishing campaign: OIT conducted a baseline phishing exercise in September 2021 used to compare all following campaigns.…

    Read article…