Article Archive #2
Service navigation

Importance of Security
Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.
-
What is a Purple Teamer?
A purple teamer is a cybersecurity professional who works to bridge the gap between red teams (offensive security) and blue teams (defensive security). Their role involves fostering collaboration and ensuring that both teams’ efforts align to enhance an organization’s security posture. Here are some key aspects of what a purple teamer does: By combining the…
-
What is a Red Teamer?
A red teamer is a cybersecurity professional who simulates real-world attacks on an organization’s systems, networks, and applications to identify vulnerabilities and weaknesses. The primary goal of a red teamer is to think and act like a malicious hacker to test and improve an organization’s security posture. Key Aspects of What a Red Teamer Does …
-
Why Reporting Phishing Emails Benefits UT
Reporting phishing emails seems like a small thing, but it can have a large impact on security and UT. Reporting phishing emails is crucial for UT to maintain a strong security posture. In our most recent phishing test, about thirty-five percent of the people in the test simply deleted the email. Around thirteen percent forwarded…

Scam Types
Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.
-
Typosquatting: When a Tiny Typo Leads to Big Trouble
Have you ever mistyped a website address? Maybe you accidentally hit “goggle.com” instead of “google.com”? Well, that seemingly innocent slip-up can lead you down a treacherous path—one paved with cyber traps. What Is Typosquatting? Typosquatting is like a cunning chameleon. It preys on our human tendency to fumble our keystrokes. Here’s how it works: Why…
-
Spotting and Avoiding Phishing Attacks
Phishing is essentially someone trying to get you to do something via email, usually by asking you to volunteer personal information or click a link, which enables them to compromise you, your accounts, or your computer. Other kinds of phishing may require you to open an attachment or a link, which can infect your computer…
-
Obscured, Obfuscated Links
Recently, researchers have discovered another technique cybercriminals use to steal your information. In this technique, cybercriminals use obfuscated links to show IP addresses like XXX.XXX.XXX.XXX, instead of websites. Obfuscated links are URLs that have been modified to hide the real location of a website. In this attack method, cybercriminals send an urgent email that appears to come from a legitimate source and…
-
Phishing and Phishing and Phishing
Cybercriminals know the best strategies for gaining access to the university’s sensitive data – Social Engineering. They simply manipulate your trust by posing as something or someone you trust. According to experts at IBM, human error accounts for 95% of security incidents. Protect your data by familiarizing yourself with the various techniques and telltale signs of…

Benefits & Tips for You
In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.
-
Tips for Securing macOS
It’s no surprise that macOS is the second-biggest operating system worldwide. Apple has a well-regulated array of computers available for consumers that merge many strengths of the whole Apple ecosystem. However, this doesn’t mean that you should not take any steps to help secure your macOS computer. Securing your Apple computer involves several steps to…
-
MFA + Strong Passwords: Your Best Defense Against Account Attacks
Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…
-
Find Out If Your Data Was Exposed in a Breach
Data breaches continue to affect major organizations, and recent reporting has linked the ShinyHunters extortion group to incidents involving Charter Communications, a company with services branded as Spectrum. A simple way to check whether your email address appears in a known breach data is to use Have I Been Pwned at haveibeenpwned.com. This site lets you search your…

Protecting University Data
Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.
-
I’ve been hacked!
Determining whether or not your computer or mobile device has been hacked can be difficult. Nonetheless, there are a few common issues that will indicate your computer has been hacked. If your browser’s homepage has unexpectedly changed or is taking you to websites you have never visited, this could be an indication. Also, if your…
-
Phishing Ourselves
In September of 2021, the UTK Administration asked that OIT develop and carry out a phishing campaign. The phishing will continue until the clicks improve, and they ARE improving! A couple of Frequently Asked Questions (FAQs) about the phishing campaign: OIT conducted a baseline phishing exercise in September 2021 used to compare all following campaigns.…

Explore
Write
Chat
Call