Article Archive #2
Service navigation

Importance of Security
Information security is about addressing and reducing IT RISK. It’s easy to overlook risk as a topic when all you hear is talk about passwords, firewalls, encryption, policies, or two-factor authentication. In this section, you’ll read about how the university is at risk and what you can do to reduce the risk in your group, department, and college.
-
Think Before You Share: What the Claude Search Exposure Teaches Us About AI Privacy
Recent reporting found that some Claude chats and Artifacts shared by public links appeared in Google search results. Reported examples included internal documents, health-related information, contact details, and API keys. This does not appear to mean that all private Claude chats were exposed, but it is an important reminder that a shared AI link may be far more…
-
Two-Factor Authentication (2FA) Prompt Bombing
Two-factor authentication (also known as, “Multi-factor Authentication (MFA)”) provides an extra layer of security for your accounts, but it’s important to think before you click. Cybercriminals can use an attack method called 2FA prompt bombing to bypass 2FA protections and overwhelm you with prompts via the Push feature of Duo. For example, cybercriminals may try to log…
-
When ‘Too Good to Be True’ Comes from Someone You Know
For years, cybercriminals have used social media to post fake sales listings for popular items such as furniture or electronics. As these scams have gained in popularity, most of us have learned to use caution when buying items online from strangers. Now, cybercriminals are impersonating people you trust to lure you into their fake listing…

Scam Types
Scams used to be easier to detect without worry. A Nigerian prince asks for a few hundred dollars to give you access to his fortune. But those days are gone, and scammers are in a constant arms race with cybersecurity for your sensitive information. Learn about the different types of scams and how to deal with them.
-
Safeguarding Against QR Code Fishing
In the ever-evolving landscape of cybersecurity threats, one emerging tactic is the use of QR codes in phishing emails. This deceptive technique poses a significant risk to both end users and IT professionals. UNDERSTANDING QR CODE FISHING: QR code phishing involves embedding malicious URLs or content within a seemingly innocuous QR code. These codes can…
-
.zip Domains
Recently, .zip top-level domains have become available for public purchase. A top-level domain is the final section of a domain name. So, in utk[dot]edu, “.edu” is the top-level domain. Unsurprisingly, cybercriminals have begun purchasing and using .zip domains for their own malicious purposes. In the coming months, we expect to see an influx of cybercriminals…
-
Phishing with Images
Cybercriminals use images in phishing emails to impersonate real organizations. By using images like official logos (i.e., UT, UPS, FedEx, etc.) and promotional materials, cybercriminals hope to trick you into thinking the email is legitimate. In one recent incident, cybercriminals spoofed Delta Airlines to try to steal sensitive information. The body of the email consists…
-
Pretexting
Now more than ever, cybercriminals are using a tactic known as pretexting to catch you off guard. Pretexting is when a cybercriminal impersonates a real person and asks you for help with a fake scenario. They often carry on a conversation with you and use public information to convince you that they are who they…

Benefits & Tips for You
In this section, you can learn about all the different tools available to you at UT, such as secure file sharing and monitoring your systems. We will also share best practices for staying secure at school and at home.
-
Security Topic of the Week
Is your workstation or laptop running slow? Does it take forever for an application to start? Do you return to your desk following short breaks and often find that your computer has restarted and is displaying some sort of cryptic message about a problem? These are all signs that your machine may be compromised or infected. Security incidents…
-
Steps for Staying Secure in These Scary Times
As technology gains a more important role in our lives, it also grows in complexity. Given how quickly technology changes, keeping up with security advice can be confusing. It seems like there is always new guidance on what you should or should not be doing. However, while the details of how to stay secure may…
-
I’ve been hacked!
Determining whether or not your computer or mobile device has been hacked can be difficult. Nonetheless, there are a few common issues that will indicate your computer has been hacked. If your browser’s homepage has unexpectedly changed or is taking you to websites you have never visited, this could be an indication. Also, if your…

Protecting University Data
Discover essential articles on cybersecurity practices specifically tailored for the University of Tennessee. Learn effective strategies to safeguard sensitive information, defend against threats, and maintain data integrity. Equip yourself with knowledge to protect your university’s digital ecosystem.
-
MFA + Strong Passwords: Your Best Defense Against Account Attacks
Multi-factor authentication (MFA) adds an extra layer of protection to your accounts by requiring more than just a password to sign in. Even if a password is stolen through phishing, malware, or a data breach, MFA can still prevent an attacker from accessing your account. This additional safeguard is especially important because passwords can be…
-
Digital Privacy—What is a Data Broker?
In today’s digital age, personal information has become a valuable commodity. Data brokers have emerged as key players in this data-driven economy. Data brokers operate behind the scenes, gathering vast amounts of personal information from various sources. They compile detailed profiles on individuals and sell this data to businesses, marketers, and even government agencies. Understanding…
-
Getting Into the Mindset of a Hacker
Have you ever wondered how a hacker looks at systems and finds unexpected ways around controls meant to keep them out? Is this a special mindset or a thought process that is learned? The mindset of a hacker can vary widely, but generally, it involves a few key traits and perspectives: While the term “hacker”…

Explore
Write
Chat
Call