Like many large organizations, Ohio State email accounts continue to be targets of an increasing number of email phishing attacks. We block many of these attacks before they can reach you, but cybercriminals are constantly devising ways to elude our defense systems. Users like you assist us in detecting even more emails by reporting suspicious messages so we can block them before they target other users.
As you know, on Friday there was a worldwide ransomware attack. Though that attack is currently partially halted, there are additional versions currently released that are live and active. Technical staff should be aware that this family of ransomware works by exploiting the Server Message Block vulnerability. Microsoft released patches on March 14 to address this.
A new type of phishing scam is targeting online shoppers, reminding us to be aware of how we interact with websites and that phishing attacks can come from many sources, not just email!
The Enterprise Security team's mission is to improve the security awareness and profile of the university. We wanted to make you aware of this scam that could cause you loss as a consumer.
The Internet Crime Complaint Center (IC3) has issued an alert on employment scams targeting college students. Phony job opportunities are advertised via college employment websites or sent to students’ university email addresses. Unfortunately, students who have taken the bait have suffered financial losses. For more information and tips on avoiding these scams please review the IC3 Alert.
Adobe has released security updates to address vulnerabilities in Adobe Acrobat, Reader, and Flash Player. Exploitation of some of these vulnerabilities may allow a remote attacker to take control of an affected system.
The Enterprise Security team's mission is to improve the security awareness and profile of the university. This includes making you aware of important cybersecurity new items. A Joint Analysis Report has been released by US-CERT providing details on malicious activities undertaken by Russian Civilian and Military Intelligence Services (RIS).
Chief Information Security Officer Helen Patton sums up the year 2016 on blog site Medium. She discusses the challenges of keeping up with security and privacy regulations, handling theft of intellectual property and dealing with the recent increase in full-blown cyberattacks.
Have you ever received a suspicious email from someone claiming they work for the IRS? Or an out-of-place phone call that asks you to respond to the IRS immediately? What about an unexpected text with an attached tax form? You’re not alone!
The university community has been reporting more instances of phishing email attempts than usual to Ohio State Enterprise Security.
Cybercriminals have begun to use familiar names of senior leaders at Ohio State, such as President Drake, in an effort to gain your trust. These bogus phishing emails are examples of spoofing.
Enterprise Security staff at Ohio State are seeing an increase in the volume of phishing emails offering users attachments, links or instructions for downloading their W-2 forms. These are fraudulent emails designed to steal your identity and Social Security number. See the full article for tips on how to spot a scam.