hcinfosec's profile picture. Holy Cross ITS Information Security Team.

HC ITS Infosec

@hcinfosec

Holy Cross ITS Information Security Team.

Good morning, our email gateway stopped a number of phish attempts this morning. These message are very short, along the lines of "Are you available" or "I need your assistance". Remember to check the sending address and if suspicious send to [email protected] for review!


Good afternoon, this HC ITS Infosec Twitter account is now being used for making ITS security related announcements/warnings, a storm center of sorts. Today several users received a phish purporting to contain COVID-19 information from ITS. Keep an eye on the sending addresses!

hcinfosec's tweet image. Good afternoon, this HC ITS Infosec Twitter account is now being used for making ITS security related announcements/warnings, a storm center of sorts.  Today several users received a phish purporting to contain COVID-19 information from ITS.  Keep an eye on the sending addresses!

Your Wi-Fi Security Is Probably Weak. Here’s How to Fix That. nyti.ms/2MpzEVt


HC ITS Infosec reposted

90% of Gmail users could improve their security easily, but don’t. There’s something alarming about the world’s one billion regular Gmail users – barely any have turned on two-step verification. soph.so/jES730hSA6k


HC ITS Infosec reposted

New phishing scam targets Amazon Prime customers bit.ly/2gEzlHh

WCVB's tweet image. New phishing scam targets Amazon Prime customers bit.ly/2gEzlHh

Good read for travelers! Why It’s Still A Bad Idea to Post or Trash Your Airline Boarding Pass krebsonsecurity.com/2017/08/why-it…


Trusting browser extensions is outright dangerous. As are GSuite extensions/plugins. Avoid. threatpost.com/seven-more-chr…


Be skeptical if someone calls you claiming to be from Microsoft, or "Windows Support"! 99 times out of 100 it is a scam.


Granting permissions like this to a Google add-on is very risky. You are giving the app and author full access to your account.

hcinfosec's tweet image. Granting permissions like this to a Google add-on is very risky. You are giving the app and author full access to your account.

Don't forget to complete your annual #infosec training. Drop-in sessions schedule here: holycross.edu/information-se…


Keeping your company data safe with new security updates to Gmail @google blog.google/products/g-sui…


Some decent insight into how Google protects our email.


Salem State University's twitter account hijacked. Make sure it can't happen to you. Configure login verificationr on your twitter account.

Hacked Twitter account spits out poison – make sure yours isn’t next wp.me/p120rT-1ysE



Phishing attack spotted using Google Drive and McAfee URL shortener for legitimacy: sites.google.com/a/holycross.ed…

hcinfosec's tweet image. Phishing attack spotted using Google Drive and McAfee URL shortener for legitimacy:  
sites.google.com/a/holycross.ed…

Visualization of the Google OAuth attack on campus. holycross.edu/information-se…


Very Sophisticated, worldwide phishing attack today that used application permissions to affect users: sites.holycross.edu/phishpond/list…


Cyber Criminals Sharing Millions of Higher Education Institutions’ E-mails and Passwords on The Dark Web digitalcitizensalliances.org/news/press-rel…


Two new phish to start the week.

hcinfosec's tweet image. Two new phish to start the week.
hcinfosec's tweet image. Two new phish to start the week.

United States Trends

Loading...

Something went wrong.


Something went wrong.