Computer Security Training


Best practices icon

 

TERMS

The following are a list of terms and their general definitions.

 

Firewall: A technological barrier designed to prevent unauthorized or unwanted communications between computer networks or host.

 

Intrusion Prevention Systems (IPS): A network security appliance that monitors network activities for malicious activities.

 

Virtual Private Network (VPN):  Allows remote users to access internal information securely.

 

Anti-Spam Device: A network device that inspects incoming email for spam.

 

Phishing:

 

Spear Phishing: Targeted Phishing attack.

 

Phone Phishing: A Phishing attack over the phone.

 

 

SECURITY 101

The following are a few useful pieces of information to better understand email and computer security.

 

window and 'l' key icon

 

 

 

 

 

 

 

 

 

AVOIDING PHISHING

 

Never give out personal or financial information.  (This includes following/clicking links sent in the email).

 

Do your best to verify website security:

 

 

PHISHING EMAILS

 

Here are some examples of Phishing emails and how to identify them as such.

 

Phishing example one

phishing example 2

 

WHAT IF YOU WERE PHISHED?

 

Report it to the Help Desk immediately (801-957-5555 or ext 5555).

 

If your financial accounts may be compromised, contact your financial institution immediately and watch for any unauthorized charges to your account(s).

 

Consider reporting that attack to the police, the Federal Trade Commission, or the FBI’s Internet Crime Compliant Center.

 

 

RECOGNIZING SCAMS

 

If is sounds too good to be true, it probably is!

 

If the message does not appear to be authentic, it’s probably not.  Report it.

 

Check to see if the content of the message appears in search engine results (known scam, etc.)

 

Watch for typographical errors, bad formatting, poor grammar, etc.

 

If a message requests you to send your information to them, rather than the other way around.

 

If you do not have an account with the company that supposedly sending the email.

 

Suggest tragic consequences or offers protection.

 

Promises money or gift certificates.

 

Multiple spelling or grammatical errors, or the logic is contradictory.

 

A statement urging you to forward the message.

 

 

SAMPLE SCAM

 

Scam example 1

 

CHECK FOR SCAMS ONLINE

 

OnGuard Online

http://onguardonline.gov/articles/0002-common-online-scams

 

FBI

http://www.fbi.gov/scams-safety/e-scams

 

Microsoft

http://www.microsoft.com/security/online-privacy/phishing-symptoms.aspx

 

Symantec Security Response Hoaxes

http://www.symantec.com/avcenter/hoax.html

 

McAfee Security Virus Hoaxes

http://home.mcafee.com/VirusInfo/VirusHoaxes.aspx

 

 

FOR MORE INFORMATION

 

http://www.onguardonline.gov/

 

http://www.staysafeonline.org/

 

http://www.netsmartz.org/Parents

 

 

QUESTIONS?

 

Call the OIT Security Team –

 

James Wilkinson – Information Security Officer

james.wilkinson@slcc.edu

 

Kha Nguyen – Information Security Officer

kha.nguyen@slcc.edu

 

Steven Oswood – Information Security Analyst

steven.oswood@slcc.edu