Cloud Threats, Opportunities, and Safety  

Cloud Threats, Opportunities, and Safety  
As more data, identities, and services move to the cloud, they are increasingly targets of threat actors with potentially life-altering consequences. In 2017, a breach of Equifax leaked the Social Security Numbers (SSNs) of 143 million Americans. While writing this article, Ticketmaster and its vendor, Snowflake, suffered a major data breach. Those are just two […]

Chance to Win $100 in Our Monthly Challenge 

Chance to Win $100 in Our Monthly Challenge 
The Office of Information Security (OIS) is always looking for ways to improve your security and reward your participation in helping to secure WashU. Back by popular request, the InfoSec team is continuing to assign the Inside Man series as our competition this June. The Inside Man is a soap opera-style training that covers critical […]

Scam of the Month: Direct deposit bank account changed 

Scam of the Month: Direct deposit bank account changed 
The Office of Information Security observed a trend where criminals email members of our community false direct deposit change notifications with a malicious link. They hope the victim will click the link and give their WashU credentials or direct deposit information. Payroll Services does not change direct deposit information. Only employees can change it themselves […]

Meet Your InfoSec Team: Pete Nowikow, Information Security Analyst III 

Meet Your InfoSec Team: Pete Nowikow, Information Security Analyst III 
Pete Nowikow, information security analyst III, is one of the newest InfoSec team members. In his day-to-day role, Pete aids in designing and deploying Network Access Control (NAC, e.g., Cisco Identity Services Engine, or ISE). He also partners closely with the WUIT Network Engineering team and BJC. Pete will often work with several other departments, […]

Inside ABC: Awareness, Behavior, and Culture

Inside ABC: Awareness, Behavior, and Culture
The WashU Office of Information Security (OIS) takes a holistic approach to security training and awareness. Our goal goes way beyond raising awareness through a required annual training. The Awareness, Behavior, and Culture (ABC) team aims to foster a resilient and adaptable security culture so WashU Community members know what to look out for, how […]

Chance to Win $100 in Our Monthly Challenge

Chance to Win $100 in Our Monthly Challenge
The Office of Information Security (OIS) is always looking for ways to improve your security and reward your participation in helping to secure WashU. Back by popular request, the InfoSec team is continuing to assign the Inside Man series as our competition this May. The Inside Man is a soap opera-style training that covers critical […]

Scam of the Month: Duo Verification Code Text Phishing 

Scam of the Month: Duo Verification Code Text Phishing 
Criminals who’ve stolen WUSTL Keys and passwords are masquerading as IT support over text messages to get us to enter Duo verification codes. Legitimate WashU employees will not ask you to enter codes into your Duo app. Only enter a verification code if you are logging in for yourself. Do not enter a code given […]

Meet Your InfoSec Team: Peter L. Jones, Information Security Analyst

Meet Your InfoSec Team: Peter L. Jones, Information Security Analyst
Peter L. Jones, information security analyst, monitors for security vulnerabilities on the tens of thousands of devices in the WashU environment. Peter and the vulnerability management team keep track of everything from simple devices like phones to critical systems and servers by using regular scans and monitoring. His role involves problem-solving and decision-making, including determining […]

Passkeys Over Passwords 

Passkeys Over Passwords 
Are you tired of trying to create and remember every password? Are you worried that you might lose your password? Do you feel overwhelmed by the number of password managers to choose from? If so, there is good news on the horizon. The FIDO Alliance created a passwordless sign-in system that addresses these problems, and […]

Chance to Win $100 in Our Monthly Challenge 

Chance to Win $100 in Our Monthly Challenge 
The Office of Information Security (OIS) is always looking for ways to improve your security and reward your participation in helping to secure WashU. Back by popular request, the InfoSec team is assigning the Inside Man as our training competition this April. The Inside Man is a soap opera-style training that covers critical cyber security […]

Scam of the Month: Outstanding Toll Amount 

Scam of the Month: Outstanding Toll Amount 
Road trip season is approaching, and the FBI has observed criminals impersonating road toll collection services via text message. While there is only one toll bridge in Missouri – the Lake of the Ozarks Community Bridge (for now) – many neighboring states operate toll roads.   If you see a message like the one below, please […]