Cybersecurity Awareness and Outreach
The Global Office of Information Security aims to keep the NYU community updated with important information about cybersecurity threats. Please see below for current security news and alerts.
NYU IT Security News and Alerts
MFA Related Phishing Attempts
We’ve received reports of several Multi Factor Authentication (MFA) related phishing attempts, and as an update to the following blog post on the subject, we would like to take the opportunity to remind everyone that scammers are using the following methods to exploit MFA and thereby gain access to accounts
Welcome to CSAM 2023!
Cybersecurity Awareness Month (CSAM) celebrates its 20th year anniversary this month. CSAM’s continuing objective is to empower a more secure globally interconnected world. There’s (always!) more work to do. As the threat landscape continues to change and evolve, technologies designed to protect us must also change and evolve, laws and
Critical Apple Update Available For Flaws Associated With Pegasus Spyware
Apple has released emergency security updates for the listed products below. Users are advised to update asap to the indicated version numbers. iOS => 16.6.1 macOSventura => 13.5.2 iPhones (series 8 or later) => 16.6.1 iPadOS for: iPad Pro (all models); iPad Air (3rd, 5th generations and later) and iPad
Widespread LinkedIn Account Takeovers & Lockouts
Malicious actors are hacking Linkedin accounts using compromised credentials or brute force attacks which target weaker passwords. For accounts that are protected by strong passwords and multi-factor authentication (“MFA”), attempts will result in a temporary account lockout that can be resolved by providing additional information and changing your password.
Critical Patches Available for Microsoft Products
IT Admins are advised to promptly apply the patches to the following products, which were released by Microsoft on August 8th: .NET Core. NET Framework ASP.NET Azure Arc Azure DevOps Azure HDInsights Dynamics Business Central Control Memory Integrity System Readiness Scan Tool Microsoft Dynamics Microsoft Edge (Chromium-based) Microsoft Exchange Server