<html xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:#0563C1;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:#954F72;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-compose;
        font-family:"Calibri",sans-serif;
        color:windowtext;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-family:"Calibri",sans-serif;}
@page WordSection1
        {size:8.5in 11.0in;
        margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
        {page:WordSection1;}
--></style>
</head>
<body lang="EN-US" link="#0563C1" vlink="#954F72">
<div class="WordSection1">
<p class="MsoNormal"><span style="color:black">October is </span><span class="MsoHyperlink"><a href="https://staysafeonline.org/ncsam/">National Cyber Security Awareness</a></span><span style="color:black"> month and Information Systems and Technology (IS&T)
has some resources available to raise security awareness in the MIT community.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black"><o:p> </o:p></span></p>
<p class="MsoNormal">Recently, we have seen several phishing attacks that use <span style="color:black">
social engineering. You may have received the sextortion scam email that using alludes to old, compromised passwords, the quick ‘are you around?’ message spoofed from someone higher up in your reporting chain, or the parent looking for a tutor while traveling.
Samples of these scam emails and how they work can be found in the </span><span class="MsoHyperlink"><a href="http://kb.mit.edu/confluence/x/NhuACQ">Knowledge Base</a></span><span style="color:black"> [1]. Hint: The Dean does not want you to buy her iTunes
gift cards!</span><span style="color:red"><o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:black">During the month of October, IS&T will be posting a security-related blog post each week.
</span><span class="MsoHyperlink"><a href="https://ist.mit.edu/news/security-training">This week’s post</a></span><span style="color:black"> [2] is about the free Information Security Awareness training available through Atlas. There are two bundled courses
that take about 30 minutes each, in addition to several stand-alone modules. The bundled courses are also being promoted as recommended courses in the Atlas Learning Center.<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black"><o:p> </o:p></span></p>
<p class="MsoNormal"><span style="color:black">IS&T also has a few short videos on security topics: a promotional video about the
<a href="https://youtu.be/al2wqfOI2uw">security</a> </span><span class="MsoHyperlink"><a href="https://youtu.be/al2wqfOI2uw">awareness courses</a></span><span style="color:black"> [3] and
</span>videos on <span class="MsoHyperlink"><a href="https://youtu.be/ZkVr0GLSjE0">phishing</a></span> [4],
<span class="MsoHyperlink"><a href="https://youtu.be/Sth3Jw-rw5Y">passwords</a></span> [5], and
<span class="MsoHyperlink"><a href="https://youtu.be/bcPCKUwPiFg">password managers</a></span> [6]. These videos are available on IS&T’s
<span class="MsoHyperlink"><a href="https://ist.mit.edu/security-awareness-education">Security Awareness and Education page</a> [7]</span>.
<o:p></o:p></p>
<p class="MsoNormal"><span style="color:red"><o:p> </o:p></span></p>
<p class="MsoNormal">Don’t just delete it – report it! If you receive a scam or phishing email, please send it (with headers) to
<u><span style="color:blue"><a href="mailto:phishing@mit.edu">phishing@mit.edu</a></span></u>. There are actions the IS&T Information Security team can take to respond to phishing and protect the Institute. If you have an email that you’re not sure about and
would like us to look at, please send it to <span class="MsoHyperlink"><a href="mailto:security@mit.edu">security@mit.edu</a></span>.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Best,<o:p></o:p></p>
<p class="MsoNormal">Jessica<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Jessica Murray<o:p></o:p></p>
<p class="MsoNormal">Information Security Officer<o:p></o:p></p>
<p class="MsoNormal">MIT<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><span style="font-family:"Times New Roman",serif;color:black"><o:p> </o:p></span></p>
<p class="MsoNormal">[1] <span class="MsoHyperlink"><a href="http://kb.mit.edu/confluence/x/NhuACQ">http://kb.mit.edu/confluence/x/NhuACQ</a></span>
<o:p></o:p></p>
<p class="MsoNormal">[2]<span style="color:black"> </span><span class="MsoHyperlink"><a href="https://ist.mit.edu/news/security-training">https://ist.mit.edu/news/security-training</a></span><span style="color:black"><o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black">[3] </span><span class="MsoHyperlink"><a href="https://youtu.be/al2wqfOI2uw">https://youtu.be/al2wqfOI2uw</a></span><span style="color:black"> (security awareness training)<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black">[4] </span><span class="MsoHyperlink"><a href="https://youtu.be/ZkVr0GLSjE0">https://youtu.be/ZkVr0GLSjE0</a></span><span style="color:black"> (phishing)<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black">[5] </span><span class="MsoHyperlink"><a href="https://youtu.be/Sth3Jw-rw5Y">https://youtu.be/Sth3Jw-rw5Y</a></span><span style="color:black"> (passwords)<o:p></o:p></span></p>
<p class="MsoNormal"><span style="color:black">[6] </span><span class="MsoHyperlink"><a href="https://youtu.be/bcPCKUwPiFg">https://youtu.be/bcPCKUwPiFg</a></span><span style="color:black"> (password managers)
<o:p></o:p></span></p>
<p class="MsoNormal">[7] <a href="https://ist.mit.edu/security-awareness-education">
https://ist.mit.edu/security-awareness-education</a><o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><span style="font-size:11.0pt"><o:p> </o:p></span></p>
</div>
</body>
</html>