Schlagwort: ‘IT-Security’
New Year’s IT Resolutions

Source: Freepik
We all know it: At the end of each year, many people think about things they want to change or improve in the coming year. Some people want to finally take the plunge into the gym, others are determined to learn a new language, and others are planning to eat healthier. But what about resolutions in the IT sector? You haven’t dealt with that yet? No problem! The following suggestions will help you out a little bit.
Threat Hunting – Tracking Down Threats

Threat Hunters uncover security risks before they are detected by the system.
Source: Own illustration
After sneaking into a network, attackers can remain undetected for months, collecting data, searching for sensitive material, or acquiring credentials. They can then use this information to roam around the IT infrastructure, to observe it and to snatch even more data. The more data is tapped, the more severe the consequences of the attack may be. To identify such attacks as early as possible, a good defence strategy is essential. An important part of such a strategy is so-called Threat Hunting. Read the rest of this entry »
Computer Security Day: 5 Simple Tips to Improve IT Security
For most people, life without the Internet has long been unimaginable. Whether at home, at work or anywhere along the way – information technology is simply everywhere. However, its ubiquity also raises the question of its security. A question that experts already asked themselves back when the Internet had only just begun to develop. Since 1988, November 30 has been dedicated to IT security in many countries. The aim of this event is to raise general awareness of IT security and to educate users on the subject. To mark the occasion, we have compiled five very simple tips for more IT security in everyday life.
Beware of Meeting Invite Phishing Scam!
The way we work together has changed fundamentally in recent years. Among the major changes is the shift of work processes to the home office. Not only have everyday tasks had to be shifted into virtual space, but also the entire communication process. This is how online meetings and video conferencing became a central part of our working lives. The digitization of these work processes brings many benefits. However, it also confronts many companies and organizations with major challenges. One of these challenges is the drastic increase in cyber attacks. As is so often the case, Internet fraudsters have taken advantage of the new situation and quickly developed a variety of new types of fraud methods. These include, for example, phishing attempts via appointment invitations.
Gamification meets IT Security
When dealing with information technology, a whole range of dangers may lurk. In this context, the “human factor” is often presented as a particularly large and important challenge. Ignorance, naivety and a lack of caution are the most common causes of so-called insider threats. Experts agree on one thing: IT security can only be as good as the people who operate the systems.
For a security concept to be implemented successfully, it first has to be understood by the users. IT security awareness training courses are often used for this purpose. These are designed to strengthen the general understanding of security and to illustrate concrete risks. One of the most important strategies here is called gamification. Read the rest of this entry »
Honeypot – How to Lure Cyber Criminals

Source: Freepik
Sometimes the best defence is a strong offensive. When it comes to IT security, the demand for offensive security measures is greater than ever. These often rely on techniques and approaches that are actually used by criminal hackers to lure user into traps. But attackers themselves can also be tricked into a trap. Honeypots are not only used to attract bears. They can also be used to catch cybercriminals in the act. In this article, we will explain what a honeypot is and how it can be used to increase IT security. Read the rest of this entry »
Attention: Spear Phishing Emails in Circulation
In the last weeks, there have been more spear phishing attacks on RWTH email addresses. In this article, we would like to make you aware of these attacks and explain how you can recognize spear phishing emails. You have received a spear phishing email to your RWTH email address? We explain how you should best proceed. Read the rest of this entry »
Email Security – Why Are Redirections Bad?

Source: Freepik
The third part of our series of articles on e-mail security deals with the identification protocol DKIM and the standard method for e-mail authentication DMARC.
In our first article and second article on the topic of e-mail security, we informed you about the origins of e-mail and the current statistics in mail traffic at RWTH. In addition, we explained what the SMTP protocol is and what problems it can cause.
The IT Center’s IT Security Measures

Source: Freepik
With technological progress and the increasing digitization of processes, the topic of IT security is gaining more and more importance. The risks associated with digitalization affect us all. Improper behavior and naivety in dealing with information technology can have serious, costly consequences. That is why the security awareness of users in particular should be actively encouraged. IT security also plays a major role at the IT Center. In this blog, for example, we repeatedly draw your attention to security risks and explain how you can be more aware when using information technology. In this post, we would like to give you an overview of the IT security measures that have been implemented at the IT Center, for both yours and our protection. Read the rest of this entry »
Artificial Intelligence – Curse or Blessing for IT Security?

Source: Freepik
We are increasingly coming across the term “artificial intelligence” (AI). Whenever we come across this term that has become a fashionable phenomenon in the media, there are regularly reports about self-thinking AI, fully autonomous means of transport or other similar applications. For many of us, it can be hard to figure out what is actually meant by the term. However, the application areas of AI that seem to be particularly popular in the media are in reality only a very small segment of the actual application field of AI. Many a user would probably even be surprised to know in which areas AI is already being implemented today. In this article, we would like to take a closer look at the term and explain what role artificial intelligence can play in the field of IT security.