PWNED
In
Higher Ed
            Bryan Fendley
 University of Arkansas at Monticello
    Blog: http://bryanfendley.com
We are the most compromised industry
Frequently Stolen Information
   Alumni Data
   Student / Faculty Identification
   Credit Card Information
   Educational Content
Enablers
   Cloud Services
   Insecure Systems
   Social Media
Stats
    Malicious attacks in the U.S. are on the
     rise. They climbed 7% in 2010

    85% of all U.S. companies have
     experienced one or more attacks
    http://www.bloomberg.com/news/2011-05-13/sony-network-said-to-have-been-invaded-by-hackers-using-amazon-com-server.html
Simple Example
 Trinity College Dublin discovered a file
 containing student and information was
    available to anyone on the college
                 network.
http://www.adamdodge.com/esi/archive/2011/04
Whose Been Hacked Lately in
       Higher Ed?

 http://www.adamdodge.com/esi/
When Evil Visits Your Website!
http://www.smh.com.au/technology/security/evil-hits-university-security-20110118-19vcw.html
Why Would Anyone Even Want to
           Hack Our Website?
http://www.pcworld.com/businesscenter/article/227482/nasa_stanford_websites_hit_by_search_engine_scammers.html
It’s the Clouds Fault
http://techcrunch.com/2011/06/20/dropbox-security-bug-made-passwords-optional-for-four-hours/
Dependence on Plugins
http://codex.wordpress.org/Hardening_WordPress
URL Shortners
http://www.msnbc.msn.com/id/41120117/ns/technology_and_science-security/t/evil-url-shortener-shows-danger-misleading-links/
Social Networks
http://mashable.com/2011/03/09/chrysler-drops-the-f-bomb-on-twitter/


                     http://socialmediasecurity.com/
Multiple Authors
Warning there are images on this website that you may find offensive:
        http://www.zdnet.com/blog/seo/harvardedu-an-ivy-league-pornographic-playground/2446
But I was Only Exposed for a
         Short Time
 http://wayback.archive.org/web/
Arkansas Standards for
Cyber Security as it Relates to Web
    http://www.dis.arkansas.gov/policiesStandards/Pages/Standards.aspx


      http://www.dis.arkansas.gov/security/Pages/CyberSecurityToolkit.aspx


 http://www.dis.arkansas.gov/security/Pages/ContinuityofOperationsProgram.aspx
Where to Find the Slides or Ask
          Questions
   Blog: http://BryanFendley.com
          Twitter: @bfend




        Don’t Pretend It Can’t Happen to You!

Pwned in high ed