Information Security
FIT is Cybersafe is FIT’s campaign for cybersecurity for our community.
Cyberattacks, identity theft, and online scams are all over the news lately. A school might not seem like a likely target, but colleges, along with other institutions, are increasingly in the cross-hairs of global cybercriminals. College databases hold a lot of personal information about students and employees that can be valuable to hackers.
Many attacks against institutions like FIT succeed because of something a community member did (clicking on something they shouldn’t) or didn’t do (use a strong password). That’s why we’re starting a campaign to make everyone aware of what they can do to stay cybersafe. We’ll provide tips, training, and online resources and members of our security team will be at campus events to promote awareness and answer questions. And remember the same practices that protect you at FIT protect you at home.
Be aware—and Be Cybersafe!
Recent Posts
Beware of Fake Text Messages
We received a report of an FIT alumnus who received a text message from someone pretending to a high level executive at FIT. We want to alert you of the dangers of smishing (text message phishing) and to remind you that official college communication is never sent in the form of a text message.“SMS” phishing […]
Beware of blank subject lines in emails
We have received reports of some FIT employees receiving emails with blank subject lines or one character subject lines with no content in the body of the email. Cybersecurity researchers have reported that blank, unsolicited emails are often an early sign of a potential future phishing attack. Cyber gangs will often put feelers out to […]
Tax Refund Phish
What happened?Over the weekend and this morning, FIT (and many of our peer SUNY campuses) received emails from several senders all purporting to represent the IRS, with a subject line of “Recalculating Your Tax Refund Payment.” The emails contained a click button that brings users to a site that looks like an IRS.gov site, but […]
Review Past Threats
Cybercriminals often reuse or create a variation of past scams, read through our threat archives to learn more about how to stay Cybersafe.
Recent CISO Updates
Beware of ClickFix Attacks
ClickFix attacks are surging—and fast. They’ve become the second most common social engineering scam, right behind phishing. But unlike phishing, which tricks victims into clicking a bad link, ClickFix tricks victims into essentially hacking themselves. Hackers don’t need to break into a system using complex code or exploit vulnerabilities. Instead, […]
Fashion Industry Under Attack: What you need to know
Back in May 2025, we shared news about a major data breach at Dior (Dior Data Breach), which exposed personal information of customers across Europe and Asia—names, email addresses, phone numbers, and even shopping history. The timing couldn’t have been worse: it happened just before Dior’s big fashion show in […]
Beware of Amazon Prime Day Scams
Amazon Prime Day, which lasts from July 8-11th, is a huge shopping event—but it’s also prime time for scammers. With millions of people racing to snag deals, cybercriminals ramp up their efforts using phishing emails, fake websites, and deceptive texts to steal your personal information. Back in 2023, many users […]