Skip to main content
University of Wisconsin–Madison
UW Crest
UW–⁠Madison Information Technology
Connecting & supporting our digital campus
  • Services
  • Learn
  • Community & governance Expand Collapse
    • Communities, committees, groups
    • IT Governance
  • IT projects & priorities Expand Collapse
    • IT project portfolio
    • IT Strategic Priorities 2022-2025
  • Cybersecurity Expand Collapse
    • Office of Cybersecurity
    • Data privacy week
  • Academic Technology
  • Accessibility Expand Collapse
    • Digital accessibility @ UW–‍Madison
    • Make It Accessible
    • Liaison Network
  • AI Expand Collapse
    • Generative AI services
    • Generative AI use & policies
    • CISO statement on use of generative AI
    • Microsoft Copilot
  • IT@UW–‍Madison Expand Collapse
    • About IT@UW–‍Madison
    • Division of Information Technology (DoIT)
    • Distributed IT
    • DoIT History
  • Accounts Expand Collapse
    • Email
    • MyUW
    • Learn@UW
    • Box
    • Google Apps
    • More Services
  • Zoom
  • Get help
  • Outages
  • Scam alerts
  1. Home
  2. Cybersecurity News

Cybersecurity News

UW beefs up login security by moving NetID service to the cloud

Posted on January 9, 2024

You won’t notice a change when you log in, but what will change and improve is the NetID service’s resilience against network outages and other disruptions.

Posted in Cybersecurity News, IT News

The MFA-Duo prompt has a new look. Check out what’s new

Posted on January 9, 2024

In early 2024, UW–Madison updated the Duo multi-factor authentication service. You may notice the Duo security prompt looks a bit different.

Posted in Cybersecurity News, IT News, Top Story

Enter the Cybersecurity Awareness Month meme contest

Posted on October 17, 2023

Who, meme? Yes, you! Showcase your creativity, humor and cybersecurity awareness for a chance to have your meme displayed in the next TechNews!

Posted in Cybersecurity News, Top Story

LastPass update & recommendations

Posted on March 21, 2023

LastPass is a password manager available to faculty, staff and students. Though LastPass experienced a security incident late last year, we believe using it continues to be low risk.

Posted in Cybersecurity News, IT News

Tips to avoid tax season fraud

Posted on March 13, 2023

Don’t get scammed by IRS impersonators or make a poor choice on tax preparers. Protect your money and personal information with these tips. And a reminder: Take these steps if you get a suspicious email.

Posted in Cybersecurity Alerts, IT News

Cybersecurity Announcement: Pre-authenticated RCE Vulnerability in Microsoft Windows SPNEGO Extended Negotiation Security Mechanism

Posted on December 20, 2022

Microsoft has recently revised the severity for SPNEGO Extended Negotiation security mechanism (NEGOEX) vulnerability to critical from its previous High severity from the September 2022 patch release. The vulnerability is being tracked as CVE-2022-37958.

Posted in Cybersecurity Announcements

Stay cyber safe—and go on a (virtual) scavenger hunt!

Posted on October 14, 2022

What should you do if you get an MFA-Duo push notification that you didn’t request? How can you find out if your email or phone number was compromised in a data breach? And what the heck is “vishing?” Go on our scavenger hunt for Cybersecurity Awareness Month and find out!

Posted in Cybersecurity News, IT News

Cybersecurity Announcement: WordPress Releases Patch for High Severity SQL Injection Vulnerability

Posted on September 1, 2022

WordPress has released version 6.0.2.  This security and maintenance release contains patches for 3 vulnerabilities, including a high severity SQL Injection vulnerability in the Links functionality (CVSS Score of 8.0), as well as two Medium Severity Cross-Site Scripting vulnerabilities.

Posted in Cybersecurity Announcements, netid protected

Cybersecurity Announcement: Atlassian Bitbucket Server and Data Center Critical Vulnerability (CVE-2022-36804)

Posted on September 1, 2022

Atlassian has published a security advisory warning Bitbucket Server and Data Center users of a critical security flaw that allows remote attackers with access to public repositories or read access to private Bitbucket repositories to execute arbitrary code.

Posted in Cybersecurity Announcements, netid protected

Cybersecurity Announcement: Microsoft Windows Support Diagnostic Tool and Point-to-Point Protocol Remote Code Execution Vulnerability (CVE-2022-34713) and (CVE-2022-30133)

Posted on August 10, 2022

Microsoft released announcements for known vulnerabilities addressed in their Tuesday Patch release. Two are considered Remote Code Execution vulnerabilities, meaning an attacker can exploit the system vulnerabilities remotely.

Posted in Cybersecurity Announcements, netid protected
  • Previous page
  • 1
  • You're on page 2
  • 3
  • 4
  • 7
  • Next page

Site footer content

University logo that links to main university website Part of the Universities of Wisconsin

IT @ UW-Madison

  • Services
  • Learn
  • Community & governance
  • IT project portfolio
  • IT Strategic Priorities 2022-2025
  • Cybersecurity
  • Digital accessibility
  • AI @ UW–‍Madison: use & policies

Quick Links

  • Get help
  • Get started with tech
  • Outages
  • Campus IT jobs
  • Website feedback, questions or accessibility requests
  • Accessibility@UW–‍Madison
  • Need an edit to a page in this site?

Contact Us

  • 1210 W Dayton St
    Madison, WI 53706
  • Email: webchanges@doit.wisc.edu
    • youtube
    • linkedin

Website feedback, questions or accessibility issues: webchanges@doit.wisc.edu | Learn more about accessibility at UW–Madison.

This site was built using the UW Theme | Privacy Notice | © 2025 Board of Regents of the University of Wisconsin System.