Internet Safety Guide
Malware & Ransomware
Malicious software (malware) is designed to infiltrate your device without your knowledge, often disguised as legitimate files or software updates. Ransomware is a specific, high-impact type of malware that encrypts your personal and organizational files, locking you out until a ransom is paid.
-
- How it happens: Downloads from untrusted sites, infected email attachments, or compromised USB drives.
- Red Flags: Unexpected pop-ups claiming your computer is "infected," sudden changes to file extensions (e.g., .txt becomes .locked), or unusually slow system performance.
- Prevention: Never download unapproved software, click on suspicious attachments, or plug in unknown USB drives or cables. Additionally, keep your operating system and other software up to date.
How to Handle Malware & Ransomware
If you suspect your Clark College device is infected, time is critical. Here is the best approach:
-
- Disconnect Immediately: Unplug your Ethernet cable from the device or docking station immediately. Then,
turn off Wi-Fi.
Note: If you are unsure of how to disconnect from the network, shut down your device instead. To do so, hold the power button for up to 30 seconds or until fans and lights stop. - Do Not Pay the Ransom: If you see a message demanding payment to unlock your files, do not pay. Paying
does not guarantee you will get your data back, and marks Clark College as a willing
target for future attacks.
- Contact InfoSec Right Away: Once your device is disconnected, report the incident immediately by following the steps in the Report an Incident page. Do not try to fix the issue yourself as it might propagate the issue.
- Disconnect Immediately: Unplug your Ethernet cable from the device or docking station immediately. Then,
turn off Wi-Fi.
Scareware
Scareware is a form of malicious software disguised as a legitimate security alert. Its goal is to panic users into downloading harmful programs or paying for fake services.
Generally speaking, alerts that pop up on your computer screen while using a browser are usually fake. They are typically just HTML/JavaScript scripts designed to look like system warnings. Clicking "Fix" or "Download" often installs actual malware or ransomware.
How to Handle Scareware
Scareware relies on panic. Here’s what to do instead:
-
- Stay Calm & Do Not Click: If a pop-up appears stating you have viruses, a critical error, or that your account
will be locked soon, do not click any buttons, even "Close," "Cancel," or "Scan."
Many of these alerts are programmed so that clicking any part of the window triggers
a download or execution of malware.
- Force-Quit the Browser: Since scareware usually runs in your web browser, simply closing the tab often isn't
enough.
Windows: Press Ctrl + Shift + Esc to open Task Manager, find your browser (Chrome, Edge, etc.), right-click it, and select End Task.
Mac: Press Command + Option + Esc, select the browser, and click Force Quit. - Report the Incident: Regardless of whether or not you were successful with the last step, report the incident by following the steps on the Report an Incident page. By reporting it, you help the InfoSec Team block the domain before other staff members encounter it.
- Stay Calm & Do Not Click: If a pop-up appears stating you have viruses, a critical error, or that your account
will be locked soon, do not click any buttons, even "Close," "Cancel," or "Scan."
Many of these alerts are programmed so that clicking any part of the window triggers
a download or execution of malware.
Public Wi-Fi
Connecting to public or unsecured Wi-Fi networks (e.g., at coffee shops, airports, or hotels) exposes your data to Man-in-the-Middle (MitM) attacks. In this scenario, cybercriminals intercept communications between your device and the internet, potentially stealing passwords, credit card numbers, or sensitive emails.
-
- The Risk: Even if a website uses HTTPS, attackers on the same network can still find ways to monitor the traffic and potentially snag any credentials.
- Best Practices: Avoid accessing sensitive accounts on public Wi-Fi. If you are a staff member and need to access sensitive information for work purposes, use Clark College’s VPN.
Secure Browsing
Your web browser is the primary gateway to the internet, making safe browsing practices essential for preventing infections and data theft.
-
- Beware of Typosquatting: Attackers register domains that look almost identical to legitimate sites (e.g., gooogle.com instead of google.com). Double-check the URL spelling before logging in.
- Avoid Pop-Ups & Auto-Downloads: Never click on pop-up windows claiming you have won a prize, detected a virus, or need to update a plugin. Do not click "OK" or "Cancel" inside the pop-up itself.
- Keep Browsers Updated: Enable automatic updates when possible. Updates patch security vulnerabilities that attackers exploit to install malware silently.
- Only Install Approved Browser Extensions: Restrict browser extensions to those vetted by trusted sources and necessary for your workflow. Unverified extensions can steal credentials, track activity, or inject malicious code into visited pages.
Contact Us
General Inquiries: For non-urgent questions, email infosec@clark.edu.
Report an Incident: To report an information security incident, please visit the Report an Incident page.
Additional Resources
Multi-Factor Authentication Guide