Internet Safety Guide

Malware & Ransomware 

Malicious software (malware) is designed to infiltrate your device without your knowledge, often disguised as legitimate files or software updates. Ransomware is a specific, high-impact type of malware that encrypts your personal and organizational files, locking you out until a ransom is paid. 

How to Handle Malware & Ransomware 

If you suspect your Clark College device is infected, time is critical. Here is the best approach: 

    1. Disconnect Immediately: Unplug your Ethernet cable from the device or docking station immediately. Then, turn off Wi-Fi. 

      Note: If you are unsure of how to disconnect from the network, shut down your device instead. To do so, hold the power button for up to 30 seconds or until fans and lights stop. 

    2. Do Not Pay the Ransom: If you see a message demanding payment to unlock your files, do not pay. Paying does not guarantee you will get your data back, and marks Clark College as a willing target for future attacks. 

    3. Contact InfoSec Right Away: Once your device is disconnected, report the incident immediately by following the steps in the Report an Incident page. Do not try to fix the issue yourself as it might propagate the issue. 

 

Scareware 

Scareware is a form of malicious software disguised as a legitimate security alert. Its goal is to panic users into downloading harmful programs or paying for fake services. 

Generally speaking, alerts that pop up on your computer screen while using a browser are usually fake. They are typically just HTML/JavaScript scripts designed to look like system warnings. Clicking "Fix" or "Download" often installs actual malware or ransomware. 

How to Handle Scareware 

Scareware relies on panic. Here’s what to do instead: 

    1. Stay Calm & Do Not Click: If a pop-up appears stating you have viruses, a critical error, or that your account will be locked soon, do not click any buttons, even "Close," "Cancel," or "Scan." Many of these alerts are programmed so that clicking any part of the window triggers a download or execution of malware. 

    2. Force-Quit the Browser: Since scareware usually runs in your web browser, simply closing the tab often isn't enough.

      Windows: Press Ctrl + Shift + Esc to open Task Manager, find your browser (Chrome, Edge, etc.), right-click it, and select End Task. 

      Mac: Press Command + Option + Esc, select the browser, and click Force Quit.  

    3. Report the Incident: Regardless of whether or not you were successful with the last step, report the incident by following the steps on the Report an Incident page. By reporting it, you help the InfoSec Team block the domain before other staff members encounter it. 

 

Public Wi-Fi 

Connecting to public or unsecured Wi-Fi networks (e.g., at coffee shops, airports, or hotels) exposes your data to Man-in-the-Middle (MitM) attacks. In this scenario, cybercriminals intercept communications between your device and the internet, potentially stealing passwords, credit card numbers, or sensitive emails. 

 

Secure Browsing 

Your web browser is the primary gateway to the internet, making safe browsing practices essential for preventing infections and data theft. 

 

Contact Us 

General Inquiries: For non-urgent questions, email infosec@clark.edu

Report an Incident: To report an information security incident, please visit the Report an Incident page

 

Additional Resources

Report an Incident

Free InfoSec Resources

Changing Your Password

Secure Passwords Guide

Multi-Factor Authentication Guide

Email Safety Guide

Phone, Zoom & Teams Safety Guide

Physical Threats Safety Guide