Contents

Information Security

IT@CPP's eHelp Security pages help to promote a secure and accessible computing environment that encourages learning and communication about Information Security topics while helping to assure the confidentiality, integrity and availability of its informational resources. These eHelp pages provide the Cal Poly Pomona University community with computer and network security related resources, tools and University policy and regulatory compliance requirements and processes.

Choose one of the following categories for information and resources that are relevant to you:


Or, select one of the following topics to find specific information and resources:


News and Alerts:

Heartbleed

What is it?

Heartbleed is a flaw in open-source software called OpenSSL, which is widely used on many websites to secure Web communications. Heartbleed is not a virus or malware, but a vulnerability in the code.

What does it do?

Heartbleed undermines Web encryption, allowing attackers to gain access to users' passwords and fool them into using bogus versions of Web sites. It can reveal the contents of a server's memory, where sensitive data is stored, such as usernames, passwords, credit card numbers, etc.

What is being done?

IT@CPP is quickly remedying all university systems that have this code.

What can I do?

While there is no report of a misuse of campus credentials, IT@CPP recommends that faculty and staff who have access to confidential information change their BroncoPassword at their earliest convenience.

Resources

For more information about Heartbleed, see CNET's Heartbleed bug article.

Disclaimer: Cal Poly Pomona does not endorse or recommend any commercial products, processes or services. Cal Poly Pomona’s eHelp website provides links to other Internet sites for informational purposes only. When users select a link to an external website, they are leaving the Cal Poly Pomona website and are subject to the privacy, security and accessibility policies of the owners/sponsors of the external site.

Security Alerts and Announcements

Security Alerts and Announcements - Read the latest information security alerts and announcements.