【資安重要通知】請務必遵守資安注意事項

各位好:

近日,本校有若干伺服器因資安問題,遭警調單位依法來校進行調查。請各位老師、同仁、同學務必遵守下列資安注意事項,以免發生資安事件。

1.各系、各單位、各實驗室若有自行建立網站者,網站的作業系統、網站軟體、資料庫軟體等,務必更新至最新最穩定的版本
2.網站必須有管理人員(老師、職員、在校學生皆可)負責相關系統維護工作。
3.除非必要,請勿開啟校外對校內IP連線之設定。若有遠端連線的需要,請申請VPN進行。
4.平時請務必定期備份重要資料(建議每周)。
5.請使用HTTPS加密通道。

其他近期資安訊息:

■2021 年假冒各大品牌的釣魚攻擊,以社群媒體為最頻繁的類型
https://www.twcert.org.tw/tw/cp-104-5898-26d92-1.html

■數百款 HP 印表機內含遠端執行任意程式碼漏洞,恐成攻擊目標
https://www.twcert.org.tw/tw/cp-104-5934-bc21f-1.html

若有資安相關問題,請洽電子計算機中心技術諮詢推廣組:
張云蘋 6929  applechang@mail.ntust.edu.tw
游順發 6209  rogeryu@mail.ntust.edu.tw


[Information Security Notice]
Please follow the information security precautions.

Hello everyone:

Recently, due to information security issues, some servers in our school have been investigated by police units according to law. Teachers, colleagues, and classmates are requested to abide by the following information security precautions to avoid information security incidents.

1. If each department, unit, or laboratory establishes its own website, the operating system, website software, database software, etc. of the website must be updated to the latest and most stable version.
2. The website must have administrators (teachers, staff, and students) who are responsible for the maintenance of the relevant systems.
3. Unless necessary, please do not enable off-campus to on-campus IP connection settings. If you need a remote connection, please apply for a VPN.
4. Please make sure to back up important data regularly (weekly recommended).
5. Please use HTTPS encrypted channel.

Other recent information security information:

■Phishers’ Favorites , 2021 Year-in-Review.
https://www.twcert.org.tw/tw/cp-104-5898-26d92-1.html

■Hundreds of HP printer models vulnerable to remote code execution.
https://www.twcert.org.tw/tw/cp-104-5934-bc21f-1.html

For more question about information security, please directly consult with Computer Center, at rogeryu@mail.ntust.edu.tw or applechang@mail.ntust.edu.tw

發佈單位: 電子計算機中心
寄送群組: muser-xx-xxxx, stud-xxxx-x
寄送對象: 全校教職員工生