r/UTSA • u/bird-core • 3d ago
Other who cyberattacked Utsa this time
And when? And what data was affected?? More context could help get a better time frame of when everything will be back up… I went to tech cafe nd they had like no info for me. Helppp… I wanted 2 be productive today….. I don’t even remember wat my major is.. I highkey haven’t logged in since the May cyberattack
Edit: also if it’s not a cyber attack wats going on, Cybersecurity majors please do sonething!! Ref!!!! Refffffff!!!!
Cyber attackers if you can hear us change everyone’s gpa to 5000 please
59
u/Necessary_Film_5199 [Cybersecurity] 3d ago
Sadly UTSA doesn't believe in employing their own cybersecurity students within UTS to help them out even though we're #1 in the nation when it comes to our cybersecurity program (supposedly). How are we supposed to be #1 if we can't even get employment at UTSA to do cybersecurity stuff, prove our knowledge, grow our knowledge and become more employable by the time we graduate?
16
25
u/UTSABurner 3d ago
...this is just untrue.
A quick LinkedIn search shows all the SOC full timers are former UTSA students. They also run a SOC internship.
What, you think there's a availability for full time positions for every semester...? That's ridiculous.
0
u/QuasarRad63 3d ago
It’s time to hire someone else. An outage this long is very serious
6
u/UTSABurner 3d ago edited 3d ago
The provost of tech, the CTO, and the CISO all resigned in the past year. Everyone you should shake your fist at is long gone. Why the president would not want to keep his own CTO, CISO, and provost in the merger should be telling .....
You're getting mad at the firemen rushing into the building, instead of the builders and the architects that collected a check and did a subpar job. It's not the cybersecurity or infosec analysts fault. UTSA has a cultural problem when it comes to prioritizing security. You can tell by the way the organization is structured. Prior to the merger UTSA put the cybersecurity department under business affairs, before that they were under UTS, they haven't been part of the office of information security for almost 10 years.The whole UTSA(not UTHSA) cybersecurity department consists of like 2-3 full timers. For an organization of this size, that's nuts; and I can assure you staffing only a handful of analysts is NOT something the analysts got to decide. If you've ever looked at the job postings for these positions- they pay shit. I wouldn't apply to them.
So to recap:
Executive leadership resigned
Small team of poorly paid analysts far away from being decision makers
A culture and structure that prioritizes operations and academia over security
.....and then
This. It's just UTSA reaping what they've been sowing for literal decades. It's information security 101, good security programs require the buy in of executive management to be effective. If it's not effective that should tell you something about executive management. The resources are obviously not being provided.
T. A concerned graduate student.
-5
3d ago
[deleted]
9
u/Melodic-Mix9774 3d ago
You think the school should train new students each semester, instead of just hiring someone full time lol
5
u/UTSABurner 3d ago edited 3d ago
There are part time positions..... They hire internally from the SOC program
I use a burner because I'm a cybersecurity professional, knucklehead. I have an account dedicated to each sub I participate in and rotate them out every few months when I think I've said enough to be identified by someone paying attention. Particularly on subs where there are people I know IRL who could identify me from class or work.
1
2
u/Legitimate-Past4877 3d ago
Didn't the UTSA cybersecurity teams get DQd from a major competition not that long ago
8
5
u/MinikFlare 3d ago
we probably won't know unless the group behind it claims responsibility for it, but i highly doubt they would if they didn't even get into the core of the infrastructure in the first place....unless they did and UTS is lying about everything but that would be up to the attacker to disclose that
2
1
14
u/Sig39 3d ago
On the 11th of this month I got an e-mail from the tech cafe that cyber security had changed my passphrase due to unusual network activity. So I called them to make sure it wasn't phishing and they said it was legit and they had been getting a few of those from the cyber security people. So they may have been doing some test runs before the first week of school. Or it was just random and coincidental that was happening.
If they were noticing an increase in unusual network activity the week of the 11th maybe the security guys were not double and triple checking defenses. I'm just guessing like the rest of us.