Security Advice

Warning icon This is a work in progress on some security tips.

General Advice

Logins and passwords

  • We STRONGLY suggest users use a different password for each different website you use. No matter how you feel personally about the value your account might provide an attacker, please make all your passwords different.
  • Where possible, use a second authentication factor in addition to a username and password. This is usually some information only you know or physically have. Don't have information sent to you by the login provider as an SMS text message because this has recently been deemed unsafe (as those in the telecommunications community already knew).

Security Incidents

  • Keep calm. This is really important. This is the time when you can easily be panicked into making a mistake that makes the problem far worse. Hackers may have set things up in such a way that such a mistake is likely.
  • Be paranoid, but kind. Enquiries about the incident may be from hackers looking to get clearer information on what you do and don't know about the incident. Emails may be spoofed and not from whom you think they are from.
  • Don't send any information about your accounts or logins by email.