The Post-COVID Cybers Safety Landscape: Establishing a "Standard of Care"
ATLIS Cybersecurity Recommendations (Revised October 2020)
Whitney Silverman, "Cybersecurity in Independent Schools: Data Breach Threats and Prevention Techniques," NAIS Legal Advisory, NAIS, December 2018. (Access this document via your NAIS login.) "These laws can be seen as establishing a standard of care. Recent lawsuits against educational institutions cite these laws as a basis for a litany of claims such as negligence and unfair trade practices."
Gary Finley, “A Teachable Moment: Lessons Learned from the Blackbaud Data Security Breach," Schwartz Hannum PC, E-Alerts, September 1, 2020.
Susan Davis and Christina Lewellen, "Leadership on Cybersecurity, Privacy Statements, and What Happens When Devices Go Home" in Paula Livingston Gaudet, Like No Other School Year: COVID-19 and the Growth of Online Learning, 2020.
The K12 Cybersecurity Resource Center, “The K12 Cyber Incident Map.”
Security Magazine, "People Are Less Concerned with Their Cyber Safety Despite Significant Rise in COVID-19 Related Attacks," 20 October 2020.
Cybersecurity -- A Team Sport
LastPass
Nessus Professional Vulnerability Scanner
have i been pwned?
Center for Internet Security, CIS Benchmarks
Common Sense Education
Google Phishing Quiz (Can you spot when you are being phished?)
Google’s Be Internet Awesome (K-8 grades)
Day 1 Chat Links
COSN, Protecting Privacy in Connected Learning
Google Phishing Quiz
KnowB4
Microsoft. Prepare Your Organization for BitLocker: Planning and Policies, 24 April 2019.
National Security Agency Central Security Service, NSA and CISA Release Cybersecurity Information on Protective DNS, 4 March 2021.
SANS, Creating a Cyber Secure Home, Infographic.
Day 2 Chat Links
Argentinian Research Spoofs Biometric Fingerprint Reader with 3D Printed Finger, FindBiometrics, 12 August 2020.
Data Flow Diagram Templates to Map Data Flows, Creately Blog, 26 November 2020.
K12 Cybersecurity Resource Center, The State of K12 Cybersecurity: 2020 Year in Review, March 10, 2021.
Rutgers Foundation Hired Creator of Melissa Virus, Orlando Sentinel, 12 December 1999.
Student Data Privacy Resouses, (from Alex Podchaski)
William Turon, Hackers Breach Thousands of Security Cameras, Breaching Tesla, Jails, Hospitals, Bloomburg, 9 March 2021. (recent Verkada hack)
Queenie Wong, “Why Facial Recognitions Racial Problem Is So Hard to Crack,” CNET, 27 March 2019.
ATLIS, Cyber Safety and Data Privacy Resources (updated regularly)
ATLIS, "Asking Vendors the Right Questions About Data Protection,"11 December 2021.
ATLIS360 Cybersecurity Checklist (Printable PDF)
ATLIS Cybersecurity Recommendations (Updated 2021)
Damien Barrett, Jimmy Cudzilo, Rebekah Daniell, Colleen McNeil, Ashley Reed, JC Rodriguez, Phil Zaubi, "Gamifying Cybersecurity," ATLIS Leadership Institute Project, March 2021.
Barry Kallmeyer and Ally Wenzel, Cybersecurity for Students, Video archive of presentation at the ATLIS 2020 Annual Conference, 6 April 2020.
Susan Davis and Christina Lewellen, "Cybersecurity and Technology" in Paula Livingston Gaudet, Like No Other School Year: COVID-19 and the Growth of Online Learning, 2020.
Ankura, A Guide to Securely Working from Home. PDF.
Center for Internet Security (CISA)
Cyber Risk Summary: Education Facilities Subsector, CISA, Findings and Executive Summary, July 2021. PDF.
Cybersecurity & Infrastructure Security Agency
Advanced Persistent Threat Compromise of Government Agencies, Critical Infrastructure, and Private Sector Organizations, 17 December 2020
Cyber Actors Target K-12 Distance Learning Education to Cause Disruptions and Steal Data, 10 December 2020
Federal Trade Commission, Consumer Information, Avoiding and Reporting Scams
Google, Scan and Protect Drive Files Using DLP Rules.
Mary Beth Hertz, "Cybersecurity as Curriculum," blog, 25 February 2021.
K12 Cybersecurity Resource Center. The State of K12 Cybersecurity. 2020 Year in Review. 10 March 2021.
Mitre ATT&CK Matrix: MITRE ATT&CK® is a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations. The ATT&CK knowledge base is used as a foundation for the development of specific threat models and methodologies in the private sector, in government, and in the cybersecurity product and service community.
New Jersey Cybersecurity and Communication Integration Cell, “Cyber Actors Target K-12 Distance Learning Education to Cause Disruptions and Steal Data” Joint Cybersecurity Advisory with the FBI, CISA, and MS-ISAC, 10 December 2020.
NIST Cybersecurity Framework, National Institute of Standards and Technology, US Department of Commerce
NIST, Best Practices in Cyber Supply Chain Risk Management PDF
Net Assets Magazine (shared with permission from National Business Officers Association)
Stacey Freed, "Your Money or Your Data," 19 October 2016.
Jamie Britto, "Greetings from Kazakhstan," September/October 2015.
SANS, Creating a Cybersecure Home, Securing the Human. Downloadable poster.
Stu Sjouwerman, "Hackers User Interactive Malicious COVID-19 Map to Spread Malware," KnowB4 Blog, 14 March 2020 .
Stu Sjouwerman, "U.S. Homeland Security: "Malicious Actors Expected to Focus Attacks On Teleworkers. Secure Your VPN," KnowB4 Blog, 14 March 2020.
Student Data Privacy Consortium
William Stites, “The Low Hang Fruit of Cybersecurity," williamstites.net, 2 November 2020.
Utah State Board of Education, Student Data Privacy -- Video Resources
U.S. Department of Homeland Security, Defending Against COVID-19 Cyber Scams.
U.S. Government, Cybersecurity and Infrastructure Agency.
World Health Organization, WHO Reports Five-Fold Increase in Cyber Attacks, Urges Vigilance, 23 April 2020.