At a recent I-Light conference, OmniSOC led a session on tabletop exercises with member institutions. The session shared feedback from I-Light members for whom OmniSOC has facilitated these exercises and demonstrated how they help identify vulnerabilities. Members said these exercises provide real value by helping their organizations prepare for incident reporting and offering clear guidance… Read more »
REN-ISAC
REN-ISAC and OmniSOC Virtual Member Meeting, March 2 to 13, 2026
Our next member meeting will be a combined REN-ISAC and OmniSOC virtual event from March 2 to 13, 2026. This brings together OmniSOC Con, OmniSOC’s annual meeting, and RIMM the REN-ISAC Member Meeting, which has traditionally been held alongside the EDUCAUSE Cybersecurity and Privacy Professionals Conference. The virtual format keeps costs down and makes it… Read more »
Register now: Upcoming Course: Cybersecurity Engineering: Advanced Threat Detection and Monitoring
Online Monday, November 17 – Saturday, November 22, 2025 This November, REN-ISAC and SANS are teaming up to bring you SEC511: Cybersecurity Engineering: Advanced Threat Detection and Monitoring. This online course uses hands-on labs and gamified challenges to provide real-world training experience in topics such as cloud monitoring, network detection and response, endpoint detection and… Read more »
Campus Cyber Watch – Weaponized SVGs: A New Front in Phishing Campaigns Against Higher Education
In July 2025, VirusTotal analysts uncovered a phishing campaign that relied on more than 500 malicious SVG files. Nearly fifty of the samples slipped past antivirus tools at the time of their first submission. The attachments looked like ordinary government portal icons. In reality, they carried code that redirected unsuspecting users to counterfeit login pages… Read more »
REN-ISAC Offers Five Webinars for NCSAM
October is National Cybersecurity Awareness Month (NCSAM)! Co-led by the National Cyber Security Alliance (NCSA) and the Cybersecurity and Infrastructure Security Agency (CISA), NCSAM is an effort to provide resources to keep Americans safer and more secure online. To celebrate, REN-ISAC is offering a variety of free webinars during the month of October. Check our… Read more »
Congratulations to the 2025 REN-ISAC Rising Stars cohort!
This August, the 2025 REN-ISAC and OmniSOC’s Rising Stars Cohort graduated with a presentation of their projects aimed at leading organizational change. Rising Stars is a staff-development initiative within REN-ISAC aimed at cultivating people-leaders and changemakers within the organization. The 2025 cohort of Rising Stars were nominated by their managers to participate in the program…. Read more »
Practice Before the Cybersecurity Crisis: Why Tabletop Exercises Matter in Higher Ed
When over a hundred higher education information security professionals gathered in Boston this August, the room was not there just to listen; they were there to imagine what could go wrong. At the 2025 Boston University Security Camp, Shane Albright, security advisor with REN-ISAC Information Security Assessment & Advisory Services, led that exercise with his… Read more »
How the REN-ISAC Daily Watch Report Helps Higher Ed Stay a Step Ahead
In higher education, a single missed update can turn into a serious breach. That’s why REN-ISAC’s Daily Watch Report has become a daily must-read for security teams across the sector. Sent out each weekday, the report pulls together curated, critical threat intelligence from a wide range of trusted sources. It flags new vulnerabilities, malware activity,… Read more »
Credential Theft Bypassing MFA—What You Need to Know
AITM ADVISORY REN-ISAC is tracking an increase in reports of reverse proxy-based phishing attacks that successfully bypass Multi-Factor Authentication (MFA). This threat has recently impacted multiple institutions across REN-ISAC membership and the broader research and education sector, targeting faculty, staff, and researchers. While MFA remains one of the most effective tools in protecting credentials, it… Read more »
Hacking Higher Education: U.S. Government Warns Iran-Affiliated Cyber Actors May Target Vulnerable U.S. Networks
TLP: CLEAR In a June 30, 2025 joint fact sheet, the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the Department of Defense (DOD) Cyber Crime Center (DC3), and the National Security Agency (NSA) “strongly urge organizations to remain vigilant for potential targeted cyber activity against U.S. critical infrastructure and other… Read more »