Clinic Resources
Teaching Resources & Training Materials
Utilize our courses, video case studies, toolkits and more!
-
MIT's Cybersecurity for Critical Urban Infrastructure Course (Online)
-
UC Berkeley's Citizen Clinic Cybersecurity Education Center
-
UC Berkeley's Baseline Organizational Security Guide
-
Global Cyber Alliance's Cybersecurity Toolkit for Mission-Based Organizations
-
Global Cyber Alliance's Cybersecurity Toolkit for Small Businesses
Making the Case for Cybersecurity Clinics
-
Article: How to Start a Cybersecurity Clinic
-
Article: Improving Cyber-Oriented Education, One Cyber Clinic at a Time
-
Article: Nonprofits are at Risk of Cyber Attacks. Here's What You Need to Know.
-
Article: Cybersecurity Clinic at Indiana U. Positions Itself as Regional Hub
-
Article/Video: Five Questions Video with UC Berkley Cybersecurity
-
Article: Higher Ed's Growing Consortium of Cybersecurity Clinics
-
UGA CyberArch students play crucial role in making cybersecurity impact - UGA Public Service and Outreach
-
Terry MIS students help strengthen cybersecurity efforts across Georgia - Terry College of Business (uga.edu)
MIT Cybersecurity Clinic's Video Case Studies
Case Study: The Oldsmar Attack
On February 5, 2021, a water treatment plant employee in Oldsmar, Florida noticed his mouse cursor moving strangely on his computer screen. At first, he thought it was nothing because they use remote-access software. Later, the mouse moved again to adjust the allowable level of sodium hydroxide (a disinfectant used to clean the water). Although the intrusion only lasted between three and five minutes, it took five and a half hours for the staff to notice the change to dangerous allowable levels. The plant has since disabled its remote-access system. This breach highlights the serious impacts hackers can have on utilities and critical infrastructure, potentially harming thousands of people.
Case Study: Washington, D.C. Cyberattack
In April 2021, hackers broke into the Washington, D.C. Metropolitan Police Department (MPD) computers, locked up the files and demanded $4 million in ransom. The group responsible is known as Babuk. They started leaking data just before the MPD confirmed it had suffered an attack. The leaks included financial and marriage histories of officers, social security numbers and other confidential information. Babuk claims they were offered $100,000, but the police department has not confirmed whether it agreed to pay any ransom.
Case Study: The Colonial Pipeline Attack
In May 2021, one of the largest refined fuel pipelines in the United States, the Colonial Pipeline, experienced a cyberattack that shut down fuel delivery from the Gulf coast to the East coast. The U.S. government including CISA at the Department of Homeland Security and the FBI strongly recommended against paying the ransom demanded by the hackers. Concerned about operational safety and getting the pipeline back up and running the company decided to pay the ransom. The group responsible is known as the Darkside group.