/// Awareness & resources
Security resources
Practical guidance to help members of GARNET institutions stay secure by default. Start with the basics below, and reach out to us if you’re unsure about anything.
Protect your account
Accounts are the front door. These steps make yours much harder to break into.
- Turn on multi-factor authentication (MFA) (opens in a new tab)
A second step at sign-in stops most account takeovers, even if your password leaks.
- Use a password manager & strong passphrases (opens in a new tab)
Long, unique passwords per site — remembered for you by a manager.
Spot phishing & scams
Most incidents start with a convincing message. Learn the tells before you click.
- How to recognise and report phishing (opens in a new tab)
Check the sender, hover over links, and never enter your password from an email link.
- Report a suspicious message
Forward suspected phishing targeting a member institution to GARNET CSIRT.
Secure your devices
Keep laptops and phones patched and locked down so a lost or infected device stays contained.
- Keep software up to date (opens in a new tab)
Automatic updates close the vulnerabilities attackers rely on.
- NCSC device security guidance (opens in a new tab)
Practical hardening advice for common operating systems.
When something goes wrong
If you suspect a compromise, act early — GARNET CSIRT can help you contain it.
- Report an incident to GARNET CSIRT
Compromised account, malware, data exposure, or anything suspicious.
- Contact the team
For questions or coordination that isn’t an emergency.
External links point to reputable public security guidance and are provided for convenience; GARNET CSIRT is not responsible for third-party content. Have a resource you’d like us to add?Let us know.