CCIT News and Notices

Planned outages scheduled for Fall Break 2026

The following systems will be down for scheduled maintenance during the times listed below: 

  • Home Directories (U: drive)
    Sunday, October 11 from 10 a.m. to 10 p.m. 
    Files on Home Directories (U: drive) and services such as labs, classrooms and CUapps may be unavailable.
  • Clemson Facilities AiM 
    Monday, October 12 from 1 to 4 p.m. 
    Employees will be unable to manage operations, submit or track work orders or access facility asset information.
  • iROAR 
    Monday, October 12 at 6 p.m. to Tuesday, October 13 at 2 a.m. 
    iROAR/Banner and related systems will be unavailable:
    • Student Onboarding App
    • Banner Administrative Pages
    • Banner Student Self Service
    • Banner Faculty Self-Service
    • Banner Document Management System (BDMS)
    • Banner Enterprise Identity Services (BEIS)
    • Banner Degree Works
    • Banner Workflow
    • TouchNet
    • UC4 (Banner Related Jobs and Chains)
  • TigerOne 
    Tuesday, October 13 from 9 a.m. to noon 
    TigerOne card creation and access to Paw Points and meal plan balances will be unavailable. 

Beware of Snapchat scams targeting students

There is a growing number of scams on Snapchat targeting Clemson University students.

These scams typically start with cybercriminals gaining access to someone’s Clemson.edu email account. They then use that compromised email account to either access an existing Snapchat account or create a new Snapchat account if one doesn’t exist.

Cybercriminals will then use the Clemson.edu Snapchat account to post malicious content. With that compromised account, they can even target specific Clemson groups and channels that are normally restricted to only those with a Clemson.edu Snapchat account.

These scam Snapchat posts can include things like selling football tickets, student job offers and money scams. They may look even more believable because they appear to be from a Clemson.edu user.

Here are some tips to help avoid falling for these Snapchat scams:

  • Contact the poster yourself through a reliable source, such as the Clemson online directory, to verify any offer.
  • Keep in mind that Clemson faculty will not typically reach out to students with internship or job offers in this manner.
  • Avoid any offer that seems too good to be true.
  • Pay nothing – a legitimate job recruiter or employer will never require payment for a job opportunity or ask to send money for equipment.
  • Don’t give away sensitive personal information like your name, Social Security number or financial information.
  • If your Clemson.edu email account ever becomes compromised, and your password is reset by CCIT, check social media for any accounts associated with your Clemson email to verify they haven’t been used for anything nefarious.

Example of Snapchat scam posts:

Screen shots of fake job offer and football ticket scam posts on Snapchat.

ClickFix surpasses phishing as most common scam

The ClickFix scam, also called the Copy to Fix scam, has become the primary technique used by cybercriminals, even surpassing conventional phishing emails. The scam is a social engineering attack that tricks users into pasting harmful code into their computer.

The scam may appear as a pop-up on a webpage, in a Word document, or when you open a PDF. It claims there’s a problem and offers a button labeled “How to Fix,” “Auto-Fix,” or something similar.

If you follow the instructions, the button may secretly copy harmful code to your computer’s clipboard. The page then walks you through opening a system tool, like the Run dialog on Windows or Terminal on a Mac, and pasting and running the code. Once run, the code can download malware and lead to other harmful activities.

Because you copy and paste the code yourself, antivirus software may not detect it before it runs.

If you see this kind of pop-up, don’t follow its instructions. Contact your area’s IT Consultant for help. Legitimate security checks and error fixes will never ask you to run system commands manually.

Screenshot of the ClickFix scam pop-up window, reading "There was an error during the latest update of browser version, follow these instructions to continue." The instructions detail how to copy the fix and paste into Windows PowerShell, which will install malware on your computer.

Planned Linux server migration will cause temporary service outages through November 2026

CCIT is beginning a required University-wide Linux server migration that will result in temporary service outages for some campus systems through 2026. 

The work will move select servers from Oracle Enterprise Linux to Red Hat Enterprise Linux to meet updated licensing requirements and keep Clemson’s server environment consistent, secure and easier to support over time. Migration work will take place in scheduled phases throughout 2026 and is expected to be completed by November 5, 2026. 

For most affected systems, service interruptions are expected to last a few hours. Some systems may require additional time depending on size, complexity and coordination needs. 

CCIT Infrastructure Services and Operations is working to minimize disruptions and will contact impacted server owners and application contacts directly with details about timing, coordination needs and any expected service interruptions. 

Clemson to enforce stronger protections for University emails sent by third-party apps

Beginning Tuesday, June 2, 2026, CCIT will strengthen the security of University communications by implementing a DMARC (domain-based message authentication, reporting and conformance) protocol for Clemson email.

What is a DMARC protocol? 

A DMARC protocol helps verify that University messages sent through third-party systems (like email marketing or customer management systems) are authorized.

Most faculty, staff and students will not notice a change in day-to-day email use. These stronger email security protections will help:

  • Reduce phishing and email spoofing that attempt to impersonate Clemson senders.
  • Strengthen trust in University email by helping recipients identify legitimate messages.
  • Align Clemson with current email security best practices.
  • Lower risk to personal and institutional data by blocking unauthorized messages.  

What to do if you send official University emails through a third-party system

Colleges and divisions that use third-party services to send messages from an @clemson.edu address for University business (like newsletters, invitations or confirmation emails) must ensure they are approved and set up correctly. If they are not approved, messages from the system may be blocked before reaching recipients.

Approved vendors authorized to send email on behalf of the University, like Microsoft, DocuSign and Workday, are already set up for DMARC compliance.

To verify that your third-party email platform is compliant with DMARC policy, initiate a review by submitting a CheckIT request online.

Watch for Targeted Phishing

Because of the recent security incident involving Instructure, the parent company of the Canvas Learning Management System, users should be extra cautious about phishing emails. Clemson University uses Canvas, so we may be at a higher risk of targeting.

Targeted Phishing emails are highly personalized cyberattacks that use collected, detailed information about a person to craft emails that are potentially more detailed and convincing. These types of targeted phishing campaigns often follow major cybersecurity events.

The Instructure company has reached an agreement with the hackers for the return and destruction of any stolen data, but users should still exercise additional caution with emails.

Graphic showing the word Phishing with a target symbol above the word

Some of the ways to avoid falling for a phishing email are:

  • Carefully check the sender’s name and email address
  • Beware of requests for immediate action
  • Look for grammatical and spelling errors
  • Be careful of website links in an email
  • Avoid opening email attachments

If you do get a suspicious email or even one that you are not sure about, simply submit it to the Clemson Cybersecurity Team for review by using the Report button in Outlook or forwarding it to phishing@clemson.edu. Additional information is available on the Reporting Phishing Emails webpage.

Update on cybersecurity incident involving Canvas vendor Instructure

CCIT is monitoring a cybersecurity incident involving Instructure, the company that provides Canvas, as part of a broader event affecting multiple institutions. Updates from Instructure are available on the company’s status page.

Canvas administrators are reviewing the Clemson instance and Canvas is universally unavailable for all institutions. CCIT will share updates as more information becomes available.

If you are contacted by cybercriminals, do not engage and delete the message.

Canvas vendor Instructure reports cybersecurity incident

CCIT is aware of a cybersecurity incident involving Instructure, the company that provides Canvas, as part of a broader event affecting multiple institutions. 

CCIT is actively monitoring the situation, and Canvas administrators are reviewing the Clemson instance for any usability or service impacts. Updates from Instructure are available on the company’s status page. CCIT will share updates as more information becomes available. 

According to Instructure, the information involved may include names, email addresses, Clemson student ID (CUID) numbers and messages among users. At this time, Instructure says it has found no evidence that passwords, dates of birth, government identifiers or financial information were involved. If that changes, Instructure says it will notify impacted institutions. 

Even when passwords are not part of an incident, criminals can use details such as a Clemson email address and CUID number to make phishing emails, impersonation attempts and other social engineering attempts look more convincing. Students, faculty and staff should stay alert for unexpected emails, texts or calls that request login credentials, ask for personal information or urge immediate action. 

Microsoft removed Copilot from select Microsoft 365 apps

Microsoft has removed in-app Copilot access from Word, Excel, PowerPoint and OneNote for institutional licenses, which includes Clemson. 

Copilot is still available for University users through the Copilot AI companion webpage, the Copilot app and Microsoft Outlook and Teams. 

Clemson users with a paid Microsoft 365 Copilot license will keep full in-app Copilot access. The option to purchase a Copilot license will be added to the Clemson University Marketplace by May 2026. 

If you have questions, reach out to your area’s IT Consultant or contact CCIT. 

Microsoft 365 apps now require 2FA when logging in

CCIT is expanding two-factor authentication (2FA) to Microsoft 365 applications. As of Thursday, April 2, 2026, apps like Microsoft Outlook, Word and Excel may now prompt users to authenticate with two-factor authentication (2FA) after logging in with a Clemson username and password. This change is part of an ongoing effort to better protect Clemson accounts, personal information and systems from unauthorized access. 

Two-factor authentication methods like Duo Mobile are already widely used across many Clemson services, so most users should be familiar with this process. Expanding 2FA to more applications helps provide consistent, reliable protection across University systems.