Report a Lost or Stolen Device

Be sure to follow these steps (in order) before reporting to Campus officials.

1. Change Your Passwords

The first step should always be to change the passwords, passphrases, and keys for all sensitive accounts you access with the device. Only change passwords on a trusted or 'known' computer. If you are unsure if you can trust the computer you are using, ask your IT support staff.

  • CalNet passphrase: mycalnet.berkeley.edu
  • Other Campus Passwords/passphrases: with access to campus systems hosting or transmitting Protected Data that don't require CalNet authentication.
  • Change eduroam Wi-Fi keys network: See Working with eduroam Wi-Fi Accounts KB Article
  • Personal passwords/passphrases: for non-Berkeley, personal accounts that you may have accessed from or stored on the device.

2. Report the Theft/Loss 

If the device is the property of UC Berkeley, used for university business, or accesses university data, report the incident to:

  1. UC Berkeley Police Department
    1. Visit https://ucpd.berkeley.edu/make-report
    2. Get a case number
       
  2. Contact your IT support (most often IT Client Services), to help you gather the following information:
    1. Device serial number and model name/number
    2. MAC address of the device
    3. Was the device backed up?
    4. Was the device part of the Campus Active Directory?
    5. Did the device have full disk encryption?
       
  3. Then email the Information Security Office (security@berkeley.edu) with the information above AND the following information:
    1. The timeframe of the theft/loss
    2. Date and time when you changed your CalNet password after the theft or loss
    3. The location (jurisdiction) of the report you filed
    4. Include the case number of any filed reports
    5. Was the device the property of UC Berkeley?
    6. Was there any protected data stored on the device? (https://security.berkeley.edu/data-classification#table)
    7. Was there any human subject research data stored on the device? (https://cphs.berkeley.edu/review.html)
    8. What campus shared systems (applications, servers, databases, etc.) did you access from this device?
    9. Did the device store data that was governed by a Data Use Agreement, Confidentiality Agreement, Non-Disclosure Agreement, or another contract with a third party?

Content tags