Showing posts with label Week 4. Show all posts
Showing posts with label Week 4. Show all posts

Phishing: Examples and It's Prevention Methods





Phishing
What do you all know about phishing? Let me explain to you all what actually phishing is and actually happen around us. Phishing is intentional acquiring of personal and sensitive information from the victim by masquerading as a business or individual.

Here is some example how fishing is happen......

Email phishing

The phisher will send email to direct user to a web site where they are asked to update personal information, such as passwords and credit card, social security, and bank account numbers, that the legitimate organization already has. Actually, the web site is a fake, just to steal the personal information from the victim.

Bank phishing
Bank Phishing scam attempts are very very common. Scammer will sends out millions of phishing emails. Then , the email claims that the recipients account has been suspended, and that in order to return their account to normal standing they need to verify some information. The user clicks on a link and submits their user to the scammer. The scammer then can break into the users account.

How to prevent?
Just ignore any link that claiming to be from the bank. If still concerned or see strange activity with your bank account then please contact your bank by phone to make sure it before make any action on the mail.


Ebay phishing
The scammer sends out thousands or even millions of emails to his email list claiming to be Ebay or PayPal and request your username and password. From the picture below, as soon as you clicked on “respond”, you were directed to an exact clone of eBay and your personal information was stolen.

How to prevent?
When receive this kind of messege do not give any respond or reply or click any link claiming to be from ebay or paypal. Just delete this kind of messages because eBay/PayPal will never ask their users for personal information.

Video style

A review on a post on Internet Security from My E-commerce blog: New Spamming Tactics

New Spamming Tactics

Spamming is the flooding of electronic mail systems with “junk e-mail” or known as unsolicited bulk messages sent through the electronic messaging systems. E-mail spam is the widely recognized form of spam and others types of spam are instant messaging spam, newsgroup spam, search engine spam, spam in blogs, mobile phone messaging spam and Internet forum spam.However, the spammers now are coming out new tactics to outsmart the anti-spam software which can helps to reduce the influx of the unsolicited e-mails tremendously. These new tactics are PDF Spam, Piggyback Spam and Greeting Card Spam.

PDF Spam
E-mail message containing a subject line and PDF file attached. The receiver of the PDF spam will curious to know what the content of the file and will open and read it. The reason the spammers using PDF spam because most spam filters are unable to screen the contents of a PDF attachment.

Piggyback Spam
It is a highly graphical e-mail messages that look like they come from large retailers. The message will ask you to click on a link when you cannot view or open the message. On the other hand, some tactics used is to include a few links in the message that allow you to ask the company to stop sending mail to you, register for access to some site or contact customer services. These links may lead to a download file which in turn may install malware and spyware. These files may also send out spam from the receiver computers.

Greeting Card Spam
Greeting card spam is the e-mail messages devised to look like greeting cards but it may contain dangerous virus. In this spam, the same concept which is being applied as the traditional e-greeting card systems which ask the recipient have to click on the link to view the full-blown greeting card online. However, once you click the link and it is most likely to download a virus

How to Safeguard Our Personal and Financial Data?

Most of the people will use computers and internet to run their daily activities such as business, internet surfing, internet searching, blogging and so on. However, people may lost out of their information or hacking by hackers during they used the internet. Thus, today we will explain few ways that can safeguard our personal information and financial data from being lost.

Password protect
Usernames and passwords are used to ensure security. Longer passwords provide greater security than shorter ones. Once you select a password, change it frequently. Do not disclose it to anyone.

Install a firewall
Firewall is a software program designed to allow good people in and keep bad people out. Most new computers come with firewalls integrated into their operating systems. If you have an older computer or using dial-up, you may need to buy a firewall separately and install it yourself.
Using biometric device
Biometric devices grant access to programs, computers, or rooms using computer analysis of some biometric identifier. Biometric devices are gaining popularity as a security precaution because they are a virtually foolproof method of identification and authentication.

Install and update antispyware and antivirus programs
Install an antivirus program such as Symantec and Norton antivirus, AVG antivirus or other more in order to protect yourself against viruses and Trojan horses that may steal or modify the data on your own computer . In order for the well protection, you must must sure to keep your virus definitions up to date.

Using encryption techniques
To protect information on the Internet and networks, individuals may use a variety of encrytion techniques to keep data secure and private. Encryption is a process of converting readable data into unreadable characters to prevent unauthorized access.

The threat of online security: How safe is our data?

Nowadays, the technology at internet is continue grow rapidly, so that everyone also can easily to access to the internet. Many people rely on computers to create, store and manage critical information. Most of the companies already used the internet to do their business transaction or sharing the important information. However, the increasingly developed technologies sarcastically increase the risk every computer user faced. Consequently, it is important for users to aware that computer security plays a major role in protecting their data from loss, damage, and misuse. Security has three main concepts: confidentiality, integrity, and availability. Confidentiality allows only authorized parties to read protected information. Integrity ensures data remains as is from the sender to the receiver. Availability ensures you have access and are authorized to resources.


The followings are some of the potential security threats that can be found.

Computer Virus

is the most common of threat is in form of malicious code which is computer virus. It’s a program or a fragment of code that replicates by attaching copies of itself to other programs. There are few main classes of viruses which are file infectors, system or boot-record infectors, macro viruses and multi-part viruses. This type of virus is designed to steal information from your computer without your knowledge.

Online Fraud

is a broad term covering internet transactions that involve falsified information. Some of the most common forms of online fraud are the sale via internet of counterfeit documents, such as fake IDs, diplomas and recommendation letters sold as credential: offers easy money such as work at-home offers that claim to earn individual thousands of dollars got trivial tasks; prank calls, in which dial-up connection lead to expensive long distance charges; and charity facades, where donation are solicited for phony cause.


Accidental Action

Accidental actions contribute to a large number of computer security risks. This category encompasses problems arising from basic lack of knowledge about online security concepts and includes issues suck as poor password choices, accidental or erroneous business transaction, accidental disclosure, and erroneous or outdated software. Related problems occur as a result of misconfigured security products and information leakage resulting from insecure information transfers. Education and prudence should be considered key defenses in limiting the frequency and extent of such events, since this from of cyber vulnerability is largely self-inflicted and avoidable.

In conclusion, risk exposed by computer users is increasing with the increasing developed technology. Therefore, safeguards developed must be always up to date to enhance the defenses against online security threats. In the same time, users must be educated and informed about the crucial damages and loss caused by imposing online security threats.