Connect with us

Hi, what are you looking for?

HEADLINES

PLDT, Smart offer tips on preventing ‘session hijacking’

PLDT and its wireless unit Smart Communications, Inc. (Smart) continue to urge customers to be wary of websites they visit, especially those that require login credentials.

Photo by Towfiqu barbhuiya from Unsplash.com

PLDT and its wireless unit Smart Communications, Inc. (Smart) continue to urge customers to be wary of websites they visit, especially those that require login credentials. Typically, when you visit websites for the first time, they ask for permission to set cookies on your device. While most users will just click yes and proceed to the website, PLDT and Smart’s Cyber Security Operations Group (CSOG) cautions against automatically accepting cookies as they might lead to ‘session hijacking’. 

“Cybercriminals can steal cookies and access your browsing sessions through session hijacking. Data Privacy laws require websites to notify their visitors if they are storing information about them. Users have the right to allow or refuse cookies during their visit,” said Angel Redoble, PLDT and Smart First Vice President and Chief Information Security Officer. 

But what are cookies? They are small text files that websites save on your device to help them remember your visit so they can improve user experience and make browsing more personal on succeeding visits. These data could include username, passwords, device settings and shopping items among others. Without cookies, users will be asked to enter their login credentials again or restore their shopping carts when they accidentally close a page. 

The intruder’s goal in ‘hijacking’ incidents is to gain full access to the victim’s account so he can get the same permissions and assume the victim’s identity to dig deeper into his network. The incident can lead to unauthorized bank transfers, unwarranted purchases or ransomware attacks. 

Here are a few tips on how to prevent ‘session hijacking’: 

Advertisement. Scroll to continue reading.
  • Enable Multi-Factor Authentication (MFA) to add another layer of security. This can also alert you of unauthorized transactions. 
  • Always check the website you are visiting. A secure website often starts with “HTTPS” for encrypted data traffic. 
  • Use only safe connections. Be wary of free or public Wi-Fi. 
  • Delete unwanted cookies. 
  • Always log out of a website or an application when you’re done. 
  • You can also choose to refuse or remove cookies. 

The efforts of PLDT and Smart to prevent cybercrimes are fundamental to the PLDT Group’s much broader program to elevate the quality of customer experience by protecting them from threats and attacks.

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

Maya has already integrated National ID eVerify, the Philippine Statistics Authority’s identity-verification service, into its onboarding process. Since early this year, eligible customers have been...

HEADLINES

The Presidential Task Force on Media Security (PTFOMS), in partnership with the European Union, International Media Support (IMS), PLDT, and Smart equipped more than...

HEADLINES

In 2025 alone, Converge denied nearly 12 billion entry requests to websites hosting dangerous, inappropriate, and harmful content that attempted to pass through its...

HEADLINES

Building on the PLDT Group’s investment of 1,000 Microsoft 365 Copilot seats, the partnership moves AI beyond experimentation and embeds it into the core...

HEADLINES

The announcement represents one of the first major third-party technology integrations following the launch of Sophos Fusion, demonstrating Sophos' commitment to an open ecosystem...

HEADLINES

APAC consumers are more concerned about digital tech usage for crime than consumers globally (35% vs 32%). The awareness is highest in Thailand (39%),...

HEADLINES

The workshop served as a platform for women journalists to openly share their experiences and insights on the issues they encounter in their daily...

HEADLINES

“It is the time for Radenta to demonstrate that it is strongly committed to protecting client data,” remarks Nereo Bolante, Co-Director, Radenta Ethics, Compliance, and Governance Team...

Advertisement