{"id":32529,"date":"2018-07-07T13:17:13","date_gmt":"2018-07-07T05:17:13","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=32529"},"modified":"2018-07-16T15:52:03","modified_gmt":"2018-07-16T07:52:03","slug":"5-basic-mistakes-people-still-make-with-cybersecurity","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2018\/07\/07\/5-basic-mistakes-people-still-make-with-cybersecurity\/","title":{"rendered":"5 basic mistakes people still make with cybersecurity"},"content":{"rendered":"<p><strong><a href=\"https:\/\/www.welivesecurity.com\/2017\/05\/13\/wanna-cryptor-ransomware-outbreak\/\" target=\"_blank\" rel=\"nofollow noopener\">The WannaCryptor ransomware worm put cybersecurity issues into focus recently<\/a>. Though a worldwide problem, far too many citizens, businesses and governments are still making the same old, basic security mistakes. Cybercrime has quickly become a major problem for businesses, governments and citizens all over the globe. While awareness of this multifaceted threat is increasing, we&#8217;re still making the same mistakes when it comes to cybersecurity, as a recent study by the\u00a0<a href=\"http:\/\/www.pewinternet.org\/2017\/03\/22\/what-the-public-knows-about-cybersecurity\/\" target=\"_blank\" rel=\"nofollow noopener\">Pew Research Center<\/a>\u00a0<span id=\"spanHghlt0ecb\">found.<\/span><\/strong><\/p>\n<p><span id=\"spanHghlt0acd\">ESET researchers highlighted the following areas to be aware of.<\/span><\/p>\n<p><b>Email: This ruse is nothing new<\/b><\/p>\n<p><a href=\"https:\/\/www.welivesecurity.com\/2015\/12\/30\/5-things-need-know-social-engineering\/\" target=\"_blank\" rel=\"nofollow noopener\">Social engineering<\/a>\u00a0tactics are as old as the day is long, yet people keep falling for them. Today, phishing via email has become incredibly commonplace.<\/p>\n<p>Although criminals are improving the &#8216;quality&#8217; of these emails, with some targeted \u2013 known as spear phishing \u2013 emails looking incredibly authentic most do not (<a href=\"https:\/\/www.welivesecurity.com\/2015\/08\/18\/phishing-unravelled\/\" target=\"_blank\" rel=\"nofollow noopener\">telltale signs<\/a>\u00a0include poor spelling, random email addresses and far-fetched claims that you&#8217;ve won millions).<\/p>\n<p>Keep yourself safe by carefully checking the recipient, the request, and use some common sense \u2013 search via Google rather than using the enclosed website address. Also, be cautious of attachments, as they may be malware-infected. It&#8217;s important to check file extensions and to only open files deemed safe and from legitimate sources.<\/p>\n<p><b>Social media: New hunting ground<\/b><\/p>\n<p>Social media has become the\u00a0<a href=\"http:\/\/www.bbc.co.uk\/news\/business-36854285\" target=\"_blank\" rel=\"nofollow noopener\">go-to-market for cybercriminals<\/a>\u00a0eager to compromise people. It&#8217;s no surprise, as many users still fail to adequately look after their social networks (for example, a 2016 survey showed that 58% of people do not know how to update their privacy settings).<\/p>\n<p>As with email, always check the authenticity of the sender (do they look credible?), the message and the link (which will likely be shortened). Beware of trending hashtags too as many are now using them to trap unsuspecting Twitter and Facebook users trying to catch-up with the latest breaking news.<\/p>\n<p><b>Attitude: It won&#8217;t happen to me<\/b><\/p>\n<p>Forget technology for a second, culture is arguably the biggest issue with security right now, and this has been the case for 20 years. CEOs think they won&#8217;t be targeted and citizens think much the same (i.e.\u00a0<a href=\"https:\/\/www.welivesecurity.com\/2015\/05\/01\/5-signs-youre-hackers-sights\/\" target=\"_blank\" rel=\"nofollow noopener\">it won&#8217;t happen to me<\/a>).<\/p>\n<p>This complacency is misguided, as\u00a0<a href=\"https:\/\/www.welivesecurity.com\/2016\/10\/17\/84722\/\" target=\"_blank\" rel=\"nofollow noopener\">everyone is a potential target<\/a>. Accordingly, this attitude can often result in poor security habits, with individuals and organizations treating, for example, password and Wi-Fi security not as seriously as they should.<\/p>\n<p>This is despite the fact that good cybersecurity can be achieved relatively easily, through good password hygiene, regular software updates, anti-virus and even password managers, VPNs and secure encrypted messaging apps.<\/p>\n<p><b>Passwords: The easy way in<\/b><\/p>\n<p>Generic, guessable passwords can be easily cracked, and they can open a can of worms if you use the same password across several accounts. Brute-forcing passwords is increasingly fast and easy for criminals today equipped with either huge computing power, or access to buy such expertise on the dark web.<\/p>\n<p>Weak passwords, such as 123456; password; 12345678; and qwerty remain commonplace, with many people failing to see how these &#8216;low-hanging fruit&#8217; are an entry point for cybercriminals. According to\u00a0<a href=\"http:\/\/www.prnewswire.com\/news-releases\/survey-reveals-how-lack-of-social-network-password-security-is-causing-vulnerabilities-at-users-place-of-business-300433021.html\" target=\"_blank\" rel=\"nofollow noopener\">Forrester<\/a>, 80% of all attacks involve a weak or stolen\u00a0<i>password<\/i>.<\/p>\n<p>Some web providers now force you to generate random passwords, or create complex ones. Regardless of whether you face such password policies, you may want to consider a password manager, as well as\u00a0<a href=\"https:\/\/www.welivesecurity.com\/2016\/05\/05\/forget-about-passwords-you-need-a-passphrase\/\" target=\"_blank\" rel=\"nofollow noopener\">passphrases<\/a>.<\/p>\n<p><b>Software updates: A lack of<\/b><\/p>\n<p>Whether on desktop, laptop or mobile, there&#8217;s always another software update for our apps, operating systems or security solutions. Interestingly, the constant pop-ups irritate us, with many people failing to understand just how important they are.<\/p>\n<p>If we fail to update, we&#8217;re effectively leaving our software and devices vulnerable to attack, as cybercriminals look to exploit out-of-date flaws. This was the case with the recent\u00a0<a href=\"https:\/\/www.welivesecurity.com\/2017\/05\/13\/wanna-cryptor-ransomware-outbreak\/\" target=\"_blank\" rel=\"nofollow noopener\">WannaCryptor<\/a>\u00a0ransomware worm that so publicly compromised\u00a0<span class=\"xn-location\">Britain&#8217;s<\/span>\u00a0National Health Service (NHS) and\u00a0<span class=\"xn-location\">Spain&#8217;s<\/span>telco Telefonica, and spread to countries throughout\u00a0<span class=\"xn-location\">Asia<\/span>, to the\u00a0<span class=\"xn-location\">United Arab Emirates<\/span>\u00a0and to at least a dozen more countries in\u00a0<span class=\"xn-location\">Europe<\/span>. Had the affected organizations properly configured automatic operating system updates for all their PCs, they may not have been featured on WannaCryptor&#8217;s victim list.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cybercrime has quickly become a major problem for businesses, governments and citizens all over the globe. While awareness of this multifaceted threat is increasing, we&#8217;re still making the same mistakes when it comes to cybersecurity, as a recent study by the\u00a0Pew Research Center\u00a0found.<\/p>\n","protected":false},"author":6,"featured_media":29762,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19,26],"tags":[1849,6151,1591,54,96],"class_list":["post-32529","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","category-opinions","tag-eset","tag-high-tech","tag-ransomware","tag-security","tag-technology"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/32529","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=32529"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/32529\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/29762"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=32529"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=32529"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=32529"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}