Showing posts with label hacking. Show all posts
Showing posts with label hacking. Show all posts

Wednesday, August 3, 2016

Cyber-Security for Electronic Devices

Cyber-Security doesn't just apply to traditional PC's or Server.  Electronics such as smartphones, Tablets and other internet-enabled devices may also be vulnerable to attack. 

Here are some simple tips that can help protect your tablet or smart phones. 

  • Remember physical security - Having physical access to a device makes it easier for an attacker to extract or corrupt information. Do not leave your device unattended in public or easily accessible areas (see Protecting Portable Devices: Physical Security for more information).
  • Keep software up to date - If the vendor releases updates for the software operating your device, install them as soon as possible. Installing them will prevent attackers from being able to take advantage of known problems or vulnerabilities.
  • Use good passwords - Choose devices that allow you to protect your information with passwords. Select passwords that will be difficult for thieves to guess, and use different passwords for different programs and devices. Do not choose options that allow your computer to remember your passwords.
  • Disable remote connectivity - Some mobile devices are equipped with wireless technologies, such as Bluetooth, that can be used to connect to other devices or computers. You should disable these features when they are not in use.
  • Encrypt files - If you are storing personal or corporate information, see if your device offers the option to encrypt the files. By encrypting files, you ensure that unauthorized people can't view data even if they can physically access it. When you use encryption, it is important to remember your passwords and passphrases; if you forget or lose them, you may lose your data.
  • Be cautious of public Wi-Fi networks - Before you connect to any public wireless hotspot – like on an airplane or in an airport, hotel, train/bus station or cafĂ©:
    • Be sure to confirm the name of the network and exact login procedures with appropriate staff to ensure that the network is legitimate.
    • Do not conduct sensitive activities, such as online shopping, banking, or sensitive work, using a public wireless network.
    • Only use sites that begin with “https://” when online shopping or banking. Using your mobile network connection is generally more secure than using a public wireless network.  (For more info on Wifi Safety... check out article on WIFI Safety )  

Tuesday, February 24, 2015

Understanding Lenovo Superfish Adware


Over the last 2 weeks, I had to explain to my superiors and clients and friends what Superfish is.Here's a clear cut definition of Superfish:

Superfish adware installed on some Lenovo PCs install a non-unique trusted root certification authority (CA) certificate, allowing an attacker to spoof HTTPS traffic.

What the heck does that mean???

Friday, October 17, 2014

Phishing, Malware and Getting Hacked: How to Protect Yourself.



If you're not worried about the security of your accounts, you're ignoring a serious threat that's confirmed by a never ending deluge of security breaches.
Within the last year there have been an increase reports of hackers trying to break into almost every account / services possible on the internet from Target and Home Depot to Apple’s iCloud. However taking measures to prevent any cyber-attacks also requires your help. 


 Be aware of unusual emails or links that direct you to a websites which collect personal information such as login credentials, or contain malicious attachments that can infect a system.I encouraged you to use caution when encountering these types of email messages and take the following preventative measures to protect yourselves:


Thursday, March 21, 2013

Don’t trust public Wi-Fi & cyber cafes


I always tell people never to log on to free WiFi hot-spots at the park or at Starbucks... Why you say?   Cause I might just be watching your internet session.  Just be lucky its me, cause I don't have malintent of your Internet surfing.  Other  people on the other hand, might have other motives.

There is this Firefox extension that I have used, called firesheep, that grabs password and logs in information of all the people connected to the same WiFi network. Basically I can see what you you see on your laptop ex. Facebook session.   Firesheep is not the only tool that can use brute force your privacy; there are many network sniffing tools such as Wireshark that can intercept your communication.

I was able to view someone buying pottery on overstock.  With that person's log in session cached in, I could have easily bought some stuff and changed the shipping address to my friends house;  Or I could have updated her Facebook status letting her know that she got hacked  (but I'm a good guy).

If you do need to connect to a public WIFI for what ever reason... please protect your self...install a third party software that can protect your self such as HotSpot Shield http://www.hotspotshield.com. This software protects your entire web surfing session by securing your connection, whether you're at home or in public.  
If you have a smartphone, its probably better to use your smartphone's WiFi hotspot and /or use the 4G connection to get internet access.

Stay Alert while using a free WiFi network, you never know what adware, malware, key-logger,iframe injection and viruses the network is infected with that can cause you trouble or get you in trouble. 
Happy Surfing.