Posts

Showing posts with the label Hacking

Mouse Jigglers – A blessing or a curse?

Image
Have you heard of mouse jigglers or mouse movers? They’ve become all the range since work from home has become more mainstream.   Back in my FBI days, we used mouse jigglers when we were on a search or at a crime scene to stop the computer from locking or going to sleep. If we didn’t have a mouse jiggler then the newest person would have to sit there and babysit the computer, constantly moving the mouse around to make sure we didn’t lose access to that computer, but I digress…   Today, people are using mouse jigglers to make sure they always appear active and don’t go to an away status on their computer while working remotely. They say it’s in the name of being paranoid about getting fired for being away from their desk too long to go to the bathroom or eat lunch. Yeah, let’s stick with that version of the story…   Now, before you jump on the Internet and start looking for your own mouse jiggler there is a dark side to all of this (besides your employer blocking them from w

Don't get tricked by the word new

Image
Let’s talk about phishing emails and the techniques used by cyber criminals to get you to click. Today, I’m going to focus on the subject line.   The subject line is super important, and that’s why the bad guys are using it against you. Why is the subject line so important? The subject line is the first and only hint at what the email is about. If you can’t reel ‘em in with the subject line they might never open your email. In fact, the subject line is so important that marketers test different subject lines against each other to see which one will get the most opens.   Cyber criminals try to invoke a sense of urgency and emotions to get you to click. That’s why words like ‘URGENT’ and ‘IMPORTANT’ have appeared in their subject lines for years. But now, there’s a new word in the subject line, and that new word is ‘NEW.’   THE NEW WORD IS NEW.   WHY IS ‘NEW’ SUCH A POWERFUL WORD IN PHISHING EMAILS? Legit emails and alerts contain the word ‘new’ The word ‘new’ raises

The FlyTrap that Caught your Facebook Account

Image
When I say ‘FlyTrap’ what comes to mind? A venus fly trap? ‘The Little Shop of Horrors’? A bug zapper? A strip of sticky tape with a bunch of flies stuck to it? Malware?   I hope you were thinking about malware because there’s some FlyTrap malware taking over Facebook Accounts, and it's been around since March.   How are they doing it? Social Engineering .   The bad guys have placed malicious apps in Google Play and other Android stores to lure you in with offers for free Netflix coupon codes and voting for your favorite soccer player or team. These apps look legit. They are high quality, use great graphics, and are free from grammar and spelling errors.   To get the code or to vote, you have to log in with your Facebook username and password. You are actually using Facebook to login, but unknown to the victim, there is something nefarious going on in the background, and it’s stealing their sensitive info.   WHAT TO DO IF THIS HAS HAPPENED TO YOU

Why phishing emails are bad for business

Image
Have you heard about the UC San Diego Health data breach?   It started with a phishing attack back in December, and now the personal info of patients, students, and employees could be in the hands of cybercriminals. The victims could face identity theft at any time.   A CLASSIC EXAMPLE OF AN EMPLOYEE DOING THE EVIL BIDDING OF THE BAD GUY. Employee(s) took action as directed in the phishing email. Those actions gave the hackers access to employee email accounts. The hackers could access everything in the employee email accounts.   WHY IT’S BAD FOR BUSINESS The hackers can access any password reset links that arrive via email. The hackers can access any multi factor authentication codes that arrive via email. The hackers can send emails directly from your email account and message your contacts requesting information or even changing payment instructions.   WHAT YOU NEED TO KNOW Sometimes malicious emails get delive

Are the bad guys winning?

Image
  What do you think? Are the bad guys winning?   If you’ve been watching the news lately you might think, yes, the bad guys are prevailing over cybersecurity. In under a week over 1,500 businesses got hit with Ransomware thanks to a vulnerability in Kaseya VSA and the cyber gang REvil. Then there’s another cyber gang launching Trojan attacks against the Indian Military.   Sounds bad, right?   Let’s talk about some victories for the good guys . They arrested the suspected hacker Dr HeX for many cyber crimes, including financial fraud that affected thousands. Microsoft finally issues a patch to put an end to the PrintNightMare bug.   Don’t let the news overwhelm you . Businesses of any size can implement a successful cybersecurity strategy that can reduce your risk of cyber attack by 80%. But how...   FIVE TIPS TO PROTECT YOUR BUSINESS Beware of phishing emails Stop and think before you click Protect your accounts Secure your devices and keep them up to date Backup, b

What's ransomware been up to this summer?

Image
I don't know about you, but to me, summer means fun in the sun, lazy days, and ice cream. Summer also means  it's ransomware season . It seems cybercriminals look forward to this season as much as I look forward to ice cream. Have you been keeping up with what ransomware has been up to this summer? If not, here's what you missed... RANSOMWARE ATTACKS SINCE MAY 2021 "DarkSide  ransomware being used to disrupt a major U.S. pipeline that transports almost half of all fuel consumed on the East Coast of the United States The claimed theft of 3 terabytes of sensitive data from part of the Asian operations of a global insurance subsidiary in attacks using  Avaddon  ransomware The shutting down of the IT systems of Ireland’s Health Service Executive — another victim of a  DarkSide  attack — disrupting patient care throughout the country The U.S. Federal Bureau of Investigations (FBI) alerting of a spate of  Conti  ransomware attacks targeting American healthcare organizations

This is why I keep talking about spam

Image
    Have you noticed that in addition to sharing cybersecurity tips I also spend a like of time talking about spam and email?   Are you wondering why a cybersecurity expert is spending so much time talking about emails and spam?   Here's why...   Email offers TWO enormous opportunities. One for cyber criminals to wreak havoc and another for businesses to reach their clients.   You see, there are over 4 billion emails users across the globe, and 95% of them are checking their email EVERY DAY . This makes email a very effective tool to reach people. If you can get your message into the inbox, there is a prime chance that they will see you and they’ll read your message.

The DarkSide attacks the pipeline - could you be hit with Ransomware next?

Image
The DarkSide takes down the Colonial Pipeline - could you be hit with Ransomware next? Yes. Yes, you could be. The DarkSide might not be coming for you, but another hacker is coming for you and your business. Especially if you're a small business. Here's the thing you need to know - hacking groups such as the DarkSide, REvil, and CLOP are opportunistic. That means they want to make an easy buck by attacking an easy target. Think of it as thieves looking for backdoors to houses that are unlocked and the residents are away. It's dark, no one's home, the door's unlocked, and the thief enters and snags everything valuable he can walk away with. All it takes is one click on one phishing emails and you could get a bad case of ransomware. Ransomware is more brutal than ever. Not only do you lose access to all your data because the bad guys encrypted it, they also stole a copy of all of your data. If you don’t pay up fast, they’ll leak your sensitive information. How ransom

The problem with passwords

Image
How do you feel about your passwords? Do you love them? Do you hate them? Are you always forgetting them? OR... Do you have ONE password that you absolutely love and use it everywhere?   I’ve got news for you… YOU’RE NOT ALONE.   78% of people have to reset their passwords regularly because they can’t remember them. 72% of people are reusing passwords. 91% of people understand the risks of password reuse. 59% admitted they do it anyway.   Those numbers are big reason why 80% of data breaches start with a compromised password. How can you do it better? Get a password keeper. Benefits of a password keeper. No more forgotten passwords Easily use stronger passwords and increases the security of your accounts Passwords are auto generated for you (that are strong and complex) Share passwords securely Save time. No more time wasted thinking of new and unique passwords.  No more time wasted resetting your passwords. If you’re not sure what makes a strong