ZeroIn Blog
Ethical Hacker Points Out Security Risks People Take
This article highlights the increasing risks of cyberattacks, particularly those targeting users rather than technical systems. 94% of malware is delivered via email, and phishing is responsible for 41% of incidents. Despite efforts by IT teams to train users on safe practices, many individuals let their guard down in public spaces, where they are more likely to fall victim to cybercriminals.
The author, an experienced ethical hacker, shares several real-life examples to demonstrate how easily hackers can exploit public scenarios. For instance, at a store, staff asked for customer email addresses to send e-receipts, which could be used to craft phishing emails with personalized information like store location, items purchased, and discounts. Similarly, at a concert, the author observed a person unwittingly exposing sensitive personal details (e.g., name, job, address, bank balance) simply by browsing their phone in a public setting. Such information could be used for identity theft or to coerce the individual into compromising actions.
Using unsecured Wi-Fi networks, such as those found at public venues, like hotels or coffee shops, create vulnerabilities cybercriminals can exploit. Attackers can generate "evil twin" Wi-Fi hotspots, which mimic legitimate networks, and when devices connect, hackers can steal data. Other risks include packet sniffing, where attackers monitor network traffic to steal information. To mitigate these threats, users should avoid unsecured networks and use a Virtual Private Network (VPN) to encrypt their connection.
Tips for Cybersecurity in Public:
- Be cautious with personal information: Avoid sharing sensitive data in public spaces, such as at stores or during conversations.
- Use a VPN: Always use a Virtual Private Network (VPN) when connecting to public Wi-Fi to encrypt your data and protect your privacy.
- Avoid unsecured networks: Refrain from connecting to open, unprotected Wi-Fi networks, as they are prime targets for hackers.
- Enable anti-phishing protections: Use email services that offer anti-phishing features to help detect malicious emails.
By staying vigilant and following these precautions, users can reduce their chances of falling victim to cyberattacks in public spaces.
Comments