{"id":31878,"date":"2021-12-24T10:09:03","date_gmt":"2021-12-24T10:09:03","guid":{"rendered":"https:\/\/www.digife.it\/?p=31878"},"modified":"2021-12-24T10:09:03","modified_gmt":"2021-12-24T10:09:03","slug":"cyber-security-violations-beware-of-scams","status":"publish","type":"post","link":"https:\/\/www.digife.it\/en\/cyber-security-violations-beware-of-scams\/","title":{"rendered":"Cyber Security Breaches - Beware of Scams"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">The strong push towards digitization caused by the pandemic over the past two years has generated a simultaneous increase in <\/span><b>computer crimes<\/b><span style=\"font-weight: 400;\">. Hackers, coordinated in real criminal organizations, target not only individuals, but also companies, public and private infrastructures.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The data indicate that this trend will continue into 2022. Let&#039;s see what the potential risks are for <\/span><b>IT security<\/b><span style=\"font-weight: 400;\"> and what can be the countermeasures to protect yourself and your e-commerce.<\/span><\/p>\n<h3><b>Data breach<\/b><\/h3>\n<p><span style=\"font-weight: 400;\">In the year that is about to end, the companies affected by the so-called have increased exponentially <\/span><a href=\"https:\/\/it.wikipedia.org\/wiki\/Ransomware\" target=\"_blank\" rel=\"noopener\"><b>ransomware<\/b><\/a><span style=\"font-weight: 400;\">. That is computer viruses that are able to block access to the infected device or encrypt its contents.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The result is that the cybercriminals responsible for this <\/span><b>cyber security breach<\/b><span style=\"font-weight: 400;\"> they hold stolen data &quot;hostage&quot;. The methods of extortion by hackers are usually divided into four phases: the first involves a &quot;simple&quot; ransom request. The operator of the site in question, in order to gain free access to his portal or device again, is forced to pay the hackers responsible for the attack.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The next step is the threat of disclosure of the compromised data, which, depending on the affected company, can also be very sensitive. If that&#039;s not enough, the threat can spread to the company&#039;s customers and, ultimately, even to the site&#039;s technology providers.<\/span><\/p>\n<h3><b>Data theft<\/b><\/h3>\n<p><span style=\"font-weight: 400;\">Another aspect of the same problem is represented by the<\/span><b> data theft<\/b><span style=\"font-weight: 400;\">, which can be found on social networks, forums, blogs, messaging apps and e-commerce sites.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The business of <\/span><b>stolen data<\/b><span style=\"font-weight: 400;\"> is growing strongly, with the numbers indicating a + 18% compared to last year. The most commonly stolen data are login credentials, i.e. username and password, and bank details. Unlike the previous point, in this case not only the website is at risk but also the private users who access it.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The information collected could be used to carry out scams against the victim, could be sold (for example on the dark web) or, in the case of bank details, used to carry out real thefts.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Most crimes, however, involve personal online gaming accounts, online dating sites, social networks, websites and streaming platforms. In these cases, thieves use the victim&#039;s account without his knowledge, often making purchases with the credit card that the unsuspecting victim has linked to their accounts.\u00a0<\/span><\/p>\n<h3><b>Countermeasures for greater IT security<\/b><\/h3>\n<p><span style=\"font-weight: 400;\">If so far we have talked in general terms of the risks that a <\/span><b>cyber security breach<\/b><span style=\"font-weight: 400;\"> implies, it is now appropriate to make a distinction between companies and individuals. As we have seen, in fact, the risks involve both parties.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">So let&#039;s see what are the most effective countermeasures for all interested parties.\u00a0<\/span><\/p>\n<h4><span style=\"font-weight: 400;\">Private<\/span><\/h4>\n<p><span style=\"font-weight: 400;\">To avoid risks to the<\/span><b> IT security<\/b><span style=\"font-weight: 400;\">, a user must pay attention, first of all, to the sites he visits: in fact, there are more and more<\/span><b> dangerous sites<\/b><span style=\"font-weight: 400;\">.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">As of November of this year, over 5,000 websites are putting the data of those who visit them at risk, with an increase of 178% compared to previous months. To avoid these dangers, always check that you are browsing safely, visiting only sites that have the protocol in the domain <\/span><b><a href=\"https:\/\/it.wikipedia.org\/wiki\/HTTPS\" target=\"_blank\" rel=\"noopener\">HTTPS<\/a> <\/b><span style=\"font-weight: 400;\">(where the S stands for SECURE) and not the unsecured HTTP protocol.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Fortunately, Google automatically blocks some sites that it considers dangerous. If, however, you want to be sure of the <\/span><b>IT security<\/b><span style=\"font-weight: 400;\"> of a site, a quick and easy method is to examine its URL. Before clicking on the URL, simply copy the link and analyze it using an analysis tool. There are several and they are mostly free. They will be the ones to verify the danger of the site for us.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">\u00a0The second tip is not to take the bait <\/span><b>phishing<\/b><span style=\"font-weight: 400;\">, which is the most popular and most effective scam among hackers. The system is very simple, it involves sending text messages (usually SMS) pretending to be an institutional body, such as the Italian Post Office, or a well-known company, such as Amazon, with which cyber criminals persuade victims to give up personal information. , financial data and \/ or credentials.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">In case you receive such a message, DO NOT click on the attached link. You risk compromising not only your personal data, but also the integrity of the device you are using.\u00a0<\/span><\/p>\n<h4><span style=\"font-weight: 400;\">Companies<\/span><\/h4>\n<p><span style=\"font-weight: 400;\">The above advice is also valid, of course, for the managers of <\/span><b>e-commerce sites<\/b><span style=\"font-weight: 400;\">. Avoiding dangerous sites and not engaging in phishing messages also reduces the risk of your device being affected by computer viruses (such as ransomware).\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For the same reason it is good that the site is monitored and updated regularly. It is, in fact, imperative that the site be kept up to date with antivirus protections and the latest updates, as cybercriminals seek to take advantage of the widespread use of cloud environments, which are increasingly used.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The aim is to reduce the risks of violation of the <\/span><b>IT security <\/b><span style=\"font-weight: 400;\">to a minimum, as far as possible.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A threat that is expected to become more serious in 2022 concerns the so-called \u201czero day\u201d vulnerabilities, or software flaws that even developers are not aware of. Recently, for example, there has been a lot of talk about security breaches <\/span><a href=\"https:\/\/www.ansa.it\/sito\/notizie\/tecnologia\/hitech\/2021\/12\/20\/bug-informatico-log4shell-anche-la-soluzione-ha-una-falla_06113db0-5bdc-440f-bc6c-05c08d508062.html\" target=\"_blank\" rel=\"noopener\"><b>Log4Shell<\/b><\/a><span style=\"font-weight: 400;\">, a framework used by the vast majority of software developers.\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Not having a site updated with the latest patches also means exposing yourself to this type of risk. Also due to these kinds of problems, it is estimated that the total expenditure on cloud security services for 2021 will increase by 54%, compared to last year.\u00a0<\/span><\/p>\n<h4><span style=\"font-weight: 400;\">General advice<\/span><\/h4>\n<p><span style=\"font-weight: 400;\">We conclude with some general indications for greater security against cyber attacks, valid for everyone:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">use complex passwords, more difficult to &quot;steal&quot;;<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">use prepaid cards, avoiding the use of credit cards linked to the personal account;<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">do not connect work and personal accounts, keeping the login credentials separate (for more details see <a href=\"https:\/\/www.digife.it\/en\/cybersecurity-smart-working\/\">this article<\/a>). <\/span><\/li>\n<\/ul>","protected":false},"excerpt":{"rendered":"<p>The strong push towards digitization caused by the pandemic over the past two years has generated a simultaneous increase in cybercrime. Hackers, coordinated in real life ...<\/p>","protected":false},"author":35,"featured_media":31880,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[242,130,59],"tags":[],"class_list":["post-31878","post","type-post","status-publish","format-standard","has-post-thumbnail","category-sicurezza","category-ecommerce","category-notizie"],"_links":{"self":[{"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/posts\/31878","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/users\/35"}],"replies":[{"embeddable":true,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/comments?post=31878"}],"version-history":[{"count":0,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/posts\/31878\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/media\/31880"}],"wp:attachment":[{"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/media?parent=31878"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/categories?post=31878"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.digife.it\/en\/wp-json\/wp\/v2\/tags?post=31878"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}