SECURITY!!!!

 

Information and system security for individuals, organizations, and everyone else is very important because everyone depends on technology to protect their online assets. Chapter 2 of CompTIA says that PII includes information that can identify individuals directly or indirectly. Some examples include names, addresses, phone numbers, Social Security numbers (SSN), bank account information, logins, and more. It’s scary because even with information that may appear harmless and small by itself can become a sensitive and big problem when combined with other information. Going into more detail for Malware and Ransomware, it makes systems vulnerable because hackers/attackers can take advantage of software weaknesses like old applications, unsafe downloads, weak authentications, and more. A successful phishing attack can give attackers an opportunity to install malware which will steal information, damage files, or perform activities that aren’t approved. This aligns with Ransomware since Ransomware is a form of malware that doesn’t let users access their files or systems and that requires a payment like a “Ransom”

              Luckily, there are preventive measures that can be taken to protect your own systems or networks from malware and ransomware. The easiest one would be maintaining current software. Everyone should install security updates and patches regularly because outdated software may contain vulnerabilities that attackers can exploit. The second recommendation would be to make backups of important information and data because they are something that can be used to recover the online assets of whoever is using it. Because there would be a backup, hackers/attackers would have a really hard time getting into them. Bonus recommendations would be to have strong passwords, multifactor authentication, or get anti-virus software.

              Moving onto another security issue is phishing! Phishing is when an attacker/hacker tries to trick a person into giving sensitive information, clicking an unsafe link, or opening a harmful attachment/file and is very common. Computer systems and users are vulnerable to phishing because communication through email and text messaging or whatever else is a normal part of everyday life. Attackers can pretend to be banks, workers, retailers, or other trusted companies. Unfortunately, I have seen this many times and have experienced it myself through text messages or emails from random unknown strangers. My personal experience was after a long road trip, and I had received a text message for a payment because I was supposedly speeding or in the wrong lane and I ended up having to cancel my debit card because of it. Phishing can be very deceitful, and many people do not realize it and it’s a very powerful security risk because it exploits human trust instead of relying just on technical vulnerabilities. Chapter 2 of CompTIA warns users not to respond to suspicious messages, provide sensitive information to unsolicited requests, or click suspicious links and attachments which I ended up failing to do but now I know and spread awareness.     

 A successful phishing attack can have a variety of consequences like unexpected password changes, unauthorized account activity or unfamiliar transactions to just name some. Some recommendations that I have to prevent phishing are making sure that whatever link that they may receive is an authentic and real link to whatever app or software they are trying to use. Secondly is informing yourself and others to spot any suspicious messages or dangerous “asks” of messages. Some bonus recommendations that I have are either ignoring the phishing message or asking someone that you trust or know more if the message/ link is authentic. Overall, information and system security is essential because data has become very valuable to everyone. Everyone should have an awareness of technology security to protect themselves from many threats, not just the ones I mentioned.

Comments

Popular Posts