Identity theft is the deliberate use of someone else’s identity, usually as a method to gain a financial advantage or obtain credit and other benefits in the other person’s name, and perhaps to the other person’s disadvantage or loss. The person whose identity has been assumed may suffer adverse consequences if they are held responsible for the perpetrator’s actions. Identity theft occurs when someone uses another’s personally identifying information, like their name, identifying number, or credit card number, without their permission, to commit fraud or other crimes.
In the UK, this year 2016, the Metropolitan Police and the Banks and working together to the aim of moving the onus of fraud prevention from the Banks to the individual. Click here for an article explaining their thought process.
The Police are insisting that the public are not sufficiently vigilant and therefore should be liable for the consequences of any fraudulent act. The Banks clearly love this approach because as of today, they reimburse clients that have been the victim of fraud unless they can prove the client has been negligent with their PIN. Under the new guidelines should they be introduced, and let’s not forget the power that Banks wield in the political World, unless the client can prove it was the Bank at fault, they will have bare the full consequences.
The correct name for ransomware is Cryptovirology or put simply, a virus that encrypts data and thus making it useless to the owner. This would be deemed as digital vandalism but for the fact that the criminal (and they are criminals not hackers) offers a solution to decrypt the data on payment of a ransom, bribe or tithe, call it what you like but it boils down to criminal extortion. The criminals know that no sane individual would ever give them their credit card details to pay this ransom, so the currency of choice, currently are Bitcoins. One Bitcoin today (July 2015) is worth a little over £500, although as explained in this very good article click here, it has even been known for the criminals to accept Amazon gift credits as payment .
Once the ransom has been paid, the victim will be given the decryption key to retrieve their data.
So there we have it, the data is encrypted and rendered useless, the victim has a choice pay the ransom, thus proving that they are a soft touch and so leaving themselves open for another attack, don’t pay the ransom, run a virus cleaner to remove the virus and then restore a previous backup of the data losing only the work done between the time of the last backup and the time of the attack, or use the DIY method if you have the wherewithal, or get a professional in to unravel the mess.
Far easier to protect and avoid getting infected in the first instance.
The rule is “if your device; computer /tablet /smartphone has access to the Internet, then the Internet has access to your device”. Clearly this is not always a bad thing because without allowing some access no information may be downloaded. Control however, of exactly what and how data is downloaded, should be totally up to the user. This is achieved by the means of a firewall. Most people won’t even be aware that they are behind a firewall, but they are built into most broadband modem/routers, these however are not sufficient and additional provisions should be made.
Every day our Honeypot email trap catches that day’s main risks. More and more we are seeing attachments carrying an infection in the form of zip files, PDFs, Microsoft Word and Excel document files attached to email. This on opening, will infect your computer. The infection of choice seems to be ransomware which will encrypt all the data on your PC. The only way to retrieve your data (decrypt it) is by paying a ransom of anywhere between £500 and £1000 at going rates. Alternatively, clear the virus and restore the most recent backup if you are able, or pay a professional to do it.
Malware, short for malicious software, is any software used to disrupt computer operations, gather sensitive information, gain access to private computer systems, or display unwanted advertising. This comes in various guises and is delivered in many different ways. The worst being that which is embedded into a normally benign program, this because as the main programme is being installed, it is getting the operators permission and OK, the malware is by default getting the same permission right up to the security level of the operator.
Adware, is a form of software that downloads or displays unwanted ads when a user is online, collects marketing data and other information without the user’s knowledge or redirects search requests to certain advertising websites. Adware that does not notify the user and attains his or her consent is regarded as malicious. Also known as PUPs, is very often installed on the victim’s device without their consent, or knowledge packaged within a sometimes genuine programme downloaded from a site other than that of the software publisher.
