New report reveals disturbing new trends in cyber crime, including a rise in social engineering attacks and a shift toward targeting individuals.
Something is changing in the world of cybersecurity. In the first half of 2023, Avast researchers observed a notable shift in threat trends. While traditional consumer-focused cyber threats experienced a slight decline, social engineering, and web-related threats, such as scams, phishing, and malvertising, surged dramatically. According to the Avast Q2 2023 Threat Report, these threats accounted for more than 75% of Avast’s overall detections on desktops during the quarter, with scams alone contributing to 51% of the total detections.
Syarat bisnis pikeun tim IT sareng infosec rupa-rupa sareng sering konflik. Tugasna kalebet pangurangan biaya, pamakean data anu efisien, otomatisasi, migrasi awan sareng timbangan sadaya résiko kaamanan inpormasi. Kumaha tren konci sareng parobihan dina IT mangaruhan profil infosec perusahaan, sareng naon anu kedah dipertimbangkeun réspon anjeun kana kabutuhan bisnis? Kami nganalisis tren IT anu paling penting sareng praktis (nurutkeun sababaraha kelompok ahli bebas sareng analis pasar cybersecurity), fokus kana aspék masing-masing infosec.
optimasi IT
Usaha di sakumna dunya ngagaduhan alesan anu hadé pikeun ngencangkeun sabukna – naha éta kusabab parobahan geopolitik, inflasi atanapi resesi ékonomi. Pikeun tim IT, ieu hartosna tinjauan utama biaya operasional. Departemen keuangan dinten ieu ngagaduhan biaya awan dina mikroskop, sabab 60% data perusahaan ayeuna disimpen dina méga. Pikeun seueur perusahaan, migrasi ka awan ngadadak sareng teu sistematis, nyababkeun tunggakan langganan SaaS anu teu dianggo, ogé mesin virtual anu dikonpigurasi sacara suboptimal sareng lingkungan awan anu sanés. Biasana aya seueur poténsi pikeun optimasi di dieu, tapi éta henteu kedah janten prosés sakali. Perusahaan kedah nyiptakeun budaya dimana biaya awan mangrupikeun perhatian sanés ngan ukur jalma IT, tapi ogé para pangguna awan sorangan.
sudut Infosec. Salila optimasi sareng konsolidasi, jasa awan dikonfigurasi deui sareng data dipindahkeun antara lingkungan awan anu béda. Penting pikeun ngalokasikeun waktos sareng sumber pikeun audit sistem pasca migrasi pikeun mastikeun, antara séjén, yén setélan kaamanan leres sareng sadaya akun jasa anu diperyogikeun pikeun migrasi palabuhan parantos ditutup. Salila migrasi, éta mangrupakeun ide nu sae pikeun ngamutahirkeun rusiah (token aksés, konci API, jsb) jeung ngalaksanakeun enkripsi prakték pangalusna sarta kawijakan cipher.
Upami aya alat atanapi jasa awan anu ditumpurkeun saatos migrasi, ieu kedah dipiceun tina sadaya data rahasia sareng inpormasi jasa (debugging sareng file samentawis, data uji, jsb.).
Open source
Mangpaat ékonomi tina aplikasi open source rupa-rupa: contona, pausahaan ngembangkeun software ngurangan waragad sarta waktu ka pasar ngaliwatan pamakéan kode siap-dijieun, sedengkeun nu sejenna acquire sistem nu maranéhna bisa ngaropéa tur ngajaga internal, lamun diperlukeun.
sudut Infosec. Résiko utama open source nyaéta aya kerentanan sareng backdoors dina kode pihak katilu – utamina kusabab éta henteu salawasna jelas saha anu kedah ngalereskeun kodeu sareng kumaha carana. Seringna perusahaan bakal ngagunakeun sababaraha perpustakaan atanapi parangkat lunak tanpa terang. Ngaleungitkeun resiko open source merlukeun inventaris kode jeung sistem scanning. Pikeun tampilan anu langkung jero ngeunaan résiko sareng ukuran mitigasi, tingali tulisan kami anu misah.
Manajemén data
Pausahaan badag di ampir unggal industri geus ngumpulkeun jumlah badag data operasional salila kira dua dekade ayeuna. Dina tiori, éta mantuan ngaoptimalkeun jeung ngajadikeun otomatis prosés bisnis jeung ngamekarkeun produk fundamentally anyar (kadangkala data sorangan jadi komoditi ditéang-sanggeus). Dina prakna, kumaha oge, hal anu leuwih pajeulit: loba data dikumpulkeun, tapi mindeng struktur na, recency, sarta formulir gudang sapertos nu hese atawa malah teu mungkin pikeun manggihan informasi sarta ngagunakeun éta.
Pikeun pertumbuhan anu didorong ku data nyata, usaha peryogi prosedur anu jelas pikeun ngumpulkeun, ngakatalogkeun, nyimpen, sareng ngagunakeunana. Strategi anu kapaké di dieu nyaéta manajemén data sareng pamaréntahan data. Strategi ieu ngajelaskeun struktur sareng sifat inpormasi anu disimpen sareng siklus kahirupan data lengkep, sareng ngamungkinkeun anjeun pikeun ngatur panyimpenan sareng pamakeanna.
sudut Infosec. Tata kelola data dilaksanakeun pikeun alesan ékonomi, tapi mangpaat jaminan pikeun kaamanan informasi téh loba pisan. Barina ogé, ku terang dimana sareng naon data anu disimpen, perusahaan langkung saé pikeun meunteun résiko, nyayogikeun panyalindungan anu nyukupan pikeun sadaya set data, sareng patuh kana hukum data pribadi. Tim infosec kedah maénkeun peran anu aktip dina ngamekarkeun sareng ngalaksanakeun strategi manajemén data, kalebet: kabijakan aksés sareng enkripsi, kontrol patuh, ukuran pelindung pikeun data nalika istirahat sareng transit, sareng prosedur pikeun kéngingkeun aksés. Strategi ogé kedah nutupan jinis data “tambahan” sapertos inpormasi téknis cadangan sareng proprietary dina méga (utamana SaaS).
Kode low & euweuh kode
Pendekatan low-code ngamungkinkeun sistem bisnis dirobih sareng diperpanjang tanpa programer. Modifikasi umum kaasup ngarobah interfaces aplikasi jeung ramatloka, nyieun analisis data anyar jeung skenario kontrol, sarta robotic prosés automation (RPA). Éta ngabantosan ngembangkeun solusi CRM, manajemén e-dokumen, nyiptakeun halaman wéb pamasaran, jsb. Usaha kauntungan tina pendekatan ieu kusabab biaya pangropéa IT anu aub sacara signifikan langkung handap tina mitra anu peryogi programer “nyata”. Sababaraha sistem no-code/low-code populér nyaéta Microsoft Power Apps, Salesforce, Uipath, komo WordPress.
sudut Infosec. Sistem kode rendah nyababkeun résiko anu signifikan, sabab ku harti aranjeunna gaduh aksés lega kana data sareng sistem IT perusahaan anu sanés. Éta ogé ngonpigurasi sarta dipaké ku jalma tanpa IT / latihan infosec jero. Sadaya ieu tiasa nyababkeun kabocoran data, sagala rupa bentuk eskalasi hak husus, logging teu cekap, sareng aksés anu henteu sah kana inpormasi.
Sajaba ti éta, pamaké sistem sapertos rutin ninggalkeun rusiah, kayaning konci API, langsung dina kode. Sareng anu paling penting, ampir sadaya sistem tanpa kode aktip ngagunakeun arsitektur plug-in sareng gaduh gudang komponén khusus sorangan pikeun proyék-proyék pangguna. Kerentanan dina komponén ieu sering pisan serius sareng sesah pisan dilacak sareng gancang ngalereskeun nganggo alat infosec standar.
Tim infosec kudu ngamekarkeun kawijakan jeung prosedur husus pikeun tiap aplikasi low-kode dipaké di pausahaan. Administrator sareng pamilik aplikasi kedah nampi pelatihan anu jero dina prosedur infosec ieu, sedengkeun pangguna biasa aplikasi kode-rendah peryogi pelatihan khusus dasar. Salaku bagian tina palatihan pamaké ieu, hal anu penting pikeun ngajarkeun prakték programming aman tur kumaha carana make sistem. Sahenteuna, latihan kedah ngawengku syarat teu nyimpen kecap akses dina kode software, pariksa data input, sarta ngaleutikan operasi modifikasi data.
Administrator IT kedah nengetan caket kana ngaminimalkeun hak istimewa sareng ngadalikeun aksés ka data ngaliwatan aplikasi kode-rendah. Tim infosec kedah ngaevaluasi solusi khusus pikeun ngajagi aplikasi kode low tangtu; contona, aya hiji mini-industri cukup thriving sabudeureun WordPress. Langkung seueur ngeunaan topik anu cukup lega ieu tiasa dipendakan dina tulisan kami anu misah.
Kateguhan & ketahanan
Insiden IT utama dina dasawarsa katukang (henteu kedah serangan cyber) parantos ngajarkeun usaha yén investasi dina résiliensi IT boh biaya-éféktif sareng ganjaran. Investasi di dieu utamina ditujukeun pikeun ngaleungitkeun karugian bencana sareng mastikeun kasinambungan bisnis. Tapi sanajan kajadian utama teu diitung, daya tahan mayar kaluar ku ngaronjatkeun pangalaman pamaké pikeun konsumén jeung karyawan, ningkatkeun reputasi hiji parusahaan, sarta nyetir kasatiaan.
Aya sababaraha cara pikeun ngembangkeun ketahanan:
Uji jero sistem IT salami pamekaran (devops, devsecops);
Ngarancang sistem anu tiasa neruskeun fungsina upami aya kagagalan parsial (redundansi, duplikasi);
Nerapkeun sistem ngawaskeun pikeun ngalacak anomali IT / infosec sareng nyegah kajadian dina tahap awal (gagalna database, teu saimbangna beban, palaksanaan malware, jsb.);
Nerapkeun sistem infosec multi-layered di pausahaan;
Ngembangkeun skenario automation pikeun ngahemat waktos sareng ngaminimalkeun kasalahan manusa, kalebet skenario pikeun ngajadikeun otomatis masalah infrastruktur IT;
Diajar ranté suplai pikeun ngaleungitkeun kajadian anu aya hubunganana sareng kode supplier sareng kontraktor perusahaan, infrastruktur atanapi prosedur internal;
Laksanakeun réspon kajadian sareng prosedur pamulihan saatos kajadian sareng uji dina prakna.
sudut Infosec. Nalika usaha nungtut “daya tahan umum” tina sistem IT na, syarat IT sareng infosec di dieu dikaitkeun raket, janten ngalaksanakeun salah sahiji set di luhur bakal meryogikeun kolaborasi anu jero diantara departemén relevan. Anggaran terbatas, janten penting pikeun netepkeun prioritas sareng pembuat kaputusan bisnis sareng ngadistribusikaeun tugas sareng proyék antara “IT umum” sareng infosec, ngidentipikasi kasempetan pikeun optimasi sareng sinergi. Ideally, hiji solusi (sebutkeun, sistem cadangan) kedah ngadamel tugas IT / infosec concurrently, sarta nangtukeun syarat maranéhanana, latihan pamakéan maranéhanana, jsb, kudu dipigawé babarengan. Hasilna pikeun perusahaan bakal janten strategi ketahanan cyber holistik. Léngkah-léngkah munggaran pikeun katahan cyber dibahas sacara rinci di dieu.
Tulisan ieu henteu acan nyarios kecap ngeunaan AI generatif atanapi rupa-rupa tren IT perusahaan sanés anu masih aya dina fase “kami ékspérimén kumaha nerapkeun ieu”. Ngeunaan tren anu ngajangjikeun tapi tetep atah, kami ngarencanakeun ngaleupaskeun ulasan anu misah.
Tina alat-alat anu luntur ka setélan anu teu dicentang, ieu mangrupikeun lima tip pikeun ngahontal zen cyber.
Pembersih musim semi nyorong seueur urang pikeun nyéépkeun sareng ngareset bumi urang kalayan gumbira awal. Sanajan kitu, éta pangropéa merlukeun yén kalolobaan urang ragu. Janten, sapertos bumi fisik urang, gaduh rutin ngabersihkeun siber sapanjang taun ngajamin katenangan pikiran, terang yén alat kami tiasa dianggo kalayan aman sareng dina kapasitas anu optimal.
Ieu lima tip pikeun ngajaga bumi digital anjeun pikeun ngahontal zen cyber sustainable.
Apdet alat Anjeun
Alat anu katinggaleun jaman tiasa ngajantenkeun anjeun rentan ka pelanggaran kaamanan sareng masalah kasaluyuan anu tiasa mangaruhan pungsionalitas sareng kinerja alat anjeun. Pembaruan parangkat lunak penting pikeun ngajaga kasalametan sareng kualitas laptop, alat anu tiasa dianggo sareng alat sélulér anjeun.
Tetep up to date jeung fitur panganyarna nu ngajaga data, ngaronjatkeun kinerja, sarta patch kerentanan kaamanan. Janten pikeun ngajaga “imah” digital anu rapih, cokot sakedap pikeun mariksa upami anjeun gaduh apdet parangkat lunak otomatis anu diaktipkeun pikeun ngabéla tina ancaman poténsial.
Pariksa setélan privasi anjeun
ulasan anjeun setélan privasi akun média sosial Penting pisan pikeun ngajaga bumi digital anjeun sabab ngabantosan anjeun ngadalikeun inpormasi pribadi naon anu anjeun bagikeun ka batur sareng kumaha éta dianggo. Goreskeun profil Facebook, Instagram sareng Twitter anjeun sareng saluyukeun setelan privasi sacara manual pikeun nyegah ngabagi inpormasi anu anjeun henteu hoyong aksés atanapi nyebarkeun online pikeun mastikeun bumi digital anjeun aman sareng aman.
Amankeun Wi-Fi anjeun
Jaringan Wi-Fi anjeun tiasa janten tempat kaulinan pikeun peretas, scammers sareng penjahat siber sanés pikeun kéngingkeun aksés ka sadaya alat anu disambungkeun. Mastikeun Wi-Fi anjeun aman penting pisan pikeun ngajaga imah digital anjeun aman pikeun ngabantosan data pribadi sareng alat anjeun tina aksés anu henteu sah.
Amankeun jaringan Wi-Fi anjeun ku cara ngarobah kecap akses standar anu diatur pabrik kana kombinasi khusus (campuran hurup, angka, simbol, sareng frasa panjang) anu henteu gampang ditebak. Nalika ngarobah kecap akses anjeun, ulah nganggo inpormasi anu gampang diidentipikasi sapertos tanggal lahir atanapi nami anjeun.
Apdet sandi anjeun
Sandi sapertos konci bumi digital anjeun anu ngajagi sareng ngamankeun inpormasi anjeun tina ancaman cyber. Alat digital anjeun sareng akun online nyimpen data anu sénsitip, janten anjeun kedah sering ngapdet kecap akses anjeun pikeun ngahindarkeun poténsi hacks.
Ngarobih kecap akses anjeun sacara rutin tiasa ngabantosan nyegah aksés anu teu dihoyongkeun kana akun anjeun ku saha waé anu tiasa nampi kecap konci lami anjeun ngalangkungan pelanggaran data skala ageung sateuacana.
Paké software antipirus terpadu
Sareng, tungtungna, léngkah pangsaéna anu anjeun tiasa lakukeun pikeun ngajagaan bumi digital anjeun nyaéta ngadaptarkeun solusi cyber sadaya-dina-hiji anu pangsaéna, Avast Hiji Platinum. Éta kalebet set fitur lengkep Avast One Family sareng nyertakeun dugi ka 30 alat kalayan tambihan kiridit sareng monitoring média sosial, résolusi maling identitas sareng reimbursement, sareng dukungan téknis premium 24/7 pikeun ngajaga bumi digital anjeun aman sabab sadaya alat rumah tangga anjeun ditutupan kalayan gampang. .
On Black Friday and Cyber Monday, the deals roll out. So do some of the worst Black Friday and Cyber Monday scams.
Hackers, scammers, and thieves look to cash in this time of year by blending in with the holiday rush, spinning up their own fake shipping notices, phony deals, and even bogus charities that look legitimate at first glance, yet are anything but. Instead, they may be loaded with malware, point you to phishing sites that steal your personal info, or they may simply rip you off.
Classically, many online scams play on emotions by creating a sense of urgency or even fear. And for the holidays, you can throw stress into that mix as well—the stress of time, money, or even the pressure of finding that hard-to-get gift that seems to be out of stock everywhere. The bad actors out there will tailor their attacks around these feelings, hoping that they’ll catch you with your guard down during this busy time of year.
”The Five Least Wanted” – Top online shopping scams to avoid
So while knowing how to spot a great gift at a great price is solid skill to have this time of year, so is the ability to spot a scam. Let’s look at some of the worst ones out there, along with what you can do to steer clear of them.
1) The fake order scam
Come this time of year, keeping tabs on all the packages you have in transit can get tricky. You may have an armload of them enroute at any given time, and scammers will look to slip into this mix with phony order confirmations sent to your mailbox or your phone by text. Packed with either an email attachment or a link to a bogus website, they’ll try to get you to download malware or visit a site that attempts to steal your identity.
These messages can look quite legit, so the best way to keep track of your orders is on the sites where you purchased them. Go directly to those sites rather than clicking on any links or attachments you get.
2) The phony tracking number scam
This scam plays out much like the fake order scam, yet in this case the crooks will send a phony package tracking notification, again either as a link or as an attachment. For starters, legitimate retailers won’t send tracking numbers in an attached file. If you see anything like that, it’s surely a scam designed to inject malware onto your device. In the case of a link, the scammers aim to send you to a site that will steal your personal info, just like in the case above.
Once again, the best way to track your packages is to go to the source. Visit the online store where you made your purchase, open your current orders, and get your package tracking information from there.
3) The bogus website scam
A classic scammer move is to “typosquat” phony email addresses and URLs that look awfully close to legitimate addresses of legitimate companies and retailers. So close that you may overlook them. They often appear in phishing emails and instead of leading you to a great deal, these can in fact link you to scam sites that can then lift your login credentials, payment info, or even funds should you try to place an order through them.
You can avoid these sites by going to the retailer’s site directly. Be skeptical of any links you receive by email, text, or direct message—it’s best to go to the site yourself by manually typing in the legitimate address yourself and look for the deal there.
4) The hot deal scam
At the heart of holiday shopping is scarcity. And scarcity is something scammers love. There’s always some super-popular holiday item that’s tough to find, and scammers will spin up phony websites and offers around those items to lure you in. They may use the typosquatting technique mentioned above to pose as a legitimate retailer, or they may set up a site with their own branding to look legitimate on their own (or at least try). Either way, these scams can hurt you in a couple of ways—one, you’ll pay for the goods and never receive them; and two, the scammers will now have your payment info and address, which they can use to commit further fraud.
If the pricing, availability, or delivery time all look too good to be true for the item in question, it may be a scam designed to harvest your personal info and accounts. Use caution here before you click. If you’re unsure about a product or retailer, read reviews from trusted websites to help see if it’s legitimate. (The Better Business Bureau is a great place to start—more on that in moment.)
5) The fake charity scam
In the season of giving, donating to charities in your name or in the name of others makes for a popular holiday gesture. Scammers know this too and will set up phony charities to cash in. Some indications that a phony charity has reached you include an urgent pitch that asks you to “act now.” A proper charity will certainly make their case for a donation, yet they won’t pressure you into it. Moreover, phony charities will outright ask for payment in the form of gift cards, wire transfers (like Western Union), money orders, or even cryptocurrency—because once those funds are sent, they’re nearly impossible to reclaim when you find out you’ve been scammed.
There are plenty of ways to make donations to legitimate charities, and the U.S. Federal Trade Commission (FTC) has a site full of resources so that you can make your donation truly count.
So, how can I avoid getting scammed on Black Friday and Cyber Monday?
Some of it takes an eagle eye that can spot these scams as they pop up in your inbox, texts, social media feed, and so on. Yet you have further ways you can keep safe while shopping on Black Friday, Cyber Monday, and any time.
Stick with known, legitimate retailers online
This is a great one to start with. Directly typing in the correct address for online stores and retailers is a prime way to avoid scammers online. In the case of retailers that you don’t know much about, the U.S. Better Business Bureau (BBB) asks shoppers to do their research and make sure that retailer has a good reputation. The BBB makes that easier with a listing of retailers you can search simply by typing in their name.
Look for the lock icon in your browser when you shop
Secure websites begin their address with “https,” not just “http.” That extra “s” in stands for “secure,” which means that it uses a secure protocol for transmitting sensitive info like passwords, credit card numbers, and the like over the internet. It often appears as a little padlock icon in the address bar of your browser, so double-check for that. If you don’t see that it’s secure, it’s best to avoid making purchases on that website.
Pay with a credit card instead of your debit card
In the U.S., the Fair Credit Billing Act offers the public protection against fraudulent charges on credit cards, where citizens can dispute charges over $50 for goods and services that were never delivered or otherwise billed incorrectly. Note that many credit card companies have their own policies that improve upon the Fair Credit Billing Act as well. However, debit cards aren’t afforded the same protection under the Act. Avoid using a debit card while shopping online and use your credit card instead.
Use two-factor authentication on your accounts
Two-factor authentication is an extra layer of defense on top of your username and password. It adds in the use of a special one-time-use code to access your account, usually sent to you via email or to your phone by text or a phone call. In all, it combines something you know, like your password, with something you have, like your smartphone. Together, that makes it tougher for a crook to hack your account. If any of your accounts support two-factor authentication, the few extra seconds it takes to set up is more than worth the big boost in protection you’ll get.
Use a VPN if you’re shopping on public Wi-Fi
Public Wi-Fi in coffee shops and other public locations can expose your private surfing to prying eyes because those networks are open to all. Using a virtual private network (VPN) encrypts your browsing, shopping, and other internet traffic, thus making it secure from attempts at intercepting your data on public Wi-Fi, such as your passwords and credit card numbers.
What’s more, a VPN masks your whereabouts and your IP address, plus uses encryption that helps keep your activities private. As a result, companies and data brokers can potentially learn far less about you, your shopping, your travels, your habits, and any other information that they could possibly collect and otherwise profit from.
Clean up your personal data online
Yes, it’s true. Your information gets collected, bought, and solid online. In fact, personal information fuels a global data trading economy estimated at $200 billion U.S. dollars a year. Run by data brokers that keep hundreds and even thousands of data points on billions of people, these sites gather, analyze, buy, and sell this information to other companies as well as to advertisers. Likewise, these data brokers may sell this information to bad actors, such as hackers, spammers, and identity thieves who would twist this information for their own purposes.
Getting your info removed from these sites can seem like a daunting task. (Where do I start, and just how many of these sites are out there?) Our Personal Data Cleanup can help by regularly scanning these high-risk data broker sites for info like your home address, date of birth, and names of relatives. It identifies which sites are selling your data, and depending on your plan, automatically requests removal.
Protect your identity from identity thieves
Another place where personal information is bought and sold, stored, and exchanged is the dark web. The problem is that it’s particularly difficult for you to determine what, if any, of your info is on the dark web, stashed away in places where hackers and thieves can get their hands on it. Identity monitoring can help. McAfee’s identity monitoring helps you keep your personal info safe by alerting you if your data is found on the dark web, an average of 10 months before our competitors.
Monitored info can range anywhere from bank account and credit card numbers to your email addresses and government ID number, depending on your location. If your information gets spotted, you’ll get an alert, along with steps you can take to minimize or even prevent damage if the information hasn’t already been put to illegal use.
Take advantage of identity protection
Identity protection through McAfee takes identity monitoring a step further by offering, depending on your location and plan, identity theft coverage for financial losses and expenses due to identity theft, in addition to hands-on help from a recovery professional to help restore your identity—all in addition to the identity monitoring called out above, again depending on your location and plan.
Monitor your credit
Keeping an eye on your bills and statements as they come in can help you spot unusual activity on your accounts. A credit monitoring service can do that one better by keeping daily tabs on your credit report. While you can do this manually, there are limitations. First, it involves logging into each bureau and doing some digging of your own. Second, there are limitations as to how many free credit reports you can pull each year. A service does that for you and without impacting your credit score.
Depending on your location and plan, McAfee’s credit monitoring allows you to look after your credit score and the accounts within it to see fluctuations and help you identify unusual activity, all in one place, checking daily for signs of identity theft.
Use protection while you shop
A complete suite of online protection software like McAfee+ can offer layers of extra security while you shop. In addition to the VPN, identity, credit monitoring, and other features mentioned above, it includes web browser protection that can block malicious and suspicious links that could lead you down the road to malware or a phishing scam—along with a password manager that can create strong, unique passwords and store them securely as well. Taken together, McAfee+ offers all-in-one online protection for your identity, privacy, and security that can keep you far safer when you shop online—and as you spend your time online in general.
What should I do if I fall victim to a Black Friday or Cyber Monday scam?
Even if you take the proper precautions the unexpected can happen. Whether it’s a scam, an identity crime, or flat-out theft, there are steps you can take right away to help minimize the damage.
The first bit of advice is to take a deep breath and get right to work on recovery. From there, you can take the following steps:
1. Notify the companies involved
Whether you spot a curious charge on your bank statement, discover potentially a fraudulent account when you check credit report, or when you get an alert from your monitoring service, let the bank or organization involved know you suspect fraud or theft. With a visit to their website, you can track down the appropriate number to call and get the investigation process started.
2. File a police report
Some businesses will require you to file a local police report and acquire a case number to complete your claim. Beyond that, filing a report is a good idea in itself. Identity theft is still theft and reporting it provides an official record of the incident. Should your case of identity theft lead to someone impersonating you or committing a crime in your name, filing a police report right away can help clear your name down the road. Be sure to save any evidence you have, like statements or documents that are associated with the theft. They can help clean up your record as well.
3. Contact your governmental anti-fraud or trade organization
In the U.S., the identity theft website from the Federal Trade Commission (FTC) is a fantastic resource should you find yourself in need. In addition to keeping records of the theft, the FTC can provide you with a step-by-step recovery plan—and even walk you through the process if you create an account with them. Additionally, reporting theft to the FTC can prove helpful if debtors come knocking to collect on any bogus charges in your name. With a copy of your report, you can ask debtors to stop.
4. Put on a credit freeze or lock
An instance of identity fraud or theft, suspected or otherwise, is a good time to review your options for a credit freeze or lock. As mentioned earlier, see what the credit bureaus in your region offer, along with the terms and conditions of each. With the right decision, a freeze or lock can help minimize and prevent further harm.
5. Continue to monitor
Strongly consider using a monitoring service like the one we described earlier to help you continue to keep tabs on your identity. The unfortunate fact of identity theft and fraud is that it can mark the start of a long, drawn-out affair. One instance of theft can possibly lead to another, so even what may appear to be an isolated bad charge on your credit card calls for keeping an eye on your identity all around. Many of the tools you would use up to this point still apply, such as checking up on your credit reports, maintaining fraud alerts as needed, and reviewing your accounts closely—along with utilizing an identity monitoring service.
6. Work with a recovery pro
A recovery service can help you clean up your credit in the wake of fraud or theft, all by working on your behalf. Given the time, money, and stress that can come along with setting your financial record straight, leaning on the expertise of a professional can provide you with much-needed relief on several counts.
Take an extra moment to spot those Black Friday and Cyber Monday scams
Just as it’s always been, hackers, scammers, and thieves want to ruin a good thing. In this case, it’s your spirit of giving and sharing in the holiday season. Yet with this list of top scams and ways you can avoid them, you can keep bad actors like them at bay. Remember, they’re counting on you to be in a hurry this time of year, and maybe a bit stressed and a little disorganized to boot. Take your time while shopping out there and keep an eye out for their tricks. That extra moment can save you far more time and money than you may think.
Introducing McAfee+
Identity theft protection and privacy for your digital life
Tina ngaleungitkeun sababaraha salinan dugi ka mupus téténggér anu kaleuleuwihan, ieu mangrupikeun lima tip pikeun ngahindarkeun panyimpen cyber.
Pembersih musim semi nyayogikeun kasempetan anu sampurna pikeun ngahias bumi fisik sareng digital anjeun. Bari clutter digital daun euweuh footprints fisik, éta undoubtedly bisa nyandak up spasi mental signifikan. Lingkungan digital anu pabalatak tiasa nyababkeun setrés, ngahalangan produktivitas sareng ningkatkeun kerentanan kana ancaman siber.
Hadé pisan pikeun ngahindarkeun cyber hoarding sareng netepkeun rutinitas pikeun éfisién ngatur alat digital anjeun. Turutan tip ieu pikeun nyegerkeun bumi digital anjeun sareng ningkatkeun karaharjaan méntal anjeun.
Hapus duplikat file
Payil duplikat tiasa kalayan gampang mendakan jalan kana rohangan digital anjeun tanpa anjeun perhatikeun. Henteu merhatikeun nalika ngaunduh atanapi mindahkeun file dina komputer anjeun tiasa nyiptakeun kabingungan tina duplikat dokumén anu ngaganggu produktivitas anjeun sareng nyéépkeun rohangan panyimpen anu signifikan.
Janten proaktif sareng hapus salinan tambahan nalika anjeun mendakanana. Upami file penting, nyadangkeunana nganggo hard drive atanapi jasa panyimpen awan. Ngagunakeun alat kawas CCleaner bisa mantuan ngabereskeun sakeupeul file nu teu dihoyongkeun clogged desktop Anjeun tur ningkatkeun kinerja alat Anjeun.
Prun koropak anjeun
Nyegah koropak surelek anjeun tina tumpukan sapertos tumpukan piring kotor dina tilelep dapur anjeun. Ngajaga email anu paling relevan sareng akalna anu diajukeun sareng ditandaan tiasa mangpaat. Sanajan kitu, backlogs tina surelek can dibaca / sawaréh dibaca bisa jadi kahariwang-inducing sarta berpotensi bisa ninggalkeun informasi sénsitip dikubur tur diaksés ku hacker.
Pikeun ngahindarkeun hacking, hapus email lami sareng ékspor kantétan anu diperyogikeun kana hard drive atanapi awan. Sakumaha didadarkeun di urang pos saméméhna, Anggo struktur organisasi digital anyar anjeun pikeun nyiptakeun polder anu dilabélan pikeun nyortir email anu relevan. Sareng unduh aplikasi sapertos Pindah ka roll.me pikeun unsubscribe ti e-newsletter atanapi sales digests anjeun teu maca. Anu langkung penting, hapus akun email lami anu anjeun henteu anggo.
Pupus tetengger anu kaleuleuwihan
Pertimbangkeun nyieun sareng mupus situs wéb anu ditandaan sapertos anjeun ngalakukeun barang-barang dina lomari pangkeng anjeun. Upami anjeun henteu acan maca dina taun katukang, waktosna pikeun ngabuang. Upami anjeun ingkar kana téténggér salaku cara pikeun tetep dina situs wéb anu paling sering anjeun kunjungi, kamungkinan anjeun parantos ngumpulkeun sakumpulan situs anu henteu relevan deui sareng bersaing pikeun perhatian terbatas anjeun.
Apdet sareng hapus tetengger anjeun sacara teratur pikeun mastikeun aksés gancang sareng langkung seueur rohangan panyimpen. Nyetél wates standar bakal ngirangan overflow tetengger.
Scrub média sosial Anjeun
Ngabersihan akun média sosial anjeun ku mupus, unfollow, sareng unfriending bot média sosial atanapi jalma anu anjeun henteu berinteraksi deui. Sakali rengse, nyandak eta undak salajengna ku masang software ngawaskeun aman kayaning Avast Hiji Platinum.
Fitur ngawaskeun média sosial Avast One Platinum ngingetkeun pangguna kana kagiatan anu curiga dina Instagram, Twitter sareng Facebook sareng ngadeteksi sadayana tina kontén telenges dugi ka panipuan online anu tiasa nunjukkeun akun anu dikompromi. Sajaba ti éta, 24/7 rojongan teknis ahli sadia pikeun mantuan pamaké meunangkeun deui kadali akun maranéhanana gancang tur aman.
Nyingkirkeun sampah digital
Léngkah ahir dina proyék beberesih musim semi nyaéta ngaluarkeun sampah. Ieu ogé lumaku pikeun beberesih digital. Pertimbangkeun nyumbang, ngajual, atanapi ngadaur ulang telepon anu lami sareng ditinggalkeun, alat jaringan, printer, jsb. Tapi ke heula, inget kana mupus sadaya data anu aya tur turutan sagala tungtunan daur ulang nalika miceun alat digital Anjeun.
Tina koropak kembung ka aplikasi anu henteu kapake, ieu lima tip pikeun ngatasi gangguan cyber.
Usum beberesih cinyusu geus datang, sarta éta hartina tackling laci overstuffed, cabinets unorganized, sarta lomari overflowing. Wayahna ngabereskeunAnu teu dipaliré angkasa henteu ngan di bumi fisik anjeun tapi ogé di bumi digital paralel anjeun. Sareng urang sadayana terang yén crowders rohangan pangbadagna nyaéta file anu henteu dianggo dina desktop, telepon, tablet sareng seueur deui.
Ngalakukeun scrub gancang dina akun sareng alat anjeun ngabantosan anjeun beroperasi langkung éfisién sareng nyayogikeun panyalindungan anu diperyogikeun ngalawan malware sareng ancaman cyber anu sanés. Nya, ieu sababaraha tip pikeun ngatur barang digital anjeun.
Ngembangkeun sistem organisasi digital
Mangpaatkeun sistem organisasi digital anu paling hade pikeun mantuan ngatur file penting anjeun. Ngabogaan barang-barang ieu di tempat anu ditunjuk ngirangan waktos milarianana sareng kamungkinan ngorek-ngorek file anu teu penting anu tiasa nyababkeun gangguan nalika milarian inpormasi anu penting sareng sénsitip waktos.
Payil penting sapertos poto kulawarga, dokumén padamelan sareng laporan kauangan tiasa diurutkeun kana polder anu dialokasikeun. Saatos file anjeun diatur rapih, cadangkeunana liwat jasa cadangan awan atanapi hard drive éksternal supados tetep aman sareng tiasa diaksés.
Jieun polder pikeun akun surélék anjeun
Surélék tiasa gancang ngabahekeun koropak anjeun, nyiptakeun kacau. Ngabogaan akun surelek anu misah pikeun kagunaan anu béda, sapertos hiji kanggo pribadi anjeun sareng hiji pikeun kahirupan profésional anjeun, bakal ngaleutikan kabutuhan pikeun muka unggal email anu anjeun tampa sareng prioritas anu peryogi perhatian langsung.
Sarupa sareng ngatur file fisik anu penting, jieun polder anu dilabélan pikeun ngabantosan ngagolongkeun email. Upami emailna ngandung inpormasi anu anjeun kedah tingali engké, mindahkeun éta ka polder khusus ngagampangkeun aksés sareng milarian upami diperyogikeun.
Prakték kabersihan sandi
Sandi anu saé ngajagi barang digital anjeun sapertos sistem kaamanan bumi sareng ngabantosan anjeun ngahontal katengtreman nalika terang yén anjeun ditangtayungan. Ngamutahirkeun sareng ngarobah kecap akses anu aya sacara rutin ngirangan résiko kredensial anu dikompromi, sareng ngajagi alat anjeun tina ancaman sareng serangan cyber. Jieun kecap akses unik anu ngandung sahenteuna dua belas hurup, angka, sareng simbol ageung sareng leutik supados langkung hésé pikeun penjahat cyber pikeun ngaksés inpormasi anjeun.
Ngusap alat Anjeun
Jaga bumi digital anjeun aman sareng parangkat lunak kaamanan anu dipercaya.Avast Hiji Platinum ngalangkungan antipirus, nyayogikeun jasa terpadu kalebet panyalindungan maling identitas, ngawaskeun wéb poék, sareng jasa dukungan téknis 24/7.
Avast One Platinum ngawaskeun sumber dimana inpormasi pribadi anu sénsitip tiasa bocor online. Sareng upami inpormasi anjeun kapendak, Avast One Platinum bakal ngirim béwara supados anjeun tiasa ngahubungi ahli panyalindungan 24/7 anu disertipikasi Avast pikeun ngontrol deui alat sareng akun anjeun, upami dikompromi.
Curate file anjeun pikeun maksimalkeun pungsi panyimpenan
Sajumlah ageung rohangan panyimpen dihakan ku file anu teu dipikabutuh, mimitian ti e-newsletter anu teu acan dibaca dugi ka aplikasi anu henteu dianggo. Ngalaksanakeun audits panyimpenan digital périodik. Kami ngarékoméndasikeun mariksa alat anjeun dua kali sataun pikeun nangtukeun naha anjeun peryogi unggal file atanapi aplikasi. Upami anjeun henteu peryogi, hapus aranjeunna, atanapi cadangkeunana di kamar panyimpen digital, sapertos anu anjeun lakukeun di basement atanapi unit panyimpenan.
Ayana Avast di SXSW taun ieu museurkeun kana kasaimbangan antara pamanggihan seru anu dibawa ku téknologi inovatif sareng dunya anu beuki skeptis ngeunaan mangpaat revolusi digital.
Kidul ku Kulon Kidul (SXSW) mangrupa salah sahiji acara favorit urang unggal taun. Tim kami sok diideuan ku rupa-rupa sesi sareng diskusi sareng panyatur sareng pamilon anu nyababkeun parobahan. Dina acara taun ieu, The Téhnologi Lagu di SXSW museurkeun kana kasaimbangan antara pamanggihan seru dibawa ngeunaan téknologi inovatif sarta dunya anu beuki skeptis mangpaat revolusi digital.
Avast bangga janten bagian tina diskusi penting ieu. Duta kaamanan Avast sareng grandmaster catur Garry Kasparov sareng Kapala Téknologi Jenderal Michal Pechoucek mingpin sési interaktif anu judulna “Ngajagi Identitas Digital anjeun dina Perang Siber” anu dihadiran ku langkung ti 100 peminat téknologi.
Ngabahas pasea dunya maya jeung pulitik dunya
Salawasna aya kaulinan ucing-sareng-beurit antara industri cybersecurity sareng cybercriminals, sareng éta henteu béda sareng panggunaan AI. Nalika penjahat cyber nganggo AI pikeun tujuanana, para profesional kaamanan nganggo AI pikeun nyiptakeun pertahanan ngalawan ancaman anu pang anyarna.
Dina sesi na, Garry sareng Michal ngabahas dampak kajadian dunya, sapertos pandémik Covid-19 sareng perang di Ukraina, kumaha industri cybersecurity sareng cybercriminals ngagunakeun AI, sareng naékna serangan nargétkeun kerentanan masarakat.
“Penjahat cyber sok ngamangpaatkeun kajadian ayeuna, ieu mangrupikeun hal anu urang tingali mangtaun-taun,” saur Michal Pechouceck. “Ningali deui pandémik Covid-19, mimiti urang ningali ratusan panipuan anyar, kalebet pelacak Covid palsu sareng aplikasi kaséhatan anu maok data jalma, nungtut tebusan, atanapi nyandak detil perbankan masarakat. Kami ogé ningali nawaran online anu nyasabkeun pikeun ubar sareng pangobatan Covid. Dina Pébruari 2022, pas mimiti perang Ukraina, kami ningali scammers scamming jalma kaluar duit ku pura-pura maranéhna Ukrainians anu merlukeun pisan bantuan finansial.
Éta ogé ngajelaskeun paningkatan anu signifikan dina serangan anu nargétkeun unsur manusa. Saur Michal, “Ampir 70% tina sadaya serangan nyaéta panipuan online sareng phishing canggih, smishing, sareng saterasna, ku kituna jinis ancaman anyar henteu deui nyerang kerentanan dina sistem operasi, hardware, atanapi jaringan, tapi sabalikna, aranjeunna nyerang kerentanan masarakat. .” Sakumaha pikasieuneun sapertos kieu, Michal sareng Garry yakin aya seueur alesan pikeun optimis ngeunaan dampak AI dina industri cybersecurity.
Ngawangkong ngeunaan naon nu bakal datang, Garry ngomong, “Kuring tetep rada optimistis ngeunaan mangsa nu bakal datang salaku urang ngartos beuki loba ngeunaan alam mesin ieu. Urang tiasa ningali yén mesin tiasa ngalakukeun langkung seueur, anjeun terang, aranjeunna terus-terusan ngalegaan wilayah, tapi tetep, aya unsur-unsur anu henteu tiasa nalukkeun sabab butuh kalenturan manusa.
Garry terus ngajelaskeun yén ku kamajuan masif panganyarna dina AI, jalma bisa ngamekarkeun sieun. Nanging, téknologi agnostik, sareng AI ogé nawiskeun kasempetan énggal anu saé sareng ngabantosan perusahaan cybersecurity ngawangun panyalindungan anu langkung saé. Ku ngawangun téknologi anu ngabantosan jalma nyandak kaputusan anu leres, kami pamustunganana ngabantosan jalma janten langkung tahan banting.
Duanana Garry sareng Michal leres-leres yakin yén éta mangrupikeun hak digital manusa pikeun tiasa mutuskeun naon anu leres sareng naon anu henteu. Salaku tambahan, aranjeunna yakin yén éta mangrupikeun janji perusahaan téknologi pikeun nyayogikeun kamajuan téknologi pangsaéna pikeun jalma-jalma pikeun nyandak kaputusan éta.