Find details on recent security threats impacting our customers on our new Alerts page.
Concerned about identity theft? So are we! This short video explains what we're doing to protect our valued customers.
Information is your best prevention against cybercrime. This page is intended to help you better understand the types of threats consumers face today when conducting business online, provide tips to help prevent you from becoming a target and resources for victims.
Most electronic fraud falls into one of three categories:
PHISHING: Fraudulent e-mails, appearing to be from a trusted source such as your bank or credit card carrier, direct you to Web sites. Once there, you are asked to verify personal information such as name, account and credit card numbers, passwords and the like. These sites are often designed to look exactly like the site they are imitating. The information you provide is used to hijack your accounts and your identity. E-mails that warn you, with little or not notice, that your account will be shut down unless you reconfirm certain information, are very likely to be phishing. A newer tactic is to "confirm" personal credentials they supposedly have in their file, displaying false information. You call to correct the erroneous data and unwittingly provide them with the tools they need to steal your identity. Use a phone number or Web site address you know to be legitimate to check the source.
PHARMING: Or "domain spoofing" is an attack in which a user can be redirected from a legitimate site to a fraudulent site and then fooled into entering sensitive data such as a password or credit card number. The fraudulent site often looks like the legitimate site e.g. your bank). It is different from phishing in that the attacker does not have to rely on having the user click a link in an e-mail to deceive the user. Even if the user correctly enters a Web address into a browser's address bar, the attacker can still redirect the user to a malicious Web site.
MALWARE: Software designed to infiltrate or damage a computer system without the owner's knowledge or consent. It is a blend of the words "malicious" and "software." It includes computer viruses, worms, trojan horses, spyware, adware and other malicious and unwanted software.
It's that time of the year again. What time, you may wonder? Doesn't matter. Whatever the time or event may be, you can count on scammers using it as a ruse to ply their trade. Read more
UNDERSTANDING FIREWALLS
A recent survey of U.S. and U.K. computer users revealed that 25 percent did not know whether they had any privacy protection. Over half admitted they had no idea what the privacy settings on their browsers were. Do you know what keeps your computer safe?
As the name implies, the firewall serves as a boundary to restrict information traveling between your computer and a network or the Internet. If used properly, the firewall is your defense against someone trying to hack into your system. If it's configured wrong, you're opening the door for an identity thief. Read more
NOT SO PRIVATE
Back in the late '90s, when we installed our first computer network at GCF, there was much debate over whether we really needed all that fancy stuff. Technology was for the big guns at the time. An institution our size didn't REALLY need such automation.
I can remember one department head that was meticulous in her job. She was a wonderful woman with a dedication and work ethic that's hard to find today. She would run numbers forward, backward and sideways if she could to validate her conclusions. That is, as long as she used a pencil and a ledger sheet. Holding that paper firmly in hand was material proof of a job well done.
I sometimes wish life was that simple once again. Sure, that piece of paper could have been compromised. It could have missed the shredder and gotten thrown directly into the trash where a cleaning person could have stumbled on it. A disgruntled employee could have intercepted it and used that valuable information to make the bank look bad. But that would have been the worst of it. Read more...
HELP FOR CYBERCRIME VICTIMS
Three Florida men were arrested for credit card fraud, and charged with the Heartland Payment systems security breach reported in last week's edition of GCFlash. More arrests are expected to follow. The men hacked into the processor's SQL database that stored credit card information and stole names, credit card numbers and expiration dates. No other personal information was compromised.
To understand the full implications of this breach, let's first review the processing of credit card transactions. A customer walks into their favorite store, or visits an online merchant, and purchases an item. The merchant swipes their card, submitting the information electronically to the financial institution or organization they use to process the service and verify the transaction. Authorization is returned to confirm the transaction is valid. The information is then stored in a batch, which the merchant transmits to the processor later in the day to collect payment. Read more...
PHISHING FOR TROUBLE
Despite efforts to curb phishing attacks, more aggressive tactics and black market tool kits have led to an increase in the crime according to a report by U.K. security firm MessageLabs. Their September 2007 report reveals that one in every 87.2 e-mails is a phishing attack, up from one in 93.3 in January 2007. The company finds phishing e-mails comprise 56 percent of all malware threats reported, such as viruses and Trojans.
One factor contributing to the rise is the availability of phishing kits that make sophisticated attacks simple to carry out by even the most non-technical criminals. The technique allows each compromised computer within a botnet to host multiple phishing sites at the same time. These sites are then replicated across the entire botnet, making them harder to shut down. Read more...
STOP SPYWARE BEFORE IT STOPS YOU
Are you inundated with constant pop up ads? Is your computer performing sluggish? Has your home page changed seemingly by itself? Your computer could be under the control of spyware.
Spyware, and its counterpart adware, are computer programs that install themselves without your knowledge. While most offenders are advertising ploys that are merely annoying, others can suck up valuable computer resources or track your keystrokes and send your personal info back to their creator to steal your identity. Read more...
FOOLING KEYLOGGERS
Keeping abreast of current events just might be the greatest benefit seen from the advent of global communications. Even if you live on a faraway tropical island, you're connected to the rest of the world through the Internet. And also prey to the same scams, threats and trickery you tried to escape when you chose to leave the "real" world.
Informed readers already know that the greatest online identity theft risk comes through keyloggers. This type of software was developed to help companies monitor employee computer usage to assure they were using it for business purposes. But it didn't take long for crooks to see its potential. By installing the software without the user's knowledge, they could capture login names and passwords to a text file they could email back to themselves. Read more...
|
|
RESOURCE CENTER
|
|
ID Theft and Fraud
|
Computer Threats
|
|
|
|
|
Know what the latest virus threats are and if they can affect you.
McAfee alerts, or Symantec alerts.
|
|
The CERTŪ Coordination Center (CERT/CC)
is a center of Internet security expertise. This renown federally
funded research and development center is operated by Carnegie Mellon
University. They offer a complete list of antivirus software vendors
on their Web site. |
Microsoft usually issues a patch for vulnerabilities BEFORE
threats surface. Preventive measures are your best defense. Keep your
operating system protected. If you do not have automatic updates
enabled, you can download them from Microsoft's Web site.
|
Are you
barraged with pop up ads? Is your computer running sluggish?
Spyware may be the culprit. Spyware Doctor 5.0 offers this free detection and removal
tool.
|
|
We've all gotten the sick e-mail hoax about the missing little girl
or little boy. And no matter who claims differently, neither AOL nor
Microsoft, nor anyone else for that matter, can track how many people
you forward an e-mail message to and reward you. Before you send that
message to everyone on your address list, research its validity. Feed
keywords into your favorite search engine and check out the results.
Or visit one of the several Web sites dedicated to stopping hoaxes
and scams. Two that have stood the test of time are snopes.com and urbanlegends.about.com.
|
|
|