01.08.2019 Views

Cyber Defense eMagazine August 2019

Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

Cyber Defense eMagazine August Edition for 2019 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cybersecurity expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

The once coveted “green lock” that was mainly used for financial transactions is now available for free to<br />

anyone; including malicious actors. In fact, it has been reported that 58% of all phishing related websites<br />

are now hosted using HTTPS. It is for this reason that no one should assume a website is “safe” just<br />

because it’s being hosted using HTTPS. It’s still very important to visually identify the lock icon when<br />

transacting with any website but understand that it doesn’t necessarily indicate that a site is legitimate.<br />

Attackers mimic a target website by simply copying the code from a legitimate site and pasting it to their<br />

malicious site; making it nearly impossible to differentiate the good from the bad.<br />

Therefore, you should never click on links in suspicious emails. Instead, get into the habit of using a<br />

password manager to store known good bookmarks or reputable search engines to visit sites of interest<br />

versus clicking on links provided within emails. Additionally, always verify the domain address within the<br />

URL bar as well as identifying the secure lock icon before providing any form of personally identifiable<br />

information or login credentials. For those who want extra validation, websites like VirusTotal can be<br />

leveraged to scan and verify if the URL is considered “safe”.<br />

About the Author<br />

Eric H. Perkins is currently the Sr. Security Risk Analyst for the<br />

largest independent investment advisory firm in the Nation. Before<br />

joining Edelman Financial Engines, Eric began his career in network<br />

security while serving as an active duty Information Security Officer<br />

in the US Army both in country and while deployed to Afghanistan.<br />

Eric holds numerous IT certifications to include CISSP and is a<br />

relentless advocate for security awareness. Eric can be reached at<br />

eperkins21@protonmail.com or online at<br />

https://www.linkedin.com/in/erichperkins/.<br />

112

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!