Securing the Human
Presented by Thomas Nee, Computer Coordinator Town of Hanover, Massachusetts hanover-ma.gov/information-technology October is Cyber Security Awareness Month! Originally presented 10/24/2013 Revised 10/28/2013
The Internet o Knowledge Is Power. o The Internet is the most powerful tool in human history. o Use it! Wisely! o Don’t be assimilated into a BotNet.
Security Threats o 3 New Malware Versions Released Every Second! o Zero-Day Threats o Known, Unpatched Vulnerabilities o Unapplied Security Patches
Protection Against Security Threats o Anti-Virus Updated Daily (Security Gateway and Computers). o Operating System Updated Monthly. o Other Security Patches Less Often o Long, Complex, Frequently-Changed Passwords.
Updates Microsoft Update (Windows Update if Microsoft Office not installed) Adobe Reader Adobe Flash Java (manual updates by administrator)
Reject Optional Add-Ons Uncheck!
Good Habit: Slow Down o Hover over links. o Press and hold link on a smartphone. o Do NOT click unless you know where the link goes. o Visit mainstream sites only.
Domains At A Glance o Destination determined Right-To-Left between “ and next “/” o Examples: (Goes to Iran!) (could be hosted in US or elsewhere) o See List of Country Codes: en.wikipedia.org/wiki/List_of_Internet_top- level_domains#Country_code_top-level_domains
Attack Vectors o Surfing; Drive-By Downloads. o Spam, Spam, Spam. o Infected computers and programs on network. o Flash Drives
o Phishing – generic, widely distributed spam. o Spear-Phishing – personal information included. Do not succumb to emotion! o Use browser bookmarks/favorites whenever possible instead of links in messages. o Slow Down. Use caution opening attachments.
Recommended Options o McAfee’s SiteAdvisor Browser Toolbar o Google Safe Browsing (incorporated into Chrome and Firefox); for full report on an individual site, change domain after “site=“: o Norton’s SafeWeb Website (save as Favorite/Bookmark) o Norton’s Browser Toolbar (packaged with Norton Identity Safe)