Celebrating ‘The Twilight Saga: New Moon’

In honor of the opening day of New Moon, the latest film in The Twilight Saga, we thought we ...

The Cheryl Behind the Cheryl

Known to many as the long-suffering (ex)wife of funnyman Larry David, the man behind Seinfeld, ...

BlogTalkRadio Host of the Week: Alfred McComber from...

By Christina Blodgett In our continuing effort to spotlight more members of the BlogTalkRadio ...

 

Your show will start playing after this message

Profile

Robert Siciliano

http://IDTheftSecurity.com


Country: United States

Language: English

Follow on Twitter

Visit on Facebook

Visit on MySpace


Identity Theft Expert and Speaker  

Identity Theft Speaker, Author and Television News Correspondent Robert Siciliano is an expert on personal security and identity theft with more than 25 years of experience in security work, white collar crime prevention, and self-defense. He is a television news correspondent, security analyst, Certified Identity Theft Risk Management Specialist, CEO of IDTheftSecurity.com, and author of “The Safety Minute: Living on high alert; How to take control of your personal security and prevent fraud.”

  • Archived Blog Post

    Date / Time:

    email Addresses Hacked via a Botnet or Phished?

    Recently Microsoft, Yahoo, Google, Comcast and Earthlink announced thousands of email addresses and their passwords were phished by identity thieves and posted in an online forum. One report suggests the emails phished could be up to a million victims.

    Researchers parsed the hacked passwords and broke them down into categories based on their level of security. For example some of the passwords were very weak “111111”  “123456” “1234567” “12345678” “123456789” made the top list. Many of the stolen passwords were people’s first names which of course could be kids, spouse etc. Obviously anyone who uses an insecure password like this is more likely to get hacked due to their laziness and less than sophisticated approach to security. 60% of the passwords contained either all numbers or all lowercase letters.

    Always use a combination of upper case and lower case, numbers and characters that don’t actually spell anything. Use the first letters of phrases and plug a number in there with a character “Monday is the 1st day of the week!” is Mit1dotw! Research in the data breach showed 6% of the passwords reflected this strong style.

    There is however buzz in the IT security world that the data may have been leaked via a botnet. A botnet is a robot network of computers connected to the internet that all share a common technology, a virus/spyware that allows a criminal hacker to remotely access and control the machine. A botnet can be 10 PCs, 10,000 PC or many more. The infamous “conficker” is a botnet. Once a PC is infected the criminal hackers can use the botnet to commit crimes, store data and of course siphon data from the machines.

    However while many of the passwords were weak, there were many passwords that were very strong.  The argument is that based on the strength of many of the passwords it is unlikely that they were phished, and more likely hacked.

    Regardless of the method of attack there are many things a computer user can do to prevent phishing and being part of a botnet.

    1. When you receive any email from any “trusted source” asking you to login for ANY reason do not click links in the body of the email. Instead manually type the address or go to your favorites.
    2. Use the most recent version of a web browser that has a built in phish filter. Phish filters warn you against clicking links on unauthorized websites.
    3. Invest in anti-virus protection and make sure you have it set to automatically update your virus definitions. There are potentially thousands of new viruses every day. Going a week without anti-virus can make you vulnerable to attack.
    4. Invest in Intelius Identity Protection and Prevention. Because when all else fails, its great knowing someone is watching your back.

    Robert Siciliano Identity Theft Speaker with ID Analytics discussing Social Media Identity Theft on Fox Boston

Comments

There are no comments at this time.

Extras

LinkedIn http://www.linkedin.com/in/robertsiciliano
Twitter https://twitter.com/RobertSiciliano
FriendFeed http://friendfeed.com/identitytheft
Blog http://realtysecurity.com/blog/
YouTube http://www.youtube.com/stungundotcom
Finextra http://www.finextra.com/community/profile.aspx?id=44396
BankInnovation http://bankinnovation.net/profile/IdentityTheftSpeaker
Facebook http://www.facebook.com/people/Robert-Siciliano/534933030
IMDB http://www.imdb.com/name/nm2892079/resume
Wiki http://en.wikipedia.org/wiki/Robert_Siciliano


Business builder, strategic marketer, security analyst, published author, television news correspondent, actor. Deliver presentations throughout the United States and Canada on identity theft protection and personal security.


Work with Fortune 1000, IT and startups. Launching, branding, messaging, representation, m&a facilitator, SEO and media.

Current projects include dynamic biometrics, credit card platform multi-factor authentication, identity theft securityAAS, laptop tracking, security investigations and telemarketing fraud mitigation.


Specialties
Appear in print, radio and televised media, on Today Show, CBS Early Show, CNN, MSNBC, FOX, CNBC, E!THSi, Inside Edition, Tyra, Montel, Maury, Howard Stern, USA Today, Forbes, Cosmo, Good Housekeeping, Readers Digest, Consumer Digest, Smart Money, NY Times, NY Post, BOS Globe, LA Times, Wash Times, Wash Post, Chicago Trib, Atl Journal, MIA Herald, SF Chronicle, SEA Times, ABC News.com, Maxim, CNet, CSO, TechRepublic, Search Security, Security Mgmt, AP, UPI, Reuters, and Entrepreneur.


Everything Else

Listen

 

Participate

 

Services and Terms

 

Corporate

 

BlogTalkRadio

 

© 2009 BlogTalkRadio.com. All Rights Reserved.