Protection on Cyber FraudCyber Fraud – Why worry?Because, Cyber Crime usually has an impact on three things close to us – ...
Man-in-the-Middle AttackThe phrase "Man-in-the-Middle Attack" is used to describe a computer attack during which thecyberc...
RecourseIf you feel that you are the victim of a cybercrime, as per the amendments to the InformationTechnology Act 2000, ...
Mumbai: Cyber Crime Investigation cell,Annex III, 1st floor, Office of the Commissioner of Police,D.N.Road, Mumbai - 40000...
To prove ownership of a domain name and establish SSL/ TLS encrypted secured sessions betweenyour website and the user for...
A Digital Signature Certificate authenticates your identity electronically. It also provides you with a highlevel of secur...
Any organisation that is looking to apply for any Government eTender needs to have a Class 3 DigitalSignature Certificate ...
Foreign Trade made possible with Digital Signature Certificate.Foreign Trade and Digital Signature CertificatesExport and ...
Where can I use Digital Signature Certificates? For secure email and web-based transactions, or to identify other particip...
Upcoming SlideShare
Loading in...5
×

Protection on cyber fraud

53

Published on

0 Comments
0 Likes
Statistics
Notes
  • Be the first to comment

  • Be the first to like this

No Downloads
Views
Total Views
53
On Slideshare
0
From Embeds
0
Number of Embeds
0
Actions
Shares
0
Downloads
2
Comments
0
Likes
0
Embeds 0
No embeds

No notes for slide

Protection on cyber fraud

  1. 1. Protection on Cyber FraudCyber Fraud – Why worry?Because, Cyber Crime usually has an impact on three things close to us – Identity, Privacy andFinances. A unique feature of cybercrime is that the consequences aren’t ‘visible’instantaneously as with other forms of crimes like murder, burglary, kidnapping, etc. Also, thetime interval between the occurrence of the crime and the victim’s realization can sometimes beso long as to eliminate all possibilities of collecting appropriate evidence.Identity loss can be extremely damaging to one’s finances and reputation. Fraudsters wait forthose moments when there is a compromise in basic security precautions while negotiatingelectronic identity and steal the identity. The victims could be individuals as well as institutionsthat handle internet money transactions.Types of Cyber FraudInternet FraudA very common form of Internet fraud is the distribution of rogue security software. Internetservices can be used to present fraudulent solicitations to prospective victims, to conductfraudulent transactions, or to transmit the proceeds of fraud to financial institutions or to othersconnected with the scheme.Phishing Identity TheftIdentity theft is a form of stealing someones identity in which someone pretends to be someoneelse by assuming that persons identity, typically in order to access resources or obtain credit andother benefits in that persons name. Identity theft occurs when someone uses your personallyidentifying information, like your name, user id or credit card number, without your permission,to commit fraud or other crimes.PhishingPhishing refers to the process of imitating legitimate companies in emails or creating fake Websites designed to look like a legitimate Web site in order to entice users to share their passwords,credit card numbers, and other personal information. The perpetrator then uses the information tosteal the targets identity or to sell that identity to others. Users need to be educated not to giveaway personal information in response to an unsolicited email.
  2. 2. Man-in-the-Middle AttackThe phrase "Man-in-the-Middle Attack" is used to describe a computer attack during which thecybercriminal funnels communication between a consumer and a legitimate organization througha fake Web site. In these attacks, neither the consumer nor the organization is aware that thecommunication is being illegally monitored. The criminal is, in effect, in the middle of atransaction between the consumer and his or her bank, credit-card Company, or retailer.The man-in-the-middle server electronically “eavesdrops” on every keystroke, giving thecriminal username, password, and account information. They employ Spyware and otherMalware that when loaded on the consumer’s computer redirects the Web browser to the fakesite. The most technically competent manipulate the real Web site so that visitors are directed tothe fake site.Protection against Cyber FraudsDigital Signature Certificates (DSC) is considered to be one of the strongest tools to CyberSecurity.DSC uses a very complex algorithm to generate a pair of asymmetric keys – Public and PrivateKey, wherein the private key is held securely by the user and public key is available publicly.When a user appends DSC to an electronic document or electronic transaction, the private keyhashes the content of the document or transaction and uses the private information of the user inthe private key to sign the document or transaction and this document or transaction is encryptedat the signor’s end. This signed document or transaction is verified with the corresponding publickey and decrypted by the authorized person. • DSCs is issued to an individual through an identity verification process as stipulated by Information Technology Act in India and hence acts as an authenticating tool. For example in the case of electronic banking and statutory efilings. • DSCs are given a legal sanctity in India under the Information Technology Act and hence it serves as an evidence under the law and the signor cannot repudiate his / her act at a later stage. • The digitally signed document or transaction is encrypted at the signor’s end and gives the protection against hacking or man-in-the-middle attacks. The signature will become invalid if there is any change to the content and thereby ensures integrity and confidentiality of the content.DSCs are issued by licensed Certifying Authorities under the Ministry of InformationTechnology, Government of India as per the Information Technology Act.
  3. 3. RecourseIf you feel that you are the victim of a cybercrime, as per the amendments to the InformationTechnology Act 2000, the minimum rank of investigation of cybercrimes is POLICEINSPECTOR and any jurisdictional police station can register and investigate.You could also contact your nearest Cyber Crime Police Station.Bangalore: Cyber Crime Police Station,CID Annexe Building, Carlton House,# 1, Palace Road, Bangalore - 560001.Telephone: 080 - 22942475, 080- 22943050E-Mail: cybercrimeps@ksp.gov.inChennai: Assistant Commissioner of PoliceCyber Crime CellCommissioner office CampusEgmore, Chennai- 600008Telephone: +91-40-5549 8211E-mail id: s.balu@nic.inDelhi:CBI Cyber Crime Cell:Superintendent of Police,Cyber Crime Investigation CellCentral Bureau of Investigation,5th Floor, Block No.3,CGO Complex, Lodhi Road, New Delhi – 3Telephone: 011-4362203, 011-4392424E-Mail: cbiccic@bol.net.inHyderabad:Cyber Crime Police StationCrime Investigation Department,3rd Floor, D.G.P. PfficeLakdikapool, Hyderabad – 500004Telephone: 040-2324 0663, 040-2785 2274E-mail id: cidap@cidap.gov.in, info@cidap.gov.inKolkata: Public Grievance Cell 2250-5134 / 5340E-Mail: grievance@kolkatapolice.gov.inCyber Police StationTelephone: 2214-3000 / 3004 / 1420E-Mail: cyberps@kolkatapolice.gov.in
  4. 4. Mumbai: Cyber Crime Investigation cell,Annex III, 1st floor, Office of the Commissioner of Police,D.N.Road, Mumbai - 400001Telephone: 022 - 24691233Email: cybercell.mumbai@mahapolice.gov.inEasier e-Filing of Income Tax with Digital Signature Certificate.A Digital Signature Certificate lets you file your Tax Returns the easy and secure way. e-Filing ismandatory as per the latest notifications for Hindu Undivided Families that come under the purview ofAudit Provision u/s 44AB, business houses with receipts exceeding Rs. 60 lakhs, and professionals whoseannual income exceeds 15 lakhs.Digital Signature Certificate and e-Filing of Incomes TaxesUse of a Digital Signature Certificate is mandatory for e-filing by a certain section of businesses, families,and individuals. For individuals businesses not covered by the latest mandate, a Digital SignatureCertificate assures greater convenience while filing tax returns, and greater security during anyelectronic transactions.Click here to download your Digital Signature CertificateWhy do I need a Digital Signature Certificate?A Digital Signature Certificate authenticates your identity electronically. It also provides you with a highlevel of security for your online transactions by ensuring absolute privacy of the information exchangedusing a digital certificate. You can use certificates to encrypt information such that only the intendedrecipient can read it. You can digitally sign information to assure the recipient that it has not beenchanged in transit, and also verify your identity as the sender of the message.Click here to get your Digital Signature CertificateWhere can I use Digital Signature Certificates?You can use Digital Signature Certificates for the following: For secure email and web-based transactions, or to identify other participants of web-basedtransactions.
  5. 5. To prove ownership of a domain name and establish SSL/ TLS encrypted secured sessions betweenyour website and the user for web based transactions. As a developer, for proving authorship of a code and retaining integrity of the distributed softwareprograms. For signing web forms, e-tendering documents, filing income tax returns, to access membership-basedwebsites automatically without entering a user name and password etc.Digital Signature Certificate for smoother transactions with the Ministry of Corporate Affairs or Registrarof Companies.A Digital Signature Certificate helps make light work of various transactions related to the Ministry ofCorporate Affairs, or Registrar of Companies. In addition to saving time, a Digital Signature Certificatealso helps secure data. Read on to know more about the benefits of buying a Digital Signature Certificatefrom eMudhra.Any organization or firm can apply for a Digital Signature Certificate (DSC) for transactions involving theMinistry of Corporate Affairs. However, business houses that exceed revenues of over INR 60 lakhs haveto mandatorily use a Digital Signature Certificate while filing returns. Under the provisions of law, aDigital Signature is considered as a legally admissible instruments.There are various types of Digital Signature Certificates that cater to specific needs. While eFiling on theMinistry of Corporate Affairs portal, a Digital Signature Certificate of Class 2 and Class 3 category isrequired.A Class 2 Digital Signature Certificate is available for download after verification based on a trusted andpre-verified database.A Class 3 Digital Signature Certificate, on the other hand, is of a higher level as it is issued only after theregistrant’s identity verification has been done by a Registration Authority.Digital Signature Certificates and Registrar of CompaniesUnder provisions of the Information Technology Act, 2000, usage of Digital Signatures on documentssubmitted in electronic form ensures security and authenticity. Furthermore, companies that file underMCA21 e-Governance program have to use a Digital Signature that identifies the authorized signatory ofthe company.Why do I need a Digital Signature Certificate?
  6. 6. A Digital Signature Certificate authenticates your identity electronically. It also provides you with a highlevel of security for your online transactions by ensuring absolute privacy of the information exchangedusing a digital certificate. You can use certificates to encrypt information such that only the intendedrecipient can read it. You can digitally sign information to assure the recipient that it has not beenchanged in transit, and also verify your identity as the sender of the message.Where can I use Digital Signature Certificates?You can use Digital Signature Certificates for the following: For secure email and web-based transactions, or to identify other participants of web-basedtransactions.To prove ownership of a domain name and establish SSL/ TLS encrypted secured sessions between yourwebsite and the user for web based transactions. As a developer, for proving authorship of a code and retaining integrity of the distributed softwareprograms. For signing web forms, e-tendering documents, filing income tax returns, to access membership-basedwebsites automatically without entering a user name and password etc.eTendering made possible with Digital Signature Certificate.A Digital Signature Certificate (DSC) is essential for companies and organizations that take part or intendto take part in eTendering processes on various Government sites. Besides enabling eTendering which isextremely convenient and transparent, a Digital Signature Certificate also ensure greater security inother online transactions.Digital Signature Certificate and e-Tenderinge-Procurement facilitates, integrates, and streamlines procurement processes. From buyer to supplierand even back. Approved under the Information Technology Act, and with legal status, a DigitalSignature Certificate is essential for all e-Procurement processes.Applying for a government tender online has many advantages. Since documents are uploaded to acentral site, acknowledgements and receipts are provided immediately. Which is not the case withpaper documents that need to be scanned and verified before being processed.e-Procurement has gained significant popularity and acceptance as it brings greater transparency to thewhole system. Among other benefits, it helps buyers and bidders overcome geographical limitations,reduce procurement cycles, and overall helps keep pace with present technology.
  7. 7. Any organisation that is looking to apply for any Government eTender needs to have a Class 3 DigitalSignature Certificate registered in the name of a representative who is authorised to submit onlineoffers for e-Tendering applications.Why do I need a Digital Signature Certificate?A Digital Signature Certificate authenticates your identity electronically. It also provides you with a highlevel of security for your online transactions by ensuring absolute privacy of the information exchangedusing a digital certificate. You can use certificates to encrypt information such that only the intendedrecipient can read it. You can digitally sign information to assure the recipient that it has not beenchanged in transit, and also verify your identity as the sender of the message.Where can I use Digital Signature Certificates?You can use Digital Signature Certificates for the following: For secure email and web-based transactions, or to identify other participants of web-basedtransactions.To prove ownership of a domain name and establish SSL/ TLS encrypted secured sessions between yourwebsite and the user for web based transactions. As a developer, for proving authorship of a code and retaining integrity of the distributed softwareprograms. For signing web forms, e-tendering documents, filing income tax returns, to access membership-basedwebsites automatically without entering a user name and password etc.
  8. 8. Foreign Trade made possible with Digital Signature Certificate.Foreign Trade and Digital Signature CertificatesExport and Import Organizations (EXIM organizations) can apply for licenses online which means thatthey can also file accompanying documents electronically on the DGFT website. Since a Digital SignatureCertificate ensures authenticity of the document, DGFT has mandated use of Digital SignatureCertificates with all electronic documents uploaded on the DGFT site. This means that every EXIMOrganisation needs to necessarily have a Digital Signature Certificate for transactions related to theDGFT website. On validating the identity of the sender, authenticity of the documents and validity of theDSC, DGFT then processes the documents for licence issuance. In addition to convenience, onlinesubmission of applications on the DGFT website also mean a 50% reduction in licence fee for EXIMOrganisations.Organisations can prevent fraudulent practices such as identity thefts by filing bills of entry using aDigital Signature Certificate. If an organisation is filing documents through Custom House Agents, it isimportant that all documents filed are accompanied by a DSC.A Class 3 Digital Signature Certificate is essential for any organisation seeking an Import or an ExportLicence that needs to be registered in the name of one representative authorised to represent theorganisation.Since a Digital Signature Certificate is recognised by the legal system, all documents submitted using aDigital Signature Certificate is considered on par with physically signed documents, and also attractbenefits endowed upon them through the Indian Information Technology Act 2000.Why do I need a Digital Signature Certificate?A Digital Signature Certificate authenticates your identity electronically. It also provides you with a highlevel of security for your online transactions by ensuring absolute privacy of the information exchangedusing a digital certificate. You can use certificates to encrypt information such that only the intendedrecipient can read it. You can digitally sign information to assure the recipient that it has not beenchanged in transit, and also verify your identity as the sender of the message.
  9. 9. Where can I use Digital Signature Certificates? For secure email and web-based transactions, or to identify other participants of web-basedtransactions.To prove ownership of a domain name and establish SSL/ TLS encrypted secured sessions between yourwebsite and the user for web based transactions.As a developer, for proving authorship of a code and retaining integrity of the distributed softwareprograms.For signing web forms, e-tendering documents, filing income tax returns, to access membership-basedwebsites automatically without entering a user name and password etc.

×