More Related Content
Similar to Cscu module 11 security on social networking sites (20)
Cscu module 11 security on social networking sites
- 2. Copyright © by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited.
2
SAN FRANCISCO — Social networks are "lucrative hot beds" for cyber scams as crooks endeavor to dupe members of online communities,
according to a Microsoft security report released on Thursday.
"Phishing" attacks that use seemingly legitimate messages to trick people into clicking on booby‐trapped links, buying bogus software,
or revealing information rocketed 1,200 percent at social networks last year, it said.
"We continue to see cyber criminals evolve attack methods such as a significant rise in social network phishing," Microsoft malware
protection center manager Vinny Gullotto said in the Security Intelligence Report.
Phishing using social networking as a "lure" represented 84.5 percent of all such trickery in December as compared with 8.3 percent at
the start of 2010, according to the report.
Microsoft analyzed data gathered from more than 600 million computer systems worldwide from July through December of last year for
the semi‐annual study.
"The popularity of social networking sites has created new opportunities for cyber criminals to not only directly impact users, but also
friends, colleagues and family through impersonation," the report said.
Cyber Scams Rife at Social Networks: Microsoft
http://www.physorg.com
May 12, 2011
- 7. Copyright © by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited.
7
What is a Profile?
Facebook Profile Profile is a collection of information that
defines or describes a user’s interests
The main profile page of a user of any social
networking site introduces and describes the
user
The information that a user may post on
his/her profile includes:
Names/nicknames
Email addresses
Phone numbers
Photos, videos
Personal interests
Names of schools, sports teams, and friends
http://www.sophos.com
- 23. Copyright © by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited.
23
Recommended Actions for Facebook
Search Settings
Allow anyone to see my
public search listing
Allow my public search listing to be
indexed by external search engines
See your picture
Send you a message
Poke you
Add you as a friend
View your friend list
Be careful
“No”
Be careful
“No”
“No”
Be careful
“No”
Option Recommended Action Reason
The users should select the option “Yes” only if they want
people they are familiar with to know that they are on
Facebook
The user should not allow people who are not yet their
friends to view their friend list
Be cautious before accepting anyone's friend request
By responding to the poke from an unknown user, the users
will be allowing him/her to view their profile information
for a period of time
If the users respond to a message sent by someone that
they are not friends with, the unknown users will be able
to view the user’s profile
Do not share pictures that may embarrass or that are
personal
If enabled, it allows people using external search engines
like Google, Yahoo and MSN to find the user on Facebook
- 26. Copyright © by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited.
26
Step 1: Go to “Account Settings”
Go to Account Settings Privacy
Do not check Online Now if you do
not wish others to know when you
log in
Check Show my birthday to my
friends only if necessary
Do not check following options
under applications:
Do not allow my profile information to
be accessed by games and third party
services I haven’t connected to option
Do not allow communications from
games and third party services I
haven’t connected to