Daily Mirror (Sri Lanka)

Be aware of Phishing attack: CERT|CC

- BY CHATURANGA SAMARAWICK­RAMA

The Computer Emergency Readiness Team-coordinati­on Centre (CERT|CC) requested social media or email users to be aware of ‘Phishing’ attack circulatin­g over the internet.

The Phishing attacks typically rely on social networking techniques applied to email or other electronic communicat­ion methods, including direct messages sent over social networks, SMS text messages and other instant messaging modes.

Speaking to the Daily Mirror CERT|CC Principal Informatio­n Security Engineer Roshan Chandragup­ta said a number of complaints had been received about a number of social media accounts being hacked into.

Phishing is a cyber attack that uses a disguised email as a weapon. The goal is to trick the mail recipient or social media user to click a link which enables the hackers to breach into their accounts.

“If a user clicks on the received email link, that will open a similar login page to the Facebook (FB) and asks for the FB user name and the password. When typing the user name and the password it will provide access to the victims FB profile,” he said.

Most of the complaints were made regarding the changing of FB accounts. If a user mistakenly clicked on the received FB request which arrived as an email, opens a similar login page to the Facebook which is in fact a fake Facebook Login, Mr Chandragup­ta said.

“If the user logged in to their own Facebook profile, they should be alert of two activities. There should have to be a green padlock mark display near the address bar to show that the profile login was a secured connection and with the hyperlink address of https://www.facebook. com. Or there ‘Two-factor authentica­tion’ should have to be activated,” he said

“If someone was a victim of the Phishing Attack, they can be activated by the twofactor authentica­tion and can be activated from the -Security and Login- page on the Facebook settings.

“That can verify the true Facebook profile user while receiving a verificati­on code with the use of own mobile number.

“Mr Chandragup­ta requested social media users to be cautious about clicking email likes. They should always check their profile address bar starts with https://www.facebook.com. There is no need to re-enter social media login or profile password once you logged in,” he said.

Email accounts are also hacked using the same method.

 ??  ??
 ??  ??
 ??  ??

Newspapers in English

Newspapers from Sri Lanka