{"id":31689,"date":"2019-03-22T11:12:20","date_gmt":"2019-03-22T15:12:20","guid":{"rendered":"https:\/\/www.tun.com\/blog\/?p=31689"},"modified":"2021-05-20T21:43:14","modified_gmt":"2021-05-21T01:43:14","slug":"dont-click-that-link-how-criminals-access-your-digital-devices-and-what-happens-when-they-do","status":"publish","type":"post","link":"https:\/\/www.tun.com\/blog\/dont-click-that-link-how-criminals-access-your-digital-devices-and-what-happens-when-they-do\/","title":{"rendered":"Don&#8217;t Click That Link! How Criminals Access Your Digital Devices and What Happens When They Do"},"content":{"rendered":"<p>Every day, often multiple times a day, you are invited to click on links sent to you by brands, politicians, friends and strangers. You download apps on your devices. Maybe you use QR codes.<\/p>\n<p>Most of these activities are secure because they come from sources that can be trusted. But sometimes criminals impersonate trustworthy sources to get you to click on a link (or download an app) that contains malware.<\/p>\n<p>At its core, a link is just a mechanism for data to be delivered to your device. Code can be built into a website which redirects you to another site and downloads malware to your device en route to your actual destination.<\/p>\n<p>When you click on unverified links or download suspicious apps you increase the risk of exposure to malware. Here\u2019s what could happen if you do \u2013 and how you can minimise your risk.<\/p>\n<h2>What is malware?<\/h2>\n<p>Malware is <a href=\"https:\/\/csrc.nist.gov\/glossary\/term\/malware\">defined as<\/a> malicious code that:<\/p>\n<blockquote><p>will have adverse impact on the confidentiality, integrity, or availability of an information system.<\/p><\/blockquote>\n<p>In the past, malware described malicious code that took the form of viruses, worms or Trojan horses.<\/p>\n<p>Viruses embedded themselves in genuine programs and relied on these programs to propagate. Worms were generally stand alone programs that could install themselves using a network, USB or email program to infect other computers.<\/p>\n<p>Trojan horses took their name from the gift to the Greeks during the Trojan war in Homer\u2019s Odyssey. Much like the wooden horse, a Trojan Horse looks like a normal file until some predetermined action causes the code to execute.<\/p>\n<p>Today\u2019s generation of attacker tools are far more <a href=\"https:\/\/csrc.nist.gov\/publications\/detail\/sp\/800-83\/rev-1\/final\">sophisticated, and are often a blend of these techniques<\/a>.<\/p>\n<p>These so-called \u201cblended attacks\u201d rely heavily on social engineering &#8211; the ability to manipulate someone to doing something they wouldn\u2019t normally do \u2013 and are often categorised by what they ultimately will do to your systems.<\/p>\n<h2>What does malware do?<\/h2>\n<p>Today\u2019s malware comes in easy to use, customised toolkits distributed on the dark web or by well meaning security researchers attempting to fix problems.<\/p>\n<p>With a click of a button, attackers can use these toolkits to send phishing emails and spam SMS messages to eploy various types of malware. Here are some of them.<\/p>\n<ul>\n<li>a remote administration tool (RAT) can be used to access a computer\u2019s camera, microphone and install other types of malware<\/li>\n<li>keyloggers can be used to monitor for passwords, credit card details and email addresses<\/li>\n<li>ransomware is used to encrypt private files and then demand payment in return for the password<\/li>\n<li>botnets are used for distributed denial of service (DDoS) attacks and other illegal activities. DDoS attacks can flood a website with so much virtual traffic that it shuts down, much like a shop being filled with so many customers you are unable to move.<\/li>\n<li>crytptominers will use your computer hardware to mine cryptocurrency, which will slow your computer down<\/li>\n<li>hijacking or defacement attacks are used to deface a site or embarrass you by <a href=\"https:\/\/www.abc.net.au\/news\/2017-11-16\/christopher-pyne-says-hacker-liked-porn-tweet\/9155964\">posting pornographic material to your social media<\/a><\/li>\n<\/ul>\n<h2>How does malware end up on your device?<\/h2>\n<p>According to <a href=\"https:\/\/www.willistowerswatson.com\/en\/insights\/2017\/09\/Cyber-risk-its-a-people-problem-too\">insurance claim data<\/a> of businesses based in the UK, over 66% of cyber incidents are caused by employee error. Although the data attributes only 3% of these attacks to social engineering, our experience suggests the majority of these attacks would have started this way.<\/p>\n<p>For example, by employees not following dedicated IT and information security policies, not being informed of how much of their digital footprint has been exposed online, or simply being taken advantage of. Merely posting what you are having for dinner on social media can open you up to attack from a well trained social engineer.<\/p>\n<p>QR codes are equally as risky if users open the link the QR codes point to without first validating where it was heading, as indicated by <a href=\"http:\/\/citeseerx.ist.psu.edu\/viewdoc\/download?doi=10.1.1.360.6189&amp;rep=rep1&amp;type=pdf\">this 2012 study<\/a>.<\/p>\n<p>Even <a href=\"https:\/\/www.youtube.com\/watch?v=np0mPy-EHII\">opening an image in a web browser<\/a> and running a mouse over it can lead to malware being installed. This is quite a useful delivery tool considering the advertising material you see on popular websites.<\/p>\n<p>Fake apps have also been discovered on both the <a href=\"https:\/\/www.telegraph.co.uk\/technology\/2019\/01\/01\/fraud-apples-app-store-becoming-target-fake-apps-rip-offs-copyright\/\">Apple<\/a> and <a href=\"https:\/\/techcrunch.com\/2018\/11\/20\/half-a-million-android-users-tricked-into-downloading-malware-from-google-play\/\">Google Play<\/a> stores. Many of these attempt to steal login credentials by mimicking well known banking applications.<\/p>\n<p>Sometimes malware is placed on your device by someone who wants to track you. In 2010, the Lower Merion School District settled two lawsuits brought against them for violating students\u2019 privacy and <a href=\"https:\/\/web.archive.org\/web\/20100602042403\/http:\/\/www.lmsd.org\/documents\/news\/100503_ballard_spahr_report.pdf\">secretly recording using the web camera of loaned school laptops<\/a>.<\/p>\n<h2>What can you do to avoid it?<\/h2>\n<p>In the case of the the Lower Merion School District, students and teachers suspected they were being monitored because they \u201csaw the green light next to the webcam on their laptops turn on momentarily.\u201d<\/p>\n<p>While this is a great indicator, many hacker tools will ensure webcam lights are turned off to avoid raising suspicion. On-screen cues can give you a false sense of security, especially if you don\u2019t realise that the microphone is <a href=\"https:\/\/theconversation.com\/how-silent-signals-from-your-phone-could-be-recording-and-tracking-you-94978\">always being accessed<\/a> for verbal cues or other forms of tracking.<\/p>\n<p>Basic awareness of the risks in cyberspace will go a long the way to mitigating them. This is called cyber hygiene.<\/p>\n<p>Using good, up to date virus and malware scanning software is crucial. However, the most important tip is to update your device to ensure it has the latest security updates.<\/p>\n<p>Hover over links in an email to see where you are really going. Avoid shortened links, such as bit.ly and QR codes, unless you can check where the link is going by using a URL expander.<\/p>\n<h2>What to do if you already clicked?<\/h2>\n<p>If you suspect you have malware on your system, there are simple steps you can take.<\/p>\n<p>Open your webcam application. If you can\u2019t access the device because it is already in use this is a telltale sign that you might be infected. Higher than normal battery usage or a machine running hotter than usual are also good indicators that something isn\u2019t quite right.<\/p>\n<p>Make sure you have good anti-virus and anti-malware software installed. Estonian start-ups, such as <a href=\"https:\/\/www.malwarebytes.com\">Malware Bytes<\/a> and <a href=\"https:\/\/www.seguru.io\/\">Seguru<\/a>, can be installed on your phone as well as your desktop to provide real time protection. If you are running a website, make sure you have good security installed. <a href=\"https:\/\/www.wordfence.com\">Wordfence<\/a> works well for WordPress blogs.<\/p>\n<p>More importantly though, make sure you know how much data about you has already been exposed. Google yourself \u2013 including a Google image search against your profile picture \u2013 to see what is online.<\/p>\n<p>Check all your email addresses on the website <a href=\"https:\/\/haveibeenpwned.com\">haveibeenpwned.com<\/a> to see whether your passwords have been exposed. Then make sure you never use any passwords again on other services. Basically, treat them as compromised.<\/p>\n<p>Cyber security has technical aspects, but remember: any attack that doesn\u2019t affect a person or an organisation is just a technical hitch. Cyber attacks are a human problem.<\/p>\n<p>The more you know about your own digital presence, the better prepared you will be. All of our individual efforts better secure our organisations, our schools, and our family and friends.<!-- Below is The Conversation's page counter tag. Please DO NOT REMOVE. --><img decoding=\"async\" style=\"border: none !important; box-shadow: none !important; margin: 0 !important; max-height: 1px !important; max-width: 1px !important; min-height: 1px !important; min-width: 1px !important; opacity: 0 !important; outline: none !important; padding: 0 !important; text-shadow: none !important;\" src=\"https:\/\/counter.theconversation.com\/content\/109802\/count.gif?distributor=republish-lightbox-basic\" alt=\"The Conversation\" width=\"1\" height=\"1\" \/><!-- End of code. If you don't see any code above, please get new code from the Advanced tab after you click the republish button. The page counter does not collect any personal data. More info: http:\/\/theconversation.com\/republishing-guidelines --><\/p>\n<p><strong>Authors:<\/strong> <a href=\"https:\/\/theconversation.com\/profiles\/richard-matthews-158213\">Richard Matthews<\/a>, Lecturer Entrepreneurship, Commercialisation and Innovation Centre | PhD Candidate in Image Forensics and Cyber | Councillor, <em><a href=\"http:\/\/theconversation.com\/institutions\/university-of-adelaide-1119\">University of Adelaide<\/a><\/em> and <a href=\"https:\/\/theconversation.com\/profiles\/kieren-nicolas-lovell-666836\">Kieren Ni\u0109olas Lovell<\/a>, Head of TalTech Computer Emergency Response Team, <em><a href=\"http:\/\/theconversation.com\/institutions\/tallinn-university-of-technology-3025\">Tallinn University of Technology<\/a><\/em><\/p>\n<p>This article is republished from <a href=\"http:\/\/theconversation.com\">The Conversation<\/a> under a Creative Commons license. Read the <a href=\"https:\/\/theconversation.com\/dont-click-that-link-how-criminals-access-your-digital-devices-and-what-happens-when-they-do-109802\">original article<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Every day, often multiple times a day, you are invited to click on links sent to you by brands, politicians, friends and strangers. You download apps on your devices. Maybe you use QR codes. Most of these activities are secure because they come from sources that can be trusted. But sometimes criminals impersonate trustworthy sources [&hellip;]<\/p>\n","protected":false},"author":69,"featured_media":31691,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_uag_custom_page_level_css":"","_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[629],"tags":[],"class_list":["post-31689","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security"],"aioseo_notices":[],"uagb_featured_image_src":{"full":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg",830,533,false],"thumbnail":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do-224x144.jpg",224,144,true],"medium":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do-300x193.jpg",300,193,true],"medium_large":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg",830,533,false],"large":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg",830,533,false],"1536x1536":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg",830,533,false],"2048x2048":["https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg",830,533,false]},"uagb_author_info":{"display_name":"The Conversation","author_link":"https:\/\/www.tun.com\/blog\/author\/the-conversation\/"},"uagb_comment_info":0,"uagb_excerpt":"Every day, often multiple times a day, you are invited to click on links sent to you by brands, politicians, friends and strangers. You download apps on your devices. Maybe you use QR codes. Most of these activities are secure because they come from sources that can be trusted. But sometimes criminals impersonate trustworthy sources&hellip;","featured_media_src_url":"https:\/\/www.tun.com\/blog\/wp-content\/uploads\/2019\/03\/Dont-Click-That-Link-How-Criminals-Access-Your-Digital-Devices-And-What-Happens-When-They-Do.jpg","_links":{"self":[{"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/posts\/31689","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/users\/69"}],"replies":[{"embeddable":true,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/comments?post=31689"}],"version-history":[{"count":0,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/posts\/31689\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/media\/31691"}],"wp:attachment":[{"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/media?parent=31689"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/categories?post=31689"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.tun.com\/blog\/wp-json\/wp\/v2\/tags?post=31689"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}