Cybercrime Prevention, Reporting, & Recovery: Difference between revisions
From GCA ACT
Jump to navigationJump to search
No edit summary |
No edit summary |
||
(5 intermediate revisions by the same user not shown) | |||
Line 16: | Line 16: | ||
| style="position: relative; vertical-align: top; border: none; background-color: #EBEBEB; text-align: left; width: 25%;" | <span>[[File:Eye-open.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Realize</span><div>Cybercrimes can often go undetected but it is important to catch them before they cause further damage. Luckily, along with a number of resources for learning to spot cybercrimes, there are a multitude of automated software tools that intelligently detect anomalies. | | style="position: relative; vertical-align: top; border: none; background-color: #EBEBEB; text-align: left; width: 25%;" | <span>[[File:Eye-open.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Realize</span><div>Cybercrimes can often go undetected but it is important to catch them before they cause further damage. Luckily, along with a number of resources for learning to spot cybercrimes, there are a multitude of automated software tools that intelligently detect anomalies. | ||
<br> | <br><br> | ||
[[#CybercrimeContainment|Cybercrime Types & Containment Methods]] | <center><big><strong>[[#CybercrimeContainment|Cybercrime Types & Containment Methods]]</strong></big></center> | ||
</div> | </div> | ||
|- | |- | ||
| style="position: relative; vertical-align: top; border: none; background-color: #EBEBEB; text-align: left; width: 25%;" | <span>[[File:Report.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Report</span><div>If you are the victim of a cybercrime, it is important to report it to the authorities. This will help them to investigate the crime and track down the perpetrators. Cybercrimes are dramatically underreported, people are sometimes embarrassed, or they don’t think anyone will do anything. The truth is that authorities are investing more money in cybersecurity every year. | | style="position: relative; vertical-align: top; border: none; background-color: #EBEBEB; text-align: left; width: 25%;" | <span>[[File:Report.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Report</span><div>If you are the victim of a cybercrime, it is important to report it to the authorities. This will help them to investigate the crime and track down the perpetrators. Cybercrimes are dramatically underreported, people are sometimes embarrassed, or they don’t think anyone will do anything. The truth is that authorities are investing more money in cybersecurity every year. | ||
<br><br> | |||
<center><big><strong>[[Cybercrime Reporting Resources|Cybercrime Reporting Resources]]</strong></big></center> | |||
</div> | </div> | ||
| style="vertical-align: top; border: none; background-color: #FFFFFF; text-align: left; width: 25%;" | <span>[[File:recover-bed.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Recover</span><div>Once you have reported a cybercrime, there are steps you can take to recover from it. A lot of the time these steps occur before the crime happens, like keeping a backup of your data or having a disaster recovery plan. Otherwise it may include things like changing your passwords, monitoring your credit report, and filing insurance claims. | | style="vertical-align: top; border: none; background-color: #FFFFFF; text-align: left; width: 25%;" | <span>[[File:recover-bed.svg|frameless|70px|link=|thumb|left]]</span><span style="font-weight: bold; font-size: 25px;">Recover</span><div>Once you have reported a cybercrime, there are steps you can take to recover from it. A lot of the time these steps occur before the crime happens, like keeping a backup of your data or having a disaster recovery plan. Otherwise, it may include things like changing your passwords, monitoring your credit report, and filing insurance claims. | ||
<br><br> | |||
<big><strong>Cybersecurity Tools</strong></big> | |||
{{#categorytree:Passwords|mode=collapsed}} | |||
{{#categorytree:Backup & Restoration of Data|mode=collapsed}} | |||
{{#categorytree:Insurance & Recovering Your Losses|mode=collapsed}} | |||
{{#categorytree:Sensitive Data|mode=collapsed}} | |||
</div> | </div> | ||
|} | |} | ||
<br><br> | <br><br> | ||
<span id="CybercrimeReporting"></span><center><big><strong>Cybercrime Reporting Resources</strong></big></center> | <span id="CybercrimeReporting"></span><center><big><strong>Cybercrime Reporting Resources</strong></big></center> | ||
<br><br> | <br><br> | ||
<span id="CybercrimeContainment></span><center><big><strong>Types of Cybercrimes and Containment Methods</strong></big></center> | <span id="CybercrimeContainment></span><center><big><strong>Types of Cybercrimes and Containment Methods</strong></big></center> | ||
{| class="wikitable" | {| class="wikitable" | ||
|+ | |+ | ||
! Type of Cybercrime | ! Type of Cybercrime !! Signals of Attack !! Methods of Containment | ||
|- | |- | ||
| Data breach | | width="20%" | '''Data breach''' - The unauthorized access and theft of sensitive data. | ||
| | | width="40%" | | ||
* Unusual system activity, such as spikes in traffic or login attempts from unusual locations | * Unusual system activity, such as spikes in traffic or login attempts from unusual locations | ||
* Missing files or data | * Missing files or data | ||
* Unauthorized changes to system configurations or permissions | * Unauthorized changes to system configurations or permissions | ||
| | | width="40%" | | ||
* Isolate affected systems from the network | * Isolate affected systems from the network | ||
* Change all passwords and security credentials | * Change all passwords and security credentials | ||
Line 118: | Line 54: | ||
* Restore data from backups | * Restore data from backups | ||
|- | |- | ||
| Malware attack | | '''Malware attack''' - The unauthorized installation of malicious software on a computer system. | ||
| | | | ||
* Slow computer performance | * Slow computer performance | ||
Line 129: | Line 65: | ||
* Restore data from backups | * Restore data from backups | ||
|- | |- | ||
| Phishing attack | | '''Phishing attack''' - A fraudulent attempt to obtain sensitive information, such as passwords or credit card numbers, by disguising oneself as a trustworthy entity in an electronic communication. | ||
| | | | ||
* Emails or text messages that appear to be from a legitimate source, such as a bank or credit card company, but contain suspicious links or attachments | * Emails or text messages that appear to be from a legitimate source, such as a bank or credit card company, but contain suspicious links or attachments | ||
Line 137: | Line 73: | ||
* Verify the legitimacy of any email or text message before providing any personal or sensitive information | * Verify the legitimacy of any email or text message before providing any personal or sensitive information | ||
|- | |- | ||
| Denial-of-service (DoS) attack | | '''Denial-of-service (DoS) attack''' - An attempt to make a computer system or network unavailable to its intended users by flooding it with traffic or exploiting vulnerabilities in software or hardware. | ||
| | | | ||
* Slow website or application performance | * Slow website or application performance | ||
Line 146: | Line 82: | ||
* Implement DDoS mitigation strategies, such as firewalls and load balancers | * Implement DDoS mitigation strategies, such as firewalls and load balancers | ||
|- | |- | ||
| Man-in-the-middle (MitM) attack | | '''Man-in-the-middle (MitM) attack''' - An attack where the attacker secretly relays and possibly alters the communication between two parties who believe they are communicating directly to each other. | ||
| | | | ||
* Unexpected redirects to unfamiliar websites | * Unexpected redirects to unfamiliar websites | ||
* Unexpected changes to website content | * Unexpected changes to website content | ||
Line 156: | Line 92: | ||
* Use strong passwords and two-factor authentication | * Use strong passwords and two-factor authentication | ||
|- | |- | ||
| Social engineering attack | | '''Social engineering attack''' - An attack that manipulates people into performing actions or divulging confidential information. | ||
| | |||
* Phone calls, emails, or text messages that ask for personal or sensitive information | * Phone calls, emails, or text messages that ask for personal or sensitive information | ||
* Requests for help with technical problems | * Requests for help with technical problems | ||
Line 165: | Line 102: | ||
* Verify the legitimacy of any request before taking any action | * Verify the legitimacy of any request before taking any action | ||
|- | |- | ||
| Ransomware attack | | '''Ransomware attack''' - A type of malware that encrypts the victim's data and demands a ransom payment in exchange for the decryption key) | ||
| | | | ||
* Files that are encrypted and cannot be accessed | * Files that are encrypted and cannot be accessed | ||
Line 174: | Line 111: | ||
* Restore data from backups | * Restore data from backups | ||
|- | |- | ||
| Cryptojacking | | '''Cryptojacking''' - The unauthorized use of a computer's processing power to mine cryptocurrency. | ||
| | | | ||
* Slow computer performance | * Slow computer performance | ||
Line 184: | Line 121: | ||
* Use strong passwords and two-factor authentication | * Use strong passwords and two-factor authentication | ||
|- | |- | ||
| Insider threat | | '''Insider threat''' - A cyberattack carried out by an individual who has authorized access to an organization's computer systems or data. | ||
| | |||
* Unusual system activity, such as spikes in traffic or login attempts from unusual locations | * Unusual system activity, such as spikes in traffic or login attempts from unusual locations | ||
* Unauthorized changes to system configurations or permissions | * Unauthorized changes to system configurations or permissions | ||
Line 193: | Line 131: | ||
* Conduct regular security audits | * Conduct regular security audits | ||
|- | |- | ||
| Supply chain attack | | '''Supply chain attack''' - A cyberattack that targets an organization's suppliers or third-party vendors. | ||
| | | | ||
* Vulnerabilities in software or hardware used by suppliers or third-party vendors | * Vulnerabilities in software or hardware used by suppliers or third-party vendors |
Latest revision as of 01:09, 8 April 2024
This page is your go-to resource for tackling the multifaceted challenges of cybercrime. With the digital world becoming increasingly integrated to everyday lives and business operations, understanding how to prevent, recognize, report, and recover from cyber threats is critical. This comprehensive page is structured into four essential sections encompassing the continuum of cybercrime remediation. Each section includes a curated list of cybersecurity tools tailored for everyday users, individuals requiring enhanced security, and organizations.
Prevent Whether you are an everyday user or in charge of an organization's IT apparatus, implementing cybercrime prevention tools is a no-brainer. For Everyday Cybersecurity this includes using strong passwords, being careful about what information you share online, and being aware of common cybercrime scams. However sometimes a more structured approach, or Enhanced Protection, is needed for small businesses or individuals requiring heightened security. For large organizations Advanced Security is required, including sophisticated Intrusion Prevention Systems (IPS), security simulations, and strict access control.
|
Realize Cybercrimes can often go undetected but it is important to catch them before they cause further damage. Luckily, along with a number of resources for learning to spot cybercrimes, there are a multitude of automated software tools that intelligently detect anomalies.
|
Report If you are the victim of a cybercrime, it is important to report it to the authorities. This will help them to investigate the crime and track down the perpetrators. Cybercrimes are dramatically underreported, people are sometimes embarrassed, or they don’t think anyone will do anything. The truth is that authorities are investing more money in cybersecurity every year.
|
Recover Once you have reported a cybercrime, there are steps you can take to recover from it. A lot of the time these steps occur before the crime happens, like keeping a backup of your data or having a disaster recovery plan. Otherwise, it may include things like changing your passwords, monitoring your credit report, and filing insurance claims.
no subcategories |
Type of Cybercrime | Signals of Attack | Methods of Containment |
---|---|---|
Data breach - The unauthorized access and theft of sensitive data. |
|
|
Malware attack - The unauthorized installation of malicious software on a computer system. |
|
|
Phishing attack - A fraudulent attempt to obtain sensitive information, such as passwords or credit card numbers, by disguising oneself as a trustworthy entity in an electronic communication. |
|
|
Denial-of-service (DoS) attack - An attempt to make a computer system or network unavailable to its intended users by flooding it with traffic or exploiting vulnerabilities in software or hardware. |
|
|
Man-in-the-middle (MitM) attack - An attack where the attacker secretly relays and possibly alters the communication between two parties who believe they are communicating directly to each other. |
|
|
Social engineering attack - An attack that manipulates people into performing actions or divulging confidential information. |
|
|
Ransomware attack - A type of malware that encrypts the victim's data and demands a ransom payment in exchange for the decryption key) |
|
|
Cryptojacking - The unauthorized use of a computer's processing power to mine cryptocurrency. |
|
|
Insider threat - A cyberattack carried out by an individual who has authorized access to an organization's computer systems or data. |
|
|
Supply chain attack - A cyberattack that targets an organization's suppliers or third-party vendors. |
|
|