How to take care of your mental health after the Christchurch attacks

The world was saddened and distressed to learn of the shocking Christchurch mosque attacks on Friday, which claimed the lives of 50 people and injured nearly as many. Since then we’ve heard hear...

Richard Bryant, Professor & Director of Traumatic Stress Clinic, UNSW - avatar Richard Bryant, Professor & Director of Traumatic Stress Clinic, UNSW

Christchurch attacks provide a new ethics lesson for professional media

The difference in the Christchurch attacks is that propaganda supplied by the perpetrator was available to the professional media, even as the story was breaking.Wes Mountain/The Conversation, CC BY-N...

Denis Muller, Senior Research Fellow in the Centre for Advancing Journalism, University of Melbourne - avatar Denis Muller, Senior Research Fellow in the Centre for Advancing Journalism, University of Melbourne

Autonomous transport will shape our cities' future – best get on the right path early

Cities have a choice of autonomous vehicle futures: cars or mass transit vehicles. Which one we adopt is likely to determine how people-friendly our cities are.SueBeDoo888/ShutterstockA unique opport...

Peter Newman, Professor of Sustainability, Curtin University - avatar Peter Newman, Professor of Sustainability, Curtin University

What parents need to know about the signs of child sexual abuse

Significant changes in your child's behaviour could signal they are being sexually abused.from shutterstock.comRecent events, including the conviction and sentencing of George Pell for sexually abusin...

Larissa Christensen, Lecturer in Criminology & Justice  |  Co-leader of the Sexual Violence and Research Prevention Unit (SVRPU), University of the Sunshine Coast - avatar Larissa Christensen, Lecturer in Criminology & Justice | Co-leader of the Sexual Violence and Research Prevention Unit (SVRPU), University of the Sunshine Coast

Curious Kids: what makes an echo?

Do you think you could make an echo at Echo Point in Katoomba?Flickr/Amanda Slater, CC BYCurious Kids is a series for children. If you have a question you’d like an expert to answer, send it to ...

Noel Hanna, Leading Education Professional (Physics), UNSW - avatar Noel Hanna, Leading Education Professional (Physics), UNSW

Super power: why the future of Australian capitalism is now in Greg Combet's hands

Greg Combet wants to use his super power to free business from being hostage to short-term share-price and profit measures.ShutterstockRight now Greg Combet is arguably the most powerful man in Austra...

Danny Davis, Executive Director, Australian Institute of Performance Sciences, and researcher at, La Trobe University - avatar Danny Davis, Executive Director, Australian Institute of Performance Sciences, and researcher at, La Trobe University

Slimmed-down migration program has regional focus

The government has announced a reduced annual cap on migration of 160,000 for each of the next four years, as well as measures to stream a greater proportion of migrants to regional areas and boost th...

Michelle Grattan, Professorial Fellow, University of Canberra - avatar Michelle Grattan, Professorial Fellow, University of Canberra

Anxieties over livestreams can help us design better Facebook and YouTube content moderation

Livestream on Facebook isn't just a tool for sharing violence – it has many popular social and political uses. glen carrie / unsplash, CC BYAs families in Christchurch bury their loved ones foll...

Andrew Quodling, PhD candidate researching governance of social media platforms, Queensland University of Technology - avatar Andrew Quodling, PhD candidate researching governance of social media platforms, Queensland University of Technology

We did a breakthrough 'speed test' in quantum tunnelling, and here's why that's exciting

Future technologies will exploit today's advances in our understanding of the quantum world.Shutterstock/PopTika When you deal with things at the quantum scale, where things are very small, the world ...

U. Satya Sainadh, Postdoctoral researcher, Technion - Israel Institute of Technology - avatar U. Satya Sainadh, Postdoctoral researcher, Technion - Israel Institute of Technology

Politicians suing for defamation is usually a bad idea: here's why

There are better ways for politicians to address defamation concerns than through the courts.AAP/Ellen SmithWhen The Project host Waleed Aly began his editorial in the wake of the Christchurch massacr...

Michael Douglas, Senior Lecturer in Law, University of Western Australia - avatar Michael Douglas, Senior Lecturer in Law, University of Western Australia

Births, deaths and rituals: a revamped Ten Days on the Island explores Tasmania's past and present

Youth dance troupe Stompin performed their thought-provoking work Nowhere as part of this year's Ten Days on the Island.Jacob Collings, Lusy ProductionsThis year marks the tenth biennial Tasmanian Art...

Asher Warren, Lecturer, University of Tasmania - avatar Asher Warren, Lecturer, University of Tasmania

A guide for parents and teachers: what to do if your teenager watches violent footage

The world is reeling in the aftermath of the horrific shootings in Christchurch. The attack has also raised a number of side issues, including the ethics of broadcasting the live stream of the attack...

Rachael Sharman, Senior Lecturer in Psychology, University of the Sunshine Coast - avatar Rachael Sharman, Senior Lecturer in Psychology, University of the Sunshine Coast

As home care packages become big business, older people are not getting the personalised support they need

Many older Australians prefer to stay at home than enter residential aged care – but the process of securing home care is riddled with complexities.From shutterstock.comThe Royal Commission into...

Lyn Phillipson, NHMRC-ARC Dementia Development Fellow, University of Wollongong - avatar Lyn Phillipson, NHMRC-ARC Dementia Development Fellow, University of Wollongong

Two ways to fund NSW election promises as property prices crash

Previous NSW election promises were easily funded. Not so this time.ShutterstockState elections are always about spending promises, but this time not much is being said about how they will be funded.L...

Gareth Bryant, Lecturer in Political Economy, University of Sydney - avatar Gareth Bryant, Lecturer in Political Economy, University of Sydney

‘Rape Day’: A new video game glorifying sexual assault raises questions about regulation

nhungboon/ShutterstockA graphic new video game called Rape Day, set to launch in April, triggered a swift and widespread public outcry.Created by an independent developer, Rape Day is a set in a zombi...

Dr Marika Guggisberg, Research and Teaching Academic in Domestic and Family Violence, CQUniversity Australia - avatar Dr Marika Guggisberg, Research and Teaching Academic in Domestic and Family Violence, CQUniversity Australia

Curious Kids: why do we have two kidneys when we can live with only one?

Right now, your kidneys are getting rid of all things your body does not need. They do this by 'cleaning' your blood. ShutterstockCurious Kids is a series for children. If you have a question you&rsqu...

Brooke Huuskes, Lecturer in Human Anatomy, Physiology Anatomy & Microbiology, La Trobe University - avatar Brooke Huuskes, Lecturer in Human Anatomy, Physiology Anatomy & Microbiology, La Trobe University

Would you like to grow old at home? Why we’re struggling to meet demand for subsidised home care

In December, more than 127,000 Australians were waiting for a home care package.From shutterstock.comThe Royal Commission into Aged Care Quality and Safety is this week turning its focus to aged care ...

Michael Woods, Professor of Health Economics, University of Technology Sydney - avatar Michael Woods, Professor of Health Economics, University of Technology Sydney

We need a legally binding treaty to make plastic pollution history

The world urgently needs to move past plastic. Veronika MedunaA powerful marriage between the fossil fuel and plastic industries threatens to exacerbate the global plastic pollution crisis. The Center...

Trisia Farrelly, Senior Lecturer, Massey University - avatar Trisia Farrelly, Senior Lecturer, Massey University

White nationalism, born in the USA, is now a global terror threat

The recent massacre of 50 Muslim worshippers at two mosques in Christchurch, New Zealand is the latest confirmation that white supremacy is a danger to democratic societies across the globe.Despite Pr...

Art Jipson, Associate Professor of Sociology, University of Dayton - avatar Art Jipson, Associate Professor of Sociology, University of Dayton

Super power: why the future of Australian capitalism is now in Greg Combet's hands

Greg Combet wants to use his super power to free business from being hostage to short-term share-price and profit measures.ShutterstockRight now Greg Combet is arguably the most powerful man in Austra...

The Conversation - avatar The Conversation

Does most of your paycheck go to rent? That may be hurting your health

Families that spend more on housing may have less to spend on their health.Tero Vesalainen/shutterstock.comNew data on health across the U.S. shows that high housing costs are harming Americans’...

Jessica Owens-Young, Assistant Professor of Health Studies, American University - avatar Jessica Owens-Young, Assistant Professor of Health Studies, American University

The politics of fear: How it manipulates us to tribalism

The cruel murder of 50 people in New Zealand was another tragic reminder of how humans are capable of heartlessly killing their own kind just based on what they believe, how they worship, and what rac...

Arash Javanbakht, Assistant Professor of Psychiatry, Wayne State University - avatar Arash Javanbakht, Assistant Professor of Psychiatry, Wayne State University

What is the significance of Friday prayers in Islam?

Muslims praying in a Chicago mosque following the shooting in New Zealand, on Friday, March 15.AP Photo/Noreen NasirFollowing the terror attack on two New Zealand mosques last week, many Muslim commun...

Rose S. Aslan, Assistant Professor of Religion, California Lutheran University - avatar Rose S. Aslan, Assistant Professor of Religion, California Lutheran University

imageWe should know by now - don't click that link.Bill Buchanan, Author provided

A chain is only as strong as its weakest link. Computer security relies on a great number of links, hardware, software and something else altogether: you. The greatest threat to information security is actually people. Why strive to defeat encrypted passwords stored in computers, when those computers' human users will turn them over willingly?

The technique is known as social engineering. It could be a phone call at your desk “from IT” querying problems with your login details, or asking about those of our colleagues'. Or the more common technique of phishing – emails designed to solicit your credit card or login details by passing themselves off as legitimate emails from well-known banks or websites such as PayPal or eBay. This has evolved in spear phishing, in which known details about you personally gives the email even greater credibility.

The latest ruse are emails purporting to be from the World Health Organisation about Ebola, with email subjects including:

“Ebola Safety Tips - By WHO.”

“What You Need To Know About The Deadly Ebola Outbreak,”

“So Really, How Do You Get Ebola?,”

“Is there ANY way to cure Ebola?”

“The #1 Food Items You’ll Need In An EBOLA Crisis.”

But the link to the attached file which is described as health guidelines instead installs the DarkComet Trojan malware that gives attackers remote access to your computer. Any current event is fair game for cybercriminals if it can tempt you to click that link.

Spoofed addresses

A major problem with most types of digital communication, processing and storage is that it’s often difficult to differentiate between a true event or one which has been falsified. This stems largely from the internet’s origins as an open, insecure system. In this email apparently from eBay, the email address of the sender has been spoofed, that is, replaced with another that is not the sender’s actual address, as some email relay systems allow this.

imageAddresses are not as they seem.Bill Buchanan, Author provided

Take a look at the full email headers, however, and the entire route the mail has taken from source to destination is clear, as is the fact the sender is not verified:

Microsoft Mail Internet Headers Version 2.0

Received: from mer-w2003-6.napier-mail.napier.ac.uk ([146.176.223.1]) by EVS1.napier-mail.napier.ac.uk with Microsoft SMTPSVC(6.0.3790.1830);

Wed, 18 Jan 2006 00:17:45 +0000

Received: from pcp0011634462pcs.ivylnd01.pa.comcast.net (Not Verified[68.38.82.127]) by mer-w2003-6.napier-mail.napier.ac.uk with NetIQ MailMarshal (v6,1,3,15)

id ; Wed, 18 Jan 2006 00:17:44 +0000

FCC: mailbox://support_id_1779124147875@ebay.com/Sent

Date: Tue, 17 Jan 2006 17:10:39 -0700

From: eBay support_id_1779124147875@ebay.com

And when the user clicks the link they find themselves at a Korean web site, not ebay.com, which requires the user to login with their genuine eBay credentials – essentially handing over their keys.

Spoofed email

Most people will spot this as a fake these days, but if there’s additional information that tricks the reader into thinking a human wrote the email, prompting them for interaction, it can generate better results.

I have been waiting for quite a long time for you to reply, whith the payments details . For this reason I will be forced to report you to ebay as an upaid item…

imageSpoofed emails, with a human touch.Bill Buchanan, Author provided

This pressures the reader – no one wants bad eBay feedback, after all. Looking at the email’s HTML reveals the con (if the poor spelling and punctuation typical of such emails wasn’t enough) as a hidden form element shows that the user will be taken not to ebay.com but to a server in the Czech Republic (<form method=“POST” action=“http://www.mailform.cz/en/form.asp”>) which, while looking exactly like eBay, will only steal the user’s credentials

Sharp spears

Increasingly it is the spear in spear phishing that is being sharpened, with criminals pulling together more details about you to make their efforts to make you open your wallet more convincing. For example, sending a message apparently from the same bank with which you have an account.

It’s not just home users under attack – corporates are targeted too, and with the growth in hacking attacks linked to nation states and overseas governments, sophisticated and sustained campaigns of spear phishing have succeeded in stealing information from firms and organisations across Europe. Symantec recorded a 62% rise in data breaches from spear phishing in 2013.

The answer has to be better training and keen user awareness. Because for all the tools included in browsers and email readers to try and help users spot these deceits, many still fall for highly targeted phishing mails – and often only one user with access to a corporate site is required for attackers to ratchet up their access to the network.

As the Institution of Engineering and Technology recently told a parliamentary committee, now that we all use computers, all of the time, security is far too important to leave to just a few specialists.

image

Bill Buchanan does not work for, consult to, own shares in or receive funding from any company or organisation that would benefit from this article, and has no relevant affiliations.

Read more http://theconversation.com/in-cybersecurity-the-weakest-link-is-you-33524