Thursday, December 10, 2009

Home User PC Protection And Secure E-commerce Transaction

Users who have PCs should take precautions to safeguard their computers from various threats and vulnerabilities. These threats include virus threats, hackers and various others. There are few essential steps that users can do to protect their computers and their data while connected to the internet as mentioned below:

1. Install Host Firewall

One of the steps is by using a host-firewall to make sure that they can control who could connect to their computer, where and when. By using a host firewall, users can block any network attacks without interruption to your computer.

2.Install an intrusion detection software

Users are also advised to install intruder detection software in their computer so that it may detect the intruder and record its presence/attempts in your computer. This information can be attached in your report when reporting to your ISP of any illegal activities in your PC.

3.Install Anti-virus

In order to protect your computers from virus, users are advised to install an antivirus software on your computer. Antivirus software will detect any known computer virus and remove them, protecting your data from being damaged or tampered. There are many antivirus software in the market, but the most known and recommended are:
* F-Secure - http://www.f-secure.com
* McAfee - http://www.mcafee.com
* Symantec - http://www.symantec.com/index.jsp
* Trend Micro - http://us.trendmicro.com/us/home/index.html

Users should always update their anti virus signature file and scan their PCs regularly for the presence of any virus. The list of known antivirus vendors are available from the site below:

http://www.mycert.org.my/en/resources/malware/av_sites/main/detail/528/index.html

Download the signature file from any of the relevant sites, depending on the antivirus software your are currently using, install it in your PC and run a virus scan to detect and remove the virus, if any.

Tips

1.Do not execute any unknown attachments as it may contain any malicious programs. Scan the attachment with the latest antivirus software before executing it.

2.Password security is very essential and crucial. Always select a strong password with combination of various signs, numeric and mixture of lowercase and uppercase alphabets.

Example of a strong password: @#12_pS

You should keep you password private and do not write it down anywhere. In addition, do not share your passwords with anybody else.

3.Always lock your workstation or you may lock with screen saver locking when your leave PC unattended to avoid your PC being used maliciously by some other party.

4.Report to the abuse department of your ISP if you suspect any illegal activities or you may report to MyCERT atDetail information on reporting to MyCERT is available at: http://www.mycert.org.my/en/services/report_incidents/cyber999/main/detail/443/index.html

Secure Transaction

When you are on the Internet, doing e-commerce such as online purchase, you should make sure that your connection to the Internet is secure, which means nobody can see and modify the data and information you are sending. Most e-commerce web sites have a security mechanism called Secure Socket Layer or SSL. SSL actually encrypts all users connection using users' web browsers as the client and the web server and host. SSL connection ensures all your e-commerce transactions are secure.

You can / should always check if the site you are accessing for an e-commerce transaction has a SSL connection by looking at your web browser. Usually a webpage that supports SSL connection begins with "https://www......" and not "http://www....". https means Secure HTTP. During any SSL connection, if you are using Microsoft Internet Explorer, you should see a small, yellow padlock at the bottom-right of your Internet Explorer. If you are using Netscape, you should see a 'locked' padlock at the bottom-left of your browser. You can double-click on the padlock to read about the security measures implemented to secure the connection.

To experience a SSL webpage for example, you can browse to Maybank2U Online Banking site
https://www.maybank2u.com.my/OST/MBBWecos/Mbb_Login.aspx

MyCERT hopes the above information and tips would be of help to home users on protecting their PC and conducting secure e-commerce transaction.

No comments: