16-07-2020, 09:33 AM
(This post was last modified: 16-07-2020, 09:38 AM by Mike Watterson.)
Have an address book kept securely and never taken out with laptop/phone/tablet. Write site, email, user, pass etc.
Use Firefox / Waterfox etc password manager with a password for all non-financial sites.
Don't use Chrome.
Disable all 3rd party cookies.
Use a script blocker and only unblock enough to make a site work on a per site basis. Only needs done once.
Especially block scripts, remote content etc on Web mail. Avoid it as much as possible. Use an email client and set so there is a local archive of all sent and received email (even possible with IMAP, but IMAP should only be used for shared mail boxes). Email client should have all remote content blocked, should display real URL for a link when you hover and only click on known links and known attachments. Note miscreants may use From addresses/names of people/companies you know, so don't click unexpected links or attachments. Have file endings "on" in windows. Disable macros by default in all Office products.
Block scripts. Beats all AV software.
Don't use the so called "Cloud" to store ANYTHING private or important, only for collaboration.
You only need to learn two passwords, your log in and the Browser password manager. If a business etc, make a copy of the "address book", one in the office safe and one at an offsite location. Possibly a good idea for everyone. A decent size USB HDD is under £50, have multiple ones for backups and keep one off site. The "Cloud" isn't a backup solution. Too slow and insecure. Periodically archive backups because malware/ransomware can have a time delay, like the infamous HP printer driver updates that months later "bricked" non-HP consumables.
If copy / pasting something, and browser open (or it's a phone/tablet that's data enabled), at once do a SECOND copy of something to wipe the clipboard. Malicious browser scripts (any OS) and apps on iOS and Android DO copy and send the clipboard contents. Apple has recently added a feature on iOS that hopefully warns about this. Lots of apps then deleted from the store!
Use Firefox / Waterfox etc password manager with a password for all non-financial sites.
Don't use Chrome.
Disable all 3rd party cookies.
Use a script blocker and only unblock enough to make a site work on a per site basis. Only needs done once.
Especially block scripts, remote content etc on Web mail. Avoid it as much as possible. Use an email client and set so there is a local archive of all sent and received email (even possible with IMAP, but IMAP should only be used for shared mail boxes). Email client should have all remote content blocked, should display real URL for a link when you hover and only click on known links and known attachments. Note miscreants may use From addresses/names of people/companies you know, so don't click unexpected links or attachments. Have file endings "on" in windows. Disable macros by default in all Office products.
Block scripts. Beats all AV software.
Don't use the so called "Cloud" to store ANYTHING private or important, only for collaboration.
You only need to learn two passwords, your log in and the Browser password manager. If a business etc, make a copy of the "address book", one in the office safe and one at an offsite location. Possibly a good idea for everyone. A decent size USB HDD is under £50, have multiple ones for backups and keep one off site. The "Cloud" isn't a backup solution. Too slow and insecure. Periodically archive backups because malware/ransomware can have a time delay, like the infamous HP printer driver updates that months later "bricked" non-HP consumables.
If copy / pasting something, and browser open (or it's a phone/tablet that's data enabled), at once do a SECOND copy of something to wipe the clipboard. Malicious browser scripts (any OS) and apps on iOS and Android DO copy and send the clipboard contents. Apple has recently added a feature on iOS that hopefully warns about this. Lots of apps then deleted from the store!







