- Página Principal
- Glosario Seguridad Informática
- ICT Security - Seguridad Informática
- Especialización en Seguridad Informática - Pensum
- Computo Forense - Forensic Computing
- Ley de Delitos Informáticos. CO - Latam
- Colombia ViveDigital
- Programming - Software
- Imagine a world in which every single human being can freely share in the sum of all knowledge. (click here)
- Internet Security Privacy
- Deep Web
- Etica Hacker
- Software Libre
- CyberSecurity Links
- Declaración - ONU OSCE OEA
- .·.
domingo, 30 de mayo de 2010
ONU solicita tomar medidas contra la basura electrónica
viernes, 28 de mayo de 2010
Reporte de Malwares en América Latina
Artículo tomado desde http://www.infospyware.com
Las “actividades maliciosas en internet”, definidas como malwares, spam, intentos de estafas online y otros tipos de ciberdelitos están en constante aumento a nivel mundial debido al enorme negocio en que se han convertido para los ciberdelincuentes al rededor de todo el mundo. Entre los países más afectados por los códigos maliciosos (malwares) a nivel mundial están: Estados Unidos, China, Brasil, Reino Unido, Korea, Canadá, Francia, España, entre otros…
Por su parte Latinoamérica también ha presentado un aumento significativo de equipos infectados en países tales como Brasil, México, Argentina, Chile, Colombia, Venezuela, Perú, Republica Dominicana, Puerto Rico y Uruguay, entre otros…
De acuerdo con el análisis publicado por Dmitry Bestuzhev Analista de Kaspersky Labs, sobre “Top 10 programas de código malicioso en América Latina” durante el primer trimestre de 2010 la cantidad de malware Zero day creció 28%, en comparación con el último trimestre del 2009, lo que demuestra que los hackers se esfuerzan por crear malware cada vez más sofisticado en términos de detección, con el objetivo de evadir la detección de los programas Anti-Virus e infectar la mayor cantidad posible de máquinas.
Al comparar las 10 principales amenazas del primer trimestre del 2010 con los datos del cuarto trimestre del 2009 se observaron los siguientes cambios:
Net-Worm.Win32.Kido.ih fortaleció sus posiciones y subió del sexto lugar al tercero.
El Trojan.Win32.VB.zqk está en la posición número 5 con 5% de penetración en América Latina. El objetivo de esta amenaza es infectar la máquina utilizando las técnicas de Rootkit, permanecer oculto en el sistema y robar las contraseñas de MSN (Live) Messenger y AIM Messenger. Las contraseñas robadas se envían a un servidor remoto controlado por los delincuentes.
Medios de propagación del Malware en LATAM:
Sitios Webs legítimos infectados.
Sitios Webs de supuestos videos.
Medios de almacenamiento de información USB.
Aplicaciones de mensajería instantánea (Windows Live Messenger)
Falsos resultados en las búsquedas de Google (BlackHat SEO o SEO Poisoning)
Objetivos: diferentes pero siempre lucrativos.
Formar Botnets o redes de máquinas Zombie.
Instalar antivirus falsos que piden activación por dinero.
Ganar dinero por clics y tráfico generado por publicidad.
Robar información bancaria y otra información sensible que representa algún valor económico.
Medidas básicas para protegernos del Malware:
Antivirus, Antispyware, Firewall.
Mantener nuestro sistema actualizado.
Mantenerse informado sobre las nuevas amenazas y riesgos de la red.
* Artículo recomendado: 10 consejos para navegar seguro por Internet.
miércoles, 19 de mayo de 2010
lunes, 17 de mayo de 2010
Mientras algunos perdemos datos, contraseñas, equipos, etc...
¿Dónde están los niños de la pantalla?
Por: Juan Camilo Maldonado T.
domingo, 16 de mayo de 2010
¡El próximo 17 de mayo es el Día de Internet!
En el Día de Internet, 10 consejos para navegar seguro
jueves, 13 de mayo de 2010
lunes, 10 de mayo de 2010
Internet Crime Prevention Tips
Internet crime schemes that steal millions of dollars each year from victims continue to plague the Internet through various methods. Following are preventative measures that will assist you in being informed prior to entering into transactions over the Internet:
- AUCTION FRAUD
- Before you bid, contact the seller with any questions you have.
- Review the seller's feedback.
- Be cautious when dealing with individuals outside of your own country.
- Ensure you understand refund, return, and warranty policies.
- Determine the shipping charges before you buy.
- Be wary if the seller only accepts wire transfers or cash.
- If an escrow service is used, ensure it is legitimate.
- Consider insuring your item.
- Be cautious of unsolicited offers.
COUNTERFEIT CASHIER'S CHECK- Inspect the cashier's check.
- Ensure the amount of the check matches in figures and words.
- Check to see that the account number is not shiny in appearance.
- Be watchful that the drawer's signature is not traced.
- Official checks are generally perforated on at least one side.
- Inspect the check for additions, deletions, or other alterations.
- Contact the financial institution on which the check was drawn to ensure legitimacy.
- Obtain the bank's telephone number from a reliable source, not from the check itself.
- Be cautious when dealing with individuals outside of your own country.
CREDIT CARD FRAUD- Ensure a site is secure and reputable before providing your credit card number online.
- Don't trust a site just because it claims to be secure.
- If purchasing merchandise, ensure it is from a reputable source.
- Promptly reconcile credit card statements to avoid unauthorized charges.
- Do your research to ensure legitimacy of the individual or company.
- Beware of providing credit card information when requested through unsolicited emails.
DEBT ELIMINATION- Know who you are doing business with — do your research.
- Obtain the name, address, and telephone number of the individual or company.
- Research the individual or company to ensure they are authentic.
- Contact the Better Business Bureau to determine the legitimacy of the company.
- Be cautious when dealing with individuals outside of your own country.
- Ensure you understand all terms and conditions of any agreement.
- Be wary of businesses that operate from P.O. boxes or maildrops.
- Ask for names of other customers of the individual or company and contact them.
- If it sounds too good to be true, it probably is.
DHL/UPS- Beware of individuals using the DHL or UPS logo in any email communication.
- Be suspicious when payment is requested by money transfer before the goods will be delivered.
- Remember that DHL and UPS do not generally get involved in directly collecting payment from customers.
- Fees associated with DHL or UPS transactions are only for shipping costs and never for other costs associated with online transactions.
- Contact DHL or UPS to confirm the authenticity of email communications received.
EMPLOYMENT/BUSINESS OPPORTUNITIES- Be wary of inflated claims of product effectiveness.
- Be cautious of exaggerated claims of possible earnings or profits.
- Beware when money is required up front for instructions or products.
- Be leery when the job posting claims "no experience necessary".
- Do not give your social security number when first interacting with your prospective employer.
- Be cautious when dealing with individuals outside of your own country.
- Be wary when replying to unsolicited emails for work-at-home employment.
- Research the company to ensure they are authentic.
- Contact the Better Business Bureau to determine the legitimacy of the company.
ESCROW SERVICES FRAUD- Always type in the website address yourself rather than clicking on a link provided.
- A legitimate website will be unique and will not duplicate the work of other companies.
- Be cautious when a site requests payment to an "agent", instead of a corporate entity.
- Be leery of escrow sites that only accept wire transfers or e-currency.
- Be watchful of spelling errors, grammar problems, or inconsistent information.
- Beware of sites that have escrow fees that are unreasonably low.
IDENTITY THEFT- Ensure websites are secure prior to submitting your credit card number.
- Do your homework to ensure the business or website is legitimate.
- Attempt to obtain a physical address, rather than a P.O. box or maildrop.
- Never throw away credit card or bank statements in usable form.
- Be aware of missed bills which could indicate your account has been taken over.
- Be cautious of scams requiring you to provide your personal information.
- Never give your credit card number over the phone unless you make the call.
- Monitor your credit statements monthly for any fraudulent activity.
- Report unauthorized transactions to your bank or credit card company as soon as possible.
- Review a copy of your credit report at least once a year.
INTERNET EXTORTION- Security needs to be multi-layered so that numerous obstacles will be in the way of the intruder.
- Ensure security is installed at every possible entry point.
- Identify all machines connected to the Internet and assess the defense that's engaged.
- Identify whether your servers are utilizing any ports that have been known to represent insecurities.
- Ensure you are utilizing the most up-to-date patches for your software.
INVESTMENT FRAUD- If the "opportunity" appears too good to be true, it probably is.
- Beware of promises to make fast profits.
- Do not invest in anything unless you understand the deal.
- Don't assume a company is legitimate based on "appearance" of the website.
- Be leery when responding to invesment offers received through unsolicited email.
- Be wary of investments that offer high returns at little or no risk.
- Independently verify the terms of any investment that you intend to make.
- Research the parties involved and the nature of the investment.
- Be cautious when dealing with individuals outside of your own country.
- Contact the Better Business Bureau to determine the legitimacy of the company.
LOTTERIES- If the lottery winnings appear too good to be true, they probably are.
- Be cautious when dealing with individuals outside of your own country.
- Be leery if you do not remember entering a lottery or contest.
- Be cautious if you receive a telephone call stating you are the winner in a lottery.
- Beware of lotteries that charge a fee prior to delivery of your prize.
- Be wary of demands to send additional money to be eligible for future winnings.
- It is a violation of federal law to play a foreign lottery via mail or phone.
NIGERIAN LETTER OR "419"- If the "opportunity" appears too good to be true, it probably is.
- Do not reply to emails asking for personal banking information.
- Be wary of individuals representing themselves as foreign government officials.
- Be cautious when dealing with individuals outside of your own country.
- Beware when asked to assist in placing large sums of money in overseas bank accounts.
- Do not believe the promise of large sums of money for your cooperation.
- Guard your account information carefully.
- Be cautious when additional fees are requested to further the transaction.
PHISHING/SPOOFING- Be suspicious of any unsolicited email requesting personal information.
- Avoid filling out forms in email messages that ask for personal information.
- Always compare the link in the email to the link that you are actually directed to.
- Log on to the official website, instead of "linking" to it from an unsolicited email.
- Contact the actual business that supposedly sent the email to verify if the email is genuine.
PONZI/PYRAMID- If the "opportunity" appears too good to be true, it probably is.
- Beware of promises to make fast profits.
- Exercise diligence in selecting investments.
- Be vigilant in researching with whom you choose to invest.
- Make sure you fully understand the investment prior to investing.
- Be wary when you are required to bring in subsequent investors.
- Independently verify the legitimacy of any investment.
- Beware of references given by the promoter.
RESHIPPING- Be cautious if you are asked to ship packages to an "overseas home office."
- Be cautious when dealing with individuals outside of your own country.
- Be leery if the individual states that his country will not allow direct business shipments from the United States.
- Be wary if the "ship to" address is yours but the name on the package is not.
- Never provide your personal information to strangers in a chatroom.
- Don't accept packages that you didn't order.
- If you receive packages that you didn't order, either refuse them upon delivery or contact the company where the package is from.
SPAM- Don't open spam. Delete it unread.
- Never respond to spam as this will confirm to the sender that it is a "live" email address.
- Have a primary and secondary email address - one for people you know and one for all other purposes.
- Avoid giving out your email address unless you know how it will be used.
- Never purchase anything advertised through an unsolicited email.
THIRD PARTY RECEIVER OF FUNDS- Do not agree to accept and wire payments for auctions that you did not post.
- Be leery if the individual states that his country makes receiving these type of funds difficult.
- Be cautious when the job posting claims "no experience necessary".
- Be cautious when dealing with individuals outside of your own country.