Google Mail (GMail): Login to your account on the webpage and open the message (click on it). Click on the “down-arrow” on the top-right of the message and select “Show Original”. Now you will see the complete message source. Yahoo! Mail: Login to your account on the webpage and open the message (click on it). Click on “Actions” and select “View Full Header”. Hotmail : Login to your account on the webpage and go to the message list. Right-click on the message and select “View Message Source”. MS Outlook Open the message in MS Outlook. Right-click the message in...
Protection from Phishing
How to Protect from Phishing Phishing is a technique deployed to solicit information from users through various means. The most popular are emails that uncanningly looks legitimate to unsuspecting users. Usually, the emails allure the users to click on a link that redirects to fraudulent websites that appears legitimate. Once the users are on the redirected website, they are asked to provide credentials such as usernames and passwords, that can potentially pose the users to risk for future compromises. Moreover, these fraudulent websites may contain malicious codes that can steal informations related to users from their browser’s cookies....
CMS Security
Today virtually all websites are powered by CMSes, of which WordPress, Joomla and Drupal have racked up over 70% of the market share between them as per statistics from Web Technology Surveys. A CMS enables anybody to build a web application with minimum technical knowledge. This widespread popularity due to ease of developing has therefore lead many such sites to be targeted. The WPScan Vulnerability Database shows almost 6,000 known vulnerabilities with WordPress, related to the core code or the publicly available plugins. A study of 500 cybersecurity service providing companies carried out by CMS Wire, revealed that “298...
New ransomware
BtCIRT has learned from different sources that a new form of ransomware is spreading massively world wide already affecting Russia, Ukraine, Spain, France, UK and India. Therefore, users and administrators are warned not to click on email attachment or links that you are not expecting and refer Ransomware for details on how to be at safer side . Since the identity of Ransomware has not been confirmed yet, we will keep updating the advisory. From the sources it is known to exploit SMB(Server Message Block) vulnerabilities, encrypting the master boot records of infected Windows Computer, thus making the machine...
WeChat Alert
While BtCIRT has not received any cases of compromised wechat account till date, we have learned from social media and other sources that there are many instances of wechat accounts being compromised and used for distributing obscene contents. This is to alert all users to make sure that you have enabled security setting to keep your account safe. Users are recommended to review following setting while creating an account, or follow the steps given below if you haven’t done it. In the Settings: Feature: disable Drift Bottle, People Nearby, Shake and all which would enable strangers to easily discover...