网络安全习惯_健康习惯,确保良好的网络安全

网络安全习惯

In a similar fashion to everyone getting the flu now and again, the risk of catching a cyberattack is a common one.  Both a sophisticated social engineering attack or grammatically-lacking email phishing scam can cause real damage. No one who communicates over the Internet is immune.

就像每个人都一次又一次地感冒一样,遭受网络攻击的风险是很常见的。 复杂的社交工程攻击或缺乏语法的电子邮件网络钓鱼诈骗都可能造成真正的损失。 没有人可以通过互联网进行交流。

Like proper hand washing and getting a flu shot, good habits can lower your risk of inadvertently allowing cybergerms to spread. Since the new year is an inspiring time for beginning new habits, I offer a few suggestions for ways to help protect yourself and those around you.

像正确洗手和注射流感疫苗一样,良好的生活习惯可以降低您无意间传播网络细菌的风险。 由于新的一年是开始养成新习惯的鼓舞人心的时刻,因此我为保护自己和周围人的方式提供了一些建议。

1.进行跟进 (1. Get a follow-up)

Recognizing a delivery method for cyberattack is getting more difficult. Messages with malicious links do not always come from strangers. They may appear to be routine communications, or seem to originate from someone you know or work with. Attacks use subtle but deeply-ingrained cognitive biases to override your common sense. Your natural response ensures you click.

识别网络攻击的交付方法变得越来越困难。 带有恶意链接的消息并不总是来自陌生人。 它们似乎是例行交流,或者似乎是由您认识或与之合作的人发起的。 攻击使用微妙但根深蒂固的认知偏见来超越您的常识。 您的自然React可确保您单击。

Thankfully, there’s a simple low-tech habit you can use to deter these attacks: before you act, follow-up.

值得庆幸的是,您可以使用一种简单的低技术习惯来阻止这些攻击:在采取行动之前,请采取后续行动。

You may get an email from a friend that needs help, or from your boss who’s about to get on a plane. It could be as enticing and mysterious as a direct message from an acquaintance who sends a link asking, “Lol. Is this you?” It takes presence of mind to override the panic these attacks prey on, but the deterrent itself is quick and straightforward. Send a text message, pick up the phone and call, or walk down the hall and ask, “Did you send me this?”

您可能会收到需要帮助的朋友的电子邮件,也可能会收到即将上飞机的老板的电子邮件。 就像一个熟人发送一个链接询问“大声笑。 这是你吗?” 要想尽办法消除这些攻击所引起的恐慌,就需要思想,但是威慑本身是快速而直接的。 发送短信,接电话和打电话,或者走到大厅问:“您发给我这个吗?”

If the message is genuine, there’s no harm in a few extra minutes to double check. If it’s not, you’ll immediately alert the originating party that they may be compromised, and you may have deterred a cyberattack!

如果消息是真实的,则再过几分钟再仔细检查也不会有任何危害。 如果不是这样,您将立即向发起方发出警报,告知他们可能遭到入侵,并且您可能阻止了网络攻击!

2.使用并鼓励其他人使用端到端加密消息 (2. Use, and encourage others to use, end-to-end encrypted messaging)

When individuals in a neighborhood get the flu shot, others in that neighborhood are safer for it. Encryption is similarly beneficial. Encourage your friends, coworkers, and Aunt Matilda to switch to an app like Signal. By doing so, you’ll reduce everyone’s exposure to more exploitable messaging systems.

当附近的人感染了流感疫苗后,附近的其他人就更安全了。 加密同样有好处。 鼓励您的朋友,同事和Matilda姨妈切换到Signal等应用程序。 这样,您将减少每个人对更多可利用的消息传递系统的了解。

This doesn’t mean that you must stop using other methods of communication entirely. Instead, think of it  as a hierarchy. Use Signal for important messages that should be trusted, like requests for money or making travel arrangements. Use all other methods of messaging, like SMS or social sites, only for “unimportant” communications. Now, if requests or links that seem  important come to you through your unimportant methods, you’ll be all the more likely to second-guess them.

这并不意味着您必须完全停止使用其他通信方法。 而是将其视为层次结构。 使用Signal表示应受信任的重要消息,例如要求付款或安排旅行。 仅对“无关紧要”的通信使用所有其他消息传递方法,例如SMS或社交网站。 现在,如果通过不重要的方法向您提出了看起来很重要的请求或链接,您将更有可能进行第二次猜测。

3.请勿将脏的USB插头插入*** (3. Don’t put that dirty USB plug into your ***)

You wouldn’t brush your teeth with a toothbrush you found on the sidewalk. Why would you plug in a USB device if you don’t know where it’s been?! While we might ascribe putting a random found USB drive in your computer to a clever exploitation of natural human curiosity, we’re no sooner likely to suspect using a public phone-charging station or a USB cable we bought ourselves. Even seemingly-innocuous USB peripherals or rechargeable devices can be a risk.

您不会用在人行道上发现的牙刷刷牙。 如果不知道它去哪里了,为什么还要插入USB设备? 虽然我们可能会将随机找到的USB驱动器归因于对人类自然好奇的巧妙利用,但我们再也不会怀疑会使用公用电话充电站或我们自己购买的USB电缆 。 甚至看似无害的USB 外设或可充电设备也可能有风险。

Unlike email and some file-sharing services that scan and filter files before they reach your computer, plugging in via USB is as direct and unprotected as connection gets. Once this connection is made, the user doesn’t need to do anything else for a whole host of bad things to happen. Through USB connections, problems like malware and ransomware can easily infect your computer or phone.

与电子邮件和一些文件共享服务在文件到达计算机之前对其进行扫描和过滤的电子邮件和其他文件共享服务不同,通过USB插入与连接一样直接且不受保护 。 建立此连接后,用户无需执行任何其他操作即可发生大量不良事件。 通过USB连接,恶意软件和勒索软件等问题很容易感染您的计算机或电话。

There’s no need to swear off the convenience of USB connectivity, or to avoid these devices altogether. Instead of engaging in questionable USB behavior, don’t cheap out on USB  devices and cables. If it’s going to get plugged into your computer, ensure you’re being extra cautious. Buy it from the manufacturer (like the Apple Store) or from a reputable company or reseller with supply chain control. When juicing up USB-rechargeables, don’t plug them into your computer. Use a wall charger with a USB port instead.

无需宣誓USB连接的便利性,也不必完全避免使用这些设备。 不要搞乱USB行为,不要便宜USB设备和电缆。 如果要插入计算机,请确保格外小心。 从制造商(如Apple Store)或有信誉的公司或具有供应链控制权的经销商处购买。 充入USB充电电池时,请勿将其插入计算机。 请使用带有USB端口的壁式充电器 。

养成健康的网络安全习惯 (Practice healthy cybersecurity habits)

Keeping  your devices healthy and happy is a matter of practicing good habits. Like battling the flu, good habits can help protect yourself and those around you. Incorporate some conscientious cybersecurity practices in your new year resolutions - or start them right away.

保持设备健康快乐是练习良好习惯的问题。 就像与流感作斗争一样,良好的习惯可以帮助保护自己和周围的人。 将一些认真的网络安全实践纳入您的新年决议中-或立即开始实施。

Have a safe and happy holiday!

祝您假期愉快!

翻译自: https://www.freecodecamp.org/news/healthy-habits-for-good-cybersecurity/

网络安全习惯

本文来自互联网用户投稿,该文观点仅代表作者本人,不代表本站立场。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。如若转载,请注明出处:http://www.mzph.cn/news/390944.shtml

如若内容造成侵权/违法违规/事实不符,请联系多彩编程网进行投诉反馈email:809451989@qq.com,一经查实,立即删除!

相关文章

attr和prop的区别

由于prop(property的缩写)和attr(attribute的缩写)翻译成汉语,均有“特性、属性”等意思的原因,导致大家容易混淆分不清。 (1)在处理自定义时属性时,用attr(),若用prop(),则结果为undefined; (2)DOM固有属性&#xff0…

15行Python代码,帮你理解令牌桶算法

在网络中传输数据时,为了防止网络拥塞,需限制流出网络的流量,使流量以比较均匀的速度向外发送,令牌桶算法就实现了这个功能,可控制发送到网络上数据的数目,并允许突发数据的发送。 什么是令牌 从名字上看令…

在Java中,如何使一个字符串的首字母变为大写

问题:在Java中,如何使一个字符串的首字母变为大写 我使用Java去获取用户的字符串输入。我尝试使他们输入的第一个字符大写 我尝试这样: String name;BufferedReader br new InputStreamReader(System.in);String s1 name.charAt(0).toUppercase());…

在加利福尼亚州投资于新餐馆:一种数据驱动的方法

“It is difficult to make predictions, especially about the future.”“很难做出预测,尤其是对未来的预测。” ~Niels Bohr〜尼尔斯波尔 Everything is better interpreted through data. And data-driven decision making is crucial for success in any ind…

javascript脚本_使用脚本src属性将JavaScript链接到HTML

javascript脚本The ‘src’ attribute in a tag is the path to an external file or resource that you want to link to your HTML document.标记中的src属性是您要链接到HTML文档的外部文件或资源的路径。 For example, if you had your own custom JavaScript file named …

阿里云ESC上的Ubuntu图形界面的安装

系统装的是Ubuntu Server 16.04 64位版的图形界面,这里是转载的一个大神的帖子 http://blog.csdn.net/dk_0228/article/details/54571867, 当然自己也再记录一下,加深点印象 1.更新apt-get 保证最新 apt-get update 2.用putty或者Xshell连接远…

leetcode 1269. 停在原地的方案数(dp)

示例 1: 输入:steps 3, arrLen 2 输出:4 解释:3 步后,总共有 4 种不同的方法可以停在索引 0 处。 向右,向左,不动 不动,向右,向左 向右,不动,向…

JavaScript Onclick事件解释

The onclick event in JavaScript lets you as a programmer execute a function when an element is clicked.JavaScript中的onclick事件可让您作为程序员在单击元素时执行功能。 按钮Onclick示例 (Button Onclick Example) <button onclick"myFunction()">C…

近似算法的近似率_选择最佳近似最近算法的数据科学家指南

近似算法的近似率by Braden Riggs and George Williams (gwilliamsgsitechnology.com)Braden Riggs和George Williams(gwilliamsgsitechnology.com) Whether you are new to the field of data science or a seasoned veteran, you have likely come into contact with the te…

VMware安装CentOS之二——最小化安装CentOS

1、上文已经创建了一个虚拟机&#xff0c;现在我们点击开启虚拟机。2、虚拟机进入到安装的界面&#xff0c;在这里我们选择第一行&#xff0c;安装或者升级系统。3、这里会提示要检查光盘&#xff0c;我们直接选择跳过。4、这里会提示我的硬件设备不被支持&#xff0c;点击OK&a…

什么是GraphQL? 普通神话被揭穿。

I love talking about GraphQL, especially with people who have been working with GraphQL or thinking of adopting GraphQL. One common question people have is why someone would want to move to GraphQL from REST. 我喜欢谈论GraphQL&#xff0c;特别是和那些一直在…

在Spring Boot里面,怎么获取定义在application.properties文件里的值

问题&#xff1a;在Spring Boot里面&#xff0c;怎么获取定义在application.properties文件里的值、 我想访问application.properties里面提供的值&#xff0c;像这样&#xff1a; logging.level.org.springframework.web: DEBUG logging.level.org.hibernate: ERROR logging…

连接sqlexpress

sqlexpress在visualstudio安装时可选择安装。   数据源添加 localhost\sqlexpress window身份认证即可。转载于:https://www.cnblogs.com/zjxbetter/p/7767241.html

在Python中使用Seaborn和WordCloud可视化YouTube视频

I am an avid Youtube user and love watching videos on it in my free time. I decided to do some exploratory data analysis on the youtube videos streamed in the US. I found the dataset on the Kaggle on this link我是YouTube的狂热用户&#xff0c;喜欢在业余时间…

Win下更新pip出现OSError:[WinError17]与PerrmissionError:[WinError5]及解决

环境&#xff1a;Win7 64位&#xff0c;python3.6.0 我在准备用pip装东西的时候&#xff0c;在cmd里先更新了一下pip&#xff0c;大概是9.0.1更新到9.0. 尝试更新pip命令&#xff1a; pip install --upgrade pip 更新一半挂了 出现了 OSError:[WinError17] 与 PerrmissionError…

老生常谈:抽象工厂模式

在创建型模式中有一个模式是不得不学的,那就是抽象工厂模式(Abstract Factory),这是创建型模式中最为复杂,功能最强大的模式.它常与工厂方法组合来实现。平时我们在写一个组件的时候一般只针对一种语言,或者说是针对一个区域的人来实现。 例如:现有有一个新闻组件,在中国我们有…

ogc是一个非营利性组织_非营利组织的软件资源

ogc是一个非营利性组织Please note that freeCodeCamp is not partnered with, nor do we receive a referral fee from, any of the following providers. We simply want to help guide you toward a solution for your organization.请注意&#xff0c;freeCodeCamp不与以下…

数据结构入门最佳书籍_最佳数据科学书籍

数据结构入门最佳书籍Introduction介绍 I get asked a lot what resources I recommend for people who want to start their Data Science journey. This section enlists books I recommend you should read at least once in your life as a Data Scientist.我被很多人问到…

函数式编程概念

什么是函数式编程 简单地说&#xff0c;函数式编程通过使用函数&#xff0c;将值转换成抽象单元&#xff0c;接着用于构建软件系统。 面向对象VS函数式编程 面向对象编程 面向对象编程认为一切事物皆对象&#xff0c;将现实世界的事物抽象成对象&#xff0c;现实世界中的关系抽…

在Java里面怎么样在静态方法中调用getClass()?

问题&#xff1a;在Java里面怎么样在静态方法中调用getClass()&#xff1f; 我有一个类&#xff0c;它必须包含一些静态方法&#xff0c;在这些静态方法里面我需要像下面那样调用getClass() 方法 public static void startMusic() {URL songPath getClass().getClassLoader(…