Iqine Kangakanani Iphasiwedi Yami?

Faka i-GoPhish Phishing Platform ku-Ubuntu 18.04 ku-AWS

Iqine Kangakanani Iphasiwedi Yami?

Ukuba nephasiwedi eqinile kungaba umehluko phakathi kokugcina imali ku-akhawunti yakho yasebhange noma cha. Iphasiwedi isebenza njengendawo yokufinyelela eyinhloko kubunikazi bakho be-inthanethi, njengoba kwenza okhiye bakho bendlu. Sonke sinokuningi okuyimfihlo Imininingwane ezigcinwe kuma-akhawunti ethu e-inthanethi esifisa ukuwagcina ephephile. Kodwa-ke, iningi layo livikelwe kuphela ngamaphasiwedi abuthakathaka.

Yingakho izigebengu ze-inthanethi zihlala zibheke izindawo ezibuthakathaka lapho zingase zidale khona iphasiwedi yakho futhi bathole ukufinyelela empilweni yakho yedijithali. Ukuphulwa kwedatha kanye nokwebiwa kobunikazi kuyanda, namagama ayimfihlo aputshuziwe ngokuvamile okuyisizathu. 

Amagama ayimfihlo angase asetshenziselwe ukuqalisa imikhankaso yolwazi olunganembile ngokumelene nezinhlangano, ukusizakala ngolwazi lwezezimali lwabantu ukuze kuthengwe, nokulalela abantu abasebenzisa amakhamera okuvikela axhumeke kwi-WiFi uma amasela entshontshe imininingwane. 

Lesi sihloko sibhalelwe ukusiza ekuqondeni kwakho ukuphepha kwephasiwedi.

Hlola Amandla Ephasiwedi yakho manje ngaleli thuluzi lamahhala lokuhlola amandla ephasiwedi:

Iphasiwedi eqinile yileyo ongeke uyiqagele noma uyiqhekeze usebenzisa ukuhlasela kwe-brute force. Amagama ayimfihlo aqinile ahlanganisa inhlanganisela yofeleba abakhulu nabancane, izinombolo nezimpawu ezikhethekile. Izigebengu ze-inthanethi ngokuvamile zisebenzisa amakhompuyutha anamandla ukwenza ukuhlasela kwe-brute force ukuze baqhekeze amaphasiwedi abuthakathaka, futhi amagama ayimfihlo amafushane futhi kulula ukuwaqagela avame ukuqhekeka ngemizuzu.  

Ukuhlolwa kwamandla ephasiwedi ye-UIC iyithuluzi ongalisebenzisa ngokuqondile esipheqululini sakho, mahhala. 

Ungasebenzisa leli thuluzi ukuhlola amandla ephasiwedi yakho. 

Leli khasi liqukethe izilawuli nezincazelo ukuze uqalise. Ukusebenzisa lokhu kulula ukubona ukuthi ungawathuthukisa kanjani amandla ephasiwedi yakho ngesikhathi sangempela.

Ingabe kubalulekile ukwazi ukuthi ivikeleke kangakanani iphasiwedi yami?

Eminyakeni yamuva nje, imbulunga yonke iye yabona abagebengu besebenzisa amakhadi okuthenga ngesikweleti, ama-akhawunti ezindiza nokwebiwa komazisi.

Iyiphi indlela engcono kakhulu yokubhekana nalolu songo olukhulayo? Ukuze sivikele amawebhusayithi ethu, amabhulogi, ama-akhawunti enkundla yezokuxhumana, amakheli e-imeyili, namanye ama-akhawunti, sakha amagama ayimfihlo aqinile. Umbuzo olandelayo uthi: wazi kanjani ukuthi iphasiwedi yakho iqine ngokwanele ukukugcina uphephile ezinsongweni zangaphandle?

Iphasiwedi eqinile iwukhiye wokuvikela ubukhona bakho ku-inthanethi, futhi kungakhathaliseki ukuthi izindonga zakho ziwugqinsi futhi ziqine kangakanani, uma isikhiya somnyango singavulwa kalula khona-ke ukuba khona kwakho ku-inthanethi kuzoba sengozini.

Indlela yokudala iphasiwedi eqinile?

Nazi ezinye zezindlela ezihamba phambili zokudala amaphasiwedi avikelekile:

  • Igama eliyimfihlo kufanele okungenani libe nezinhlamvu eziyi-16 ubude; ngokocwaningo lwethu lwamaphasiwedi, ama-45 % asebenzisa amagama ayimfihlo ezinhlamvu eziyisishiyagalombili noma ngaphansi, angavikeleke kancane kunamagama ayimfihlo ezinhlamvu eziyi-16 noma ngaphezulu.
  • Iphasiwedi kufanele yenziwe ngezinhlamvu, izinombolo, nezinhlamvu ezikhethekile.
  •  Akuwona neze umqondo omuhle ukwabelana ngephasiwedi nanoma ubani omunye.
  • Alukho ulwazi lomuntu siqu mayelana nomsebenzisi, njengekheli lakhe noma inombolo yocingo, okufanele lufakwe kuphasiwedi. Kungumqondo omuhle futhi ukushiya noma yiluphi ulwazi olungase lutholakale ezinkundleni zokuxhumana, njengamagama ezingane zakho noma ezilwane ezifuywayo. 
  • Azikho izinhlamvu ezilandelanayo noma amadijithi okufanele zisetshenziswe kuphasiwedi.
  • Ungalokothi usebenzise igama elithi “iphasiwedi” noma uhlamvu olufanayo noma inombolo kabili kuphasiwedi.

Zama ukusebenzisa umushwana omude ohlobene nawe. Lo musho akumele ubandakanye ulwazi olutholakala esidlangalaleni.

Nazi izibonelo ezimbalwa:

  • I-TheDogWentDownRoute66
  • AllDogsGoToHeaven1967
  • I-Catch22CurveBalls

buthakathaka vs iphasiwedi eqinile

Yini eyenza iphasiwedi ibe namandla?

Ubude (uma buya kuba ngcono), inhlanganisela yezinhlamvu (osonhlamvukazi abancane nabancane), amadijithi, nezimpawu, akukho ukuxhumana nolwazi lwakho lomuntu siqu, futhi awekho amagama esichazamazwi zonke izici ezibalulekile zephasiwedi evikelekile. 

Izindaba ezinhle ukuthi ukuze ufake zonke lezi zimfanelo kumagama-mfihlo akho, awudingi ukubamba ngekhanda uchungechunge olude lwezinhlamvu ezingahleliwe, izinombolo, nezimpawu. Okudingayo amasu ambalwa.

Faka i-GoPhish Phishing Platform ku-Ubuntu 18.04 ku-AWS

Uwenza kanjani ngokuzenzakalelayo amaphasiwedi akho ngokuphephile?

Ngakho-ke unqume iphasiwedi engubude obuphelele, engacacile, futhi ehlanganisa izinhlamvu, izinombolo, nosonhlamvukazi. Usendleleni efanele, kodwa usekude kakhulu nokuphepha okuphelele kwephasiwedi. 

Ngisho noma udala iphasiwedi enhle nende, akusho ukuthi uzoyikhumbula. Sebenzisa ithuluzi elifana ne-Google Password Manager kanye nokuqinisekiswa kwezinto eziningi ukuze uvikele amaphasiwedi akho futhi uwagcine.

Ungasebenzisi iphasiwedi efanayo kaningi

Uma usebenzisa igama-mfihlo elifanayo ku-imeyili, ukuthenga, namanye amawebhusayithi agcina idatha yomuntu siqu ebucayi (noma iwebhusayithi yomphakathi wendawo), manje ubeke zonke ezinye izinsiza zakho engcupheni.

Ungalokothi ubhale phansi amaphasiwedi akho

Kuyalinga ukugcina umkhondo wamaphasiwedi ngendlela yakudala, ikakhulukazi emsebenzini, kodwa lokhu kutholakala kalula. Uma unamaphasiwedi abhalwe phansi, kungcono ukuwagcina ekhiyiwe nokhiye.

Iphasiwedi eyodwa yokubusa wonke (abaphathi bephasiwedi)

Kunezinhlelo zokusebenza ezimbalwa ezigcina ngokuphephile imininingwane yakho. Uma unamaphasiwedi amaningi ongawalandela, umphathi wephasiwedi angagcina izifakazelo zakho zivikelekile. I-Google Password Manager, i-Bitwarden ne-LastPass angamathuluzi amahle okuphatha iphasiwedi. Bayakwazi futhi ukugcina ezinye iziqinisekiso ezifana namakhadi esikweletu, imbewu ye-crypto currency wallet namanothi avikelekile. 

Uma usebenzisa isiphathi sephasiwedi, uzodinga ukusetha iphasiwedi eyinhloko. le phasiwedi eyinhloko izosetshenziselwa ukufinyelela kumphathi wakho wephasiwedi futhi ikunikeze ukufinyelela kuzo zonke iziqinisekiso zakho. Kubalulekile kakhulu ukusetha umushwana wokungena oqinile ohlukile njengephasiwedi yakho eyinhloko. Isibonelo sephasiwedi eqinile yile:

'IPutMyFeetInHotWater@9PM'

Amaphasiwedi akufanele kwabelwane ngawo

Lokhu akunangqondo futhi uma kufanele ngempela udalule igama-mfihlo lakho, qiniseka ukuthi abanye abantu abakulalele noma babheke iphasiwedi yakho.

izinto ezimbili zokufakazela ubuqiniso

Kungani kufanele usebenzise ukuqinisekiswa kwezinto eziningi?

Ukungena ngemvume kwe-ID yomsebenzisi ovamile kanye nephasiwedi kunobuthakathaka obuthile, obunye babo ukuba sengozini kwephasiwedi okungase futhi kubize amabhizinisi izigidi zamadola. Abadlali abanonya bangase basebenzise izinhlelo ezizenzakalelayo zokweqa amaphasiwedi ukuze baqagele inhlanganisela ehlukahlukene yabasebenzisi namaphasiwedi baze bathole ukulandelana okulungile. 

Nakuba ukukhiya i-akhawunti ngemva kwenombolo ethile yemizamo ehlulekile yokungena ngemvume kungasiza ukuvikela inkampani, izigebengu ze-inthanethi zingathola ukufinyelela kusistimu ngezindlela ezihlukahlukene. Yingakho ukuqinisekiswa kwe-multifactor kubaluleke kakhulu, njengoba kungasiza ukwehlisa izingozi zokuphepha.

Umgomo wokuqinisekiswa kwezinto eziningi (i-MFA) ukuhlinzeka ngokuvikela okunezingqimba okwenza ukufinyelela kokuqondisiwe, njengendawo ebonakalayo, idivayisi yekhompyutha, inethiwekhi, noma isizindalwazi, kube nzima kakhulu kumsebenzisi ongagunyaziwe. 

Ngisho noma i-elementi eyodwa igqekeziwe noma iphukile, umhlaseli usenesithiyo esisodwa noma eziningi okumele azinqobe ngaphambi kokufinyelela kulokho okuqondiwe.

Amathuluzi okuvimbela ubugebengu bokweba imininingwane ebucayi enhlangano yakho

Ukuvimbela ukuphinga ukuhlasela kuyisu elisebenza kahle kakhulu lokugwema ukuphulwa kwedatha enhlanganweni. Enye indlela ukusebenzisa amathuluzi okuvimbela ukuhlasela "okungaphambili-kokusongela" njenge GoPhish.

I-GoPhish ingalingisa ukuhlasela kobugebengu bokweba imininingwane ebucayi ukuze iqeqeshe abantu enhlanganweni yakho ukuthi babone ama-imeyili mbumbulu. 

Kungani kuwumqondo omuhle ukusebenzisa ukuvimbela ubugebengu bokweba imininingwane ebucayi amathuluzi?

Uma umhlaseli ethumela osebenza naye ekhasini lokungena elingelona iqiniso futhi agcwalise igama lakhe lomsebenzisi nephasiwedi, khona-ke usenephasiwedi yakhe ebucayi.

Ubugebengu bokweba imininingwane ebucayi buwusongo oluphezulu lokuphepha kwephasiwedi futhi kuncike kungqimba lokuvikela lomuntu lwenhlangano yakho ukuthi luphendule usongo ngendlela efanele.

Ungakwazi ukufaka i-firewall nesofthiwe ye-antispyware emishinini yakho, kodwa ngaphandle kokuthi uqeqeshe abantu bakho, ngeke ube nesiqinisekiso esihle sokuthi amagama ayimfihlo nedatha izogcinwa iphephile.

Faka i-GoPhish Phishing Platform ku-Ubuntu 18.04 ku-AWS

Amathuluzi aphezulu angu-3 okuphatha iphasiwedi:

  1. I-KeePass - Lesi isiphathi sephasiwedi samahhala nesivulekile esikuvumela ukuthi ukhiqize kalula, ulondoloze futhi uphathe wonke amaphasiwedi akho endaweni eyodwa evikelekile. Yenziwa ngendlela oyifisayo kakhulu futhi inikezela ngezici zokuphepha ezithuthukisiwe njengokuqinisekiswa kwezinto ezimbili, ukwenza ngokungahleliwe kwedatha, ukuhlanganiswa nezinsiza eziningi zokugcina amafu, ukusekelwa kolwazi oluningi lwasendaweni, ukusebenza kokuthayipha okuzenzakalelayo kuziphequluli zewebhu kanye nojeneretha wephasiwedi eyakhelwe ngaphakathi.
  2. I-LastPass - Uma ufuna ithuluzi lokuphatha iphasiwedi elisebenziseka kalula elibuye lisekele ukuqinisekiswa kwezinto ezimbili, khona-ke i-LastPass kufanele nakanjani ihlolwe. Inikeza izici eziningi ezinamandla njengesikhala sokugcina esingenamkhawulo samaphasiwedi akho nolunye ulwazi olubucayi, amandla okugcwalisa amafomu okuzenzakalelayo ukuze ukwazi ukugcwalisa ngokushesha amafomu okungena kumawebhusayithi, usekelo lwamadivayisi eselula njengama-smartphone namathebulethi, ukwenza isipele ku-inthanethi nokuvumelanisa. kuwo wonke amadivayisi akho kanye nejeneretha yephasiwedi engakwakhela amaphasiwedi aqinile.
  3. I-Dashlane – Lesi esinye isiphathi sephasiwedi esidumile esinikeza ububanzi bezinto eziwusizo ezifana nekhono lokungena ngokuzenzakalelayo ukuze ungakhumbuli amagama omsebenzisi amaningi namagama ayimfihlo, ukuvumelanisa kwamafu ukuze idatha yakho ihlale ihambisana nesikhathi kuwo wonke amadivayisi akho, ukwesekwa kokuqinisekiswa kwezinto ezimbili (ngemvume yokuthepha okukodwa), ukukhiqiza iphasiwedi esheshayo enezinketho ezithuthukisiwe zokuphepha, isici sokuxhumana esiphuthumayo esivumela abangani noma amalungu omndeni ukuthi afinyelele ulwazi olubalulekile esimweni esiphuthumayo, isikhwama semali sedijithali sokugcina idatha ebucayi yezezimali. njengolwazi lwekhadi lesikweletu ngokuphephile nokunye okuningi.

Njengoba ubona, kunamathuluzi amaningi amakhulu okuphatha iphasiwedi atholakalayo angakusiza ukuthi uphathe kalula wonke amaphasiwedi akho ngendlela evikelekile nelula. Yize lawa mathuluzi ehluka ngokwezici nokusebenza, wonke akwenza kube lula kuwe ukuthi ugcine futhi uphathe wonke amaphasiwedi akho ngokuphephile ngaphandle kokuwakhumbula noma ukuwabhala phansi kumanothi anamathelayo! Ngaphezu kwalokho, iningi lalawa mathuluzi linikeza nezinyathelo ezengeziwe zokuphepha ezifana nokusekelwa kokuqinisekisa kwezinto ezimbili, okuyinhlanganisela nakanjani uma ufuna ukuvikeleka okuqine kakhulu kwedatha yakho ebalulekile. Ngakho-ke khetha leyo evumelana kangcono nezintandokazi zakho nezidingo zakho bese uqala ukuyisebenzisa namuhla ukuze uqiniseke ukuthi ama-akhawunti akho aku-inthanethi azohlala ephephile futhi evikelekile!

Isiphetho

Ingabe kulungile ukushiya amaphasiwedi akho abuthakathaka engathintwa? Cha. Abahlaseli bayayazi imithetho futhi bakhe isofthiwe ukuze bayigweme. Bahlanganisa isizindalwazi samaphasiwedi adumile bese bewaphula besebenzisa izindlela ezihlukahlukene. 

Ukuze uhlale isinyathelo esisodwa ngaphambi kwalezi zigebengu eziku-inthanethi, yenza ukuhlola kokuphepha kwephasiwedi ngekhodi ephezulu yephasiwedi njengoba iphasiwedi yakho ingukhiye wokugcina wokugcina ingosi yakho ifihliwe. Uma othile elandela laba thishanhloko besikole esidala futhi efaka ikhodi emfushane, isihloli samandla ephasiwedi siyimaka njengephasiwedi ebuthaka, esikuvumela ukuthi uyiguqule iye kokuthile okuvikeleke kakhulu. 

Kuyalinga ukucabanga ngalokhu kufakazela ubuqiniso njengesivikelo esiqinile ekuhlaselweni kwe-inthanethi, kodwa empeleni kungelinye ithuluzi lokuvikela ebhokisini lakho lamathuluzi. Ukuqinisekiswa kwezinto eziningi kufanele kufakwe ngendlela efanayo nezinqamuleli zomlilo, okokuvikela ogaxekile, nesinqamuleli amagciwane enkampanini yakho. Isexwayiso esiyisisekelo okufanele senziwe ukuze kugcinwe ulwazi lwakho oluyimfihlo kanye nedatha yeklayenti ivikelekile kubahlaseli bangaphandle uma ubhekene nezinkinga zokuphepha zanamuhla.

Ngaphezu kwalokho, ukufinyelela komsebenzisi ezinhlelweni zenani eliphezulu nedatha kufanele kukhawulelwe. Le ndlela ingasiza ekuvikeleni idatha ebucayi nebalulekile yebhizinisi kukho kokubili ukwephulwa kwangamabomu nokunganaki. Ungase futhi ubeke iso ekuziphatheni komsebenzisi ukuze ubone futhi unciphise ukukhathazeka kwangaphakathi kokusongelwa. 

GoPhish iyinsiza oya kuyo yokuvikela ubugebengu bokweba imininingwane ebucayi nezinye izinhlobo zokuhlola ukungena. Uma ukholelwa ukuthi inkampani yakho isengozini enkulu yemizamo yobugebengu bokweba imininingwane ebucayi, sincoma ukuthi wenze ukuhlola kobugebengu bokweba imininingwane ebucayi.


Faka i-GoPhish Phishing Platform ku-Ubuntu 18.04 ku-AWS