Are your passwords stored securely?
1 August 2019
Smart Home Automation
Information Security
The use of malware designed to harvest consumers’ digital data – known as password stealers – has seen a significant rise in 2019. According to Kaspersky’s data, the number of users targeted by the stealers peaked from less than 600 000 in the first half of 2018 to over 940 000 during the same period in 2019.
Password Stealing Ware (PSW) is a major weapon in the cybercriminals’ toolkit to sabotage users’ privacy. This malicious type of software grabs data directly from users’ web browsers using various methods. Quite often, this information is sensitive and includes access details for online accounts as well as financial information – like saved passwords, autofill data and saved payment card details.
In addition, some families of this type of malware are designed to steal browser cookies, user files from a specific location (for example, a user’s desktop) as well as app files, such as messenger services. One of the most widespread stealer Trojans was multifunctional Azorult, detected on the computers of more than 25% of all users who encountered Trojan-PSW type malware in the examined period.
“Modern consumers are increasingly active online and understandably rely on the Internet to carry out many tasks in their daily lives. This fills their digital profiles with more and more data and details and makes them a lucrative target for criminals as they could be monetised in numerous ways afterwards. By securely storing passwords and credentials, consumers can use their favourite online services in confidence that their information will not be put at risk. This should also be supported by installation of a security solution as one can never be too careful,” notes Alexander Eremin, security researcher at Kaspersky.
Kaspersky recommends that consumers follow this advice to ensure their passwords and other credentials remain secure:
•Do not share passwords or personal information with friends or family as they could unwittingly make them vulnerable to malware. Do not post them on forums or social media channels.
•Always install updates and product patches to ensure protection from the latest malware and threats.
•Start using a reliable security solution that is designed to securely store passwords and personal information, including passports, driver's licences and bank cards.
Read more about how cybercriminals use malware to steal passwords and other confidential information on www.securelist.com
Further reading:
Zero-touch automation certificate life cycle management loop
Products & Solutions Information Security Security Services & Risk Management
ManageEngine completes the certificate life cycle management loop with CA-agnostic, zero-touch automation. New post-deployment automation in Key Manager Plus removes the last manual step in certificate renewal as lifespans gradually shrink to 47 days
Read more...
Sophos launches AI-native cybersecurity defence system
News & Events Information Security Security Services & Risk Management
Built for a threat landscape reshaped by AI, Sophos Fusion unites security operations, endpoint, network security, identity, email, and cloud into one defence system that prevents, detects, investigates, and responds at AI speed.
Read more...
Reduce nuisance alarms in high-mount outdoor detection
OPTEX
Perimeter Security, Alarms & Intruder Detection Smart Home Automation Facilities & Building Management
OPTEX has launched the TXI Series, a range of high-mount outdoor curtain detectors designed to create an invisible curtain barrier along a building’s façade and to address the challenge of balancing reliable human detection with nuisance alarm reduction in external security.
Read more...
Uninspected rooftop solar a potential disaster
Fire & Safety Smart Home Automation Power Management
Hotspots are areas of localised heat that can ignite everything from bird nests to dry grass blown onto the panels. They have been flagged by the insurance industry as being an existential threat to solar arrays.
Read more...
Preventing and suppressing lithium fires
SMART Security Solutions Technews Publishing
Editor's Choice Fire & Safety Security Services & Risk Management Smart Home Automation
SMART Security Solutions asked Clyde Becker, director of Pyro Brand, for some insight into the mechanics of lithium-ion battery fire risks, especially thermal runaway, and to define a comprehensive, layered approach to fire detection and suppression.
Read more...
How ‘TikTok Brain’ is breaking legacy security training
Training & Education Information Security
Between doomscrolling, rapid-fire Slack notifications, and algorithmic video feeds, the average employee is trapped in an aggressive, highly engineered dopamine loop that automatically shuts down in traditional training situations.
Read more...
Quantum is coming
Infrastructure Information Security
The global cybersecurity landscape is approaching a turning point as quantum computing accelerates faster than most organisations realise; the shift is not a distant, theoretical concern, but a present-day business risk that demands immediate action.
Read more...
Outpacing cyberthreats in the age of AI
SMART Security Solutions Technews Publishing
News & Events Information Security
SMARTpod talks to Fred Streefland, Global Field CISO for EMEA at Check Point Software Technologies, about framing modern cyber defence around adaptability, rapid decision-making, and the OODA loop adapted for cybersecurity.
Read more...
Sophos establishes South African legal entity to strengthen local operations
News & Events Information Security
Global cybersecurity company, Sophos, has announced the formation of its local legal entity, which will support local invoicing, partner enablement, compliance requirements and expanded regional investment.
Read more...
71% of organisations suffered an identity breach
News & Events Information Security
The State of Identity Security 2026 report from Sophos finds human error and poor non-human identity management are the root causes of most attacks, as agentic AI accelerates the risk.
Read more...