Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

If a Teenager Can Hack the CIA, You Can Be Hacked Too!

b2ap3_thumbnail_cia_hacked_400.jpgWith new threats emerging all of the time, it’s no wonder that cybersecurity is such a major part of any technological endeavor. Your should be using the most powerful security solutions on the market in order to avoid intensive hacks. Despite the emphasis that our society places on security, it takes a high-notoriety hack to truly shake the public into action; for example, what if the Central Intelligence Agency were hacked by a teenager?

Well, that kind of happened. As reported by WIRED, CIA Director John Brennan had his email broken into by the hacker in question. By posing as a Verizon worker, the hacker was able to gain access to Brennan’s AOL email account. The hacker used a targeted spear phishing tactic, where he posed as a worker to trick real Verizon employees into handing over sensitive information about Brennan’s account. Surprisingly, all they needed were the last four digits of Brennan’s bank card.

Then, to add insult to injury, the hacker and his associates changed the password on Brennan’s account, locking him out of it and gaining access to his inbox. Since this was his personal email account, you’d think things wouldn’t be any different from a normal hack; well, the problem here is that Brennan’s inbox contained secret government documents from Brennan’s work email address, which he forwarded to his personal inbox. You don’t need us to tell you that this was a bad move on Brennan’s part. According to WIRED:

After providing the Verizon employee with a fabricated employee Vcode—a unique code that he says Verizon assigns employees—they got the information they were seeking. This included Brennan’s account number, his four-digit PIN, the backup mobile number on the account, Brennan’s AOL email address and the last four digits on his bank card.

“[A]fter getting that info, we called AOL and said we were locked out of our AOL account,” he said. “They asked security questions like the last 4 on [the bank] card and we got that from Verizon so we told them that and they reset the password.” AOL also asked for the name and phone number associated with the account, all of which the hackers had obtained from Verizon.

The most unnerving part of this entire situation is the fact that Brennan wasn’t necessarily at fault for the hack itself. The only thing he did wrong was send sensitive information from his work email to his private email address. The real issue at hand should be the fact that these hackers easily wound up accessing an important government worker’s email address. Simple security questions aren’t going to be enough to stop hackers from accessing your accounts. If they really want to, they can get whatever information they need.

Therefore, taking advantage of several security layers is the best way to protect your accounts. Part of this is practicing a quality password security protocol. You should be using secure passwords with several different types of characters, including upper and lower case letters, numbers, and symbols. Strong passwords help keep hackers from cracking your login credentials.

Another best practice is to integrate two-factor authentication into your account logins. This type of solution requires a secondary credential in addition to your normal username and password, making it much more difficult for hackers to attack your accounts. These credentials are usually sent to your smartphone in the form of a SMS message, an automated voice message, or even to your secondary email account. In other words, hackers need physical access to your device in order to obtain this credential.

You don’t want to be stuck in an embarrassing (or potentially incriminating) situation like the one the CIA Director is in now. Give Total Tech Care a call at 866-348-2602 and ask us about how we can improve your business’s network security.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 25 December 2024
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Business Google Internet Microsoft Email Malware Backup Workplace Tips Innovation User Tips Data Computer Mobile Devices IT Services Hardware Disaster Recovery Android VoIP communications IT Support Business Continuity Smartphones Communication Miscellaneous Smartphone Mobile Device Browser Small Business Network Collaboration Productivity Quick Tips Cybersecurity Users Business Management Phishing Windows Managed IT Services Upgrade Outsourced IT Ransomware Data Backup Windows 10 Server Save Money Data Recovery Cloud Computing Office Windows 10 Passwords Social Media Chrome Virtualization Gadgets Tech Term Saving Money Holiday Microsoft Office Managed IT Services Managed Service Automation Operating System Cybercrime Computers Artificial Intelligence Facebook Hacking Health Internet of Things BYOD Wi-Fi Mobile Device Management Networking IT Support Managed Service Provider Remote Information Spam Alert Office 365 Covid-19 Telephone Systems Information Technology Recovery Employer-Employee Relationship Social Engineering Mobility Router BDR Bandwidth Encryption Big Data Applications Human Resources Law Enforcement Remote Monitoring Mobile Computing Application Data Breach App History Password Money VPN Blockchain How To Paperless Office Remote Computing Government Mobile Office Data Storage Patch Management Private Cloud Managed IT Office Tips Apps Training Gmail Data Security Settings Google Drive Two-factor Authentication Flexibility Avoiding Downtime Mouse Marketing HaaS WiFi Infrastructure IT solutions Voice over Internet Protocol Vulnerability Entertainment Windows 7 Website Budget Word Bring Your Own Device Data Management Servers Work/Life Balance Wireless End of Support Education Physical Security Safety Firewall Sports HIPAA Redundancy Virtual Reality Staff Software as a Service Keyboard Telephone System Apple Machine Learning Social Connectivity Remote Work User Error Conferencing Vendor Meetings Save Time Scam Managed Services Display USB Risk Management Hacker Cleaning Data Protection Employee/Employer Relationship Vendor Management RMM The Internet of Things Lithium-ion battery Shadow IT CES Compliance Legal OneNote Computer Care Current Events Customer Service Internet Exlporer Environment Content Management Telephony Business Technology Access Control Digital Signage Samsung Fax Server PDF Virtual Assistant Authentication Value SaaS Proactive IT Virus Procurement Spam Blocking Electronic Medical Records Workplace Strategy Net Neutrality Best Practice Unified Threat Management YouTube Computer Accessories Update Help Desk Hiring/Firing Network Congestion eWaste Black Market Printing Google Docs Identity Theft Managed Services Provider Document Management Wireless Technology Printer Solid State Drive How to Wearable Technology Bluetooth Downtime Business Intelligence Database Retail Hard Drives Instant Messaging Remote Workers Audit Worker Augmented Reality Data storage Robot Excel Fraud IT Management Processor Automobile Remote Worker Biometrics Botnet IT Consultant Virtual Desktop IT Plan Hard Drive Computing Infrastructure Cryptocurrency Going Green DDoS Humor Unsupported Software SharePoint Computing Comparison Charger Battery Analyitcs Sync Virtual Machine Emails Audiobook File Sharing Consultant PCI DSS Camera 2FA Touchpad Programming Inventory Analytics Fiber Optics Specifications Employee Wire Messaging Evernote Cabling Hypervisor Travel Netflix Politics Two Factor Authentication Advertising Best Available Policy Antivirus Printers WIndows 7 Dark mode Trend Micro Millennials Root Cause Analysis Knowledge Music Smart Office SMS Notifications Windows 8 Wireless Charging HBO Default App Skype Saving Time IT service Procedure Virtual Private Network dark theme Shopping Workforce Data loss Google Search Leadership Troubleshooting Relocation AI Tablet Cables Outlook IT Infrastructure FinTech Start Menu Bing Domains Video Games Project Management User Nanotechnology PowerPoint Social Network Telecommuting Screen Mirroring Windows Media Player Loyalty Investment Worker Commute IaaS Books Maintenance Cortana Frequently Asked Questions Employees Bloatware Digital Signature Mobile Employee/Employer Relationships Windows 10s Experience Scalability Warranty Managing Stress Windows 365 Cast ISP ROI webinar Business Owner Emergency HVAC Video Conferencing Tablets Google Apps Tip of the week Sales NarrowBand Entrepreneur Analysis Professional Services Cameras Bitcoin Public Cloud Shortcuts Employer Employee Relationship Search Administrator Point of Sale Devices Personal Cryptomining Assessment Windows Server 2008 iPhone Shortcut Enterprise Content Management Supply Chain Management Monitoring Cost Management Accountants Tools Batteries MSP Television Microchip Windows 8.1 Social Networking Thought Leadership Digitize Credit Cards Windows Server 2008 R2 Files Password Management Password Manager Customer relationships Chromecast Printer Server Multi-Factor Security Public Computer Running Cable Search Engine Email Best Practices Twitter IT Assessment Manufacturing Regulations Transportation Colocation NIST Uninterrupted Power Supply Memory Business Mangement Computer Tips Smart Tech Managed IT Service Trending Computer Fan Security Cameras Rootkit Virtual CIO Monitor Addiction OneDrive Amazon Biometric Security Recycling Workers Benefits Peripheral Wiring Digital Security Cameras Practices Using Data FENG IBM Reputation Cache Copiers Streaming Media Science Amazon Web Services 5G Criminal Flash Content Smart Technology Safe Mode Quick Tip Tech Support Techology GDPR Ergonomics Laptop Hosted Computing Smartwatch Supercomputer Distributed Denial of Service Customers Customer Relationship Management Wireless Internet Development Online Shopping Software Tips OLED

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code