I am not here to take sides.
From time to time, people lose money to fraudsters via their bank account or digital wallets.
So, what is Phishing?
This is Wikipedia's definition:
I will explain better.
They start by sending you an email, instant message or text message that is disguised as if it is coming from your email provider, your bank, a social media platform, the government or an authority site.
But when done by professionals, many people (even well educated CEOs) easily fall for it.
Phishing emails and text messages often trick you into clicking on a link or opening an attachment.
- Claim there’s a problem with your account or your payment information
- Say you must confirm some personal information
- Include a fake invoice
- Want you to click on a link to make a payment
- Offer a coupon for free stuff
Here is a common example:
Let's say you use GTB.
You may receive an innocent looking email from GTBank (fake).
(1) Click a link
(2) Download an innocent looking document
If you click the link, you will be redirected to a site that looks exactly like GTBank where you will be asked to provide some important information...
They probably won't ask for it directly.
E.g. To get your password, they can tell you to change your password.
Once you supply those details, BINGO!
They got you.
In many cases, you won't even know you have exposed your details to scammers.
The second format is more tricky.
This is the one where you are told to download an innocent looking document like a tax receipt, an invoice or bank statement.
These files can be in Jpeg, png, Pdf, html or zip formats.
It is a hacking document (known as a keylogger) that collects all the passwords you type with your keyboard and sends it to the scammers who own the file.
I only used an EMAIL instance for illustration purposes and because it is the most common.
Majority of people who lose the money in their digital wallets or bank accounts have mistakenly been exposed to phishing one time or the other without being aware.
So, How Can You Protect Yourself?
Second factor authentication is a two-step verification process in which you
The first verification is your login details (e.g username and password)
The second verification is a code sent to your email address or phone number.
Don't say it won't happen to you.
Activate two or second factor authentication on all your accounts within the next 24 hours.
The information is available on Google.
TWO: Do not click any link or download any document coming from a bank, government etc for any reason.
Even if it looks safe, just don't.
Anytime you are doing this, always ensure that there is a padlock showing on your browser which signifies you are on a secured site.
Then try again on a different browser or try again later.
THREE: Use a good security software on your computer - Majority of people don't use security software on
You are just putting yourself out there as a prey to scammers.
A very powerful security software helps you to deal with old or new security threats.
There are many of them out there.
Just don't use free security software.
Get the windows version here for just N4500 only (One year) - pathng.com/eset45
Get the Android version (for your phone) here for N2500 only (One year) - pathng.com/eset25
It is simple wisdom to protect yourself.
I know many will read this and do nothing but a word is enough for the wise.
I hope this helps.