Sunday, September 18, 2011

Facebook Security

This week I thought I would take some time to talk about Facebook. Facebook is so commonly used, it is no surprise that hackers would target it and the users on it. The question is, what do they want and how do they get it?

The short answer, they want access to your account. There are several reasons for this. Many people have weak passwords and weak security settings. Until recently, Facebook did not help much in securing your profile.

Hackers want to use your account to:

  1. Spam
  2. Spread Viruses
  3. See your personal information
  4. Much more
Secure Yourself

There are several things you can do to protect yourself. The three main things are strong password practices, Facebook security settings, and minimizing the amount of personal information on available.

Passwords should not be weak. They should be hard to guess, and meet the requirements of hard passwords.  It should also be unique in that the password is not used for other accounts. As always, don't ever tell anyone your password. Getting your password is the easiest way for hackers to access your account. For more information on passwords, see my earlier blog post.

You should be careful about what programs or apps you give permissions to.

Facebook offers security settings under Account, then Account Settings, then Security. I encourage you to explore all of these settings, but I will go over the ones I think are most important.  

  • Secure Browsing. You should enable this. This basically encrypts your session. Without this, everything you do goes over the wire in "clear text", which means anyone can watch what your doing. Hackers can also "hijack" your account if your on a public network. This allows them access to your account without even a password. 
  • Activate Login notifications and you will know whenever someone accesses your account. You can also activate login approval to add an extra layer of security. 
  • You should periodically check Active Sessions. This will let you know who is currently logged on and if you don't recognize it, you can end the session.
For privacy, there are a few things you can do. The first is to realize that anything you put on the web can be viewed by other people. So keep that in mind when posting things on Facebook. On that subject, remember that prospective employers will often check your Facebook. The next is limit the information available on Facebook. Keep your phone number, address and other information that can be used against you off there. Lastly, do not go around clicking every link you see. There are many malicious links out there.

I've Been Hacked!

The section is what to do if your account does get hacked. 

First, end all active sessions as described above. Next change your email password and your Facebook password. Why your email password? It is possible that a hacker could have your email password and will just reset your Facebook password after you change it.

Next, if you haven't already, follow the tips above about the Security Settings.

Erase anything that was posted on your wall that you did not put there. If you see these "bad" links on your friends walls, first Report the link, then let your friend know about it.

Last, scan your computer for viruses and clean them.

There is much more you can do to secure your Facebook account and protect yourself. Check this out to start: 


As always, feel free to contact me with questions.

No comments:

Post a Comment