1 / 4100%
The concern of whaling and phishing are very relevant. At Rose
Padgett we strongly advise against the connections to a non-
secure open local area network. Realistic business associates
across world seeks ways of which things can be done swiftly and
efficiently especially when traveling. However, the need of having
things done in a timely manner should not cause the negligent of
security. Conducting business over an unsecure network increases
the probability of a whaling attack by 2/3. The increases of the
likely hood of a phishing attack by ¾ . Statistically despite the
evidence that shows the risk associated with connecting to
unsecure networks while traveling abroad or locally more than
60 percent of the time employees connect to open LANs
regardless rather it’s a company cell phone or laptop before
landing, just after arriving to the hotel or even at the airport (H,
2018). Increases the probably of whaling and spear phishing
attack by using open and unsecure LAN’s which is highly
discouraged due to the heightened chance of loss of integrity and
authenticity and possible interception.
((THE CONTENT) the position to be taken on the issues
(intentions, beliefs, attitudes)
Spear phishing is a targeted form of phishing in which fraudulent
emails target specific organizations in an effort to gain access to
confidential information (Micro, 2015). The attacker generally
elect an employee whom persona and profile has been studied,
also found to have a substantial amount of access throughout
companies confidential, sensitive information and data. Whaling
attacks are very similar in essence of the. Whaling is a form of
social engineering that requests victims to take actions such as:
• Clicking on a link that has malware
• Requesting funds to be transferred to the attacker’s account
• Integration presented in a harmless matter to gather data for
information
(Micro, 2015).
Open Wi-Fi often is associated with a user agreement or a
consent box. A lot of time of which explicitly explained terms and
conditions for utilization that are not read in its entirety. With-in
that actual agreement there are several agreements which may
include collecting your data, device network activity. Also, while
on that open network or more alarming anyone could sit in-
between the receiving and sending points to intercept the
message. While the message is being sent the third party whom
intercepted the communication prior to it reaching its intent
destination (Murphy, 2014). The interception. Of communication
when dealing with sensitive and confidential information cause
the loss of origin and truthfulness of its content could be
compromised.
There can only be preventive measures and none of which
are fool’s proof (EC Council). Such as not connecting to a
network for extended period of time, Powering off your devices
whenever possible. Even taking such precaution does not fully
eliminate the actual possibility of a Cyber-Attack. All measures
that are suggested to prevent human error and are intended to
help lessen the probability of attacks. Again it is strongly Advised
NOT to connect to open and unsecure Local Area Networks
especially when traveling abroador loc
It is suggested that the all are applied when ever applicable.
probalities of cyberattacks while on LANs and traveling both
locally and abroad are less likely :
• Powering off your devices such as your phone, tablet, and
or laptop when not in use
• Turn of auto connect to WI-FI, change your setting to ask
for confirmation
• Ensure that your devices are using MFA (Multi-Factor -
Authentication) and enable at the time of travel
• Ensure that your anti malware and software are up to date
with the latest version (CYBERSECURITY WHILE
TRAVELING, 2019)
• VPN's-use of internal virtual private network
ADDITIONAL SUGGESTED AND PREVENTIVE MESSURE FOR
TRAVELING ABROAD ARE A LITTLE MORE EXTENSIVE:
• Tip – If you use WIFI keep track of all accounts accessed
and change passwords on return using a different device.
• Tip – If a foreign data/phone network is a must then this
should be a throw away phone with as little personal or
private data on it as possible. All accounts used on this
phone should immediately have passwords changes through
other methods upon return. The phone should be wiped and
really not used again unless it can be completely reimaged
by the provider (Murphy, 2014).
((Closing Statements, Conclusion ) recommendations which restate
key points and provide suggested resolutions or actions.)
Associate’s that travel should allot a time frame of which
grants enough to for a briefing at the physical location. Planning
gives time for travel and the ability for communication over a
trusted connection at the second physical location of the
company. This would help to eliminate an high percentage of risk
with a connecting to a network that may have not been
compromised. This would be the suggestion with the best
outcome. To Conclude this contains suggestion for safer measures
to whom are unable to resist the impulse or have an urgent need
to connect to LAN’s. In good conscious that with the education,
training and overall knowledge of how cyber-attacks work the
advice NOT to connect should be followed first to help maintain
integrity and authenticity of communication of both clients and
employees .
Works Cited
CYBERSECURITY WHILE TRAVELING
. (2019, Oct). Retrieved from
CISA.GOV:
https://www.cisa.gov/sites/default/files/publications/Cybersecurity-
While-Traveling-Tip-Sheet-122019-508.pdf
H, P. (2018, aug 28).
30+plus CyberSecurity for travelers
.
Retrieved from INFOSEC:
https://resources.infosecinstitute.com/topic/30-cybersecurity-tips-
for-travelers/#gref
Micro, T. (2015, Sept 24).
Spear Phishing 101: What is Spear
Phishing?
Retrieved from
https://www.trendmicro.com/vinfo/us/security/news/cyber-
attacks/spear-phishing-101-what-is-spear-phishing
Murphy, B. (2014, NOVEMBER 4).
13 Mobile Device Security Tips
for Foreign Business Travelers to China
. Retrieved from Red Zone
Technology : https://www.redzonetech.net/blog/13-mobile-device-
security-tips-foreign-business-travelers-china/
EC-Council (2016).
Certified Secure Computer User (CSCU)
Version 2 eBook
(2nd Edition). I nternational Council of E-
Commerce Consultants (EC Council).
https://evantage.gilmoreglobal.com/books/9781635671810
Students also viewed