They are the classic cyber malware: Viruses and Trojans nest unnoticed in computers and steal personal data and/or infect e-mails. Every day, there are hundreds of thousands of new versions of this malicious software, from which users could protect themselves with up-to-date anti-virus programs. The problem is that half of all malware still goes unnoticed.
They can lurk everywhere: manipulated websites that transfer malware to the computer unnoticed by the user. In 2018 there are said to have been more than 145 million such websites, which often spy on data via outdated browser plug-ins. These processes, known as "drive-by downloads", are among the greatest threats due to their rapid spread. Users can protect themselves by regularly updating the plug-ins (e.g. Flash, Java, Acrobat Reader, etc.).
The number three Internet threat comes from websites where cyber-gangsters have injected malicious code to spy on sensitive login data. According to Bitkom, not only websites but also apps for mobile devices are affected by this "SQL injection". On the computer, one protects oneself by switching off Javascript and Flash. Apps should always only be downloaded from the official app stores, because this promises better protection.
Cyber criminals combine computers that they have captured into so-called "botnets". In this way they spy on personal data or use these networks for spam and phishing mails or dangerous mass attacks on IT systems ("denial of service attacks"). In addition to computers, smartphones and other devices such as W-LAN routers are increasingly affected. PAYBACK Security advises users to use up-to-date software, virus scanners and firewalls to protect themselves.
If individual network services are flooded with massive requests to bring them to a collapse, this is known as a "denial of service attack" (DoS). They are executed by botnets, but also by individual computers.
Three-quarters (75%) of all e-mails are of unwanted origin, often hiding infected files or dangerous links to malware behind apparently serious bills or information. Users should therefore use their providers' spam filters and not open attachments or click on links in the case of e-mails of unknown origin. Users should also be careful with social media spam, which uses similar tricks.
"Phishing" is used to steal personal data (identity, login, etc.) from users - this can include forged links to online merchants or payment services where victims are asked to disclose their data. It is advisable to use common sense: Companies would never ask for access data by e-mail or ask to enter confidential information on the net. Emails with such requests and suspicious attachments should be deleted immediately.
Virus construction kits are called "exploit kits" by experts - they enable even inexperienced users to launch automated attacks with malicious software.
Danger not only comes from the network, but also from the loss of data media. If devices are lost through theft or accidental loss, private data can fall into the wrong hands. Therefore, if possible, devices should be secured with passwords and data should be encrypted. If possible, content should (can) be deleted via web remote control.
Cyber attacks often result in the loss of private data, such as credit card information or intimate photos. The consequences can be devastating for the user.