Firewall News

Top Menu

  • Home
  • Our Blog
  • Contact Us

Main Menu

  • Software Updates
  • Alerts & Bugs
  • Out of the Box
  • Home
  • Our Blog
  • Contact Us

Firewall News

Firewall News

  • Software Updates
    • WatchGuard logo

      TDR 6.0.0 is now integrated into WatchGuard Cloud

      04/01/2021
      0
    • Sophos Logo

      XG Firewall 17.5 MR14 Released

      30/07/2020
      0
    • Sophos Logo

      Sophos Firewall Manager SFM 17.1 MR4 Released

      27/07/2020
      0
    • Sophos Logo

      Sophos Enterprise console - Endpoint Security and Control v10.8.9 for Windows has ...

      16/07/2020
      0
    • Sophos Logo

      Sophos iView v3 MR-2 Released

      07/07/2020
      0
    • Sophos Logo

      SD-RED Firmware 3.0.002 Pattern Update

      06/07/2020
      0
    • Sophos Logo

      XG Firewall 17.5 MR13 Released

      06/07/2020
      0
    • Sophos Logo

      End-of-Life (EoL) announcement for old firmware v17 and v17.1 for XG Firewall

      03/07/2020
      0
    • WatchGuard logo

      Fireware 12.5.4 Now Available

      01/07/2020
      0
  • Alerts & Bugs
    • Sophos Logo

      Advisory: Sophos Central Maintenance scheduled for Saturday, April 2nd, 2022

      29/03/2022
      0
    • Sophos Logo

      Sophos: Important Product Lifecycle Updates

      03/03/2022
      0
    • WatchGuard logo

      WatchGuard Support Alert

      23/02/2022
      0
    • Sophos Logo

      Sophos: Important Product Lifecycle Reminder

      03/02/2022
      0
    • Sophos Logo

      Sophos: Product Lifecycle Information: Extended Support for Windows 7 and Windows Server ...

      31/01/2022
      0
    • Sophos Logo

      End-of-Life (EoL) announcement for Sophos SSL VPN Client

      29/11/2021
      0
    • WatchGuard logo

      WatchGuard: macOS Monterey 12.0.1 Does Not Support the AuthPoint Logon App

      09/11/2021
      0
    • Sophos Logo

      Sophos UTM Manager (SUM) End of Distribution

      04/11/2021
      0
    • WatchGuard logo

      WatchGuard: End of Sale Notice: AP420

      01/11/2021
      0
  • Out of the Box
    • WatchGuard’s Firebox T80 Earns 5-Star Rating in SC Labs Review

      17/11/2020
      0
    • WatchGuard Wins Big in CRN 2020 Tech Innovator Awards

      16/11/2020
      0
    • Coronavirus scams: what to look for and how to stop them

      02/04/2020
      0
    • Dell SonicWALL TZ 300

      Out the Box - Dell SonicWALL TZ 300

      05/07/2016
      0
    • Dell SonicWALL TZ SOHO

      Out the Box - Dell SonicWALL TZ SOHO

      05/07/2016
      0
    • WatchGuard Firebox T50

      WatchGuard Firebox T50

      31/03/2016
      0
    • WatchGuard Firebox M200

      WatchGuard Firebox M200

      31/03/2016
      0
NewsSophos
Home›News›Safe shopping, happy retailing: 3 cybersecurity tips for the holidays

Safe shopping, happy retailing: 3 cybersecurity tips for the holidays

By admin
18/11/2020
1186
0
Share:

As we near the end of this pandemic-hit year, both retailers and shoppers alike hope to find some cheer in the imminent holiday season.

And like it or not, cybercriminals and hackers can’t wait to crash this retail bash, especially when much of it is likely to occur online – an expected 33% year-over-year surge to a record $189 billion!

In light of this, both shoppers and retailers need to be mindful about the cybersecurity risks that await them this holiday season. Here are a few recommendations to help ensure a safer experience for all.

For consumers, think twice before trusting emails and websites for deals

As millions of shoppers venture online, hackers will be on the prowl for sensitive personal and financial data.

Using crafty phishing emails, a common fraudulent theme could be messages that impersonate popular online brands and retailers. Consider exercising these simple, proactive steps to avoid being hooked by such scams.

Before you trust email that appears to be from your favorite retail brands or online platforms, make sure you read the message content thoroughly. If you spot unusual grammar or spelling errors, then you’ve got your first hint.

A large number of phishing sites that came up during Amazon’s recent Prime Day sale serve as fitting examples here. Take a closer look at the senders’ email addresses to further verify your suspicions.

Don’t get too tempted to download a “special festive season pass” or promo codes from suspicious emails – and of course, don’t click on links inside such emails. Fraudulent phishing mails may carry malicious attachments or links to bad URLs that can download zero-day malware or ransomware on your device, putting your personal and financial data at great risk.

If you’re not sure about a particular message, try matching the link in the sender’s email address with the destination address of the link when you hover over it. If they don’t point to the same web address, then you may want to report the email message to your service provider or security vendor so that further distribution among potentially vulnerable online shoppers can be prevented.

And finally, be careful when typing website URLs manually. One errant keystroke and you might end up on a typo-squatted domain (a lookalike yet fake URL – often a phishing site). To avoid such risks, consider a password manager. Not only do password managers remain a good line of defense  against weak passwords, but such tools don’t get tricked by malicious URLs that can be easily overlooked by error-prone human eyes.

For retailers, keep your systems patched, adequately protected, and PCI DSS-compliant

As mentioned, it’s not just shoppers who will be targets of cyber-crime this holiday season. Here’s how retailers can strengthen their cyber-resilience as well.

Start with security training that educates your team about the latest phishing scams, including the types of data that cybercriminals target and examples of crafty scam emails. Furthermore, provide your team with an easy way to report such suspicious email or similar activity to your IT security personnel.

If you’re planning to keep your brick-and-mortar stores open, make sure the operating systems on your point-of-sale computers are patched with the latest security updates. Consider and additional cybersecurity measures such as a capable anti-malware solution, next-gen firewall, server protection, and encryption to protect mission-critical systems that operate inside your retail network. Network segmentation can also help protect such sensitive systems by enabling the creation of restricted and isolated zones that are managed with more granular access controls.

If your retail business has embraced cloud-based applications and you’ve got an extended multi-site network of branch locations, franchise partners, and supply chain partners, then adopting a zero-trust security philosophy becomes critical. The basic principle is “trust nothing, verify everything” and can help establish trusted access across a distributed retail network while ensuring better safeguards to protect cardholder privacy. Read this Sophos whitepaper to gain a better understanding of the zero-trust security approach

Also, be sure to conduct a review to see if your existing cybersecurity arrangement adheres to the recommendations of PCI DSS guidelines. Read this Sophos reference card for a quick understanding of key security requirements mandated by the Payment Card Industry Data Security Standards.

If your retail business does not have adequate in-house security expertise or if you’re managing with skeletal security staff, then this is a great time to bring in a managed security partner who will ensure constant monitoring of your retail network, online systems, and e-commerce portals for suspicious activity.https://player.vimeo.com/video/467892062

Sophos can help you keep your focus on your business and while leaving your security concerns to our elite team of threat hunters. Read about the Sophos Rapid Response service and get immediate help to keep your business and customers protected this holiday season.

For everyone, double-check your password hygiene and transaction authorizations

The truth about easy-to-guess passwords is that hackers like them just as much as you do! Cybercriminals enjoy feasting on security vulnerabilities such as poor passwords or the absence of multi-factor authentication. Consider this simple advice for safe and secure online holiday shopping.

If you’re a shopper, use strong passwords for online transactions and don’t reuse them at multiple sites. Think of a more complex passphrase by using a combination of letters, numbers and special characters. Instead of keeping an arsenal of passwords in your head, a more practical and safer approach is to use a good password manager.

These utilities are simple to set up, easy to use, and all you need to remember is the vault’s one master password. If you’re an online retailer, ensure your account creation feature demands a strong mix of such elements and urge your customers to reset their passwords regularly. Many online retailers also offer multifactor authentication, so consider leveraging such features as well.

And one final tip for consumers: make the most of the security features offered to you by your banks and credit cards. Regularly monitor and review your credit card limit, review your phone and email information for accuracy, and set alerts for large or suspicious purchases.

This has been a difficult year and hopefully the holiday season proves to be a great time to relax, shop, and have fun. And by taking the proper cybersecurity precautions, both shoppers and retailers can enjoy a great end to the year.

Previous Article

Sophos Threat Report Flags Ransomware and Other ...

Next Article

Fortinet Scores Highest for Two Key Use ...

0
Shares
  • 0
  • +
  • 0
  • 0
  • 0
  • 0

Related articles More from author

  • Sophos Logo
    News

    Sophos First to Introduce Always-On File-Level Encryption for Data Shared Across Windows, Mac, iOS and Android Platforms

    21/07/2016
    By admin
  • Sophos Intercept X with EDR
    News

    Sophos – The best just got better. Intercept X now with EDR.

    09/10/2018
    By admin
  • FortinetNews

    The Functional Requirements of a Security Platform

    25/02/2020
    By admin
  • WatchGuard KRACK
    News

    Wi-Fi Key Reinstallation Attack “KRACK” Update: Protecting Unpatched Devices

    20/10/2017
    By admin
  • SonicWall Logo
    NewsSonicWALL

    SONICWALL STRENGTHENS MSSP SECURITY OFFERINGS, SIMPLIFIES ACCOUNT MANAGEMENT, PRODUCT REGISTRATION, LICENSING CONTROL

    04/12/2019
    By admin
  • NewsTrendMicro

    Trend Micro Named A Leader in Cloud Workload Security by Top Independent Research Firm

    09/12/2019
    By admin

  • Sophos Logo
    Alerts & BugsSophos

    Sophos Advisory – Following re-categorization of DiskCryptor to PUA from AppC some machines fail to boot

  • Sophos Logo
    NewsSophos

    Sophos Threat Report Flags Ransomware and Other Significant Cyberattack Trends Expected to Shape IT Security In 2021

  • Sophos #1 Endpoint
    News

    Sophos ranks #1 for endpoint protection by SE Labs

Timeline

  • 29/03/2022

    Advisory: Sophos Central Maintenance scheduled for Saturday, April 2nd, 2022

  • 03/03/2022

    Sophos: Important Product Lifecycle Updates

  • 01/03/2022

    Shoring up your cybersecurity posture in light of ongoing crisis

  • 23/02/2022

    WatchGuard Support Alert

  • 03/02/2022

    Sophos: Important Product Lifecycle Reminder

Sponsored Links

Latest Comments

  • Paul Sillars
    on
    21/06/2016
    I received this in an email this morning, it was the first I heard about it ...

    Dell Software Group sold to help fund looming EMC deal

  • Paul Sillars
    on
    20/06/2016
    This is going to be an interesting one to watch. Especially after today's announcement that ...

    Ingram Micro gets distribution access to Dell’s security range in Australia

Find us on Facebook

Firewall.News Logo

This site serves more as a reference point for some of the major security vendor's updates and product/press releases

It will never be a definitive list, but it helps our customers keep up to date and also allows us to express our comment and observations as well.

About us

  • PO Box 451, North Lakes, Queensland, 4509, Australia
  • [email protected]
  • Recent

  • Popular

  • Comments

  • Sophos Logo

    Advisory: Sophos Central Maintenance scheduled for Saturday, April 2nd, 2022

    By admin
    29/03/2022
  • Sophos Logo

    Sophos: Important Product Lifecycle Updates

    By admin
    03/03/2022
  • Shoring up your cybersecurity posture in light of ongoing crisis

    By admin
    01/03/2022
  • WatchGuard logo

    WatchGuard Support Alert

    By admin
    23/02/2022
  • Dell SonicWALL Supermassive

    Ingram Micro gets distribution access to Dell’s security range in Australia

    By admin
    14/06/2016
  • Francisco Partners and Elliott Management to Acquire the Dell Software Group

    Dell Software Group sold to help fund looming EMC deal

    By admin
    21/06/2016
  • WatchGuard Firebox M500 – The Cure for HTTPS Performance Headaches

    By admin
    05/03/2015
  • Sophos Logo

    Advisory: Sophos Central Maintenance scheduled for Saturday, April 2nd, 2022

    By admin
    29/03/2022
  • Paul Sillars
    on
    21/06/2016

    Dell Software Group sold to help fund looming EMC deal

    I received this in ...
  • Paul Sillars
    on
    20/06/2016

    Ingram Micro gets distribution access to Dell’s security range in Australia

    This is going to ...

Follow Me

  • Contact
  • About Us
  • Home