5 Seemingly Innocent Download Habits Your Employees Must STOP Now To Avoid A Ransomware Attack

In the past, installing antivirus software was enough to keep you safe while browsing online and checking your inbox. You could open, click and download files without worrying too much.

Today, however, relying solely on antivirus software is not enough to protect you, especially if you invite the hack by downloading a file that contains a code designed to bypass your security measures. Whether you use a personal computer, phone, or a business desktop, here are five things you should avoid doing immediately to prevent being hacked:

  1. STOP downloading apps from unknown sources. With countless free apps readily available on the internet, it can be tempting to download them. However, hackers use enticing tactics such as clickbait to lure you into downloading malicious apps. To avoid unauthorized programs from being installed on your devices, configure them to block installations from untrusted sources. On your phone, download apps only from your device's official app store, which tests and enforces security and privacy standards for the apps available..Business owners: while its likely all of your employees are trusting souls, it IS possible (and recommended) to have business machines locked down, preventing your employees from downloading any applications (or files) that could harm you and compromise your security.
  2. STOP surfing the web unprotected, particularly when accessing downloads. This is especially important when using public WiFi, such as in a coffee shop. Free WiFi offered by businesses or public locations, including Starbucks, cannot guarantee a secure internet connection. Therefore, it's crucial to consult with your IT provider (thats us!) to install more comprehensive endpoint protection solutions beyond antivirus, such as a VPN. A VPN can effectively "mask" your online presence from cybercriminals and filter out potentially harmful websites and attacks. With these measures in place, you can use public WiFi without the worry of inviting a cyber attack.
  3. STOP opening and downloading files e-mailed to you without extreme caution. Email phishing attacks remain the primary method used by hackers to gain unauthorized access to a network. These attacks are becoming increasingly sophisticated, with attackers often compromising an individual's email account and sending seemingly legitimate emails on their behalf to their contacts, including coworkers, colleagues, and superiors. So, before you open or download ANY file e-mailed to you, make sure it was one you were expecting. To enhance security, we recommend using IT-managed file-sharing services such as OnDrive, SharePoint, or Citrix ShareFile. If a file seems suspicious or unfamiliar, including strange file extensions or names, it is recommended to contact the sender to confirm its authenticity. In case of doubt, it is better to err on the side of caution and not open the file, and if necessary, request the sender to resend it.
  4. STOP downloading “bloatware.” It is not uncommon for trustworthy and reliable apps to include additional applications or toolbars that are unnecessary. This is done as a way to generate more revenue through sponsorships each time a user downloads an app. To identify these, be on the lookout for checkboxes that automatically select additional services during installation. Before clicking "Next" and proceeding with the app installation, it is important to take a moment to carefully read and review the terms and conditions to which you are agreeing.
  5. STOP downloading music, software, games, movies and the like from websites like BitTorrent, RARBG, 1337x and similar peer-to-peer file-sharing sites. File-sharing networks are often used by hackers to distribute files containing malicious software for unsuspecting users to download. These networks can also feature ads that are infected with malware. Even with antivirus software installed, it is important not to assume that you are completely safe while using these networks.

Business owners: after showing this to your team for both their work and personal devices, click here to schedule a quick 10-minute call to find out how we can implement security systems that will give you stronger protections against hackers and against employees who accidentally click on or download a malicious file.