Subj : Sophos Virus News To : All From : Daryl Stout Date : Wed Nov 24 2021 14:09:16 Here is the latest information from the Naked Security Blog from Sophos. You can go to nakedsecurity.sophos.com to read these. You can also sign up to have these delivered to your email during the week. Be sure that you PRACTICE SAFE HEX -- and that you keep your anti-virus, anti-malware, anti-spyware, and anti-ransomware software up to date. Do NOT open any email attachments, even if they appear to be from someone you know!! Even if you were notified in advance that the file was coming before it arrived, use EXTREME CAUTION when opening attachments, or even clicking on links. If it appears your email has been spoofed, change your access password immediately!! It's best to use 2 unrelated words (the longer, the better), separated by a non-alphabetic character...such as BOAT+TOUCH (please do NOT use this example). While you can't use high ascii characters online, you can use numbers, letters (upper and lower case), and symbols. The use of a Password Manager, such as Dashlane, is STRONGLY RECOMMENDED. That way, you can create a different password for each site you visit, and you don't have to remember them...plus, you can make it a complex password, that's difficult for someone to guess. If they do, they can steal your identity, and make you liable for things like credit card debt, etc. Lastly, if your browser seemingly locks up, telling you to call Microsoft at a certain number, do NOT call the number!! Instead, close your web browser, clear the cache and cookies, do a full virus scan, then restart the browser. You may also want to reboot the computer afterwards. *** US government securities watchdog spoofed by investment scammers -- don't fall for it!! Those numbers that show up on your phone to tell you who's calling?? Treat them as SUGGESTIONS, and never as PROOF!! *** Check your patches -- public exploit now out for critical Exchange bug It was a zero-day bug until Patch Tuesday, now there's an "anyone can use it" exploit. Don't be the one who hasn't patched. *** GoDaddy admits to password breach: check your Managed WordPress site! GoDaddy found crooks in its network, and kicked them out -- but not before they'd been in there for six weeks. *** Black Friday and Cyber Monday -- here's what you REALLY need to do! The world fills up with cybersecurity tips every year when Black Friday comes around. But, what about the rest of the year?? *** Github cookie leakage -- thousands of Firefox cookie files uploaded by mistake Be aware before you share! That's a good rule for developers and techies, just as much as it is for social media addicts. *** S3 Ep59: - Emotet, an FBI hoax, Samba bugs, and a hijackable suitcase [podcast] Latest espisode - listen now! --- SBBSecho 3.14-Win32 * Origin: The Thunderbolt BBS - Little Rock, Arkansas (454:1/33) .