Mobile Security Best Practices

Explore top LinkedIn content from expert professionals.

  • View profile for Nathaniel Shere
    Nathaniel Shere Nathaniel Shere is an Influencer

    Delivering hands-on learning in the most secure way | Penetration Testing | Product Security Engineer at Skillable, where people learn by doing

    23,262 followers

    So, what really is the risk of public Wifi anyway? I got this question after my post yesterday about public WiFi and security risks. 🔹 First, the risks. The video I have attached here demonstrates an Evil Twin attack, where a hacker sets up their own WiFi network that matches the name of a legitimate network in the area. Unsuspecting victims are likely to connect to the Evil Twin network instead - sometimes even automatically. At that point, the hacker can sniff their traffic (easily reading unencrypted traffic and just tracking encrypted traffic) or use various login prompts and links to try and get the connecting users' credentials to various services. Another risk is an attacker gaining control of the legitimate WiFi network by, for example, exploiting an unpatched vulnerability and identifying the administrator login (using default credentials, brute force, etc.). These are legitimate attacks that hackers have demonstrated in the real world countless times - check any Black Hat or DefCon presentation list. 🔹 So, how concerned do I really have to be? About as concerned as you would be for Stranger Danger. The rule we generally tell kids is "don't talk to strangers". Is that because every stranger is evil? No of course not. But, the impact of meeting an evil stranger could be catastrophic, so until we get to know the person better, we keep our guards up. The same goes for public WiFi networks. Most of the time (probably 99% of the time), your public WiFi networks will be just fine. But, connecting to a rogue or hacked network could be catastrophic. 🔹 So, what can I do? Practice basic security principles: ▪ Don't connect to a public WiFi if you don't need to. ▪ If you do connect, be very careful with prompts for personal information or passwords. Look for the domain name and the secure padlock. Make sure you understand why you are being asked for the information (no legitimate WiFi network connects through your Facebook account). ▪ Only use websites that are secured with HTTPS (secure padlock again). ▪ Don't do business or anything sensitive on a public WiFi ▪ Use a VPN What other risks have I missed or suggestions for protecting yourself do you have? Let me know! #security #cybersecurity #wifi #publicwifi #penetrationtesting #hacking #wirelessnetworking https://lnkd.in/geBvxt9Z

  • View profile for Eric O'Neill

    Keynote Speaker, Cybersecurity Expert, Spy Hunter, Bestselling Author. Attorney

    9,065 followers

    As I've been writing my new book The Invisible Threat, I have been detailing examples of the need to continually assess our cybersecurity. Some years ago I looked at a case where a criminal set up an evil twin Wi-Fi router near a Starbucks and harvested the information of everyone that connected. But this story has my eyes raised! Imagine this: Sarah, a frequent traveler, connects to what she believes is the in-flight Wi-Fi to check her emails. Unbeknownst to her, a cybercriminal a few rows behind has set up an evil twin network, mimicking the airline's legitimate Wi-Fi. As Sarah logs in, the cybercriminal intercepts her data, gaining access to her personal information inflight. This actually happened! Earlier this month, Australian Federal Police arrested a man for executing such evil twin Wi-Fi attacks on multiple domestic flights and at airports in Adelaide, Melbourne, and Perth. The suspect allegedly created fake Wi-Fi networks, prompting passengers to log in with their email or social media credentials to harvest their logins for these accounts. How to protect yourself! *Avoid Logging In: Free Wi-Fi should not require email or social media logins. *Use a VPN: Encrypts your data and secures your connection. *Disable File Sharing: Prevent unauthorized access to your device. *Forget Networks: Manually forget public networks after use to avoid auto-reconnections. Stay vigilant in public places and always remember to assess your security. Nothing is ever free. Please Share this post to spread awareness! #CyberSecurity #WiFiSafety #TravelTips #DigitalSafety #TechNews

  • View profile for Valerie Nielsen
    Valerie Nielsen Valerie Nielsen is an Influencer

    | Risk Management | Business Model Design | Process Effectiveness | Internal Audit | Third Party Vendors | Geopolitics | Cyber | Board Member | Transformation | Compliance | Governance | History | International Speaker |

    7,657 followers

    Cyber risks do not take a vacation. We can be more vulnerable to data compromise and identity theft when we travel. You are thinking how can this be the case? Business and pleasure travel remains strong. Many are on spring break or will be shortly. We know the risks of using public Wi-Fi at a coffee shop or hotel. Have you considered cyber risks for Wi-Fi on an airplane? This is a public network too. Airplane Wi-Fi is not encrypted. This means all travelers use the airplane Wi-Fi their web surfing, email activity/content, and passwords can be seen by others on the network. Risk concerns are: ➡️Data Interception ➡️Man-in-the Middle Attacks ➡️Malware ➡️Packet Sniffing So, what can business and pleasure travelers do to mitigate cyber risks when they need to keep connected on an airplane? Options are: 1)   VPN 2)   Antivirus software on your device 3)   Password Manager 4)   Don’t auto-connect to public networks 5)   Limit activity to non-sensitive data (avoid financial transactions) Happy Travels! #RiskManagement #Cybersecurity #DataPrivacy #Leaders Longview Leader Corporation

  • View profile for Alvin Rodrigues
    Alvin Rodrigues Alvin Rodrigues is an Influencer

    I help organisations turn their people into their strongest security asset | Cybersecurity Awareness Trainer | Keynote Speaker | Author | Human Firewall Builder and Behaviour Change Specialist

    10,715 followers

    How Ransomware Almost Stole My Spotlight A few years ago, while on a routine business trip to Kuala Lumpur, I was giving a company presentation when I realised that my greatest risk was not forgetting my words but rather my digital security. Seated at a cramped desk in my hotel room, I rehearsed my presentation with my laptop connected to the hotel's public Wi-Fi, navigating each slide as though I had delivered it a thousand times. All my meticulous work resided solely on the notebook's hard drive. I was ignorant of the hidden dangers of that unsecured network. While setting up at the regional conference, a fellow speaker's laptop fell victim to a ransomware attack. Within minutes, their slides were sealed behind an encrypted vault. I watched the organisers frantically attempt to salvage the session, my heart pounding as I imagined the same disaster befalling me. Determined never to experience such anxiety again, I developed a speaker-specific cybersecurity routine based on simple daily habits. Pre-trip organisation Before every journey, I tidy and organise my laptop by backing up crucial data to a secure cloud vault and external storage, retaining only essential files, and removing any unused applications that have not been used for more than three months. Secure connections Whenever I use airport or hotel Wi-Fi, I first connect to a VPN so that every keystroke, file transfer and message remains encrypted. Strict wireless management I disable Bluetooth when I'm not using it and disable Wi-Fi auto-connect to prevent unauthorised networks or headsets from connecting. Multiple backups I keep copies of my slides in protected cloud storage as well as on a trusted thumb drive so that I never rely on a single source. Post-trip sanitisation After each trip, I forget all saved Wi-Fi networks, clear cached credentials, and either archive or delete files I no longer need while backing up the rest to both the cloud and an external hard drive. I know this sounds like a lot of work, but each habit is now as natural as my morning cup of tea. It may add minutes to my prep, but it saves me hours of panic and ensures no malware or ransomware ever steals the spotlight from my presentations. Over to you Which cyber-hygiene habit do you rely on most when presenting or travelling? Share your tip below and help us create a collective checklist so that every speaker can step into the spotlight with confidence. #alvinsratwork#ExecutiveDirector#cybersecurity#cyberhygiene#Cyberawareness#BusinessTechnologist#Cyberculture 

  • As we embark on exciting journeys this holiday season, let's take a few moments to consider our information security. Here are some travel tips that can improve your cybersecurity and enhance your travel experience.   💻 Before Your Trip: Before beginning your journey, take some time to make sure your devices —laptop, smartphone, and tablet— have the latest operating system updates and security patches. Devices that are updated will be resistant to exploitation attempts. Use the data encryption features that are available on most devices to prevent the exposure of information if a device is lost or stolen.   📱 Depending on your risk profile, consider traveling with alternate devices that do not contain any sensitive personal or business data.   🔒 Obtain a Virtual Private Network (VPN) subscription to maintain privacy for while using public WiFi access points. It encrypts your internet connection, and your safeguarding sensitive information from prying eyes.   🗺 Download map data for the cities you will visit. This will allow you to navigate without using cellular data. I also download some podcasts, and videos for entertainment on the flights. This reduces the need for connecting to potentially insecure public networks.   🛫 While Traveling: Be mindful of what you share on social media. Avoid broadcasting your exact location in real-time, to reduce the risk of being targeted.   🔎 Use Bluetooth trackers to keep track of luggage and help locate items if they are lost.   📄 Protect your trip details and boarding pass. Do not post photos of your boarding pass. Threat actors could obtain your trip's record locator and your frequent flyer account number. This information can be used to change your itinerary or even cancel your flight. Digital security is as crucial as packing your bags! Stay safe and enjoy your travels! 🌍🔒 #CyberSecurity #TravelSecurity

  • View profile for Shravan Singh Rathore

    Hardware Security Researcher

    22,119 followers

    During a recent hotel stay, curiosity led me to ask for the Wi-Fi credentials. Out of habit, I inspected the network setup and accessed the main router's web page (default gateway). Shockingly, the admin panel was unprotected by a strong password, and the firmware hadn’t been updated in years! Over 25 devices were connected to this network, exposing guests to significant risks like unauthorized access or data interception. Mitigation Recommendations: 1️⃣ Always set strong, unique admin passwords for routers. 2️⃣ Regularly update router firmware to patch vulnerabilities. 3️⃣ Disable remote admin access if not needed. 4️⃣ Use guest Wi-Fi networks to isolate client traffic. This situation underscores how critical even basic cybersecurity measures are—whether at home, in offices, or in public spaces. 🌐 Stay secure, stay updated! #CyberSecurity #NetworkSecurity #WiFiRisks

  • View profile for Kevin Coffey

    Equipping Travelers & Meeting Professionals with the Skills to Stay Safe, Prepared, and Resilient—Anywhere in the World

    9,508 followers

    Microsoft Issues New Hotel Wi-Fi Threat Every Business Traveler Should Know About I thought this new alert from Microsoft was an important one to share with my network. Yesterday, Microsoft Threat Intelligence has disclosed a new campaign called “CaptiveCrunch,” linked to a Russia‑associated threat actor. What makes this different is important: Travelers may be connecting to the real hotel Wi‑Fi—and still be at risk. Attackers can manipulate network traffic behind legitimate captive portals (the hotel login page you normally trust), redirecting users to malicious pages that mimic browser or software updates. This isn’t just “don’t use fake Wi‑Fi.” Even trusted hotel networks can be compromised in the background. What travelers should do 1. Prefer cellular or personal hotspot for sensitive work 2. Use a trusted travel hotspot when possible 3. If using hotel Wi‑Fi, use VPN + corporate security tools And critically: never install updates prompted by a hotel Wi‑Fi page. If a “required update” appears after connecting, disconnect - update only through official sources on a trusted connection. Cyber risk is now a core part of travel risk management. Travelers carry direct access to corporate systems, and environments like hotels and airports are increasingly targeted.

  • View profile for Tayyab Shahzad Akram

    SOC Analyst | xN-CERT | ISO 27005 | SIEM with ELK | Splunk | IBM QRadar | Cyber Threat Analyst | Digital Forensic Investigator | Cloud Practitioner

    7,344 followers

    𝗧𝗵𝗮𝘁 “𝗙𝗿𝗲𝗲 𝗪𝗶-𝗙𝗶” 𝗰𝗼𝗻𝗻𝗲𝗰𝘁𝗶𝗼𝗻 𝗺𝗶𝗴𝗵𝘁 𝗰𝗼𝘀𝘁 𝗺𝗼𝗿𝗲 𝘁𝗵𝗮𝗻 𝘆𝗼𝘂 𝘁𝗵𝗶𝗻𝗸. 👀 Public networks are built for 𝗰𝗼𝗻𝘃𝗲𝗻𝗶𝗲𝗻𝗰𝗲 — 𝗻𝗼𝘁 𝘁𝗿𝘂𝘀𝘁. The moment you connect, your traffic, sessions, or credentials may become valuable targets if the network is malicious or poorly secured. 𝗠𝘆 𝗿𝘂𝗹𝗲: Treat every public Wi-Fi network as 𝗨𝗡𝗧𝗥𝗨𝗦𝗧𝗘𝗗 until proven otherwise. 🚨 Use HTTPS, a trusted VPN when appropriate, and avoid sensitive logins on networks you don’t control. 𝗪𝗼𝘂𝗹𝗱 𝘆𝗼𝘂 𝘀𝘁𝗶𝗹𝗹 𝗰𝗼𝗻𝗻𝗲𝗰𝘁 𝘄𝗶𝘁𝗵𝗼𝘂𝘁 𝘁𝗵𝗶𝗻𝗸𝗶𝗻𝗴 𝘁𝘄𝗶𝗰𝗲❓ Save this reminder. 📌 #CyberSecurity #InfoSec #CyberSecurityAwareness #PublicWiFi #DataProtection #NetworkSecurity

  • View profile for Sara Badran

    Senior Cybersecurity Business Development Representative | Client Relationship, Retention & Account Growth | Cybersecurity SaaS | Go-To-Market Execution

    97,006 followers

    ⚠️ 𝗡𝗲𝘄 𝗔𝘁𝘁𝗮𝗰𝗸 𝗧𝗮𝗿𝗴𝗲𝘁𝘀 𝗠𝗼𝗯𝗶𝗹𝗲 𝗗𝗲𝘃𝗶𝗰𝗲𝘀 𝘃𝗶𝗮 𝗣𝘂𝗯𝗹𝗶𝗰 𝗖𝗵𝗮𝗿𝗴𝗲𝗿𝘀 — 𝗘𝘃𝗲𝗻 𝗼𝗻 𝗟𝗼𝗰𝗸𝗲𝗱 𝗣𝗵𝗼𝗻𝗲𝘀 A newly uncovered technique called ChoiceJacking is allowing attackers to steal private data from iOS and Android devices — simply through a malicious charging station. This goes beyond the older "𝗝𝘂𝗶𝗰𝗲 𝗝𝗮𝗰𝗸𝗶𝗻𝗴" threat. 🔍 𝗪𝗵𝗮𝘁 𝗺𝗮𝗸𝗲𝘀 𝗖𝗵𝗼𝗶𝗰𝗲𝗝𝗮𝗰𝗸𝗶𝗻𝗴 𝗱𝗶𝗳𝗳𝗲𝗿𝗲𝗻𝘁 ? It bypasses the user confirmation prompts introduced by Apple and Google over the last decade. Attackers can simulate screen taps in less than 133 milliseconds — faster than a human blink — to silently approve access requests. 📂 𝗪𝗵𝗮𝘁’𝘀 𝗮𝘁 𝗿𝗶𝘀𝗸 ?  • Personal files (photos, documents, app data)  • Devices from top 8 global brands, including Apple, Samsung, Google, Xiaomi, Oppo, Huawei, Vivo, and Honor  • Even locked phones are vulnerable (confirmed on Honor and Oppo) 🧠 𝗛𝗼𝘄 𝗶𝘁 𝘄𝗼𝗿𝗸𝘀 : The attack abuses flaws in Android’s Open Accessory Protocol (AOAP), allowing the charger to act as both a USB host and input device — triggering hidden approvals without the user noticing. 📍 𝗪𝗵𝗲𝗿𝗲 𝗶𝘀 𝘁𝗵𝗶𝘀 𝗵𝗮𝗽𝗽𝗲𝗻𝗶𝗻𝗴? Public USB ports in airports, hotels, cafes, and transportation hubs — especially when users are distracted or navigating. 🔒 𝗛𝗼𝘄 𝘁𝗼 𝗽𝗿𝗼𝘁𝗲𝗰𝘁 𝘆𝗼𝘂𝗿𝘀𝗲𝗹𝗳 :  • Always use your own charging cable and wall adapter  • Avoid public USB ports — use a portable battery pack  • Keep your device OS updated  • Use a USB data blocker (charge-only adapter that disables data transfer) 𝑇ℎ𝑒 𝑎𝑡𝑡𝑎𝑐𝑘 𝑖𝑠 𝑠𝑖𝑙𝑒𝑛𝑡. 𝑌𝑜𝑢𝑟 𝑑𝑒𝑓𝑒𝑛𝑠𝑒 𝑠ℎ𝑜𝑢𝑙𝑑 𝑏𝑒 𝑠𝑚𝑎𝑟𝑡. 𝑆𝑡𝑎𝑦 𝑎𝑤𝑎𝑟𝑒. 𝑆𝑡𝑎𝑦 𝑝𝑟𝑜𝑡𝑒𝑐𝑡𝑒𝑑. - #CyberSecurity #MobileThreats #ChoiceJacking #Infosec #Awareness #DeXpose #ThreatIntelligence #DataProtection

  • View profile for Surinder Lall

    Multi Award-Winning AI GRC & Security Leader | Author: Leading in the Age of AI | Former SVP Paramount | UK Govt Cyber Advisor | Keynote Speaker | Founder of the Viacom, CBS & Paramount Alumni Network

    10,073 followers

    Goodmorning Network! ⚠️ Think twice before using public iPhone chargers or borrowing cables ⚠️ With the convenience of public charging stations in airports, cafes, and hotels, it can be tempting to plug in your phone when your battery is running low. But did you know that malicious cables, such as the O.MG Cable, could put your data at risk? The O.MG Cable, which looks identical to a standard Lightning cable, can do more than just charge your phone. It has the capability to log your keystrokes, steal personal data, and even install malware potentially allowing hackers to access your device from over a mile away. This type of attack is known as “juice jacking”, where compromised cables and public USB ports are used to execute these attacks without you even noticing. Hackers can gain control of your device through these cables by broadcasting a Wi-Fi hotspot, allowing them to issue commands, access files, and monitor everything from passwords to sensitive information. Even worse, these cables are now commercially available, making it easier for attackers to distribute them in public spaces or disguise them as gifts or helpful gestures. Here are some steps to protect yourself: 1) Only use your own charging cables and avoid plugging into public USB ports. 2) Invest in a USB data blocker to ensure your device only charges without data transfer. 3) Inspect cables before use and avoid borrowing cables from strangers or even colleagues who might not know their cable is compromised. Stay safe and keep your devices secure! #CyberSecurity #MobileSecurity #JuiceJacking #PrivacyFirst

Explore categories