Nowadays, an increasing percentage of people make purchases over the Internet, as it offers several benefits: it is a fast, agile and convenient alternative that avoids crowds in shops.
Despite its many advantages, online shopping is not always safe. In this regard, and considering the time of year, Security Advisor, a company specialised in information security, presents the following 10 tips:
- Use a secure connection for online shopping: Technologies that support the https protocol certify and authenticate the identity of the business, as well as encrypt browsing data. These types of technology protect credit card data and other important information sent through the site, from the e-commerce application to the payment process provided by third parties. Extended Validation (EV) certification adds a green bar to the page address to visually indicate to users that it is secure and legitimate.
- Do not click directly on links that lead to other sites and that come in emails of unknown origin, or from banks. Banks do not include links in their notification emails. Our recommendation is to always type the URL of the bank's website you wish to access into your browser.
- Save information regarding the purchase made; it is recommended to: print a receipt, the amount of the payment made, as well as the description of the product for which the payment was made.
- Read the privacy terms and conditions to find out how the data will be used. It is also a good idea to check whether the website encrypts the information so that no one else can access it.
- Avoid sending credit card information (number, validity date, security code) via email or social networks, as it can be intercepted. If you have to do this because the shop where you want to buy does not have an electronic means of payment, it is preferable to do it in person or, as a last resort, make a phone call.
- Connect from a known network, avoiding making transactions from public places such as airports, coffee shops, or from WiFi networks that appear open on your PC or phone, regardless of their ownership or security.
- Ensure that the device is always updated with the correct security tools: anti-virus, anti-spam, etc.
- End sessions on bank, e-commerce or payment websites by clicking on the "log out" button or link, avoiding closing only the browser page. If the access was made from a public or shared computer, it is advisable to delete the browser's browsing history and cache. Bear in mind that it will always be easier for the cybercriminal to breach the security of the user, the customer, than the security of the bank or the business, which is why they make an effort to obtain credentials (users, passwords, codes) through e-mails, malicious codes and social engineering techniques.
- Manage passwords correctly on online banking or shopping sites. Consider the following factors:
- Change the password frequently.
- Avoid using passwords such as birthdays.
- Use different types of characters: numbers, upper case, lower case, special characters, etc.
- Change the password in its entirety, not just part of the key.
- Buy from well-known and reputable websites.
From Security Advisor we recommend that this type of actions be carried out permanently, since nowadays it is more and more important to protect information. In order to carry out a good information security management, it is essential to start by raising awareness and training our environment.
Connect