🔑 Passwords
🎣 Phishing
🦠 Malware
🌐 Browsing
📝 Quiz
Password Security
Your first line of defense
81%
of data breaches involve weak, reused, or stolen passwords
💪 What Makes a Strong Password?
• At least 12+ characters (longer = stronger)
• Mix of uppercase, lowercase, numbers, symbols
• NOT based on personal info (birthday, pet name, address)
• NOT a dictionary word or common phrase
• UNIQUE for every account
• Mix of uppercase, lowercase, numbers, symbols
• NOT based on personal info (birthday, pet name, address)
• NOT a dictionary word or common phrase
• UNIQUE for every account
password123
Dictionary word + predictable numbers
John1985!
Name + birth year - easily guessable
Tr0ub4dor&3
Substitutions are predictable to hackers
correct-horse-battery-staple
Passphrase: 4+ random words, easy to remember
kT9#mP2$vL8@nQ4!
Random characters - use password manager
🚨 Never Reuse Passwords!
If hackers breach one site, they try your password on every other site (banks, email, social media). One breach becomes total compromise.
🗄️ Password Managers
Use a password manager (Bitwarden, 1Password, LastPass) to:
• Generate unique random passwords
• Store them securely
• Auto-fill on websites
You only need to remember ONE master password. Make it a strong passphrase!
• Generate unique random passwords
• Store them securely
• Auto-fill on websites
You only need to remember ONE master password. Make it a strong passphrase!
Phishing Attacks
Don't take the bait
3.4 Billion
phishing emails sent EVERY DAY worldwide
🎣 What is Phishing?
Fake emails, texts, or websites designed to trick you into revealing passwords, credit cards, or personal info. They impersonate trusted companies (banks, Amazon, Netflix, IRS).
From: security@amaz0n-support.com
⚠️ URGENT: Your account has been locked!
Dear Valued Customer,
We detected unusual activity on your account. Your account has been temporarily locked for your protection.
Click here to verify your identity: http://amaz0n-verify.com/secure
If you don't verify within 24 hours, your account will be permanently deleted.
Amazon Security Team
We detected unusual activity on your account. Your account has been temporarily locked for your protection.
Click here to verify your identity: http://amaz0n-verify.com/secure
If you don't verify within 24 hours, your account will be permanently deleted.
Amazon Security Team
Sender email is "amaz0n" (zero instead of 'o')
Creates urgency: "24 hours or deleted"
Link goes to fake domain, not amazon.com
Generic greeting "Dear Valued Customer"
🔍 How to Spot Phishing
Check sender address carefully - Look for misspellings, extra characters
Beware of urgency - "Act now!" "Account suspended!" "Limited time!"
Hover over links - See where they really go before clicking
Look for errors - Grammar mistakes, odd formatting
Too good to be true? - It is. No one's giving you $1M.
✅ When in Doubt...
Never click links in suspicious emails. Instead:
• Go directly to the company's website by typing the URL
• Call the company using their official number
• Forward suspicious emails to the company's fraud department
• Go directly to the company's website by typing the URL
• Call the company using their official number
• Forward suspicious emails to the company's fraud department
Malware Protection
Keep the bad stuff out
🦠 Types of Malware
Virus: Spreads by attaching to files
Ransomware: Locks your files, demands payment
Spyware: Secretly monitors your activity
Trojan: Disguised as legitimate software
Keylogger: Records everything you type
Ransomware: Locks your files, demands payment
Spyware: Secretly monitors your activity
Trojan: Disguised as legitimate software
Keylogger: Records everything you type
🚨 How Malware Gets In
• Email attachments (especially .exe, .zip, .doc with macros)
• Downloading pirated software/movies
• Clicking malicious ads or pop-ups
• Infected USB drives
• Fake software updates ("Your Flash Player is outdated!")
• Compromised websites
• Downloading pirated software/movies
• Clicking malicious ads or pop-ups
• Infected USB drives
• Fake software updates ("Your Flash Player is outdated!")
• Compromised websites
🛡️ Malware Prevention
Keep everything updated - OS, browsers, apps. Updates patch security holes.
Use antivirus software - Windows Defender is good. Keep it on and updated.
Download only from official sources - App stores, official websites
Don't open unexpected attachments - Even from people you know (they may be hacked)
Backup your data - If ransomware hits, you won't lose everything
⚠️ "Your computer is infected!" Pop-ups
These are SCAMS. Real antivirus doesn't pop up in your browser. Never call numbers shown in pop-ups. Never download "cleaners" from pop-ups. Close the browser tab (or force-quit if needed).
Safe Browsing
Navigate the web securely
🔒 Look for HTTPS
Always check for https:// and the padlock icon before entering sensitive info. HTTP (no 's') means data is NOT encrypted.
⚠️ HTTPS doesn't mean the site is trustworthy—just that the connection is encrypted. A scam site can have HTTPS!
⚠️ HTTPS doesn't mean the site is trustworthy—just that the connection is encrypted. A scam site can have HTTPS!
🌐 Safe Browsing Habits
Verify URLs carefully - paypa1.com is not paypal.com
Be cautious with cookies - Reject unnecessary tracking cookies
Avoid public WiFi for sensitive tasks - Don't bank on coffee shop WiFi
Use VPN on public networks - Encrypts your connection
Use ad blocker - Blocks malicious ads (malvertising)
Log out of sensitive accounts - Especially on shared computers
📡 Public WiFi Dangers
Hackers can intercept data on public WiFi ("man-in-the-middle" attacks). On public networks:
• Don't log into banks or enter credit cards
• Don't access sensitive work systems
• Use mobile data for sensitive tasks instead
• Use a VPN if you must use public WiFi
• Don't log into banks or enter credit cards
• Don't access sensitive work systems
• Use mobile data for sensitive tasks instead
• Use a VPN if you must use public WiFi
🔑 Enable 2FA Everywhere
Two-Factor Authentication (2FA) adds a second verification step—even if hackers get your password, they can't get in without your phone.
Enable 2FA on: Email, banks, social media, any account with sensitive data.
Use an authenticator app (not SMS) when possible.
Enable 2FA on: Email, banks, social media, any account with sensitive data.
Use an authenticator app (not SMS) when possible.
🔐 Cyber Shield Quiz
🔑
🛡️
⭐
🔐
GENO
GSU Education Guide • AI Powered
Ask me anything about GSU
.jpg)