<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=Windows-1252">
</head>
<body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; color: rgb(0, 0, 0); font-size: 14px; font-family: Garamond, sans-serif;">
<div>
<p style="margin: 0px; font-family: Helvetica;">In this issue:</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">1. Adobe Releases Security Updates for Flash, ColdFusion</p>
<p style="margin: 0px; font-family: Helvetica;">2. CyptoLocker Ransomware Prevention Tips</p>
<p style="margin: 0px; font-family: Helvetica;">3. Cyber Monday & Online Shopping</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">------------------------------------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica;">1. Adobe Releases Security Updates for Flash, ColdFusion</p>
<p style="margin: 0px; font-family: Helvetica;">------------------------------------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">Adobe has released security updates for
<a href="http://www.adobe.com/support/security/bulletins/apsb13-26.html">Flash Player</a> and
<a href="http://www.adobe.com/support/security/bulletins/apsb13-27.html">ColdFusion</a> to address four vulnerabilities. The Flash update is available for Windows, Mac, and Linux. According to Adobe, the updates are not related to the recent theft of ColdFusion
source code.</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;"><a href="http://www.computerworld.com/s/article/9244025/Adobe_patches_critical_vulnerabilities_in_Flash_Player_ColdFusion?taxonomyId=17">Read the full article online</a>.</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">------------------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica;">2. CyptoLocker Ransomware Prevention Tips</p>
<p style="margin: 0px; font-family: Helvetica;">------------------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">An article released by US-CERT outlines the impact of this malware, which surfaced earlier this year, and how users can prevent infections. I have posted the article in the
<a href="http://kb.mit.edu/confluence/x/IC4YCQ">IT Knowledge Base</a>. </p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">If you have any questions about implementing any of the steps listed in the article, please contact your local IT administrator or the
<a href="http://ist.mit.edu/help">IS&T Help Desk</a>.</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;"><a href="http://kb.mit.edu/confluence/x/IC4YCQ">Read the article</a>.</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">-------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica;">3. Cyber Monday & Online Shopping</p>
<p style="margin: 0px; font-family: Helvetica;">-------------------------------------------------</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">More people are expected to shop online on Cyber Monday than visit stores on Black Friday, according to
<a href="http://amexspendsave.mediaroom.com/index.php?s=34135&item=22#assets_123">
American Express</a>. The use of mobile devices for online shopping is projected to increase as well. </p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">Whether you’ll be conducting transactions from your desktop, laptop or mobile device, keep these tips in mind to help protect yourself from identity theft and other malicious activity:</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<ul>
<li style="margin: 0px; font-family: Helvetica;">Secure your computer and mobile device by making sure they are current with all operating system and application
<a href="http://ist.mit.edu/security/patches">updates</a>. <a href="http://ist.mit.edu/security/malware">
Anti-virus software</a> should be installed and running. </li><li style="margin: 0px; font-family: Helvetica;">Use strong <a href="http://ist.mit.edu/security/passwords">
passwords</a>. When logging on to your computer or mobile device and when visiting sites or using applications for shopping, use passwords that are not used for other accounts.
</li><li style="margin: 0px; font-family: Helvetica;">Use applications with caution. Malware could be downloaded onto seemingly legitimate shopping applications, to steal credit card or other sensitive information.
</li><li style="margin: 0px; font-family: Helvetica;">Know your online merchants. Limit your shopping to merchants you know and trust. Go to them by typing in the URL rather than through a search bar. If you are unsure about a merchant, check with the
<a href="http://www.bbb.org/">Better Business Bureau</a> or <a href="http://www.consumer.ftc.gov/features/feature-0014-identity-theft">
Federal Trade Commission</a>. </li><li style="margin: 0px; font-family: Helvetica;">Consider using an online payment system or credit card. Where available, use online payment services, which keep your credit card information stored on a secure server, and let you make purchases online without
revealing your card details to retailers (example: PayPal). When you use a card online, use a credit, not debit card, which are protected by the Fair Credit Billing Act and may reduce your liability.
</li><li style="margin: 0px; font-family: Helvetica;">Look for “https” before you click to purchase. The “s” stands for secure and indicates the transaction will be encrypted. A padlock in your browser’s status window is another indicator.
</li><li style="margin: 0px; font-family: Helvetica;"><a href="http://ist.mit.edu/security/browsers">Secure your browser.</a> Make sure it is up-to-date with latest security patches. Turn off pop-ups and unwanted ads (some browser plug-ins can suppress ads on web
pages). You may also set the <a href="http://browsers.about.com/od/faq/tp/Private-Browsing.htm">
browser status to “private,”</a> so that your activity on the Web can not be traced, removing any history and cache information from others who may have access to the same device.
</li><li style="margin: 0px; font-family: Helvetica;">Do not use public computers or open wireless networks for your online shopping. Criminals may intercept traffic on public wireless to steal sensitive information. Make sure the settings for your computer or device
prevent it from automatically connecting to open wireless spots. </li><li style="margin: 0px; font-family: Helvetica;">Home wireless networks should be secure with authentication requirements and a strong password.
</li><li style="margin: 0px; font-family: Helvetica;">Be alert for scams. Cyber criminals try to take advantage of people’s generosity during the holiday season and can use fake charity requests to gain access to your information or computer/device. Think before
clicking on emails making these requests. Don’t give your financial information to anyone via email, text or phone, especially when it is unsolicited.
</li></ul>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">More online shopping assistance can be found at:</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<ul>
<li style="margin: 0px; font-family: Helvetica;"><a href="http://www.us-cert.gov/ncas/tips/st07-001">US-CERT</a>
</li><li style="margin: 0px; font-family: Helvetica;"><a href="http://www.onguardonline.gov/articles/0020-shopping-online">OnGuard Online</a>
</li><li style="margin: 0px; font-family: Helvetica;"><a href="http://www.microsoft.com/security/online-privacy/finances-rules.aspx">Microsoft</a>
</li><li style="margin: 0px; font-family: Helvetica;"><a href="https://www.privacyrights.org/Privacy-When-You-Shop">Privacy Rights Clearinghouse</a>
</li><li style="margin: 0px; font-family: Helvetica;"><a href="http://www.ic3.gov/media/2010/101118.aspx">Internet Crime Complaint Center</a>
</li><li style="margin: 0px; font-family: Helvetica;"><a href="http://www.irs.gov/Charities-&-Non-Profits/Exempt-Organizations-Select-Check">Internal Revenue Service</a>
</li></ul>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica;">=======================================================================================</p>
<p style="margin: 0px; font-family: Helvetica;">Read all archived Security FYI Newsletter articles and submit comments online at
<a href="http://securityfyi.wordpress.com/"><span style="color: rgb(4, 46, 238);">http://securityfyi.wordpress.com/</span></a>.</p>
<p style="margin: 0px; font-family: Helvetica;">=======================================================================================</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
<p style="margin: 0px; font-family: Helvetica; min-height: 17px;"><br>
</p>
</div>
<div><span class="Apple-style-span" style="border-collapse: separate; font-family: Calibri; font-size: medium; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px; font-family: Helvetica; font-size: 14px; orphans: 2; widows: 2;">
<div style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space; ">
<span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px;"><span class="Apple-style-span" style="border-collapse: separate; border-spacing: 0px; font-size: 12px;">
<div>Monique Yeaton</div>
<div>IT Security Communications Consultant</div>
<div>MIT Information Services & Technology (IS&T)</div>
<div>(617) 253-2715</div>
<div>http://ist.mit.edu/security</div>
<div><br class="khtml-block-placeholder">
</div>
<br class="Apple-interchange-newline">
</span></span></span></span></span></span></div>
</span></span></div>
</body>
</html>