Threat of the month: Firesheep

Randy Abrams
Randy Abrams

Firesheep

What is it?

Firesheep is a Firefox add-on that automates the hijacking of accounts that are not secured by SSL (https).

How does it work?
When a user logs onto Facebook, Amazon, Twitter or any number of other accounts, the user name and password are encrypted, but the cookie that the site sets to remember the user is not encrypted as it is sent to that person's computer. This means that if the user is at their local coffee shop using their open Wi-Fi system and logs onto a website, the cookie can be intercepted by anyone else using the same Wi-Fi network. By intercepting the cookie, the attacker can use that user's account.

How can I prevent it?
There are ways to protect your accounts. You can use a VPN, but do not expect your corporate VPN to do the job. Typically, only traffic between your computer and the company are tunneled, leaving your webmail and other accounts unprotected. The safest approach is not to surf anywhere that requires a password when you are on a public network.

– Randy Abrams, director of technical education, ESET

close

Next Article in Opinions

Sign up to our newsletters

More in Opinions

Being great: Five critical CISO traits

Being great: Five critical CISO traits

There are five common traits that are commonly found in the truly innovative CISOs in the industry.

Is your IT department "donating" your attorney-client privilege without your knowledge?

Is your IT department "donating" your attorney-client privilege ...

There are a number of organizations out there that ask for — and often receive — access to data on both successful and unsuccessful attacks on your technology infrastructure.

Me and my job: Nick Hetrick, senior IS security operations analyst, WellSpan Health

Me and my job: Nick Hetrick, senior IS ...

Nick Hetrick, senior IS security operations analyst, WellSpan Health, discusses his latest projects, what motivates him and how he entered the field.