Hello Friends ....
Today we learn about What is Keylogger...?
So let's Start....
A keylogger (keystroke logging) is a type of surveillance software that once installed on a system, has the capability to record every keystrokemade on that system. The Recording is saved in a log file, usually encrypted.
Today we learn about What is Keylogger...?
So let's Start....
A keylogger (keystroke logging) is a type of surveillance software that once installed on a system, has the capability to record every keystrokemade on that system. The Recording is saved in a log file, usually encrypted.
A keylogger can record instant messages, email, and capture any information you type at any time using your keyboard, including usernames, passwords and other personally identifiable information (pii). The log file created by the keylogger can then be sent to a specified receiver. Some keylogger programs will also record any email addresses you use and the URLs of any websites you visit.
Who Uses Keyloggers?
Keyloggers, as a surveillance tool, are often used by employers to ensure employees use work computers for business purposes only. There's also a growing market of parents who want to use keyloggers to stay informed about a child's online activities. Unfortunately, keyloggers can also be embedded in spyware allowing your personal information to be transmitted to an unknown third party.
How to Tell if a Keystroke Logger is Installed
Usually an anti-virus or spyware program will detect and report any keystroke logging software on the system. Also, you can view the Task Manager (list of current programs) on a Windows PC by ctrl+alt+delin Windows. Any program names in the list that you're unfamiliar with can be researched online to determine the type of program.
How Keylogger are threat ?
Keyloggers are a serious threat to users and the users' data, as they track the keystrokes to intercept passwords and other sensitive information typed in through the keyboard. This gives hackers the benefit of access to PIN codes and account numbers, passwords to online shopping sites, email ids, email logins, and other confidential information, etc.
When the hackers get access to the users' private and sensitive information, they can take advantage of the extracted data to perform online money transaction the user's account. Keyloggers can sometimes be used as a spying tool to compromise business and state-owned company's data. The main objective of keyloggers is to interfere in the chain of events that happen when a key is pressed and when the data is displayed on the monitor as a result of a keystroke. A keylogger can be done by introducing a wiring or a hardware bug in the keyboard, to achieve video surveillance; terminating input and/or output; or by also implementing the use of a filter driver in the keyboard stack; and demanding data from the user's keyboard using generalized documented methods. There are two other rootkit methods used by hackers: masking in kernel mode and masking in user mode.
How keyloggers spread ?
- Keyloggers can be installed when a user clicks on a link or opens an attachment/file from a phishing mail
- Keyloggers can be installed through webpage script. This is done by exploiting a vulnerable browser and the keylogger is launched when the user visits the malicious website.
- a keylogger can be installed when a user opens a file attached to an email
- a keylogger can be installed via a web page script which exploits a browser vulnerability. The program will automatically be launched when a user visits an infected site
- a keylogger can exploit an infected system and is sometimes capable to download and install other malware to the system.
How Hackers Install a Keylogger ?
A hacker employs a Trojan virus as a delivery tool to install a keylogger. But way before one is downloaded onto your system, a hacker will use two different methods to get it into your computer. And both ways involve your participation.The first method involves phishing. Phishing is the act of faking an email from a legitimate company to fish for passwords and credit card numbers. Sometimes, these emails contain attachments which download programs stealthily into your computer once you click on them.
For the second method, the hacker researches on his intended victim beforehand in order to find a weakness in her or his online habits. Let's say a hacker finds out the victim habitually visits porn sites, the hacker might craft an email with a fake coupon for a membership into an exclusive erotic website. Since this method targets a particular fondness of the victim, there's a large chance of success that the he or she will download the fake attachment, unknowingly installing the keylogger.
How to protect yourself from keyloggers
Take caution when opening attachments: Keyloggers can be present in files received through email, chats, P2P networks, text messages or even social networks. If someone sends you an email out of the cold or the contents of the email are asking for your personal information, chances are there's a keylogger in there somewhere.
Implement Two Factor Authentication
implementation of Two-factor authentication through one time passwords would help users protect their sensitive credentials, as one-time password is momentary and the hackers cannot use the same detected password the next time.
Use of Virtual Keyboard
Virtual Keyboard helps to avoid personal data interception by the hackers. It is a software used to allow the users to input characters without the actual need for physical keys.
THANK YOU FOR READING .
HOPE YOU LIKE IT
AND SHARE WITH YOUR FRIENDS TO ENJOY .....
HOPE YOU LIKE IT
AND SHARE WITH YOUR FRIENDS TO ENJOY .....
Comments
Post a Comment
Thank you for Comment