How to avoid digital dangers while traveling
Posted on 02 August 2013.
Itís summer holiday season, when people pack up their smartphones and tablets, sunscreen and tank tops and set off for a change of pace. With connected devices itís never been easier to find oneís way around, record memories, and stay in touch with friends back home. But while technology makes traveling easier, a recent F-Secure survey pinpointed digital areas that need special consideration while on the road.

The reality of public WiFi and Internet cafes

When traveling itís convenient to use public WiFi hotspots in places like airports and restaurants, but 52% of people say they are concerned about the security and privacy of public WiFi, and rightly so. Sean Sullivan, Security Advisor at F-Secure Labs, says that public WiFi networks should be thought of as just that: public. Because youíre sharing the network with strangers, thereís the risk that someone is using readily available software that snoops on what youíre doing.

ďIt may feel private because youíre using your personal device, but itís not,Ē Sullivan says. He advises against doing anything via public WiFi that you wouldnít want an eavesdropper to know Ė including logging into accounts with passwords. ďI use public WiFi happily for a topic I would discuss with a friend on the metro. Banking, I do at home,Ē he says.

The same goes for using public computers in places like libraries or Internet cafes. Sullivan recommends using them only for doing innocuous things like reading the news, as password-stealing spyware could be hosted on the machine.

If you must use public means to communicate with loved ones, one tip is to create a separate vacation email account that youíll use only while on holiday. ďThat way if someone hacks your vacation email account, they might see emails with your mom and the cat sitter, but they wonít have access to the other sensitive data that would be in your main email account,Ē he says.

Banking away from home

85% of people say they do online banking from their computers, and 24% from their smartphones. So what if you absolutely must make a transaction while on vacation? Itís probably best to use your mobile data plan with your bankís mobile app, even if it means roaming a bit. It may cost more but itís cheaper than getting your account cleaned out.

But banks use https connections, so arenít they safe even through public WiFi? Usually, but itís important to be aware of other factors as well. 39% of people report to using just one or a few passwords for all their accounts. So potentially, if you use the same password at an unsecured site that you use at your bankís secure one, a snoop could access your bank account too. Snoopers also use low-tech methods, simply peeking over your shoulder as you enter a password.

Keeping your content safe on the go

67% of people value the content on their device more than the device itself, illustrating the importance of taking backups before leaving on a trip. Or by using a content synchronization service that removes the need to take along clunky storage devices, and make it easy to safely and privately share photos with friends while on holiday.

Locating a lost or stolen device

A lost or stolen phone puts a damper on a vacation. And with 61% of people using their devices for both work and private purposes, there is extra reason to be cautious. A lost phone could impact not just your own data, but also your organizationís. Make sure your phoneís password-protected screen lock kicks in after just a short amount of time, like one minute.

Tips for good public WiFi hygiene:
  • Donít let your device connect to public WiFi spots automatically.
  • Delete out the WiFi access points youíve used when you arrive home.
  • Donít be logged into apps you donít need while traveling.
  • Check with the establishment youíre at to make sure the network you log onto is really theirs, and not one a snoop has set up to trick you.
  • Be aware of your surroundings and anyone who could be trying to peek over your shoulder.
  • Use a unique password for each account.
  • For laptops, disable file sharing and turn on the firewall, setting it to block incoming connections.
  • Use a VPN if possible, which secures your connection even on public WiFi.
  • Use a travel router with a prepaid SIM card for your own personal WiFi network.
  • At the very least, watch for the padlock and ďhttpsĒ in the address bar for any site with your personal information. If theyíre not there, avoid the site.
  • A good general rule: Assume anything you do over public WiFi is part of a public conversation.


More than 900 embedded devices share hard-coded certs, SSH host keys

SEC Consult analyzed firmware images of more than 4000 embedded devices of over 70 vendors and found that, in some cases, there are nearly half a million devices on the web using the same certificate.

Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.

Daily digest

Receive a daily digest of the latest security news.

Thu, Nov 26th