{"id":1035,"date":"2017-02-10T16:45:56","date_gmt":"2017-02-10T13:45:56","guid":{"rendered":"https:\/\/www.endpointprotector.com\/blog\/?p=1035"},"modified":"2017-02-13T14:57:15","modified_gmt":"2017-02-13T11:57:15","slug":"do-not-let-the-trivial-webcam-turn-into-security-disasters","status":"publish","type":"post","link":"https:\/\/www.endpointprotector.com\/blog\/do-not-let-the-trivial-webcam-turn-into-security-disasters\/","title":{"rendered":"Do not let the trivial webcam turn into security disasters"},"content":{"rendered":"<p>Last year, Mark Zuckerberg, has incidentally revealed the simple security measures he takes to secure his MacBook: webcam and mic covered with tape. In short time, the story\u00a0was\u00a0covered by many news outlets, drawing everyone\u2019s attention to the security issues. Many asked themselves why he would do such a paranoid thing. Is Mark\u2019s fear of being seen and listened justified? If we think about the possibilities of exploiting webcams, and the fact that there&#8217;s even the smallest chance of being watched or heard without our permission, then, Mark&#8217;s concerns are totally legit. Taking into consideration the level of success of its business, he has been probably the target of many cyber attacks attempts.<br \/>\nJust imagine yourself sitting home, having a glass of wine and working on your laptop in your pajamas\u00a0when suddenly your webcam light starts to blink, recording every little thing you do. Or even worse, having an important work meeting with important clients and partners, discussing financial information and someone is using your webcam and microphone to record everything from your laptop. Sounds pretty scary, doesn\u2019t it?<\/p>\n<h2>How can webcams and microphones be exploited?<\/h2>\n<h3>Phishing<\/h3>\n<p>With accessible tools and phishing techniques, hackers can easily hijack webcams, without your knowledge. Gone are the days when hackers were just a small group of high skilled persons that had advanced technology knowledge. Today, becoming a hacker is much easier than you think. From curious teenagers, jealous partners, detectives or just noisy persons, many can easily become a hacker.<br \/>\nPhishing emails are one of the most used techniques. Tools like Meterpreter, with a built-in module for controlling the remote system\u2019s webcam, allow hackers to control the webcam and capture snapshots with it, after getting the victim to click on a link to a malicious website, send a malicious Microsoft Office document or Adobe Acrobat file or more.<br \/>\nThe good news is that an attacker\u00a0can\u2019t simply access any webcam at any time. They first have to scan a network for vulnerable operating systems to infect them with a Trojan. Once the Trojan root kit is installed on the victim\u2019s computer, hackers gain physical access to the computer, gaining its control and spying on\u00a0its\u00a0webcam.<\/p>\n<h3>RATs<\/h3>\n<p>Software like RAT&#8217;s (Remote Administration Tools), are usually being used in corporate environments to help configure and track machines remotely, but\u00a0malicious individuals\u00a0can use them for other purposes. Once a RAT has been installed, a hacker can sell to anyone access to its compromised webcam to secretly watch or record everything.\u00a0<a href=\"https:\/\/en.wikipedia.org\/wiki\/DarkComet\">DarkComet<\/a>, <a href=\"https:\/\/www.washingtonpost.com\/news\/morning-mix\/wp\/2014\/05\/20\/5-scary-things-about-blackshades-malware\/?utm_term=.993d84fff5ff\">Black Shades<\/a>, are just some examples of RAT tools that have been used in webcam hacks.\u00a0But our purpose here is not to offer an exhaustive list of methods or tools used to exploit webcams, microphones or other computer ports. We want to make you aware of what to stay out of \u2013 e.g. phishing e-mails \u2013 and, most importantly, what other measures you can take to avoid being the victim of webcam and microphone spying.<\/p>\n<h3>Webcam and microphone security<\/h3>\n<p>Most solutions you can use are not specifically designed for webcam and microphone security, but rather for computer and data security in general. Therefore, any technical solution has to be accompanied by a certain user behavior or best practices when it comes to working with certain applications or technologies.<\/p>\n<ul>\n<li><strong>Keep your antivirus updated<\/strong> \u2013 for the sake of your company information security and employees\u2019 data privacy, make sure the antivirus is up to date to catch all forms of malware that can be used to get access to webcams and microphones<\/li>\n<li><strong>Avoid clicking on suspicious links in e-mails, websites, or apps<\/strong> \u2013 pay attention to the links you receive in e-mails; it\u2019s easy to see if they are harmless by hovering with the mouse on top of them and see the URL, if it corresponds with the sender\u2019s domain. <a href=\"https:\/\/www.endpointprotector.com\/blog\/8-data-security-risks-you-should-be-aware-of-on-black-friday\/\">Here<\/a> we described more in detail how phishing looks.<\/li>\n<li><strong>Do not connect to unsecured WiFi<\/strong> \u2013 they are available everywhere, from restaurants, train stations, hotels, airports, to town squares, and malls. People\u2019s constant need to be Internet-connected has blinded many of them in the face of the risks, making them vulnerable to attacks that take different forms.<\/li>\n<li><strong>Keep software and operating systems up to date<\/strong> \u2013 to be sure you have the latest patches with fixes for vulnerabilities and avoid attackers to penetrate your system and take control of it.<\/li>\n<li><strong>Pay attention to your camera LED<\/strong> \u2013 this is a simple way to tell if the camera is on, even though you didn\u2019t activate it; however, you shouldn\u2019t rely too much on this, because many hackers have figured out how to control that too.<\/li>\n<li><strong>Update cameras\u2019 firmware<\/strong> \u2013 regular updates installed from the manufacturer\u2019s website eliminate weak spots that can be exploited<\/li>\n<li><strong>Use slide covers<\/strong> \u2013 they come with many computers by default and they are more traditional solutions, but they seem to do the trick for individuals like Mark Zuckerberg, the FBI Director, James Comey, and according to James, <a href=\"http:\/\/www.businessinsider.com\/fbi-director-covers-webcam-2016-9\">all government offices in US use a lid to cover web cameras<\/a>.<\/li>\n<\/ul>\n<p>We are living complicated times, with technology deeply integrated into our lives, making them easier, more interesting and, unfortunately, more vulnerable. If we fail to understand the risks, we will surely fail also in fighting them. Webcams, microphones, wearables, etc. are some of the most trivial devices or gadgets we use and, at the same time, able to invade our most private aspects of our lives. Therefore, the effort to respect the above security measures is small compared to the implications of a possible hack. Just think about that when you have your next video call.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Last year, Mark Zuckerberg, has incidentally revealed the simple security measures he takes to secure his MacBook: webcam and mic covered with tape. In short time, the story\u00a0was\u00a0covered by many news outlets, drawing everyone\u2019s attention to the security issues. Many asked themselves why he would do such a paranoid thing. Is Mark\u2019s fear of being &hellip; <\/p>\n<p class=\"link-more\"><a href=\"https:\/\/www.endpointprotector.com\/blog\/do-not-let-the-trivial-webcam-turn-into-security-disasters\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;Do not let the trivial webcam turn into security disasters&#8221;<\/span><\/a><\/p>\n","protected":false},"author":5,"featured_media":1036,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[104],"tags":[],"class_list":["post-1035","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-other-security-topics","entry"],"acf":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/posts\/1035","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/comments?post=1035"}],"version-history":[{"count":5,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/posts\/1035\/revisions"}],"predecessor-version":[{"id":1042,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/posts\/1035\/revisions\/1042"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/media\/1036"}],"wp:attachment":[{"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/media?parent=1035"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/categories?post=1035"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.endpointprotector.com\/blog\/wp-json\/wp\/v2\/tags?post=1035"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}