Even to this day, a lot of people don't take their cybersecurity seriously.
And it also seems to me that a lot of people underestimate the risks they're taking.
There's nothing dumber than hearing people say "I have nothing/nothing to hide anyway".
Really? So you'd be fine with having every single DM you've ever sent to anybody ever made public? You'd be fine with having your debit card details compromised?
Anyway, there are 5 lessons I've learnt the hard way, plus a few I've learnt the less hard way, so here's a short list.
-
Don't use the same password for everything
I think people do this because they're lazy. And I'm guilty of that. But it's one thing if you use the same password for, say, Canva and FaucetCrypto, it's a different scenario if you use the same password for your email and the crypto exchange connected to your email.
Ideally, you'd want a new password for every single thing/platform/account you use, but I understand that's a bit complicated, so at least pick your battle.
-
Use long and complex passwords
I read comments online and it's amazing how many people think their passwords can be guessed like they do in the movies. It doesn't work like that, as most of you know.
Passwords aren't guessed, they're hacked.
Different 'studies' and calculations provide different results but, broadly speaking, everyone agrees that a six-character password without a combination of letters, numbers and symbols can be hacked in seconds.
By contrast, a 16-character password with a combination of letters, numbers and symbols potentially takes centuries, or at the very least decades to crack.
-
Use 2FA apps, not text messages
It's incredible how many people think 2FA text messages are the same as 2FA apps.
2FA apps are pretty secure, generating a combination of six numbers that changes every 15-30 seconds, but 2FA text messages are not, because it's the work of a moment to clone your phone number and have those text messages received by somebody else.
-
Diversify
Using different emails for different platforms where you keep your money, different passwords, different 2FA apps even - it all adds to your security.
It is statistically very unlikely to be hacked everyone at once.
So at the very least there's that.
-
Don't advertise your wealth
I've never understood crypto YouTubers. Brian Armstrong, CEO of Coinbase, can afford to spend seven figures a year on security, but most YouTubers can't, and they're so exposed.
I remember watching YouTube videos of people who openly said how much they had, and on which platform, and then the next video they'd be giving a house tour (!) telling you not only the city but sometimes the area where they live.
This is insane to me.