Fišing

From xat wiki
This page is a translated version of the page Phishing and the translation is 11% complete.
Outdated translations are marked like this.

Jeste li ikad čuli da je neko izgubio xats, ili da im je neko preuzeo račun? Vjerovatno su bili "fišovani".

Šta je fišing?

Fišing je trik koji koriste kriminalci kako bi ukrali vaš imejl i šifru. To nije sigurnosna mana, i niste "hakovani". U potpunosti možete da ovo spriječite, ako znate na šta treba da pazite. Sigurno ste do sada bili upozoreni od strane vaše onlajn banke o fišing sajtovima, ali mnogi ljudi ne brinu o tome dok koriste njihov xat račun. Na xatu fišeri pokušavaju da ukradu vaše xats, days, powers, identitet i imejl račun.

Kako krađa funkcioniše?

Krađa započinje tako što osoba pokuša da vas fišuje tako što napravi stranicu koja izgleda identično kao login strana websajta koji pokušavate da koristite. Onda fišer smisli kreativan način da vas nagovori da kliknete na link koji vodi na tu stranu ubjeđujući vas da ćete dobiti besplatne xats, days i powers. Kada vidite link i kliknete ga, predstavljena vam je lažna login strana, napravljena od strane fišera. Ako ukucate svoje informacije, fišovani ste-upali ste u zamku i oni su sačuvali vaše korisničko ime i šifru. Fišer će onda da uđe na vaš profil i ukrade vaše xats, days i powers, vaš identitet, kao i vaš imejl račun.

VAŽNO: ako neka stranica traži šifru vašeg imejla, TO JE FIŠING STRANA. xat NIKADA NEĆE tražiti šifru vašeg imejla.

Kradljivci će možda tražiti da im date .sol fajl sa vašeg računara, ili će vam reći da downloadujete sol urednik i kažete im brojeve, uz obećanje da ćete biti ovner na četu ili vas neće moći banovati. Ovi brojevi su vaše lozinke i treba da ostanu tajna. Kradljivac uz ove brojeve može da vas fišuje. NIKADA ne bi trebalo da dajete bilo kome tajne fajlove ili lozinke.

Kako da se zaštitim?

In order to prevent yourself from getting phished by a criminal, we highly recommend you follow these precautionary steps:

Step 1: When you are logging into your account, ALWAYS make sure that you are on xat's account panel. You can find out if you are on the correct page by looking at the URL bar, which is located at the top-left corner of your web browser. If the link shows https://xat.com/login, you are on the correct page. If it shows anything other than the link provided, do NOT enter your e-mail address, username or password on that page. Leave the page immediately, and report the phishing website by submitting a ticket under the category "Report Phishing Site". You do not need to be a paid user to submit a ticket in this department.

Step 2: When you are logging into your account, you have the option of either entering the e-mail address that is associated with your account, or your registered username. When it comes to entering your password, ALWAYS make sure it is the password that is associated with your account, and not your e-mail address. xat will NEVER ask you for the password that is associated with your e-mail address under any circumstances. In order to ensure your account is fully protected, use a password that is not the same password as your e-mail address. Also, make sure your password is alphanumeric, which consists of both letters and numbers (but not symbols). Make sure that your password is not easily guessable. As long as it contains at least 10 characters (or more), you will be fine. Do not make your password too long or you might forget it. We highly recommend you avoid using patterns or words in your password, and to always change your password on a monthly basis. It's better to be safe than sorry.

Step 3: When it comes to fully protecting your account, we highly recommend enabling Account Protection. There are three levels of protection, and the higher the number, the stronger/stricter your protection is. For more information on each of these levels, click here.

Step 4: Depending on your Account Protection setting, you will be required to log into xat through a security check email. Make sure the sender of this email is [email protected] and not a criminal pretending to be xat. Criminals may try to deceive users by recreating xat's email address with closely resembling characters. If the email address is different, please report this as a phishing email. Even if the email address is an exact match, however, this is still no guarantee the email is legitimate, and you should take caution at all times. Consider whether you were expecting the email or if it was sent to you unexpectedly. Also, it is crucial to increase the security of the email address associated with your account, to prevent unauthorized users from gaining access. If you lose access to your email address, e.g. because it was compromised, you will lose access to your account. To learn more about keeping your account and email address secure, click here.

Tips for spotting a phishing e-mail

Always check the 'from' e-mail address of the email you received and check the characters aren't suspicious. Even e-mail addresses can sometimes be spoofed.

Phishers will often attempt to make the e-mail look as legitimate as possible by including a logo or professional name such as "Account Support" or "Security Help."

Hover over links in an e-mail before deciding to click on them. The link could direct you to a suspicious address completely unrelated to the text in the link. Never open or download anything unless you are certain they come from a safe source.

Šta da radim ako mislim da sam fišovan?

If you suspect that an unauthorized user may have compromised your account, do NOT panic. It will only make the situation much worse than it needs to be. The first thing you need to do is change the password to not only your account, but your e-mail address as well, for extra security measures. Also, if you remember the link of the phishing website you were on, report the phishing website as soon as possible by submitting a ticket under the category "Report Phishing Site" and provide as much sufficient proof about the occurrence as you can, such as the date and time of when you went on the phishing website and the date and time of when you got phished. The sooner you report the phishing website, the faster the phishing website will be shut down.

Under NO circumstances should you EVER log into another user's account, even if you've been granted permission to. You will be in direct violation of xat's Terms of Service. Failure to comply with xat's terms of service will result in your account being torched and/or deleted.