Read the news about 1.6 M records stolen from Monster.com. I am just wondering is my record one of them?
If we look through the source of the problems, it possibly can be prevented by having following:
1) Multi factor authentication for legitimated employer looking for candidates. This is because one of the trojan "Infostealer.Monstres" ripped off Monster.com by using legitmate log-ons, likely stolen from recruiter and human resource personnel who have access to the "Monster for employers" areas of the site. By multi factor authentication, access is not only limited to user ID and password but the third factor. This largely reduce the likelihood of unauthorised access.
2) Do not provide personnel telephone number or credit card number. Eventhough, there may be some requirements for candidate to provide telephone in order for the head-hunter to contact you. The head hunter can alwasy email you for a telephone if they are really interested in you.
For details of the news please refer to http://www.networkworld.com/news/2007/082007-monster-trojan.html?nlhtsec=0820securityalert2
The opinion above is just a little thought of mine..purely subjective and whoever use the information above is subjected to bear their own responsibility.
Wednesday, August 22, 2007
Are we affected??
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment