Digitaler Durchblick: Gehackt und geleakt: Was Betroffene tun können
Berichte über Hackerangriffe oder Datenlecks sind an der Tagesordnung - und bleiben längst nicht immer abstrakt: Der Diebstahl persönlicher oder sensibler Daten kann jeden treffen, immer. Und dann?
The Berlin Data Protection Officer advises users to take several precautionary measures if their personal, private information falls into the wrong hands due to cybercriminal attacks, exploited software security gaps, or improperly configured servers. These measures include changing passwords, monitoring account and credit card movements, being cautious of phishing attempts and not providing sensitive information, avoiding opening suspicious links or messages, refusing to pay ransom demands and contacting the police, documenting suspicious incidents with screenshots, and reporting abuse of online banking, debit cards, credit cards, etc. by calling the emergency notarization line 116 116 and filing a police report.
To prevent future leaks, users are encouraged to utilize free checking services such as the Identity Leak Checker from the Hasso-Plattner Institute or Troy Hunt's website "Have I been pwned?" where they can input their email addresses used as usernames to check if they have appeared in any known data leaks. Users should understand that these services only check leaks they have already evaluated and entered into their databases, and a negative result does not guarantee complete protection.
However, a positive result may indicate past data breaches. If new, unknown matches are found, users should quickly replace the compromised password with a new, secure, and unique one. The BSI offers guidance on how to do this effectively. Implementing two-factor authentication (2FA) where possible, especially for email accounts, online banking, or government services, is also recommended.
With 2FA, even if the password is compromised, the account remains protected as a second code is generated via an app. Additionally, users can adopt passwordless Passkey methods, which use cryptographic keys and are considered highly secure due to their resistance to hacking, guessing, or forgetting. Passkeys can be confirmed through biometric verification or PIN entry and are increasingly supported by password managers.
Lastly, sharing knowledge about these protection and security measures with others, particularly those less technologically adept, is crucial in enhancing overall cybersecurity.
Written by urgent.news from Handelsblatt's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.