Business Daily Media

Men's Weekly

.

Account takeover is on the rise: how to protect yourself

KUALA LUMPUR, MALAYSIA - Media OutReach - 28 October 2022 - Everyone has a friend who has been subject to account takeover attack. With 24 billion exposed accounts available online, this type of identity theft is now rampant in the digital domain.

This article from OctaFX security experts explores the nature of account takeover attacks and advises on how to protect yourself from them.



A recent research by Digital Shadows showed that more than 24 billion exposed credential pairings are available for sale online. That is a 65 per cent increase from 2020, probably due to more sophisticated malware and social engineering, as well as improved credential sharing.

With passwords such as ‘123456’ still accounting for more than one hundred million exposed cases, account takeovers are bound to continue. However, there are ways to avoid them, which we will cover later in the article. First, let’s consider whether account takeover (ATO) is something that everyone really has to worry about.

Account takeover: how it happens

The ATO attacks are somewhat similar to burglary. Fraudsters or hackers either crack your password using special software—just as burglars do to open the doors of a building—or get it from you through social engineering and dedicated malware. Then they make it impossible for you to log into your account by changing the password. Unlike the case with burglars, you can lose all your sensitive information, as well as your money, at once. After online fraudsters take all they want from your accounts, they might sell it on the dark web as part of a database consisting of such accounts.

There are several most common types of account takeover attacks carried out to steal your credentials:

  • Social engineering. These types of attacks typically use phishing emails from a service or organisation you are expected to trust, such as your bank, a broker, or a payment system. This email attempts to steal your personal information, including logins and passwords. Social engineers might also call you (that’s called vishing) and pretend to be bank representatives or customer service workers of some of the services you use. Then they attempt to trick you into giving them your login credentials or other sensitive information.
  • Malware. It’s easy to download malware accidentally. It may look just like another message from a client with an attached file, or as a file of a book you wanted to read so much. However, if you open it, there’s almost no way back—the program can encrypt all the files on your computer and block your system. The only way to decrypt the files and unblock the system is typically a hefty ransom.
  • Automated attacks. This type of ATO attack involves brute-forcing passwords, credential stuffing, where credentials obtained from an attack on one service are used for logging into other services, and password spraying, where a few common passwords are used for logging into different accounts.
  • Cyber attacks. Hackers might exploit vulnerabilities in applications and sites to obtain their user databases with logins and passwords. Then they either sell the databases on the dark web or try to use them themselves.

Five tips from OctaFX on how to protect your accounts from takeover

The OctaFX security experts have come up with several important rules that every internet user must follow to protect their accounts from cyber attacks:

  • Always use strong passwords. Many strong passwords. Ideally, let each of your accounts have its own password. For critical accounts, create passwords longer than ten characters, with combinations of upper-case and lower-case letters, numbers, and special characters. Use password managers, such as KeePass, to store your passwords.
  • Use MFA (multi-factor authentication), such as 2FA (two-factor authentication), to confirm your identity via email notification, smartphone, PIN, fingerprints, or facial recognition. An alternative to MFA is an authenticator app, which generates random six-digit codes every thirty seconds that you must enter when trying to log into your account.
  • Don’t use your work email address for personal use. Preferably, use multiple personal email addresses.
  • Don’t save your bank cards with any online store. When buying something on the internet, make sure the site you are using is reliable and secure.
  • Don’t use public Wi-Fi or any other public network when logging in to important accounts.
  • Don’t follow suspicious links and don’t download attachments from suspicious emails that you have not seen before.

Preventive measures against potential ATO attack

Don’t panic. If you received a message indicating that someone is trying to log into your account, check its login history and the devices that have access to it, if such information is available. If anything seems suspicious to you, or you know for certain that it wasn’t you who entered the account, change your password immediately. Look carefully if any information of yours has been altered or removed, and try to recover it.

Four steps to take after an ATO attack

  • Try to regain access to your accounts. If you are lucky and the fraudsters haven’t changed your password or removed your recovery phone number, you can access your account and change the password yourself. Remember to do it quickly!
  • If you cannot log into your account any more, try contacting the support team of the service or site with which you have the account. Ask them to block your account. Be ready to provide evidence proving that you owned the account in the first place, as well as your identity documents.
  • If cybercriminals took over your primary email account, make sure they cannot access other platforms and services linked to it, especially the ones with your bank card added as a payment method. Ideally, call the bank and ask to block all the cards you used for internet payments. Try to remove the compromised email from all accounts you still have control over. Criminals will easily log into most of them, having access to your email.
  • If your work email is under attack, immediately notify your employer and ask the tech department to block all access the email account has to sensitive business information.

An account takeover is something anyone may encounter at some point in their internet life. Following the above rules significantly reduces the risk of becoming a victim of ATO and losing all your most important accounts at once.

Hashtag: #OctaFX

The issuer is solely responsible for the content of this announcement.

About OctaFX

is a global broker that has been providing online trading services worldwide since 2011. It offers commission-free access to financial markets and a variety of services utilised by clients from 150 countries who have opened more than 12 million trading accounts. Free educational webinars, articles, and analytical and risk management tools the broker provides help traders reach their investment goals.

The company is involved in a comprehensive network of charity and humanitarian initiatives, including the improvement of educational infrastructure, short-notice relief projects, and supporting local communities and small to medium enterprises.

In the APAC region, it managed to capture the 'Decade Of Excellence In Forex Asia 2021' award and the 'Best Forex Broker Malaysia 2022' by Global Banking And Finance Review, World Finance, and Cfi.Co, respectively.

News from Asia

The Healing Frequency: INDIBA® 448kHz + 20kHz Is Revolutionizing Recovery For Athletes and Everyone Else

SINGAPORE - Media OutReach Newswire - 7 August 2025 - INDIBA® 448 kHz + 20kHz, a patented frequency system that is transforming how athletes and everyday patients recover from injury, manage pain...

Hong Kong sees broad-based economic resilience under "One Country, Two Systems"

HONG KONG SAR - Media OutReach Newswire - 8 August 2025 - Last week, the Hong Kong Special Administrative Region (HKSAR) Government published a comprehensive report on the city's business environm...

Neo Smiles Dental Studio Marks 10 Years of Orthodontic Care in Singapore

SINGAPORE - Media OutReach Newswire - 8 August 2025 – Neo Smiles Dental Studio marks its 10th anniversary, reflecting on a decade of growth from a one-chair practice in the heartlands to a multi-b...

Gold market July 2025 overview and August 2025 preview: a monthly digest by the global broker Octa

KUALA LUMPUR, MALAYSIA - Media OutReach Newswire - 8 August 2025 - Octa Broker is providing an in-depth overview of the week's key events and actionable insights to help traders navigate this hig...

Octa broker's coding bootcamp in Malaysia: Stage 1 completed

KUALA LUMPUR, MALAYSIA - Media OutReach Newswire - 8 August 2025 - Sponsored by Octa broker, the second instalment of the STATUS 200 coding bootcamp is held on-site in Kuala Lumpur...

Cyberport Leads Start-ups to MyFintech Week in Malaysia

Signing Multiple MoUs to Drive Regional FinTech Collaboration and InnovationHONG KONG SAR - Media OutReach Newswire - 8 August 2025 - Cyberport led a delegation of its FinTech start-ups to partici...

IVD Medical Holding Limited (01931.HK): Officially launched the application for the US stablecoin license and accelerated the landing of the IVDNewCo Exchange ecosystem

HONG KONG SAR - Media OutReach Newswire - 21 July 2025 – IVD Medical Holding Limited(01931.HK) - Forward-looking layout of the historical opportunity of the US "Genius Act", the IVDD stablecoin pl...

Dusit International expands Saudi portfolio with new dusitD2 resort in Al Ahsa

RIYADH, SAUDI ARABIA - Media OutReach Newswire - 8 August 2025 - Dusit International has signed a hotel management agreement with Al Ghadeer Group to operate dusitD2 Al Ahsa – a new upper-upscale ...

OPPO Celebrates SG60 with Local Communities, Inspiring Singaporeans to Reconnect Through Creativity and Technology

SINGAPORE - Media OutReach Newswire - 8 August 2025 – In celebration of Singapore's 60th birthday, OPPO Singapore has launched its vibrant SG60 campaign, a multi-dimensional initiative designed to...

Bora Pharmaceuticals 2Q25 Operating Margin Expanded 5 Percentage Points, Reaching Quarterly High Since The Start of Integration in 4Q24; Strong Momentum Poised to Accelerate in 2H25 As Operational Efficiency Gains Materialize

HONG KONG SAR - Media OutReach Newswire - 8 August 2025 - Bora Pharmaceuticals (TWSE: 6472) today announced its financial results and operational highlights for second quarter of 2025. Quart...

Carma appoints Owen Wilson as Chair of the Board

Carma’s next phase of growth to be guided by REA Group’s outgoing CEO who oversaw realestate.com.au rise to be Australia's #1 place for property ...

Digital Upgrade to Boost Efficiency Across Tasmanian Ports

TasPorts is undertaking a multimillion-dollar digital transformation that will improve efficiency, and enable smarter, more sustainable operations a...

Simplifying ecommerce integrations: How to streamline your setup without the stress

In today’s fast-moving retail world, having an ecommerce presence isn’t optional. Platforms like Shopify, WooCommerce, and Squarespace have lowered...

Shop Small Returns to Back the Small Businesses Supporting Local Communities

The annual Shop Small movement by American Express is returning for its 13th year in Australia to galvanise support for the country’s vibrant smal...

Introducing Commerce, the New Parent Brand of BigCommerce, Feedonomics and Makeswift, Powering an AI-Driven Future

Commerce’s open, intelligent ecosystem connects the tools and systems that drive growth and empower businesses to unlock data potential and deliver ...

How better billing can boost performance and profits in uncertain times

Optimising your revenue management function will help you put your business on stronger footing. The fact that economic conditions are tricky i...

Sell by LayBy