Secure Browsing and HTTPS
Read the lock and the URL
HTTPS encrypts traffic between your browser and the website so casual eavesdroppers on the network cannot easily read passwords or form data. Look for https:// and a familiar domain spelling before signing in.
Safer: https://example.com/login
Risky: http://example.com/login
Risky: https://examp1e.com/login (lookalike)
Treat HTTPS as necessary, not sufficient
Encryption protects the path, not the honesty of the site. A phishing page can also use HTTPS. Confirm the organization name and domain, and prefer bookmarks for sites you visit often.
Harden everyday browsing
- Keep the browser updated and remove unused extensions
- Block pop-ups and be skeptical of permission requests for camera, mic, or location
- Download files only from expected sources
- Use private or separate browser profiles for sensitive work when helpful
Leave unsafe pages
If a site asks for unexpected payments, remote access, or your password to “verify” a prize, close the tab. Clear recent downloads if you saved something you did not intend to keep.
Comments
One comment per signed-in account. Comments are saved with this page’s URL.