Cyber Security Awareness and Protection Guide
Cyber Security Awareness and Protection Guide
Stay safe online with practical cyber security guidance from Eyebroadband. Learn to protect your home network, recognize threats, secure your accounts, and safeguard your personal and business data.
Why Cyber Security Matters
India experienced over 13 lakh cyber security incidents in 2022 according to CERT-In, and the number continues to rise each year. The average cost of a data breach for Indian businesses exceeded 17.9 crore rupees in 2023. These are not just statistics affecting large corporations. Home users face identity theft, financial fraud, and ransomware attacks that can lock them out of personal photos, documents, and financial records. Small businesses are increasingly targeted because attackers know they often lack dedicated security teams. Understanding common attack methods and taking basic precautions can prevent the vast majority of cyber incidents.
Protecting Your Home Network
Your home WiFi router is the gateway to every device in your house, and securing it properly is the single most impactful step you can take. Start by changing the default admin password on your router. The default credentials (usually admin/admin) are publicly known for every router model, and attackers actively scan for routers using default passwords. Set a unique, strong admin password and store it in a password manager.
Enable WPA3 encryption on your WiFi network if your router supports it. If not, use WPA2-PSK with AES encryption. Never use WEP, which can be cracked in minutes with freely available tools. Keep your router firmware updated, as manufacturers regularly patch security vulnerabilities. Enable the router firewall and disable remote management unless you specifically need it.
If you have smart home devices such as cameras, smart speakers, or IoT sensors, put them on a separate guest network. This network isolation ensures that if a vulnerable IoT device is compromised, the attacker cannot use it as a stepping stone to access your computers, phones, or personal files on the main network. Consider using DNS-based filtering like Cloudflare Family (1.1.1.3) or OpenDNS to block malicious domains at the network level before they can even load in your browser.
Recognizing Phishing and Scams
Phishing remains the most common cyber attack vector because it exploits human trust rather than technical vulnerabilities. Modern phishing emails are sophisticated and can closely mimic legitimate communications from banks, government agencies, or service providers. Always check the actual sender email address, not just the display name. A message from "HDFC Bank" that comes from [email protected] is a clear red flag.
Look for urgency tactics such as "Your account will be suspended in 24 hours" or "Immediate action required." Legitimate organizations rarely demand immediate action via email. Check for generic greetings like "Dear Customer" instead of your actual name. Hover over links before clicking to see the actual URL in your browser status bar. If the URL does not match the organization it claims to be from, do not click it. SMS phishing (smishing) is also common in India, with fake messages about KYC updates, reward points, or tax refunds. Never click links in unexpected SMS messages. Instead, open the official app or website directly.
Password Security
Weak and reused passwords are responsible for a massive proportion of account compromises. Use a password manager like Bitwarden, 1Password, or the built-in managers in Chrome and Safari to generate and store unique, complex passwords for every account. Your master password should be a long passphrase that you can remember, such as a combination of four or five random words. Enable two-factor authentication (2FA) on every account that supports it, prioritizing email, banking, and social media accounts. Prefer authenticator apps (Google Authenticator, Authy) over SMS-based 2FA, as SIM-swapping attacks can intercept SMS codes. Never share passwords via email, WhatsApp, or any messaging platform.
Safe Browsing Habits
Always verify that websites use HTTPS (look for the padlock icon in the address bar) before entering any personal information or credentials. Avoid conducting banking transactions or accessing sensitive accounts over public WiFi networks. If you must use public WiFi, connect through a reputable VPN service first. Keep your browser updated to the latest version, as browser updates frequently include critical security patches. Install a reputable ad blocker like uBlock Origin, which blocks not only ads but also many malicious scripts and tracking attempts. Be cautious about browser extensions, as malicious extensions can read everything you type, including passwords. Only install extensions from the official Chrome Web Store or Firefox Add-ons page, and remove extensions you no longer use.
Protecting Your Business
For businesses, cyber security is not optional. Start with employee awareness training, as human error is the leading cause of security breaches. Conduct regular phishing simulations to test and improve awareness. Implement role-based access controls so employees only have access to the systems and data they need for their specific job functions. Encrypt sensitive data both at rest and in transit.
Follow the 3-2-1 backup rule: maintain 3 copies of important data, on 2 different types of media, with 1 copy stored offsite or in the cloud. Test your backups regularly by actually restoring from them. Develop an incident response plan that outlines what to do when a security incident occurs, who to notify, and how to contain the damage. Familiarize yourself with compliance requirements under the Information Technology Act 2000 (and its 2008 amendments) and GDPR if you handle data of EU residents.
Eyebroadband Security Solutions
Eyebroadband offers several security products to protect our customers. Our Unified Threat Management (UTM) solution provides enterprise-grade firewall, intrusion detection, antivirus, and content filtering for businesses. Our Scam Guard service blocks known phishing domains and scam websites at the network level, protecting every device in your home or office without requiring any software installation. For businesses needing comprehensive security management, our managed security service includes 24/7 monitoring, incident response, and regular security assessments. Contact us to learn which solution fits your needs.
Strengthen Your Cyber Security Today
Whether you need help securing your home network, protecting your business from threats, or want to learn more about our managed security solutions, our team is here to help. Do not wait until after an incident to take security seriously.
Get Security ConsultationFrequently Asked Questions
How do I know if I have been hacked?
Common signs include unexpected password reset emails, unfamiliar devices logged into your accounts, unusually slow computer performance, strange programs running in Task Manager, unexpected pop-ups, friends receiving messages you did not send, and unexplained charges on your financial accounts. If you notice any of these signs, immediately change your passwords from a different device, enable two-factor authentication on all accounts, run a full antivirus scan, and check your email account forwarding rules for unauthorized entries.
What is phishing and how can I avoid it?
Phishing is a social engineering attack where criminals impersonate trusted organizations through emails, SMS messages, or fake websites to trick you into revealing passwords, credit card numbers, or personal information. To avoid phishing, always check the sender email address carefully (not just the display name), look for spelling errors and generic greetings, never click links in unexpected emails, type URLs directly into your browser instead, and verify requests by contacting the organization through their official phone number. Eyebroadband will never ask for your password via email or SMS.
Should I use a VPN?
A VPN (Virtual Private Network) encrypts your internet traffic and hides your IP address, which is valuable in specific situations. You should use a VPN when connecting to public WiFi at cafes, airports, or hotels, when accessing sensitive work resources remotely, or when you want to prevent your browsing activity from being visible to others on the same network. For your home broadband connection from Eyebroadband, a VPN is optional since the connection is already private between your router and our network. Be aware that VPNs can reduce speeds slightly due to encryption overhead.
How do I protect my children online?
Start with router-level parental controls to filter content across all devices. Configure DNS-based filtering using services like OpenDNS Family Shield (208.67.222.123) which blocks adult content at the network level. Set up separate user accounts on shared computers with appropriate restrictions. Use built-in parental controls on iOS (Screen Time) and Android (Family Link) to manage app access and screen time. Have open conversations about online safety, teach children never to share personal information, and keep devices in common areas of the home.
What should I do if I clicked a suspicious link?
If you clicked a link and entered credentials on a suspicious page, immediately change the password for that account from a different device. Enable two-factor authentication if it is not already active. If you entered financial information, contact your bank immediately to freeze the card or account. Run a full antivirus scan on the device you used. Monitor your accounts for unusual activity over the next few weeks. If you clicked a link but did not enter any information, run an antivirus scan to check for downloaded malware and clear your browser cache.