HACKER Q&A
📣 ghoomketu

Basic Security Practices for a Noob


My AWS account was recently hacked and it accumulated a bill in high five figures.

Even though the nice people at AWS helped me out big time the whole incident has made me very anxious about computer security.

I was wondering if some security experts can give me a few tips about the basic precautions you take and what everyone should take. I thought using a strong unique password was enough but of course this is not the case nowadays.

One thing I feel is a must is use MFA everywhere. Unfortunately not every service supports it.

Other is fwd all your emails to one point. I could have easily prevented the huge bill had I not used a very old email that I don't check anymore. So lesson is even if it a yahoo address make sure to fwd it.

Also this isn't big but every time you signup for a free trial mark the thing physically on a calendar. I have been charged recurring subscriptions so many times after trial expires.

What else comes to mind?


  👤 tsjq Accepted Answer ✓
AWS -specific : watch that Stephan Mareek course videos.