[Application Security] "My QQ was stolen, please don't believe any news..."

  • Written | Hengxin
  • Edit|Yu Zhenni
  • Information Collection|Hengxin **

In life, you may have encountered a situation where either your QQ was stolen or your friend's QQ was stolen. Let’s first talk about how hackers steal QQ passwords.

Insert picture description here

1. Trojan Horse Attack
Insert picture description here

The commonly used Trojan horse for account stealing is a Trojan horse program that can automatically record the account and password. Once the target computer runs the Trojan horse, it will save the recorded account and password in a text file designated by the local computer or send the account and password to The pre-set mailbox. Some Trojans have no processes and no registry startup items, which makes computer security software unable to detect, kill and delete them.

In addition to stealing account numbers and passwords, some attackers will remotely attack QQ, make tail files or send QQ bombs, etc. Tail files are web pages with Trojan horse viruses. QQ bombs send large amounts of the same to each other when chatting with the target QQ. Information.

2. Phishing

Phishing is a form of fraud. Attackers use social engineering and technical flaws to trick users into fake websites, thereby stealing users’ personal identity information, bank accounts, passwords, credit cards and other confidential information. Higher-quality phishing websites will The official website was completely pulled down, making the deceived user think it was the official website.

Phishing information about QQ is to imitate and make the login page of QQ to let the user enter the QQ account and password. When the user input is completed, one result is that the account information is recorded and the input error is prompted, and at the same time, it will jump to the official QQ login page. At this time, you will log in normally after entering the account password; the other is that it will not redirect, always prompting the account or password error, and sending the account information to the pre-set mailbox.

Let's talk about how to protect QQ account information:

QQ account protection

Don’t accept files from unknown sources, don’t click on strange links, don’t mess with dangerous websites. When logging in to QQ with untrusted devices, try to scan the QR code to log in to prevent Trojan horses from invading your computer.


Do not use weak passwords for QQ password protection . When setting the password, the length should be no less than 6 digits, and the password should be designed with a combination of numbers, uppercase and lowercase letters and symbols, and do not set it as your own mobile phone number, birthday, and ID number , The pinyin of the name, etc. It is not safe to select "Remember Password". When a hacker intrudes into the computer, the content saved in the computer can be easily obtained. You can also apply for QQ password protection to improve the security of your QQ account by setting up secret protection questions.

QQ chat record protection
QQ can also encrypt chat records. Enter the security setting interface under QQ system settings to set a message record password, which can prevent users from leaking chat records when the account and password are stolen.

The picture in this article is reproduced from https://www.yzlfxy.com/system/windows/318149.html

Guess you like

Origin blog.csdn.net/YiAnSociety/article/details/112987028