- Systems Preferences > Software Update > Make sure it's up to date.
- Also, click "Advanced" button and, at a minimum, make sure that the check box for "Check for updates" and "Install system data files and security updates" are enabled.
- Anti-malware protection: At a minimum, install the free version of Malwarebytes: https://www.malwarebytes.com/mac-download/
- Set a weekly reminder to manually run a scan. The purchased version can automatically scan.
- To prevent Facebook from tracking you around the web. I recommend installing:
- Firefox: https://www.mozilla.org/en-US/firefox/mac/
- The Firefox Facebook Container browser extension: https://addons.mozilla.org/en-US/firefox/addon/facebook-container/
- Optionally, you may also wish to install other Firefox-created browser extensions from: https://addons.mozilla.org/en-US/firefox/user/4757633/
- Firefox Multi-Account Containers "lets you keep parts of your online life separated into color-coded tabs that preserve your privacy. Cookies are separated by container, allowing you to use the web with multiple identities or accounts simultaneously."
- Firefox Relay which "lets you generate email aliases that forward to your real inbox. Use it to hide your real email address and protect yourself from hackers and unwanted mail."
- To install an Ad-blocker, I recommend uBlock Origin. Install the browser extension in both
- Firefox: https://addons.mozilla.org/en-US/firefox/addon/ublock-origin/
- Chrome: https://chrome.google.com/webstore/detail/ublock-origin/cjpalhdlnbpafiamejdnhcphjbkeiagm?hl=en
- Verify that all currently running processes are legit. Run Objective-See's Task Explorer: https://objective-see.com/products/taskexplorer.html
- Once running, use the top right corner filter "#nonapple" to remove Apple processes from the list.
- Scroll through the top list and ensure that the process and, more importantly, the full path look familiar to you. Also, make sure the "virustotal" value for each entry is 0 or low. For example:
- Chrome 0/75 virustotal
/Applications/Google Chrome.app/... - Chrome Helper 0/74 virustotal
/Applications/Google Chrome.app/... - Firefox 0/76 virustotal
/Applications/Firefox.app/... - FrontendAgent 0/76 virustotal
/Library/Application Support/Malwarebytes/... - plugin-container 0/76 virustotal
/Applications/Firefox.app/... - RTProtectionDaemon 0/75 virustotal
/Library/Application Support/Malwarebytes/... - SettingsDaemon 0/76 virustotal
/Library/Application Support/Malwarebytes/... - If you see a process that you are unfamiliar with, Google it and try to determine if it's a program that you installed.
- If you do not recall installing it, try to determine how to remove it.
- Verify that all currently running processes are legit. Run Objective-See's Netiquette: https://objective-see.com/products/netiquette.html
- Once running, scroll through the list and ensure that you are familiar with all of the processes.
- If you see a process that you are unfamiliar with, see step #5.3-4
- Verify that all currently running Kernel Extensions are legit. Run Objective-See's KextViewr: https://objective-see.com/products/kextviewr.html
- Follow steps #5.1-4.
- Verify that all currently running Kernel Extensions are legit. Run Objective-See's KnockKnock: https://objective-see.com/products/knockknock.html
- Once running, press the "Start Scan" button at the top.
- Once finished scanning, click on the first section on the left sidebar.
- For each section, scroll through the list on the right side.
- Follow steps #5.2-4
- Repeat for each section on the left sidebar.
- If you know what to look for, some other Objective-See programs worth installing:
- Lulu: https://objective-see.com/products/lulu.html
- BlockBlock: https://objective-see.com/products/blockblock.html
- ReiKey: https://objective-see.com/products/reikey.html
- OverSight: https://objective-see.com/products/oversight.html
- RansomeWhere?: https://objective-see.com/products/ransomwhere.html
- Do Not Disturb: https://objective-see.com/products/dnd.html
Monday, January 18, 2021
How to keep your macOS safe
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment