
1. Use a different password for every important account
If one service is breached, reused passwords can expose your other accounts. Use a reputable password manager to create and store long, unique passwords. Protect the password manager itself with a strong master password.
2. Turn on two-step verification
Use an authenticator app or security key when available. Save recovery codes somewhere separate from your phone. Never send a verification code to someone who contacts you unexpectedly.
3. Pause before opening urgent messages
Scams often create pressure: “act now”, “your account will close” or “payment failed”. Check the sender’s address and open the organisation’s official website yourself instead of following an unexpected link.
4. Keep devices and apps updated
Updates often repair known security problems. Enable automatic updates for your operating system, browser and important apps where practical.
5. Back up important work
Keep at least one additional copy of assignments, documents and photos. Periodically test that you can open a backed-up file; a backup you cannot restore is not useful.
6. Share less personal information publicly
Phone numbers, identity documents, travel plans and school or workplace details can be combined to impersonate you. Review who can see your profiles and posts.
7. Know what to do after a problem
Change the affected password, sign out unknown sessions, review recovery options and contact the official service through its trusted support channel. Tell relevant people if messages may have been sent from your account.
Keep learning
This guide provides general educational information, not individual cybersecurity advice. For a serious breach involving financial or identity data, contact the relevant provider or a qualified professional.
← Back to all resources