{"id":7177,"date":"2021-11-16T09:21:00","date_gmt":"2021-11-16T17:21:00","guid":{"rendered":"https:\/\/cheapsslsecurity.com\/blog\/?p=7177"},"modified":"2021-11-22T09:21:46","modified_gmt":"2021-11-22T17:21:46","slug":"man-in-the-middle-attack-prevention","status":"publish","type":"post","link":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/","title":{"rendered":"9 Man In the Middle Attack Prevention Methods to Use Now"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">The <a href=\"https:\/\/www.hiscoxgroup.com\/cyber-readiness\">Hiscox Cyber Readiness Report 2021<\/a> states that one in six firms attacked by cybercriminals in the last year faced a survival crisis and that the average firm now spends 21% of its IT budget on cyber security (63% more than in 2020). Man in the middle attacks are some of the most difficult types of cyberattacks to detect and can do a lot of damage \u2014 let\u2019s look at what you can do to protect yourself and your business.&nbsp;<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">In the wake of 9\/11, the United States government passed the <a href=\"https:\/\/www.congress.gov\/107\/plaws\/publ56\/PLAW-107publ56.pdf\">Patriot Act<\/a>, granting the government the right to carry out surveillance on its own citizens without a warrant. In the 20 years since then, many US citizens have fought against these measures in favor of privacy. <a href=\"https:\/\/www.theguardian.com\/world\/2021\/sep\/04\/surveillance-state-september-11-panic-made-us-vulnerable\">Whistleblowers<\/a> like Edward Snowden exposed to the world the extent of mass data collection by the NSA.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In the case of the NSA, it\u2019s the \u2018good guys\u2019 listening to our conversations. But even so, many people don\u2019t like it. Imagine the bad guys doing the same thing \u2014 it\u2019s a pretty scary thought. When someone intercepts our data and communications in transit so they can use it for malicious purposes, it\u2019s called a <a href=\"https:\/\/cheapsslsecurity.com\/blog\/what-is-a-man-in-the-middle-attack-mitm-explained\/\">man in the middle attack<\/a>. This is why it\u2019s crucial to know how to prevent a man in the middle attack and what the best man in the middle attack prevention methods are.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">We previously looked at what man in the middle attacks are, how they work, and some different types of man in the middle attack. Now, let\u2019s explore how to prevent a man in the middle attack.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">9 Man in the Middle Attack Prevention Methods<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Perhaps the most unsettling aspect of a man in the middle attack is that it is hard to detect and can remain undetected for a long time. Needless to say, prevention is always better than the cure. That\u2019s why we\u2019re going to jump straight into our list of man in the middle attack prevention methods so you know how to prevent man in the middle attacks from occurring in the first place.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">1.&nbsp;Encrypt Your Data in Transit with SSL\/TLS<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">First on our list of man in the middle attack prevention methods is to use the secure hypertext transfer protocol (HTTPS). One of the most efficient ways to secure your website and web app data in transit is by enabling HTTPS, which is what makes the security padlock appear in your browser\u2019s URL bar. This involves the use of an SSL\/TLS certificate, which fulfills two main purposes:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>Authenticates the identity of the website owner, and<\/li><li>Establishes a secure channel to transmit data between a client and the server using encryption.<\/li><\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">An SSL certificate enables two parties to communicate using asymmetric encryption. This process allows them to encrypt and decrypt data with two cryptographic keys: one public and one private. The data is encrypted using the public key and can only be decrypted with the private key, which only a legitimate receiver has access to. So, even if a bad guy can take a peek at your data stream in transit, they won\u2019t be able to decrypt it without having access to the private key, so it will be unusable to them.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The two communicating parties use asymmetric encryption to exchange information so they can establish a symmetrically encrypted connection. Symmetric encryption is faster than asymmetric encryption because it relies on a single key to both encrypt and decrypt data.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Recognizing the importance of SSL\/TLS certificates in the secure transmission of data, many browsers like Google Chrome and Mozilla Firefox now mark websites without SSL certificates as \u201cNot Secure.\u201d Search engines also reward websites that use SSL\/TLS certificates with higher search rankings, which has pushed many website owners to use SSL certificates.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"843\" height=\"522\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-prevention-use-https.png\" alt=\"man in the middle attack prevention graphic: an illustration of how an SSL\/TLS certificate helps to prevent these attacks\" class=\"wp-image-7179\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-prevention-use-https.png 843w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-prevention-use-https-300x186.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-prevention-use-https-768x476.png 768w\" sizes=\"(max-width: 843px) 100vw, 843px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\">An illustration of how an SSL\/TLS certificate prevents a man in the middle attacks by securing the communication channel.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">2.&nbsp;Employ DNS Over HTTPS (DoH) or DNS over TLS (DoT)<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The domain name system (DNS) is a system where domain names (like \u201ccheapsslsecurity.com\u201d or \u201cwikipedia.org) are converted into internet protocol (P) addresses for faster identification. IP addresses are the numeric values assigned to each device. When a client asks for a particular website, the browser make a DNS request using the <a href=\"https:\/\/www.fortinet.com\/resources\/cyberglossary\/tcp-ip\">TCP protocol<\/a>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The problem arises when a criminal \u201csniffs\u201d the packets to hunt for DNS entries. If they are successful, they can carry out a man in the middle attack. To counter this situation, the good guys have come up with a plan of their own. If a DNS query is sent through HTTPS or TLS to DoH-compatible servers, it\u2019s encrypted. This means it\u2019s impossible for cybercriminals to read without having access to the necessary decryption key.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Employing DoH or DoT will prevent the types of man in the middle attacks where the domain name system or its records are compromised, including:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>DNS spoofing (replacing DNS cache data with phony records),<\/li><li>DNS hijacking (making end users believe they\u2019re connecting with a legitimate domain), and<\/li><li>DNS poisoning (targeting name servers that cache DNS records).<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Therefore, many of the major browsers, including Google Chrome and Mozilla Firefox, support DoH. Here\u2019s a basic illustrative diagram to show how this type of man in the middle attack works. In the top example, it shows that a cybercriminal is able to access the DNS records. The lower example shows that the DNS provider answers using DNS over HTTPS, which prevents the cybercriminal from accessing those records.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"867\" height=\"591\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-dns-over-https.png\" alt=\"man in the middle attack prevention graphic: an illustration of how an using DNS over HTTPS helps to prevent these attacks\" class=\"wp-image-7180\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-dns-over-https.png 867w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-dns-over-https-300x204.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-dns-over-https-768x524.png 768w\" sizes=\"(max-width: 867px) 100vw, 867px\" \/><figcaption>  An illustration of how enabling DNS over HTTPS can prevent man in the by blocking an attacker from intercepting the user&#8217;s connection to the DNS server. <\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">3.&nbsp;Implement a Virtual Private Network (VPN)<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">As a businessperson, you know that a ton of sensitive information is transmitted among your employees every day. This has serious security implications, especially if employees aren\u2019t aware of or following proper cybersecurity protocols. Some employee behaviors that could make your business vulnerable to man in the middle attacks include:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Allowing guests to use your company\u2019s main Wi-Fi network<\/li><li>Using insecure communication channels to collect sensitive data, including <a href=\"https:\/\/cheapsslsecurity.com\/blog\/http-vs-https-security-the-differences-between-these-protocols\/\">non-HTTPS websites<\/a><\/li><li>Keeping the company\u2019s Wi-Fi open and discoverable to eternal users<\/li><li>Using public Wi-Fi to connect to the internet or your organization\u2019s secure resources when working remotely<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">A VPN can protect you and your company against MitM attacks by concealing your IP address and the location of your device. A VPN creates a secure communication channel between the device and the VPN server. This means that all traffic \u2014 HTTPS and non-HTTPS alike \u2014 that passes through this channel is encrypted. Therefore, a criminal can\u2019t read or change the data even if they somehow get access to it.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"877\" height=\"606\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-vpn.png\" alt=\"man in the middle attack prevention graphic: an illustration of how a virtual private network helps to prevent these attacks\" class=\"wp-image-7182\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-vpn.png 877w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-vpn-300x207.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-vpn-768x531.png 768w\" sizes=\"(max-width: 877px) 100vw, 877px\" \/><figcaption>An illustration of how a VPN can prevent a man in the middle attack.<\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">4.&nbsp;Employ HTTP Strict Transport Security (HSTS)<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">HTTP strict transport security, or HSTS, is a website security policy that can be included in your site\u2019s header information. Its purpose is to force browsers to load your website using secure HTTPS connections. Why is this necessary? Let\u2019s break it down\u2026<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Most people type only the domain name to get to a website. For example, they might type \u201ccheapsslsecurity.com\u201d instead of typing the full \u201chttps:\/\/www.cheapsslsecurity.com.\u201d In some cases, the browser might load an insecure version of the site that\u2019s delivered via HTTP. In that case, the user is sharing information with an insecure website, which is susceptible to a man in the middle attack.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">A cybercriminal will launch an SSL downgrade attack on a legitimate website to carry out an MitM attack. An SSL\/TLS certificate guarantees that the conversation between client and server is encrypted and that any person with malicious intent can\u2019t access it. However, in an SSL downgrade attack (also known as SSL stripping), an attacker strips down the SSL\/TLS protection to access the conversation between the client and server via the insecure HTTP protocol.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">So, what man in the middle attack prevention tactics can help you protect your website and users against an SSL\/TLS stripping attack? The answer lies in HSTS. Using an HSTS header on your site tells browsers to load the HTTPS version of your website. When a user opens the website for the first time, the browser will store the HTTPS version. This ensures that even if the user loads the website using either the domain name or the HTTP version, the browser will redirect them to the HTTPS version.&nbsp;<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/cheatsheetseries.owasp.org\/cheatsheets\/HTTP_Strict_Transport_Security_Cheat_Sheet.html\">OWASP\u2019s HTTP Strict Transport Security Cheat Sheet<\/a> shows how HSTS protects the user against man in the middle attacks carried out by stealing unsecured cookies, DNS spoofing, or cross-site scripting. You should make sure that you include all the subdomains in the HSTS header to provide the most robust security. However, it\u2019s important to note that when you employ HSTS, you must specify the expiration period. If the HSTS specified period has expired, you might leave yourself open to MitM attacks.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Another limitation of HSTS is that it will only operate after the user logs in to the server for the first time. Till then, the user is not protected. To deal with this issue, Google has come up with an \u201cHSTS pre-load list,\u201d which is supported by the most modern browsers. The pre-load list feature notifies the browser that it was trying to load an HTTP website. It also assists the browser in case of the max time in the HSTS header has expired and the HTTP site is being loaded.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">5.&nbsp;Implement a Strong Encryption Point with Wi-Fi Protected Access (WPA)<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">We\u2019re now halfway through our list of man in the middle attack prevention methods. WPA, WPA2, and WPA3 are encryption protocols developed by the <a href=\"https:\/\/www.wi-fi.org\/\">Wi-Fi Alliance<\/a> to secure wireless computer networks. Most small and medium enterprises have wireless internet in their offices; this might be convenient, but management and employees can make some grave mistakes that may lead to man in the middle attacks. Cybercriminals might gain access to your network in the following circumstances:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Your Wi-Fi password is weak<\/li><li>Your Wi-Fi network is open<\/li><li>Your Wi-Fi is discoverable by anyone in your area<\/li><li>You let your guests use Wi-Fi with the same password as your employees<\/li><li>You don\u2019t change your Wi-Fi password regularly<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">WPA can secure your wireless network from MitM attacks. Still, cybercriminals could use brute force to crack your Wi-Fi password and enter your network. Therefore, it\u2019s imperative that you buy certified routers that support the highest security protocols.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The WPA protocol uses temporal key integrity protocol (TKIP) that generates a new dynamic 128 bit key for each packet. WPA3, released in 2018, is the strongest protocol and is required for all Wi-Fi CERTIFIED devices, according to <a href=\"https:\/\/www.wi-fi.org\/discover-wi-fi\/security\">Wi-Fi Alliance<\/a>. It uses advanced encryption standard (AES) strength up to 256 bits with SHA-384 for providing robust security to its personal and enterprise customers.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"906\" height=\"718\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-wpa.png\" alt=\"man in the middle attack prevention graphic: an illustration of how an using WPA helps to prevent these attacks\" class=\"wp-image-7183\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-wpa.png 906w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-wpa-300x238.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-wpa-768x609.png 768w\" sizes=\"(max-width: 906px) 100vw, 906px\" \/><figcaption>A basic illustration of how WPA prevents man in the middle attacks .<\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">6.&nbsp;Implement a Precise Password Policy<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Passwords are your first line of defense against any kind of cyberattack, including man in the middle attacks. A strong password can protect your systems and email accounts from cybercriminals who try to break in using brute force attacks. <a href=\"https:\/\/www.ibm.com\/downloads\/cas\/OJDVQGRY\">IBM<\/a> reported that stolen credentials were the most common initial attack vector \u2014 they\u2019re responsible for 20% of data breaches, resulting in an average loss of $4.37 million for businesses between May 2020 and March 2021.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">It is also noteworthy that when stolen credentials were the initial attack vector, it took the longest number of days (341) to identify and contain the breach. This underlines the importance of having a precise password policy for your enterprise that is implemented in a stringent manner.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Here are some pointers to keep in mind while forming <a href=\"https:\/\/cheapsslsecurity.com\/blog\/password-security-tips-you-should-know\/\">a strong password policy<\/a>:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>The <a href=\"https:\/\/www.fbi.gov\/contact-us\/field-offices\/phoenix\/news\/press-releases\/fbi-tech-tuesday-strong-passphrases-and-account-protection\">FBI<\/a> recommends the use of passphrases instead of passwords<\/li><li>Passwords should be kept secret<\/li><li>All accounts should have unique passwords<\/li><li>If a password becomes compromised, it should be changed immediately on the official account\u2019s website<\/li><li>Passwords should be hard to guess and should not contain words or numbers from <a href=\"https:\/\/nordpass.com\/most-common-passwords-list\/\">the most common password list<\/a><\/li><li>Use multi-factor authentication or two-step verification where possible<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">A trustworthy password manager can be helpful if you need to juggle a lot of passwords. It\u2019s like an online locker to store all your passwords safely. Most password managers also help you generate random passwords for your accounts, so you just need to remember the master password for your password manager.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Employees should be encouraged to use two-factor authentication or two-step verification to log in to devices and accounts to make their systems more secure. These methods add a layer of security to password-protected accounts and ensure that the person trying to access an account is who they say they are. It also helps you to avoid having to use password resets, which cybercriminals can sabotage to carry out <a href=\"https:\/\/medium.com\/@brianrusseldavis\/how-to-prevent-password-reset-mitm-prmitm-attacks-51592ad76c2c\">password reset MitM attacks<\/a>.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">7.&nbsp;Train Your Employees<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">You can implement every measure in the book, but if your employees don\u2019t follow the rules \u2014 or they don\u2019t know what rules to follow \u2014 your data is at risk. Cyber awareness training can help you fill in the knowledge gaps so your employees are aware of the threats, know what to look out for (such as fake or insecure websites), and what they should or should not do when operating online.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Cybersecurity training should not be conducted once or twice; it should be conducted regularly throughout the year. All employees \u2013 old and new, from junior team members to top management \u2013 should be trained to follow the cyber security policy. Some things to include in training:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>The company password policy<\/li><li>Policy on using public or free wireless networks<\/li><li>The importance of logging out of accounts and locking devices when they\u2019re not in use<\/li><li>Reporting abnormal activity to management<\/li><li>Differentiating between regular emails and phishing emails<\/li><li>Using HTTPS sites only<\/li><li>The latest trends in cyberattacks and security<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Training sessions should be mandatory for all employees and exercises should be designed to test their knowledge. Training can be conducted by an in-house security team or by third-party experts. Always remember, the security of your company is only as strong as your weakest link.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"919\" height=\"650\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-cyber-awareness.png\" alt=\"man in the middle attack prevention graphic: an illustration that shares how employee education helps to prevent these attacks\" class=\"wp-image-7184\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-cyber-awareness.png 919w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-cyber-awareness-300x212.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-cyber-awareness-768x543.png 768w\" sizes=\"(max-width: 919px) 100vw, 919px\" \/><figcaption>An illustration of training employees to  recognize and prevent a man in the middle attack. <\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">8.&nbsp;Implement a Zero Trust Architecture<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The <a href=\"https:\/\/www.sonicwall.com\/resources\/white-papers\/2021-sonicwall-cyber-threat-report\/\">SonicWall Cyber Threat Report 2021<\/a> revealed that there were 4.77 trillion intrusion attempts during 2020, a sharp increase from 3.99 trillion in 2019. It is worth noting that 56.44% of attempts in 2020 were in North America. Using a zero trust architecture is one way to tackle this growing problem.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The concept of <a href=\"https:\/\/www.helpnetsecurity.com\/2021\/04\/06\/john-kindervag-zero-trust\/\">zero trust architecture was introduced by John Kindervag<\/a>, VP and principal analyst on the security and risk team at Forrester Research. The zero trust technique means trusting no one and no device without verification. But zero trust is much more than MFA or 2SV \u2014 this architecture ensures that all employees use proper authentication to access information and ensure that they are authorized to access the information.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Basically, the idea here is that no employee can retrieve information that they are not specifically authorized for. Every person is treated as a potential threat, which makes the zero trust model incredibly powerful.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" width=\"1024\" height=\"453\" src=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-zero-trust-1024x453.png\" alt=\"man in the middle attack prevention graphic: an illustration of how implementing zero trust helps to prevent these attacks\" class=\"wp-image-7186\" srcset=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-zero-trust-1024x453.png 1024w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-zero-trust-300x133.png 300w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-zero-trust-768x340.png 768w, https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-zero-trust.png 1026w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption>A look at how implementing zero trust helps to prevent a man in the middle attack .<\/figcaption><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">9.&nbsp;Monitor Network Activity<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Man in the middle attacks are notoriously difficult to uncover. However, there are tell-tale signs of a man in the middle attack that can be observed if the activities of employees are monitored properly. A small or medium-sized business should have people assigned to monitor the online activities of all employees.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Here are some ideas to help you implement an effective <a href=\"https:\/\/www.tek-tools.com\/network\/network-monitoring-guide-and-tools\">monitoring architecture<\/a> as the final man in the middle attack prevention method for our list:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Define a clear-cut system for connecting devices<\/li><li>Secure all devices and your network with firewalls and anti-malware software<\/li><li>Formulate policies for information sharing in the organization and limit access to sensitive data on a need-to-know basis<\/li><li>Observe and document account access behaviors of employees online<\/li><li>Monitor all traffic coming in and out of the company network<\/li><li>Ensure prompt reporting of any type of software or hardware glitches<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Proper monitoring helps to ensure that a man in the middle attack is discovered sooner rather than later. Although there is no sure-fire way to know if you are being watched by a man in the middle, certain signs can alert you. We\u2019ll look at these signs in the next section.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Man in the Middle Detection Tips &amp; Signs to Look Out For<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Detecting a man in the middle attack is challenging to say the least. There isn\u2019t a one-size-fits all list of man in the middle detection tips because there are too many possibilities based on the technologies you have in place and how things are secured. Some quick examples of what you can do to detect potential MitM attacks include the following:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Use network monitoring tools to inspect traffic entering and leaving your network<\/li><li>Scan your website and network for malware<\/li><li>Analyze connection records to look out for repeated disconnections<\/li><li>Use tamper detection tools<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">If you or any of your employees see your systems behaving abnormally, you should check if you have become a victim of a man in the middle attack. Here\u2019s a quick list of signs to look out for that can indicate a man in the middle attack. (Note: This list is in no way comprehensive.)&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>You observe strange web addresses appearing in your browser<\/li><li>Your browser unexpectedly switches to non-HTTPS websites<\/li><li>There are unusual delays in your online requests or frequent disconnections<\/li><li>Your internet usage rises unexpectedly<\/li><li>You notice bank transactions that you didn\u2019t make<\/li><li>Any of your associates or customers receive communications claiming to be from you, but you did not send them<\/li><\/ul>\n\n\n\n<h2 class=\"wp-block-heading\">Final Words on Man in the Middle Attack Prevention<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">A man in the middle attack is not only a type of cyber attack but also a method used by cyber criminals to launch other types of attacks. Throughout this article series, we\u2019ve explored several key areas to know about MitM attacks:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>What a man in the middle attack is,<\/li><li>The different types of man in the middle attacks, and<\/li><li>How to detect and prevent man in the middle attacks.<\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">With the rise in incidences of this type of attack, it\u2019s clear that we have to invest more time and effort to keep them in check \u2014 and the more you know, the safer you and your business will be. We hope you found this article on man in the middle attack prevention useful.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Hiscox Cyber Readiness Report 2021 states that one in six firms attacked by cybercriminals in the last year faced a survival crisis and that the average firm now spends 21% of its IT budget on cyber security (63% more than in 2020). Man in the middle attacks are some of the most difficult types<\/p>\n","protected":false},"author":8,"featured_media":7189,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5],"tags":[462,463],"class_list":["post-7177","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ssl-pki","tag-man-in-the-middle-attack","tag-mitm"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>9 Man In the Middle Attack Prevention Methods to Use Now<\/title>\n<meta name=\"description\" content=\"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"9 Man In the Middle Attack Prevention Methods to Use Now\" \/>\n<meta property=\"og:description\" content=\"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/\" \/>\n<meta property=\"og:site_name\" content=\"Savvy Security\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/cheapsslsecurities\" \/>\n<meta property=\"article:published_time\" content=\"2021-11-16T17:21:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-11-22T17:21:46+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"1000\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Savvy Security\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@sslsecurity\" \/>\n<meta name=\"twitter:site\" content=\"@sslsecurity\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Savvy Security\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"15 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/\"},\"author\":{\"name\":\"Savvy Security\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\"},\"headline\":\"9 Man In the Middle Attack Prevention Methods to Use Now\",\"datePublished\":\"2021-11-16T17:21:00+00:00\",\"dateModified\":\"2021-11-22T17:21:46+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/\"},\"wordCount\":3133,\"image\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/man-in-the-middle-attack-prevention-feature.jpg\",\"keywords\":[\"man in the middle attack\",\"MitM\"],\"articleSection\":[\"SSL &amp; PKI\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/\",\"name\":\"9 Man In the Middle Attack Prevention Methods to Use Now\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/man-in-the-middle-attack-prevention-feature.jpg\",\"datePublished\":\"2021-11-16T17:21:00+00:00\",\"dateModified\":\"2021-11-22T17:21:46+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\"},\"description\":\"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#primaryimage\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/man-in-the-middle-attack-prevention-feature.jpg\",\"contentUrl\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/11\\\/man-in-the-middle-attack-prevention-feature.jpg\",\"width\":1600,\"height\":1000},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/man-in-the-middle-attack-prevention\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"9 Man In the Middle Attack Prevention Methods to Use Now\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/\",\"name\":\"Savvy Security\",\"description\":\"Practical cybersecurity advice\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/#\\\/schema\\\/person\\\/1ce9a5743b7f25b5be6e4972864b4493\",\"name\":\"Savvy Security\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g\",\"caption\":\"Savvy Security\"},\"description\":\"Welcome to Savvy Security, a blog focused on providing practical cybersecurity advice for website owners and small businesses. Our team brings you the latest news, best practices and tips you can use to protect your business...without a multi-million dollar budget or 24\\\/7 security teams.\",\"sameAs\":[\"blogadmin\"],\"url\":\"https:\\\/\\\/cheapsslsecurity.com\\\/blog\\\/author\\\/blogadmin\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"9 Man In the Middle Attack Prevention Methods to Use Now","description":"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/","og_locale":"en_US","og_type":"article","og_title":"9 Man In the Middle Attack Prevention Methods to Use Now","og_description":"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.","og_url":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/","og_site_name":"Savvy Security","article_publisher":"https:\/\/www.facebook.com\/cheapsslsecurities","article_published_time":"2021-11-16T17:21:00+00:00","article_modified_time":"2021-11-22T17:21:46+00:00","og_image":[{"width":1600,"height":1000,"url":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg","type":"image\/jpeg"}],"author":"Savvy Security","twitter_card":"summary_large_image","twitter_creator":"@sslsecurity","twitter_site":"@sslsecurity","twitter_misc":{"Written by":"Savvy Security","Est. reading time":"15 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#article","isPartOf":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/"},"author":{"name":"Savvy Security","@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493"},"headline":"9 Man In the Middle Attack Prevention Methods to Use Now","datePublished":"2021-11-16T17:21:00+00:00","dateModified":"2021-11-22T17:21:46+00:00","mainEntityOfPage":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/"},"wordCount":3133,"image":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#primaryimage"},"thumbnailUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg","keywords":["man in the middle attack","MitM"],"articleSection":["SSL &amp; PKI"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/","url":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/","name":"9 Man In the Middle Attack Prevention Methods to Use Now","isPartOf":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#primaryimage"},"image":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#primaryimage"},"thumbnailUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg","datePublished":"2021-11-16T17:21:00+00:00","dateModified":"2021-11-22T17:21:46+00:00","author":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493"},"description":"Man in the middle attack prevention is tough as these attacks are hard to detect. Learn 9 ways for how to prevent a man in the middle attack.","breadcrumb":{"@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#primaryimage","url":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg","contentUrl":"https:\/\/cheapsslsecurity.com\/blog\/wp-content\/uploads\/2021\/11\/man-in-the-middle-attack-prevention-feature.jpg","width":1600,"height":1000},{"@type":"BreadcrumbList","@id":"https:\/\/cheapsslsecurity.com\/blog\/man-in-the-middle-attack-prevention\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cheapsslsecurity.com\/blog\/"},{"@type":"ListItem","position":2,"name":"9 Man In the Middle Attack Prevention Methods to Use Now"}]},{"@type":"WebSite","@id":"https:\/\/cheapsslsecurity.com\/blog\/#website","url":"https:\/\/cheapsslsecurity.com\/blog\/","name":"Savvy Security","description":"Practical cybersecurity advice","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cheapsslsecurity.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/cheapsslsecurity.com\/blog\/#\/schema\/person\/1ce9a5743b7f25b5be6e4972864b4493","name":"Savvy Security","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/4e5539150b16b5af1d22136f03dedda89a96babb3e9b5ceb18c2bde4e1dcba57?s=96&d=mm&r=g","caption":"Savvy Security"},"description":"Welcome to Savvy Security, a blog focused on providing practical cybersecurity advice for website owners and small businesses. Our team brings you the latest news, best practices and tips you can use to protect your business...without a multi-million dollar budget or 24\/7 security teams.","sameAs":["blogadmin"],"url":"https:\/\/cheapsslsecurity.com\/blog\/author\/blogadmin\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts\/7177","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/comments?post=7177"}],"version-history":[{"count":0,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/posts\/7177\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/media\/7189"}],"wp:attachment":[{"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/media?parent=7177"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/categories?post=7177"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cheapsslsecurity.com\/blog\/wp-json\/wp\/v2\/tags?post=7177"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}