It's US Cyber Security Month and the key themes I've been discussing here for years are very bit as relevant today. In honor of Cyber Security Month I'm re-running a post from 2016. The more things change, the more they stay the same. Happy Cyber Security Month!
Well, I was trying for something catchy like Stop, Drop and Roll. That's a saying we learned in school, back in the day, for what you should do if your clothes catch on fire.
Fortunately, it seems like everyone has heard that saying and it rolls off the tongue.
Unfortunately, my three word phrase Patch, Vault and Fob, is not nearly as catchy.
Fortunately, the odds of your clothes catching on fire is low.
Unfortunately, the odds of your software, browsers or accounts being compromised is very high.
A couple of weeks ago the internet was hit with the highly impact-full and publicized distributed denial of service (DDoS) attack on Dyn, a DNS provider. I won't go into the details here but I think I will cover DDoS in a future post. Anyway, shortly after that I was chatting with someone at a dinner who asked me about this attack, internet safety in general and what they could do. To keep it simple and because, as a math person I like things in 3's!, I provided these 3 simple (well, maybe straight-forward is more accurate) things that absolutely everyone should do at home...
A place to talk about information security, Internet safety and, of course... coffee!
Thoughtful, sometimes controversial, but not following the crowd unless I'm in line at the coffee shop.
Showing posts with label software. Show all posts
Showing posts with label software. Show all posts
Tuesday, October 31, 2017
Tuesday, January 3, 2017
New Year, Don't Click!
Well, it's a new year and, as we've discussed in the past, the more things change the more they stay the same.
My advice for 2017... Don't Click!
Of course, that's easier said than done. We've discussed phishing and malicious email here, here and here.
But on a more practical note, and because I like things that come in 3's, here's some info from the way-back machine... it's advice from Brian Krebs from 2011. It is his 3 basic rules for online safety. They are every bit as relevant now as when this was first published. And it was relevant for years before that.
The 3 rules are:
My advice for 2017... Don't Click!
Of course, that's easier said than done. We've discussed phishing and malicious email here, here and here.But on a more practical note, and because I like things that come in 3's, here's some info from the way-back machine... it's advice from Brian Krebs from 2011. It is his 3 basic rules for online safety. They are every bit as relevant now as when this was first published. And it was relevant for years before that.
The 3 rules are:
- If you didn’t go looking for it, don’t install it - this means when you get a pop-up asking you to install some software... don't click! Only install software that you look for and intend to use. And, wherever possible, install from reputable websites. Do your research.
- If you installed it, update it - After you install the software you want, you need to keep it up to date. This is not trivial, but I like using Secunia PSI (Personal Software Inspector) on my home systems for keeping software up to date.
- If you no longer need it, remove it - software will have vulnerabilities. The less software you have, the fewer opportunities there are for vulnerabilities and malware. This is especially true on your smartphone and tablet, where excess software really slows the performance of the device.
Here's to a safe and secure 2017!
Tuesday, November 8, 2016
Patch, Vault 'n Fob
Well, I was trying for something catchy like Stop, Drop and Roll. That's a saying we learned in school, back in the day, for what you should do if your clothes catch on fire.
Fortunately, it seems like everyone has heard that saying and it rolls off the tongue.
Unfortunately, my three word phrase Patch, Vault and Fob, is not nearly as catchy.
Fortunately, the odds of your clothes catching on fire is low.
Unfortunately, the odds of your software, browsers or accounts being compromised is very high.
A couple of weeks ago the internet was hit with the highly impact-full and publicized distributed denial of service (DDoS) attack on Dyn, a DNS provider. I won't go into the details here but I think I will cover DDoS in a future post. Anyway, shortly after that I was chatting with someone at a dinner who asked me about this attack, internet safety in general and what they could do. To keep it simple and because, as a math person I like things in 3's!, I provided these 3 simple (well, maybe straight-forward is more accurate) things that absolutely everyone should do at home...
Fortunately, it seems like everyone has heard that saying and it rolls off the tongue.
Unfortunately, my three word phrase Patch, Vault and Fob, is not nearly as catchy.
Fortunately, the odds of your clothes catching on fire is low.
Unfortunately, the odds of your software, browsers or accounts being compromised is very high.
A couple of weeks ago the internet was hit with the highly impact-full and publicized distributed denial of service (DDoS) attack on Dyn, a DNS provider. I won't go into the details here but I think I will cover DDoS in a future post. Anyway, shortly after that I was chatting with someone at a dinner who asked me about this attack, internet safety in general and what they could do. To keep it simple and because, as a math person I like things in 3's!, I provided these 3 simple (well, maybe straight-forward is more accurate) things that absolutely everyone should do at home...
Labels:
2-factor,
authentication,
browser,
fob,
LastPass,
multi-factor,
password,
passwords,
patch,
software,
tools,
vault
Tuesday, April 14, 2015
It Wasn't Englebart's Fault! (part 2)
When we have a post with a "part 1", it probably means we should have a "part 2". Sometimes other things get in the way!A few posts ago we had part 1 of this discussion. To briefly review, Douglas Englebart was an engineer, inventor and pioneer of the early internet. He died in 2013. He was known for a number of key ideas and inventions. In 1967, he invented a very useful computer device that is a key component in propagating malware and facilitating phishing attacks... the Mouse!
In part 1 we discussed how malware (malicious software) like viruses get into our computer systems. Today we'll wrap things up by looking at why it's difficult for our organizations to stop this malware (and why it's difficult to stop this at home).
Really, the primary issue this stuff is hard to stop is because it's too easy to click on links and attachments. As we discussed in part 1, as long as we're clicking, we'll have problems.
But what about anti-virus software? Anti-virus (or anti-malware or endpoint protection) software has been around for nearly 30 years. Yet malware problems seem to be getting worse. (I'll continue to use the term "virus" generically, but I'm really talking about any kind of malware.)
Labels:
analysis,
anti-malware,
anti-virus,
click,
complexity,
mouse,
phishing,
software,
VDI,
virtual,
virus
Subscribe to:
Posts (Atom)
