Tag Archives: Security

DHS Cybersecurity Watchdogs Miss Hundreds of Vulnerabilities on Their Own Network Threat Level Wired.com

DHS Cybersecurity Watchdogs Miss Hundreds of Vulnerabilities on Their Own Network Threat Level Wired.com.  Too often you see these kind of gaps in systems that consultants have worked on.

Want to secure your mac for $19.95?

iSight camera on an aluminium iMac

Image via Wikipedia

Watchmac 1.6 bloo7.  ”Watchmac monitors your Mac for possible infringements. For instance, when someone tries to unlock your screensaver but fails to enter the correct password, Watchmac will record this event and can even take pictures using the built-in (or an externally connected iSight).”


http://bloo7.com/apps/watchmac/images/screenshot-banner2.png

On growing privacy concerns (or lack thereof) (via Teknophilia)

I wonder how long people will accept the current state of privacy.

On growing privacy concerns (or lack thereof) Internet privacy has been an issue almost since there was an internet. From UseNet’s to twitter, the ability to quickly and easily publish anything is a great temptation, especially with the innate need that people have to share information and to talk about themselves and their friends. The range of tools to carry out these goals, and the ease of use in achieving them has been dwarfed only by the associated complexity of managing the privacy iss … Read More

via Teknophilia

Computer Security: Visit Bill Mullins’ Weblog – You will be glad you did (via Mister Reiner)

I always learn things when I visit his page. Stuff here that you don’t find anywhere else.

Computer Security: Visit Bill Mullins' Weblog - You will be glad you did Bill Mullins has an incredibly informative blog on technology and computer security.  His site is a great resource for both the average computer user and the seasoned computer security professional. In addition to providing daily news summaries, he also provides desktop security software reviews that address a wide-range of issues and concerns.   I visit his site every day and always find something of interest. I encourage you to visit his site o … Read More

via Mister Reiner

Need a more full featured Activity Monitor or replacement?

atPurpose atMonitor 2.1.4 Utility Software Review Macworld.  Allows you to set monitors and alerts if things exceed thresholds.  What a great replacement for Apple‘s Activity Monitor!

How to keep your Windows machine virus free? « The Sole Witness

Windows 7, the latest client version in the Mi...
Image via Wikipedia

How to keep your Windows machine virus free? « The Sole Witness.  This guy would rather do some time consuming steps instead of buying an anti-virus.  While this suggestion will reduce the chance of an infection it does not eliminate it.

Need to find the IP and host name on your network? (IP Scanner)

SniperSpy lets you keep a close eye on remote Macs Antivirus

SniperSpy lets you keep a close eye on remote Macs Antivirus.  When you can achieve this for free, I doubt that people will want to pay $80 per computer per year.

http://images.macworld.com/images/news/graphics/153332-sniperspy-188_original.jpg

Kaspersky discovers first Android trojan Electronista

Greece - Scene of the trojan war, Metropolitan...
Image via Wikipedia

Kaspersky discovers first Android trojan Electronista.  How disappointing the store isn’t better monitored.

Preview uses 128.bit encryption.png – Google Docs

The Mac Security Blog » How Secure Are Passwords on an iPhone?

Original iPhone and iPhone 3G. The original on...
Image via Wikipedia

The Mac Security Blog » How Secure Are Passwords on an iPhone?.  Nice to know that you shouldn’t consider your iPhone secure.

1082 Uninstalling the Cisco VPN Client on Mac OS X – Help Desk

1082 Uninstalling the Cisco VPN Client on Mac OS X – Help Desk.  Nice steps!

Uninstalling Cisco VPN Client via the Terminal

  1. Open your hard drive.
  2. Double-click Applications > Utilities > Terminal.
  3. On the Terminal screen, type cd / (that is, “cd”, followed by a space, and then “/”).
  4. Press Return.
  5. Type cd /usr/local/bin (that is, “cd”, followed by a space, and then “/usr/local/bin”).
  6. Press Return.
  7. Type ls and press Return. Verify that vpn_uninstall is in the list results.
  8. Type sudo ./vpn_uninstall (that is, “sudo”, followed by a space, and then “./vpn_uninstall”).
  9. Press Return.
  10. At the Password prompt, type in your administrator password and press Return. Note: no characters will show up when you type your password, but it accepts whatever you type in.
  11. A prompt to confirm deletion will appear. Type yes and press Return.
  12. A second confirmation prompt will appear. Type yes and press Return.
  13. Once the process has completed you will see the following message: “Cisco Systems VPN client uninstall completed successfully.”
  14. Type exit and press Return. This will log you out of the Terminal.
  15. Quit Terminal.

10.5: Reset a users password in single user mode – Mac OS X Hints

Meraki Wireless LAN Reviewed – SmallNetBuilder

http://www.smallnetbuilder.com/images/stories/wireless/meraki/meraki_toppic.jpg

Meraki Wireless LAN Reviewed – SmallNetBuilder.  This is a great way for small business of under 5000 to get wireless access without having to pay for expensive consulting or design.

How do I recover a Mac wifi password? :: Free Tech Support :: Ask Dave Taylor!®

SendStuffNow offers secure, managed file delivery Business Center MacUser Macworld

SendStuffNow offers secure, managed file delivery Business Center MacUser Macworld.  At $120 per user per year I am not sure its going to be worth it to most business.

Cybercriminals Now Using Public Social Networks

Speaking of Security… Blog Entry: RSA FraudAction Research Lab Cy: 1684.  So should we give up Facebook and Twitter now to be safe?

Cyberwarrior Shortage Threatens U.S. Security : NPR

Researchers: Authentication crack could affect millions (via The Informative Report)

Interesting how security evolves isn’t it?

A well-known cryptographic attack could be used by hackers to log into Web applications used by millions of users, according to two security experts who plan to discuss the issue at an upcoming security conference. Researchers Nate Lawson and Taylor Nelson say they’ve discovered a basic security flaw that affects dozens of open-source software libraries — including those used by software that implements the OAuth and OpenID standards — that are … Read More

via The Informative Report

Keylogger for Mac – Aobo Mac keylogger – Invisible Keylogger Mac OS X Records Passwords

http://www.keylogger-mac.com/eximages/mac-keylogger-box.jpg

Keylogger for Mac – Aobo Mac keylogger – Invisible Keylogger Mac OS X Records Passwords.  Might be important if you have legal requirements to fulfill.

Business not ready to embrace ‘open’ iPad (via The Informative Report)

Interesting isn’t it? One one end Apple is criticized for created a closed system like the iPad that doesn’t allow many things. Like 3rd party compliers, jailbreaking, or common I/O like USB. On the other hand, it’s not secure enough, because there isn’t an easy way to control or limit what applications can be installed. So it just goes to show you that no matter how thoughtful the design, options allow customization to further drive sales.

Imagine if they allowed an Open Source model. What would that do for adoption rates? It would allow 3rd parties to create the software that would allow this market segment to be addressed.  This is not the Apple way, but it does seem to be the way that society is moving towards.

Business not ready to embrace 'open' iPad Security concerns may hinder the iPad’s entry into the workplace. Picture: Reuters AS consumer demand for the Apple iPad continues to grow, the device’s widespread infiltration into the corporate world could still be a few years off as security concerns scare away big business. Apple has sold over three million iPads worldwide since launching it in April, but concerns about the lack of security built in to the device is hindering its success in t … Read More

via The Informative Report

Do you need a free computer Certificate for S/MIME encryption?

Try this.  Using Open Source tools can be complicated for the average person.

“StartSSL™ is the trade mark of the StartCom Certification Authority – a leader of the digital certification industry. We provide you with everything from free low-assurance SSL certificates up to the most advanced PKI and security solutions for your business and personal use.”

via StartSSL™ Certificates.

Bizarre phone ransom Trojan found by researchers

Bizarre phone ransom Trojan found by researchers.  Wouldn’t you love to use an operating system that doesn’t have these kind of issues?  Another Windows issue.

iTunes users should strengthen iTunes passwords following second hack

iTunes users should strengthen iTunes passwords following second hack.  Money is a powerful motivator isn’t it?  Does it seem naive to wish that honesty was as strong?

Apple tops vulnerabilities list – AfterDawn

Apple tops vulnerabilities list – AfterDawn.  Apple used to have the best security and now it has the worst.  It has more vulnerabilities than Oracle and Microsoft who have far more market share and users.  What has happened Cupertino?

Free Antivirus Program For Mac Appletipzs Blog

Free Antivirus Program For Mac Appletipzs Blog.  Nice find!  Great video as well.

Blogging with MS Word (via Rightly Dividing the Word…)

If you don’t want to buy blogging software this could work for you.

Blogging with MS Word MS Word 2007 has a feature in which you can use the program to post to your blog.  I just tested it out on one of my many other blogs and it seems to work well enough.  It tells you that in sending the information others may be able to see your username and password which makes me cautious to use it with any regularity.  There does seem to be an upside to publishing your posts in this way though, i.e., you can save them directly to your hard driv … Read More

via Rightly Dividing the Word…

Bill Mullins – Cyber Criminals are Terrorists « TTC Shelbyville – Technical Blog

Bill Mullins – Cyber Criminals are Terrorists « TTC Shelbyville – Technical Blog.  Mr. Mullins has a ton of great security information and software.  A great summary of many sites.

Privacy: What Does Microsoft Know About You? — Redmondmag.com

The Microsoft sign at the entrance of the Germ...
Image via Wikipedia

An in-depth article that gives you all the privacy details for its various services and features.

via Privacy: What Does Microsoft Know About You? — Redmondmag.com.

Put a Honeypot on Your Network (via TTC Shelbyville – Technical Blog)

This is a free one that you can get at sourceforge. If you have responsibility for a network you might install this.

Put a Honeypot on Your Network What exactly is a honeypot?   A honeypot is a non critical computer that has software on it that allows the monitoring of users who are on your network or if the honeypot has a public ip address, it can be used to monitor outside users.   This in turn allows you to view the ip address of the ‘curious’ and possibly malicious user of your network.   By obtaining the ip address, you can in turn block the ip address at your ISP level or on your firew … Read More

via TTC Shelbyville – Technical Blog

nothing left to hide (via Musings of a Random Mind)

Was privacy ever a reality? We have always had Private Investegators and motivated creditors.

nothing left to hide advances in technology have paved new and better ways to communicate, such as cell phones and instant messaging, which eventually led to the demise of old standbys like the telegraph. the last telegraph or telegram, depending on when you were born, was sent by western union on january 27, 2006. it’s an irony, however, that the same advances have caused massive erosion of our privacy. they have made it possible to keep tabs on people and store the … Read More

via Musings of a Random Mind

On Fancy Gadgets (via The Vegan Coffeehouse)

I agree. There are many disadvantages to having the latest and greatest. Like problems actually making a call due to antenna problem.

On Fancy Gadgets Okay, If you’ve been up to date on me BEFORE my blog, you probably know for a period of time I was SERIOUSLY contemplating buying an Ipod touch. Of course My dad’s hand-me down blackberry didn’t cut it for what I really wanted AND needed in a PDA. I used it as an alarm clock. That was IT. I also contemplated Ipad but thanks to the huge security breach I’m thankful I didn’t decide on that! Of course, my dad lost his fancy blackberry storm and had … Read More

via The Vegan Coffeehouse

Help! Used “Secure Delete Free Space” on Spring Cleaning App

Apple – Support – Discussions – Help! Used.  It left 0KB of space but a restart fixed the problem .  Barry suggests another option to accomplish this goal.

Hello c:

I do not like third-party applications that affect data or system files – for a variety of reasonably good reasons.

For future reference, use disk utility to do what you wanted to accomplish. You simply highlight your disk, click on erase, and then click on erase free space.

Study: Face-to-Face Meetings Breed More Trust Than E-Mail Does – TIME

Study: Face-to-Face Meetings Breed More Trust Than E-Mail Does – TIME.  This kind of research is vital to be part of public policy.

DailyTech – So Long Privacy: Apple Bans Apps, Music for Customers Who Opt Out of Tracking

DailyTech – So Long Privacy: Apple Bans Apps, Music for Customers Who Opt Out of Tracking.  This is troubling.  Why punish people for making this choice?  They bought the equipment, they should have a right how it is used.

Top 5 WordPress Security Tips You Most Likely Don’t Follow (via Arun Gandhi)

This is more important if you are hosting the site yourself.

I recently read article while surfing regardomg WordPress Security. While doing research for my work  I came across a bunch of great WordPress Security tips that all WordPress users should use. Surprisingly, a good majority of these tips are not usually followed. Below is a list of the top 5 tips that most WordPress administrators do not do, but should: 1. Don’t use the admin account – The default user account that is created with every installat … Read More

via Arun Gandhi

Wireless Security Myths 2010 – PCWorld Business Center

Wireless Security Myths 2010 – PCWorld Business Center.  You might want to look this over if you had a consultant set up your Wi-Fi network.  What works isn’t always the best security.

Internet ‘kill switch’ proposed for US – Security – News (via A View in Quartercat’s Mind)

Interesting isn’t it?

Internet 'kill switch' proposed for US – Security – News. So there's criticism of other countries when they censor the internet, but there is a proposal to give the President the power to shut it off. That's not making sense… or is it. The Fairness Doctrine, per Wikipedia: "required the holders of broadcast licenses both to present controversial issues of public importance and to do so in a manner that was, in the Commission's view, honest, equ … Read More

via A View in Quartercat's Mind

Trace Emails You Send (via Technology Today)

I haven’t used this service but I am going to try it out. The fact that it holds up in court would be fantastic to so many organizations.

Trace Emails You Send Sometimes it is very important to know your email has been received and read.  When you ask for a read receipt, the recipient will not always do this for you. When we send legal documents and time sensitive messages to our clients, attorneys, or other Realtors, we need to know they were received. Now you can not only get a trace on your messages, but you will have a record of its receipt–date and time.   This certification will be your legal ver … Read More

via Technology Today

Supreme Court ruling lets employers view worker text messages (via )

I wonder how HR will handle these concerns?

Supreme Court ruling lets employers view worker text messages The U.S. Supreme Court today ruled that employers have the right to search through text messages, including personal ones, sent by workers if they have reason to believe that workplace rules are being violated. The ruling (download PDF) overturns an earlier decision by the Ninth Circuit Court of Appeals in a case involving a California police officer who had claimed his Fourth Amendment rights had been violated when supervisors conducted a search … Read More

via

The Mac Security Blog » Mac OS X 10.6.4 Update Fixes 28 Security Issues

vector version of this image
Image via Wikipedia

The Mac Security Blog » Mac OS X 10.6.4 Update Fixes 28 Security Issues.  I have applied it and noticed that flash seems to crash in Chrome more often.  Is anyone else experiencing this?

NoobProof firewall configuration tool

NoobProof firewall configuration tool.  Do you need a free and easy way to configure your firewall on Mac OS X?  This helps make it easy.

Where is Google for Kids? (via Design By Gravity)

Some suggestions if you want to monitor your kids email or protect them online from dangerous things.

Let's face it, Google's real business rival is Apple — Apple's app store, Apple's iAd (why do I have to pay for the ad bandwidth, by the way?), Apple's controlled computing enviroment. It is interesting to look at one area that Apple has leveraged for decades and wonder why Google isn't going there. Where's Google for Kids? Seriously, it is a big missed opportunity for Google. Apple and Schools: Effective Marketing For Years Apple has aggressive … Read More

via Design By Gravity

Judge Smacks Down Warrantless DHS Laptop Searches

Interesting that there are some limits on this.  Nice to see that citizens still have some rights.

Microsoft warns of help flaw in Windows XP, Server 2003

Microsoft warns of help flaw in Windows XP, Server 2003.  This should be noted for best security.   I am trying Shareaholic in Safari and its a little different than Chrome but working ok so far.  I wonder how Zamatra would work with it?

Nice info-graphic on the History of Hacking

The History of Hacking
Via: Online MBA

Researchers: Windows 7 and Mac OS X both hit by fundamental flaws Security Macworld

Researchers: Windows 7 and Mac OS X both hit by fundamental flaws Security Macworld.  Wow.  Security is so difficult no matter how much effort the vendors do.

DorobekINSIDER: Is cybersecurity over-hyped? (via DorobekInsider.com)

Some nice pros/cons on this topic.

DorobekINSIDER: Is cybersecurity over-hyped? I had the pleasure last night to attend the Intelligence Squared debate series — the first one held in Washington, DC. (Yes, it was a wonk-fest. After all, there were some other big events in DC last night. Washington Nationals pitching sensation Stephen Stassburg was proving worthy of all the hype over at the Washington Nationals ballpark… and James Taylor and Carole King were in DC for their tour. Moderator John Donvan from ABC News joked th … Read More

via DorobekInsider.com