mypcia's ramblings

from geek's perspective

Subscribe to RSS feed

Posts tagged with "computer security"

Thinking about software - security approach

, ,

Thinking about Windows

Why people think Windows has more insecurities than other Operating Systems. For me it's a little bit absurd, you could get infected no matter the OS, no matter where you are. Many times apps aren't what you expect them to be. People often think that scanning app file makes the application secure. There is a lot of viruses out there which work completely different. First when you install them they look completely harmless and work like any other fine software you use everyday, then silently they attack core parts of your system, most of them attaches themselves to system Shell and you as a user became helpless, most likely wouldn't know where the problem is. Why does your computer run so slow? Why does you anti-virus picks up some affected .temp files for example. Most of the time even the best anti-virus wouldn't pick up these.

Spyware

Then there is spyware, which probably concerns me the most. Ever though about your credit card details stolen and what it could eventually lead to? Imagine you walk down the street and someone steals your wallet. You notice it hours later. By the time you notice your wallet is missing so is your ID and Credit/Debit cards are, you start calling bank branches one after one to prevent thief from using any more of your money. Losing you personal data would lead to you to money and time loss. Same happens when you get you computer data stolen, you lose more when the security is not sufficient and you as user do not use software with thought about your security. Think about where you store your passwords? Card PINs?

Internet

With Internet it's a little bit different wherever go on line and surf through the web as if nothing could touch you. But think about web pages as someone else's property, think about Internet as a real time world map. Web pages can contain anything the owner wants from spyware that would steal your data to viruses that could easily affect your computer and exploit the insecure code.

Thinking and implementing security measures in applications are two different things.

John Paul Mueller[/QUOTE]
Software

How much I agree with that one, there is NO one overall solution that will get you to the point of creating fully secure applications as well as there is no application that cannot be cracked, it's just a matter of time on hackers hands. Whatever software you will write you have to take into consideration that there WILL be a person that WILL try and most likely crack your code.

Making things happen

The truth is it's better to think about software as a hacker puzzle. When you implement try to imagine yourself as person who would try to crack it also think yourself as a user. How to make an user less prone to security leaks? How to make the application more secure from every side? How to secure software data? Consider database security, installation security as well as settings security. There is much to take into account, all depending on the kinds of software you're writing. Never forget that you're code is as secure as you make it! The user just follows the procedures that you as programmer wrote.[/ALIGN]

Online Security and how to try to attin it

, ,

If you think you're safe while connected to the Internet, you couldn't be more wrong. Few days ago as I mentioned earlier I had my b2evolution blog hacked and turned into smithers. I am now starting to think that SOME people do NOT deserve open source software or even free software of any kind, especially people that will take your scripts and use them to hack your site smile How to make yourself more secure while being online? While the truth is you're never safe while connected you can try and make it happen bit by bit. Here are some tips that I recommend everyone follows:

- Disconnect from the Internet while you don't need it... well for some people it might seem obvious for others unimaginable, if you belong to the other group well lets say for now that you're potentially more exposed

- Turn on your anti-virus, firewall, defense and sandbox, if you're using MSE (Microsoft Security Essentials) it's not bad it just doesn't provide you with staff like defense+ or sandbox which Comodo provides you with

- DO NOT automatically accept MSN/Yahoo etc invitations without knowing who the other person is, it actually might be a scammer or other unwanted

- Turn OFF your preview panel in your e-mail inbox Why? Because some viruses need to be only previewed by your computer and you're already infected, new viruses are not like the old ones which needed to be attached to the message

- Don't use public hotspots like McDonald's wireless, if you do be very careful. These networks are open to everyone, basically it means that while you're connected everyone on the network is able to see what you're sending, everyone could catch you data and use it against you. Try not to log in to your e-mail and be careful with other websites as well.

- Be careful who you're giving your e-mail address to, if you're posting it on someone's website try using me [at] somewebsite.com, not full e-mail so scammers won't catch it so easily.

- Do NOT download files from unknown sources, it might obvious but you'd be surprised how many people actually download files that they have no actual idea where they're from. Even if you'll scan the file and anti-virus states it clean it doesn't always mean it is really clean, it could as well affect your core system files and your anti-virus wouldn't be able to pick it up straight away.


How to make yourself be ok even after an attack/virus etc:
- Make regular registry back ups (do not over write them, save them separately)
- Make regular copies of most important to you documents and files, copy them onto either flash drive or some external drive
- Have few e-mail addresses just in case and use them for separate purposes, one for newsletters etc and second one for business/private matters
- Don't save your work in just one place
- When you update your website automatically make back ups of the files, otherwise you might lose everything
May 2013
M T W T F S S
April 2013June 2013
1 2 3 4 5
6 7 8 9 10 11 12
13 14 15 16 17 18 19
20 21 22 23 24 25 26
27 28 29 30 31