Wednesday, April 1, 2015

Cloud Computing Explained - Part 3


Safeguarding Your Data
If you want to be assured your data is secure you must take some basic steps to ensure that is the case.
Step 1 Maintain at least two copies of your data and ensure at least one copy is on a usb device and is not on the cloud. This non cloud copy should not be readily accessible from any device that is connected to the internet. This ensures if you data is hijacked you have a copy that is not compromised. You should make it part of your routine to ensure all copies are up to date. Relying on one or more Cloud locations to keep copies is putting all your eggs in one basket and is not recommended. 

Step 2. Do not use free wifi services or web cafes to access your sensitive data when you are out and about. This temptation can lead to your passwords and data being hacked. I regularly see people accessing their email and facebook from free wifi services unaware that the service may have been hijacked by the person sitting next to them. Avoid it if at all possible.

Encryption
Where possible encrypt sensitive information to prevent easy access by cyber criminals. At a minimum password protect spreadsheets, and documents. There are several free commercial products available which will encrypt your data and reduce the chances of your data being easily accessed if your cloud storage is hacked.


Email
Email is probably the single biggest Achilles heel for the cloud computing user. Once a hacker has access to it a myriad of information is available to them to compromise your security and get access to your money. Gmail and hotmail are both cloud based emails and I’ve lost count of the amount of people whom I have dealt with who have been hacked via these email services. At a minimum you should use the double authentication services provided. When activated this service sends a code to your mobile which must be entered with your password each time you login. As the code changes each time it is a very good method of ensuring your email is not compromised. Use strong passwords on your email and all other cloud accounts and don’t keep a list of these on the cloud. Finally never use the same password across accounts, change the passwords frequently and never reuse a password. 

Sunday, March 1, 2015

Cloud Computing Explained - Part 2



This is the second article on cloud computing, part one can be accessed from the web links listed at the bottom of this page.

Cloud Computing - Plan to fail, Don't fail to plan
The fact, for most computer users, is that some or all of your personal data will be stored on one or more internet servers(the cloud). With that comes the risk that it will be successfully accessed by cyber criminals. As recently as this week the news listed one of the latest attacks on banks by cyber criminals which netted the criminals 1 billon dollars. According to the article one or more Irish banks were hit but this has been disputed in the Irish media.Click Here for the Article

One would think that the banks would be savvy enough to ensure they are protected but the truth is there is simply no way to secure against human error. Thus you need to plan for the worst and take action before you are a victim.

Passwords
I’ve written about this before but I’ll summarize again regarding passwords.
  • Use strong passwords containing upper and lower case letters and numbers
  • Never use the same password on more than one account
  • Never re-use passwords on an account or across accounts
  • Never ever store a list of your passwords on any computing device
  • Change your passwords frequently without waiting for the site or app expire date.

Accessing Your Accounts Via Wifi
As more and more people use smart phones and tablets on the go the convenience factor may tempt you to access your email or bank accounts via wifi when out and about.
Don’t do it!  This is playing russian roulette with your data and you’ll eventually get caught.
It is amazingly simple to hack a wifi hotspot and redirect user data via your own device. Likewise it goes without saying to never use a web cafĂ© computer to access your email or bank accounts. As with the wifi hotspots you can never be assured of security. Lastly I’ve had more than one or two customers whose email accounts have been hacked when they accessed them from work.


Next month I’ll finish on this topic and will cover safeguarding your data, encryption, replication and email issues amongst others.

Saturday, January 31, 2015

Cloud Computing Explained




This month I will address the ever increasing prevalence and reliance on cloud computing and storage of your data. It is timely as quite often I am queried on it by customers and many seem confused about exactly what it is and how it affects them.I hope this article clears up some of the confusion regarding cloud technology.


Cloud Computing – The Origin
You could be, based on what is put on in the media, excused for believing that cloud computing is a “new” technology. It’s not – it’s been around virtually since the beginning of computers and it was because of the original cloud computing model that personal computers, in part, became popular. Back in the early days of computers, before pc technology, all information was stored on large “mainframe” computers.  The only way you could access it was via those old terminals you see in the movies from the 1970’s. These large computers were expensive and you needed to employ teams of programmers and technicians to keep the whole show on the road.

Cloud Computing – The Achilles Heels
If the mainframe failed you were offline with no access to your information. Cloud computing as we know it today is no different and is simply an old, old idea with some new clothes added. Make no mistake cloud computing is primarily aimed at creating a model where you, the consumer, will eventually pay for that which you have come to understand is free. In other words you will eventually pay to store your information on the cloud be it your email, photos, or data.

Cloud computing requires you to delegate to some unknown and untested entity responsibility for the storage and safeguarding of your information. In reality you were never actually offered the choice but it was introduced by stealth. Cloud computing got a foothold with the free email offered first by Microsoft in the form of hotmail and followed by numerous other free email services.

For a basic understanding of cloud computing and the risks consider the following: It is equivalent to leaving your wallet in someone’s house on the assumption that they will safeguard it with the same amount of diligence as yourself. It is a false and dangerous assumption and the failure of cloud computing security can be witnessed by a myriad of cases where email and storage accounts have been hacked on the cloud.

Next month I’ll continue on this subject with some practical suggestions on how you can reduce the risks associated with its use.



Oliver Reidy is a computer technician and has been in the industry since 1981. This article, and all previous articles, are available to view online at http://reidyonline.blogspot.ie/ or www.reidyonline.com/blogspot.htm

Monday, December 1, 2014

Avoiding Internet &Telephone Con Artists-Part 2



This article deals with the ever increasing risk of being “conned” out of your money by Internet thieves.Part one can be found on this blog under November 2014.

With the growth in the use of Ipad, mobile, and tablet use to access the internet many technology users have grown use to not having anti-virus software to combat virus and spyware attacks. What is forgotten is that these anti-virus products also provided security against two of the most common methods of attacking internet users. The thieves have switched to using these methods to target these non laptop/desktop users.  These attacks are launched via fake websites, and fake emails. Both methods work extremely well and I’ve seen numerous cases of people being conned out of money by these methods. I will deal with the fake email this month and fake websites next month.

The Fake Email.
How it works:
  1. You receive an email which can appear to come from your email provider, a friend, Microsoft, your bank or any of a number of institutions or individuals you deal with.
  2. You are invited to open, click the link or visit the website.
  3. The email may contain a warning that some action will be taken unless you do.
  4. The email may contain information on something that has been purchased via your credit card, itunes, or paypal and invite you to cancel the transaction if it is not you.
  5.  The email may appear to be from a friend or some other social media organization such as Facebook.

How To Avoid This Scam:
  1. Do not open it, click the link, visit the site or in any way with the message or email.
  2. If you are worried visit the site independently of the message taking special care to ensure you are actually on the correct site (check the full address in the address bar)
  3. If you believe your device or email is compromised contact a professional and do not proceed.

Many of you will be purchasing new internet devices this Christmas other than traditional desktop and laptops. Do not make the mistake that these devices guarantee your safety from thieves. To quote an old adage “there is more than one way to skin a cat!”

Stay alert, stay safe!

Saturday, November 1, 2014

Avoiding Internet &Telephone Con Artists



This month’s article deals with the ever increasing risk of being “conned” out of your money by Internet thieves. I’ve written about this several times before but some of the newer cons deserve that I revisit the subject.

The Telephone Con
How it works:
  1. You receive a call on your landline or mobile from someone claiming to be from Microsoft or some other technology company. The caller may identify himself as from “windows” or an anti-virus company.
  2. The caller tells you that your computer has been identified as having a problem. The problem described can be anything from “being ready to crash” to “having been involved in a criminal act”.
  3. The caller offers to connect with your computer or directs you to a website for
  4. Further assistance.
  5. Once you allow this you are prompted by either the caller or the website or your computer that you need to pay an amount to fix the issue. The amount is always under €100.
  6. You, the victim, enters you bank account or credit account details on the website or gives them to the individual.
  7. You realize later you have been scammed as money has disappeared from your account. The amounts range from €300 up to €3,000.

How To Avoid This Scam:
  1. Do not engage in any way with this individual simply hang up the phone.
  2. Assume all such calls are scams and if you need clarification contact a known computer technician for advice.
  3. Never visit the site offered, and never allow access to your computer.

Who They Are:
1. These conmen (it seems to be mostly men) are organized criminal gangs located in countries outside the jurisdiction of Interpol (and consequently the Guards).
2. They are using freely available internet telephone directories which lists your name and telephone number.
3. They are using low cost internet calling services such as skype to contact you. You will notice the quality of the telephone call will sometimes be poor.
4. The will try repeatedly, using different methods, to get you to give them access to your computer or compromise the security on your computer.
5. The will, if they can, also use email as a second tier attack on you.

Stay alert, stay safe!

Wednesday, October 1, 2014

Busting Computer Myths – Part 3



This month’s article continues on the topic of Computer Myths and Rumours. Part 1&2 are available on this blog.

I use A Tablet/Ipad So I am Safe From Attack
Truth or Myth: Myth.  This is a common myth and one which seems to be catching out large groups of internet users. Before the arrival of the tablet/ipad technology the primary methods of attack were via email, via websites, application downloads, illegal music and video sites, and phone scamming. With the change in the way apps are delivered to tablets/ipads the scammers are now moving to different methods of attack with a good deal of success. The Achilles heel of the tablet/ipad is the internet and the degree to which these devices rely on it for storage. Cloud based email systems such as hotmail and gmail provide a relatively easy way for scammers to gain access to your data. Once they have done that they can launch attacks on your bank accounts and your friends. This is by far the most common attack I see on tablet/ipad users.

Prevention Tips: Make sure all passwords on all cloud based accounts are unique and not similar. My article from June 2014 outlines some good password tips.

Employ two step verification on the gmail and hotmail accounts to prevent unauthorized access.

Do not store sensitive information on your tablet/ipad or on the cloud and if you must ensure it is encrypted to the highest level possible.

Never give out passwords to unknown people and do not accept calls from people claiming to be from Microsoft or your anti-virus company.

Never reply to emails requesting password changes unless you have initiated the change.

I Don’t Need To Backup All My Information Is On The Cloud
Truth or Myth: Myth. Reliance on the cloud for backup is not a good idea and you should always maintain a backup of your data on your own external device where possible. On tablets/ipads this will mean copying the data to your desktop/laptop if you have one! If you don’t have a pc or laptop then ensure your keep the data on the cloud in at least two different locations. As with your email use strong passwords and change the password frequently.  When it comes to technology “plan to fail, don’t fail to plan” for the day when your device is hacked or just simply dies.

Monday, September 1, 2014

Busting Computer Myths – Part 2


This month’s article continues on the topic of Computer Myths and Rumours. Part 1 is available on this blog under August 2014. You can subscribe to this blog by visiting my website at www.reidyonline.com/blogspot.htm

Addons/Toolbars Have Not Effect On My Browser
Truth or Myth?: Myth. Toolbars, add-ons, and extensions to your browser are one of the easiest ways for hackers, conmen, and cyber criminals to gain access to your computer. Once installed this software can be used for a variety of purposes but ultimately it is aimed at your wallet. These add-ons can appear to be legitimate and promise, as usual, some wonderful benefit. The rule of thumb for all such software is to refuse to install it and if you think one of these apps has made it on to your device seek professional advice.

Anti-Virus Software Will Protect Me From Viruses/Malware
Truth or Myth: Myth.  This is one of the most common myth’s and leads to a false sense of security when browsing the web and or reading email. I sell and support what I consider to be the best professional anti-virus software available but despite it’s excellent track record I would never tell anyone that it is a 100% defence against viruses/Malware. The reason is simple: You cannot guarantee any product against future threats. Virus/Malware writers spend their time trying to come up with new software that can bypass anti-virus software. Thus even the best anti-virus software available cannot always be ahead of the virus writers. Your Anti-virus software is just one component in the defence of your computer. You are by far the most important component in defending your computer.. Where you browse, how you browse, what you download, and what emails you open all affect the potential for virus/Malware infections.

To Reduce The Chances of Virus.Malware infection :
  • Stop and think before you click a link, open an email, or click yes to allow a program to run on your computer. If you are not sure do not proceed!!

Next month I’ll expand and explore other Myths and Rumours.