Search This Blog

Follow me on Twitter

Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

January 3, 2013

The Picture Shown Around the World


By now you may have heard about the sister of Facebook co-founder Mark Zuckerberg being upset over a picture posted on her personal Facebook account being posted on Twitter.  You may be asking how private those posts and pictures you put on Facebook really are. Apparently Randi Zuckerberg posted this picture so only her Facebook “Friends” could see it. Callie Schweitzer then posted it on her Twitter account. Callie Schweitzer while not a Facebook friend of Randi subscribes to her feeds and also is a Facebook friend of Mark and Randi’s sister. She apparently saw the picture because she is Facebook friends with the sister. Since her sister was tagged in the picture, Callie was able to see it. Callie thought that the picture was public since she subscribes to Randi’s posts on Facebook but this picture was not posted with access provided to subscribers.  It is not difficult to copy someone else’s picture that you see in Facebook. Click to open the picture and then right click.  An option to save will show among other options. Once saved, you can do with it as you wish including posting it to Twitter. On a personal note a friend of mine remarked how she was not able to download a picture of her and her daughters that her friend posted on Facebook. In a few seconds, I downloaded the picture and emailed it to her.

The protocol is to ask before posting someone else’s photos for others to see. Think of this as sending a letter to your friend who we will call “A”.  You do not expect that A will share the letter with others. A decides to share the letter with B and C. This is largely what happened here. The issue was not Facebook’s privacy settings but someone else sharing the picture above and beyond.  When you post to Facebook whether it be a picture, your writings, etc you should realize that it may be seen by those you did not intend to see it.  Note that while the picture was deleted by Callie Schweitzer, articles with the picture were posted online so it can be seen by all. I am using it in this article without compromising any confidences. And yes the man on the right side is Mark Zuckerberg himself.

The takeaway is to be careful of what you post on Facebook and other social media sites. Don’t put anything out there that you would not want to appear in a newspaper, seen by your boss, your parents, your children, etc.

If you have further questions about your privacy on Facebook and other social media sites I can be contacted at (917) 572-3468 or email me at mike@computerconciergeny.com .

My Facebook page provides information on the current goings on in the technology field. There are tips to better use your technology. For timely information, please visit and "Like" my page.

Computer Concierge NY LLC provides expert computer and technology services in the Queens, NY area. This includes Albertson, Bayside, Bayside Hills, Bay Terrace, Bellerose, College Point, Douglaston, Floral Park,  Flushing, Forest Hills, Great Neck, Jamaica Estates, Kew Gardens, Kings Point, Lake Success, Manhasset, Mineola, Munsey Park,  New Hyde Park, North Hills, North Shore Towers, Oakland Gardens, Plandome, Rego Park, Roslyn, The Bay Club, Thomaston, University Gardens, Williston Park, Whitestone and Other Areas in the Bayside, NY vicinity.  Our web services are provided worldwide.

September 17, 2012

Computer Safety in Public

By Infrogmation of New Orleans (Photo by Information) [GFDL (http://www.gnu.org/copyleft/fdl.html) or CC-BY-SA-3.0 (http://creativecommons.org/licenses/by-sa/3.0)], via Wikimedia Commons



Last week while volunteering at the Central Queens Y in Forest Hills, I was working with a gentleman about using email. I mentioned to him the importance of signing out of his email and any other site he signed into when finished using a public computer. Five minutes later when he was done, he started to leave without signing out of the public computer he was using and I needed to remind him about the importance of doing so. Using a computer in public whether it is on a public desktop computer or a public Wi-Fi can be more secure if precautions are followed.

Hotels and libraries are two places where there may be a public computer for all to use. I will also include using a friend’s computer here as well. They are only as safe as the internet security that the computer is using. It may be a good idea to check to ascertain that the computer is secure.  As I noted previous it is important that when you are done using the computer (even if for a quick moment), you sign out of all sites that you had logged into. This includes your email and Facebook accounts.  If you forget, the person using the computer after you has access to the accounts you did not log out of. They would have the ability to send spam or perhaps post inappropriate comments on your Facebook account as you. When logging onto a site and you are prompted to save your password or if the default is “Yes”, make sure that you do not allow the computer to save your password.  Unselect the “Yes” default where applicable.  You should also make sure that no one is snooping over your shoulder in an attempt to obtain your passwords or other confidential information.  What I always do when leaving a public computer is to clear browsing data.  This includes browsing history, cookies and autofill form data.  It is another layer of security.

When you are using a public wireless network such as Starbucks or in an airport, you also should make sure that no one is snooping over your shoulder and ascertain that the computer you are accessing the Wi-Fi network has the needed security.  You also should be sure that any sharing features that you have turned on are turned off.  This would include file and printer sharing as well as network sharing as well.

Last whether using a public computer or public Wi-Fi never do banking, credit card or other financial transactions. In the event there is a keystroke logger on that public computer you are using or sniffer intercepting data over a public Wi-Fi network you do not want to put information out there that can compromise your personal information. I also would never enter any information that could be used to steal your identity.  A while back I did a blog on choosing a good password. In it I mentioned that you need to have different passwords for the sites you log into. Click on link.  Should a hacker ever get the password to a site you logged into, they realize that many people use the same passwords to log into their accounts. Having different passwords will minimize the damage.

These are a few ways to keep yourself safe while using your computer in a public Wi-Fi system or using a public computer.

If you have additional questions about computer safety or any other technology questions, I can be reached at (917) 572-3468 or email me at mike@computerconciergeny.com  


My Facebook page http://on.fb.me/MikesCCNY provides information on the current goings on in the technology field. There are tips to better use your computer and smartphone. For timely information, please visit and "Like" my page.





June 18, 2012

You Need Secure Passwords For Your Accounts - How To Make One


Last week 3 prominent websites revealed that passwords to log into their respective accounts were stolen.  It was also reported but not confirmed that presidential candidate Mitt Romney’s Hotmail account was hacked as well. When you add to the fact that there are people who use the same passwords for each website they set up an account for, there is more than ample reason to be concerned.  Keep in mind even the strongest password would not have protected you from the LinkedIn and eHarmony hacks.  This is because the files containing passwords were hacked. You need to do what you can to protect your online accounts from being hacked.
So you may ask how do you have a password that is difficult to hack?  I said earlier that there are those who use the same password for everything.  You have separate keys for your home, car, office, etc.  You should also have a different password for all of your accounts.  If you were to have the same key for your home, car, and office, someone would only need to get that one key to have access to all.  The same concept is true for passwords. A person gets that one password and they have the key to all. 
Your password needs to have at least 1 of the following: Upper case letter, numeric character and at least one special character (*,$,@).  How long should your password be? Your password should be a minimum of 8-12 characters. I personally would opt for the latter. A few years ago, a computer professional using the name of John P. wrote how quickly he could crack a password based upon the password length and types of characters used while on a computer. For 3 characters it was 0.86 seconds using all types of characters (uppercase, lowercase, numbers, characters) and .02 seconds using only lowercase characters in your password. For 8 characters the times were 2.10 centuries and 2.42 days respectively. The assumption is that you were not using a word in the dictionary. Going from 8 to 9 characters increased the time to 20 millennia and 2.07 months respectively.  And yes, your password should not contain words in any language.
So how do we create a secure password?  Think of a sentence that you can remember.  For example “My Dog Was Born in 2011.”  With that sentence we can create a password “Mdwbi2011!” This password represents the sentence by using the first letter in each word, adding “2011” and then adding an exclamation at the end. We capitalize the letter “M” since it is the first word of the sentence. As mentioned, we do not want to use the same password for each account. So what do we do to create a unique password for each account. Most will suggest adding a prefix prior to the acronym password noted above. To be different, add at the end the first three characters of the account.  For example using Facebook, your password would be “Mdwbi2011!fac”
By using the example above as a basis for creating passwords for the sites you use, you can greatly reduce the chance that your password will be hacked as your passwords will be much more secure and much harder to break.
While we are on the subject of passwords, it is easy and convenient to enable the option to remember passwords. This will enable anyone using the computer to log onto the site without knowing your password.  Especially when using a laptop, you should disable this option whenever it is given. It is another layer in staying secure. Further I have worked with clients who leave their list of passwords on the same desk as their computer in full view of all. I have heard stories of relatives, housekeepers and others copying these to access their sites and get information they would not have gotten otherwise. If you are keeping a list of passwords, keep it in a safe place but not such a safe place that you forget where you put it. 
If you have questions regarding password security or other technology issues I can be reached at (917) 572-3468.

Computer Concierge NY LLC, provides expert computer and technology services in the Bayside, NY area, Including Queens, Albertson, Bayside Hills, Bay Terrace, Bellrose, College Point, Douglaston, Floral Park,  Flushing, Forest Hills, Great Neck, Jamaica Estates, Kew Gardens, Kings Point, Lake Success, Manhasset, Mineola, Munsey Park,  New Hyde Park, North Hills, North Shore Towers, Oakland Gardens, Plandome, Rego Park, Roslyn, The Bay Club, Thomaston, University Gardens, Williston Park, Whitestone and Other Areas in the Bayside vicinity.  

October 12, 2011

Password Protection Revisited

A few months back I did a post on password protection.  http://bit.ly/d4nvD5.   As a follow up there are additional items to consider regarding password protection.  My previous post mentioned that a secure password should have a minimum of 8 characters.  The thinking regarding this minimum number is changing to where a minimum of 12 and up to 14 characters should be used for a secure password.  Microsoft has a website where you can check your password strength as shown.  http://bit.ly/1F3MKA  They recommend a minimum of 14 characters.


An important thing to consider is when you set up a user name and password on a site, you may have to answer at least 1 security question.  This is in the event you forget your password, the site will ask you a question that you need to answer correctly in order to regain access to your account.  Perhaps the most common is asking for your mother's maiden name.  As I am noting in the next paragraph, be careful of how you answer these questions.  You do not have to give a correct answer but remember the answer you give.


A while back I wrote on how your future employer gets to know you before they meet you.  http://bit.ly/9AGqbR  In it I mentioned why you need to be careful about what you post online.  Here is another reason.  What you post can directly and indirectly be used to obtain information that can answer those security questions and not necessarily posted by you.  For example the question of your mother's maiden name.  If your mother is a Facebook friend of yours and uses her maiden name as part of her name, there is the answer to the question of your mother's maiden name.  For the question of your mother's maiden name, you may want to use something else like a neighbor's last name, a friend's maiden name, etc.   Discover Card asks the question "What city were you married in?"  If you have been married more than once, you can use the city of your first marriage.  I think you get what I am saying here.  During the 2008 presidential election, Sarah Palin's personal email account was hacked because a lot of her personal information was out there and the hacker knew the information needed to answer her security question.


In closing, be careful again of what you post online.  This information can be used to access online accounts that you would not want others to access.

June 11, 2011

Cloud Computing AKA the Internet

These days a lot is mentioned about Cloud Computing. In a nutshell cloud computing is another term for the internet.  When services like Mozy.com mention online backup what they also mean is that your data is backed up in the cloud. When you are on vacation and check your email, that email is stored in the cloud. If you are using a spreadsheet program in Google Docs and calculations are made to that file, the calculation is done in the cloud.  These are just a few applications that are done in the cloud.  Google has been designing a new operating system Google Chrome OS that will work exclusively with web applications. It is expected to be released later this year.

The beauty of the cloud is that you are able to access your files anywhere there is an internet connection.  If you are halfway around the world and need to know where that Tuesday meeting after you get back is and with who, you can go to an online product like Google Calendar to find out. Items in the cloud do not take up space on your hard drive.

Needless to say it isn't perfect and there are issues and concerns the biggest being privacy and security.  Since you are trusting your data to a third party you want your information to be secure and not easily accessible to those you wish to keep it away from. You also want to be assured that the provider will not lose your data.  As we know Facebook has had security and privacy issues.  I believe that as we move more into the cloud, these issues will resolve themselves. Security and privacy will be much improved because of competition and technological advances. Another issue is the accessibility of the data.  What if the internet goes down or either you or your provider lose internet access?  The quick and short answer to this is unless you have backed up your data locally you have to wait until access is restored. That said, web services are continually improving as to access and security.  Like any service providers there are good and bad.  Keep in mind if your hard drive crashes or you cannot get on your computer for some other reason, having backups is important. Cloud applications do guarantee the safety of your data.  Any reputable company storing your data online will have backups of their own.  I will say this in closing for those of you who do online banking and/or get credit card statements online. The bank statements you see in your account where you do your online banking that saves you space(you do not need a hard copy of them) is in the cloud as are the credit card statements you see in your online account.  Businesses are starting to move their data into the cloud accessing and storing it there.

May 3, 2011

Password Protection

Just like you want a good lock to protect your home and valuables from unwanted intruders, you want a good password to protect your financial and other personal data from prying eyes both online and offline. A good strong password will allow you safer online transactions.


A few years ago, a computer professional using the name of John P. wrote how quickly he could crack a password based upon the password length and types of characters used while on a computer. For 3 characters it was 0.86 seconds using all types of characters (uppercase, lowercase, numbers, characters) and .02 seconds using only lowercase characters in your password.  For 8 characters the times were 2.10 centuries and 2.42 days respectively. The assumption is that you were not using a word in the dictionary. Going from 8 to 9 characters increased the time to 20 millennia and 2.07 months respectively.




That said, certain websites financial websites in particular have a protocol that must be followed when setting up a password on their site.


A good password includes upper and lower case letters, numbers and symbols and has a minimum of 8 characters. There are password checkers out there to check the strength of your password.  A good one is Passwordmeter.com  


“Whisper32” is a freeware password manager program to download.  You can store passwords on it.  You need to have a password to open your saved file.  Click to open Whisper32 download.


You also should NEVER use the following as passwords as they will make it easier to crack your password:

a.      Your name & other personal information like birthday, spouse’s name, SS#, etc
b.      Sites name
c.       “Password”
d.      Dictionary words in any language
e.      Sequences or related characters – 123456, abcdef, 222222


While we are on the subject of passwords, it is easy and convenient to enable the option to remember passwords.  This will enable anyone using the computer being used to log into the site without knowing your password.  Especially when using a laptop, you should disable this option whenever it is given.  It is another layer in staying secure. Needless to say always disable when you are on a public computer.  Also when you are on a public computer, before you leave and you are still using the web browser remember to delete all browsing history, cookies, etc.  In Internet Explorer 8 select the Tools option from the menu.  Then select "Internet Options" and then "Browsing History". Select "Delete" to delete. 


By following the above, you will make your internet browsing much safer and secure from hackers and intruders.