Security Corner:

Security


June 13, 2008  1:56 AM

SSL is Your Friend and Protector on the Web



Posted by: Ken Harthun
Cryptography, Phishing, Security, Security maxim

I hope I've given you some valuable advice in this series of posts on how to secure your computer. If so, and if you've chosen to take my advice, you’re probably careful about what you do on the web. You certainly have strong passwords for all of your logins, all of them different, and you...

June 5, 2008  1:30 PM

Safari for Windows Flaw Quick Fix



Posted by: Ken Harthun
Apple, Browsers, Microsoft Windows, Remote Code Execution, Security, Vulnerabilities

Microsoft has issued Security Advisory 953818 advising Safari users to "restrict use of Safari as a web browser until an appropriate update is available from Microsoft and/or Apple." According to...


May 31, 2008  2:13 AM

How to Secure Your Computer: Maxim #10



Posted by: Ken Harthun
Cryptography, Encryption, Password, Security, Security management, Security maxim

A friend of mine came up to me the other day and said, “I love your computer security maxims, but there's one thing I don’t have anything to worry about–I keep all of my passwords stored on an encrypted thumb drive.” "Well, that’s a good thing," I said. "Where do you keep your...


May 29, 2008  8:14 PM

Phlashing Attack Can Damage Systems Beyond Repair



Posted by: Ken Harthun
Cyber warfare, Opinion, Remote Code Execution, Security, Security management, Vulnerabilities

It has long been an "everybody knows" that viruses and other malware cannot physically damage hardware. We've all seen those alarming emails that say, "...the virus destroys Sector Zero, thus permanently destroying the hard disk," a statement we know is rubbish; at worst, the disk is rendered...


May 29, 2008  5:14 PM

Beware the Internet Criminals’ Latest Trick



Posted by: Ken Harthun
Browsers, Email security, Opinion, Phishing, Security, spam

Some spammers, phishers, and other Internet criminals have resorted to (mis)using the convenient service of tinyurl.com in order to disguise their web site addresses and entice you into clicking. Tinyurl.com takes those weird, long URLs and...


May 22, 2008  7:38 PM

Foxit Reader Security Vulnerability



Posted by: Ken Harthun
Buffer Overflow, Remote Code Execution, Security, Vulnerabilities

Since I discovered Foxit Reader in early 2006, I've been recommending it to everyone. There's no question it's a best-of-breed tool for speed and simplicity. But recently, Secunia issued a


May 18, 2008  6:39 PM

Are You a Hacker Target?



Posted by: Ken Harthun
Browsers, Firewalls, NAT, Opinion, Routers, Security

Aside from those unenlightened, naive souls who invite every hacker, phisher and Nigerian scammer on the planet into their computers how many people actually fall victim to hackers? I'm talking about people who take reasonable precautions, like installing a NAT router, running a personal firewall...


May 17, 2008  3:08 PM

Two Ways to Operate Securely on the Web



Posted by: Ken Harthun
Browsers, Linux, Microsoft Windows, Security, Security management, Security maxim, Virtualization

If you've done any coding at all, you probably have a good idea why software developers often run their untested code in a protected environment--a sandbox. If the software misbehaves, all you have to do is shut...


May 11, 2008  2:07 PM

No-Hassle Way to Kill ActiveX Controls



Posted by: Ken Harthun
Browsers, Microsoft Windows, Security, Security management, Vulnerabilities

ActiveX has always been a weak point in IE. The majority of browser plug-in vulnerabilities are ActiveX based. Microsoft realizes this and has a method to disable certain problematic ActiveX controls. But Microsoft's method...


May 11, 2008  1:13 PM

Windows XP SP3 Offers Enhanced Reliability and Security, But Not IE7



Posted by: Ken Harthun
Browsers, Cryptography, Microsoft Windows, Networking, Opinion, Security

The long-awaited Windows XP Service Pack 3 became available as an Express Update May 6, 2008 on Windows Update, and offers enhanced reliability and security through a few new features: Network...