Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Tuesday, July 16, 2013

Android Phones Vulnerable to Hackers

Android Vulnerability Patched



Android is the most popular mobile operating system in the world, installed on three quarter of a billion devices. Having a master key to all of those would give a hacker near-total control in the mobile world. Fortunately, this doomsday scenario has been narrowly avoided.


Bluebox Labs, a computer security company, recently discovered http://bluebox.com/corporate-blog/bluebox-uncovers-android-master-key/ a vulnerability in the Android operating system that leaves “99%” of Android users open to the possibility of malicious software. But the most shocking thing about this discovery is not only the breadth of the vulnerability, but its depth as well.

The “Master Key” vulnerability, if used by a hacker, would allow them to access all of a user's data on their phone. This includes text messages, account access, and photos. It is unknown at this time the full extent of this vulnerability's use.

This vulnerability makes it possible for a hacker to change the code of an app without modifying its cryptographic signature. What this means in practical terms is that a hacker could develop an app and deliver it to the Google Play store and have it downloaded by people wanting to use its functionality. Those who download the app would confirm the app's access to the file system. Then without anyone's knowledge, the hacker could then change the code of the app to act as a trojan horse, gathering data and personal information from the user's phone. This process would be invisible to the user, aside from a slight slow-down.
[pullquote]"We have not seen...any exploitation"[/pullquote]
Now the good news is that the vulnerability has already been patched by Google. They've shipped it to providers like MetroPCS and Verizon, who will deploy the update to their users' phones in the next few weeks.

More good news: According to a statement http://www.zdnet.com/google-releases-fix-to-oems-for-blue-security-android-security-hole-7000017782/ sent by Gina Scigliano, Google's Android Communications Manager, “We have not seen any evidence of exploitation in Google Play or other app stores via our security scanning tools.” So in the meantime while you're waiting for your phone to update, don't download any sketchy apps. If you're worried that you may have been infected already, you can install https://play.google.com/store/apps/details?id=com.bluebox.labs.onerootscanner to check for infection.

 

Friday, July 12, 2013

Can Facebook Give Me a Virus?

Can Facebook Give Me A Virus?



One of the questions I get asked a lot is, “can Facebook give me a virus?” With over a billion people logging in at least once a month, it’s no surprise that criminals are constantly working to find ways to get access to and exploit users. Here are the most common ways you can encounter malware from using Facebook.

The good news is that just cruising Facebook, reading your friend’s posts in your newsfeed and updating your timeline can’t give you a virus. However, many posts include links to other pages, either to read an article, view a video, get a coupon, etc... Many links on Facebook, especially those posted to open community fan pages, will send you to pages infected with viruses or malware and there’s where you run into trouble.

It used to be that getting a virus or spyware required downloading an infected file or installing a malicious program. So long as you didn’t download suspicious programs or attachments or visit file sharing sites, you were generally safe surfing the net. These days, viruses and spyware have evolved to worm their way into your system just by going to an infected webpage.

Every time there’s a big news story (like when Osama Bin Laden was killed or during a highly publicized national event or tragedy) infected links pop up all over Facebook. In some cases, you’ll be “tagged” to a post with a link claiming to be to a news story or video. Clicking the link often leads to a blank page and users think they’ve simply encountered a bad link, but they’ve already been infected. Be wary – particularly if you don’t know the original person that posted the link. It’s best to update your Facebook settings so that you are notified and have the ability to allow or disallow any tagging of your profile by others. Then you can elect “don’t allow” any time you’re tagged in a post that you don’t know or trust.

Be very cautious about links that make promises. The “Win a free iPad!” or “Get a free Starbucks gift card!” posts are almost always a scam. Either they’re an attempt to lure you to provide personal information (data mining) or will direct you to a web page that’s infected with malware.
[pullquote]Be very cautious about links that make promises.[/pullquote]

The nature of Facebook is such that many posts with malicious links appear to have generated from your friends, which gives victims a false sense of security. In many cases, the poster doesn’t realize that the link directs to an infected site. Even more common, clicking on the malicious link or installing a spyware-laced app will result in an auto-post to the victim’s timeline or blast messages to their contact list, leading their friends to see a recommendation to follow the link and further the spread of infection.

Those looking to infect users also frequently use links to videos with the tag “is this you?” and a suggestion that you were caught on film doing something unexpected. Or simply a link to a video that seems spectacular or intriguing. The link either directs you to an infected page, requires that you install an application to view the video (you’re actually installing malicious code), or asks for personal information before allowing you to view the material. Check the address listed below the video before you click to be sure that any video link you follow directs you to a reputable site that you recognize, like YouTube, CNN, etc.

Keep in mind that the ads posted to the margins and “sponsored links” take you outside of Facebook, exposing you to risk of exposure to infected weblinks. While it’s less likely that a link that Facebook approved to be included in an ad would be infected, you should exercise caution whenever you click a link that directs you off of a Facebook page.
[pullquote]Never copy and paste a command prompt into your browser.[/pullquote]Another source of malicious code is rogue apps that lure you with promises to “see who’s been looking at your profile,” or to get that (non-existent) “dislike” button. In some cases, you’ll be prompted to copy and paste script into your browser to install the application. Never, under any circumstances, follow instructions to copy and paste a command prompt into your browser. These will often reference java in the first word or two of text.

If you encounter a page that prompts you to re-login to your Facebook account, check the address in your browser bar. Criminals can create pages that look exactly like Facebook and when you enter your username and password they’re able to capture your account. Close any page that doesn’t start with www.facebook.com – if you see anything between facebook and .com, don’t trust the page.

 

Wednesday, July 10, 2013

5 Easy Ways to Prevent Identity Theft

Prevent Identity Theft and Protect Yourself



The FTC estimates that as many as 9 million Americans have their identities stolen each year. According to data compiled by Zone Alarm, maker of antivirus and firewall software, identity theft results in an average cost to victim of $4,841 and takes, on average, 33 hours to resolve. With more and more of our personal information available online, it’s imperative that you take steps to protect yourself online.


Buyer beware. For as little as $30 in web hosting fees, criminals can set up fake online shop fronts to lure consumers into submitting their personal information and credit account numbers. Be wary of online retailers that you’ve never heard of, particularly if they’re offering a popular item at a lower-than-expected price.

If you can’t resist the deal, contact your credit card company to inquire if they offer one-time-use card numbers that you can use for vendors you don’t trust, or consider using a Visa or Mastercard gift card to protect your permanent account number. Never supply unnecessary personal information like your social security number, driver’s license number, or date of birth when completing an online retail transaction.

Pump up your password. I know, I know, I’m a broken record with this one. But if you’re one of the millions of Americans using the most popular passwords, such as “password,” “trustno1,” “abc123,” “monkey” or “letmein” (for the top 25 worst passwords, check out the list at SplashData: http://splashdata.com/press/pr121023.htm), you’re putting yourself at risk. Morgan Slain, CEO of SplashData (a provider of password management applications) explains, “Hackers can easily break into accounts just by repeatedly trying common passwords.” He recommends using an online password management tool. I like Lastpass (https://lastpass.com/) which can create and store unique, difficult to crack passwords for every site you visit online.

Secure your Smartphone. As more people acquire Smartphones, our personal information is going mobile. With instant access to email, social media accounts and often banking and credit account logins, Smartphones are an identity thief’s goldmine. Make sure that you password-protect the home screen to make it a little harder for a would-be criminal to access your data.

Consider storing account numbers and personal data that you regularly access (like bank account and passport numbers or alarm codes) in a cloud-based data vault program like that offered by Personal (www.personal.com/, free for iPhone and Android). Accessing the vault is password protected so it’s more secure than using notes, emails or texts stored on your phone.

Take notice of data breach notifications. With all the credit card offers, balance transfer promotions and junk mail sent by the average financial institution, it’s easy to tune out a form notification that your account data may have been compromised, but it’s important to take note. According to the “2013 Identity Fraud Report” compiled by Javelin Strategy & Research, almost 1 out of every 4 consumers that received a data breach notice letter became a victim of identity fraud. Of particular concern: “consumers who had their Social Security number compromised in a data breach were five times more likely to be a fraud victim than an average consumer.”

Take action. While the majority of identity theft activities are identified by third parties (55% vs. 45% discovered by consumers), it’s important to be proactive in your monitoring of account activity. The sooner you discover the fraud and take steps to close accounts and notify the appropriate parties, the less you stand to lose.

Tuesday, June 11, 2013

Waterproof your Phone and Other Gadgets this Summer

Waterproof your Phone & Gadgets


It's finally the summer and it's time to spend less time indoors and more time soaking up sun. Whether you have a pool or head to the lake to get your fill of vitamin D, everyone spends more time outdoors in the summer. And most of us will end up bringing at least a few gadgets with us, like our cell phones. But while the beach is a relaxing place for us humans, our phones don't react to well to sand, water, or heat - common ingredients for summer fun. Fortunately they're not too hard to protect. We've gathered a few ways to summer-proof your devices here.


An essential part of summer is heat, and it's only getting hotter. Unfortunately your cell phone doesn't react to heat too well. Overheated phones will shut off, and running your phone for too long at a high temperature will permanently damage its battery. Make sure not to leave your phone in a hot car, and pay attention to how hot it is when you're using it. If you don't need to use your phone for a bit and it's getting hot, just turn it off and let it cool down. Also, charging your phone only at night will keep it cool and save energy.


For physical damage, consider buying a protective case for your phone. For a bit of money (around $100), consider the OtterBox armor series. If you're a professional device-dropper or if you just spend a lot of time in dangerous situations, this case can protect your phone underwater and can protect it being dropped onto concrete.


If you're not too worried about water, but you want to protect your laptop or tablet from the bumps and drops of everyday use, the Just Air Cushion https://www.justaircases.com/ provides a lightweight and inexpensive ($30) way to protect your devices from unfortunate falls.

No matter where you're going this summer, make sure to install tracking software on your phone. With all the beach parties, vacations, and other outings over the summer, there's a lot of opportunity for your phone to get lost. Prey http://preyproject.com is a free app for your phone that allows you to track your phone if it's lost. 

Wednesday, June 5, 2013

Learn About Two-Step Verification and Which Services Use It

Why Should You Use Two-Step Verification?



A lot of online services have announced recently that they're introducing two-step or two-factor verification for their users. It all started when Google implemented the security feature into their Google services, but what exactly is two-step verification?


Two-step verification solves a very old problem with computer security. If a hacker gained access to a user's password that they were using across multiple accounts, they could string together their hacks by sending password resets to alternate email accounts. Two-step verification solves this in an ingenious way. There are a few ways to implement two-step verification.

The simplest way, like LinkedIn's two-step verification or Twitter's two-step verification, is to send a text message to a user's phone every time that account is signed in from a new device. If the correct code is not entered, the account cannot be accessed from that computer. That way, hackers have to have access to the user's phone as well to hack their account, which is highly unlikely.

Google and Facebook use a more secure method of two-step verification. If you have a smartphone, Google or Facebook's two-step verification installs an app on your phone that generates a new access code at timed intervals of around a minute. Instead of getting a text message when a new device accesses the account, the person trying to sign in is prompted to use the current security code, which will not work again for the account. This method of two-step verification is more secure.

Computer repair experts highly recommend enabling two-step verification if you have a phone with texting. It's much more secure and highly reduces the chances of you getting hacked. We've included the links to a number of popular services with two-step verification to help you out:
Google Two-Step Verification
Facebook Two-Step Verification
Dropbox Two-Step Verification
Microsoft Two-Step Verification
Yahoo Two-Step Verification
Twitter Two-Step Verification


 

Thursday, May 9, 2013

Cyberbullying Infographic: The Facts & Statistics About Online Bullying

Cyberbullying Infographic: The Facts & Statistics About Online Bullying



We've covered cyberbullying in previous articles, but it can be difficult to slog through technical talk on the subject. Here are some numbers and facts that make the subject easy to comprehend, as hard as it may be to understand. Learn what you can do to protect your child from bullies.

Cyberbullying Infographic

Tuesday, April 16, 2013

Facebook Account Hacked? Don't Panic.

Facebook Account Hacked? Fix it now!



Anyone who's received a message from a friend's Facebook account urging them to click a link or “like” a page to "Win a Free iPad" or "Get a Free Starbucks Gift Card" knows that social media sites are prime targets for spam and data mining.  What do you do if it's YOUR account that's doing the spamming?

As soon as you discover that your account has been compromised, report it to Facebook at www.facebook.com/hacked.  Enter your password and follow the instructions to reinstate the account in your name.  You'll need to identify yourself, either through your e-mail address, phone number, Facebook user name or your name and the name of one or more of your friends.


Once you're back in control, reset your Facebook password.  Click on the little button at the top right-hand corner that looks like a gear and then choose Account Settings.  Facebook recommends that you change your password regularly (aim for every few months) to stay secure.

Choose a robust password: 7-10 digits in length, with a mix of numbers, symbols, upper-case and lower-case letters.  Be sure to change passwords on any other accounts that may have been compromised (like your email, Twitter, etc).  It’s particularly risky to use the same password across multiple accounts.  If your Facebook password is compromised, the hacker would be able to take control of your linked email account if you use the same password for both accounts.  This would allow him or her to find other logins that you have tied to that email, submit “forgot my password” reset requests and gain access to other your accounts like banking, shopping, etc.

Consider using a password management service like LastPass (www.lastpass.com, free for basic) that will create unique passwords for all your accounts and control your logins so you never have to type your username or password into a site again.

Now you need to determine how your account was compromised and plug any security holes.  The most likely culprit is a rogue app that you installed, possibly without realizing you were doing so.  For example, if you click a link to “Win a free iPad” posted (probably unwittingly) to your friend’s wall, you’ll be prompted to install an app or provide personal information in order to “register for the contest.”  Every time you approve a Facebook app you give it permissions.  This can range from access to your friends list, the ability to post to your wall, even personal information tied to your account (like your email account, linked cell phone number, etc).

To review your installed apps, click the little gear icon again and choose Privacy Settings.  Do a quick scan here to make sure your privacy settings haven’t been changed to public.  Then click on Apps in the menu bar on the left side of your screen.

Remove apps that you don’t recognize or no longer use by clicking on the X to the right of the app’s name.  For those you choose to keep, click on the name of the app to review what information the app can access and choose who sees its posts and/or notifications.  Change any visibility settings that are set to “Public” to “Friends” or “Only Me.”

Next, notify your friends that your account was compromised.  Let them know that they shouldn’t trust anything posted by your account or messages sent to them “from you” within the period that your account was out of your control.  Particularly avoid clicking links posted by your account.  If you found an app that you suspect was the culprit, let them know to check their installed apps and remove the offender.

Finally, review the information and resources provided by Facebook at https://www.facebook.com/safety/tools/ for tips to keep your account secure.

Andrea Eldridge is CEO of Nerds On Call, which offers onsite computer and laptop repair to homeowners and small businesses. Based in Redding, Calif., it has locations in five states. Contact Eldridge at www.callnerds.com/andrea.

 

Monday, February 11, 2013

Catfishing Isn't What it Used to be: Online Dating Safety

FOR IMMEDIATE RELEASE:
Media Contact
Shawna Bell
1-800-919-6373

marketing@callnerds.com

NERDS ON CALL: “CATFISHING” NOT WHAT IT USED TO BE


Protect Yourself with Online Dating Tips

California, (February, 2013) – Many looking for a partner this Valentine’s Day will turn to social media or dating websites to make a potential love connection. If you’re wary about trying them, or you’ve been burned in the past, you’re right to be dubious. Internet dating and romance scams, dubbed “catfishing,” are on the rise according to the FBI, and the Better Business Bureau has seen a two-fold increase in complaints over the last year regarding online dating services. Arm yourself with information to protect yourself before you take a dip in the online dating pool.

Social networking and online-dating websites now surpass churches, fitness clubs and bars as meeting places for individuals looking to make a connection. Unfortunately, these havens for lonely hearts are also infested with criminals looking to exploit the vulnerable. Scammers pose as someone else, often stealing a photograph of a good-looking person from the Internet, then use their fake profile to target people looking for love. Once they’ve hooked their victim and wooed them into a false sense of security through their declarations of infatuation, there are a number of money-making scams they’ll try.

Find a Trustworthy Online-Dating Company: The Better Business Bureau (www.bbb.org) provides business reviews free-of-charge, so examine any site you’re considering posting a profile to. Look for a history of satisfied customers and resolved complaints. Big players like Cupid.com and Match.com have precautionary measures in place, so users who have negative experiences can get their issues resolved quickly; smaller sites may have less security for spotting a scammer. Some sites like Cupid.com and Flirt.com employ software that scans IP addresses, profile photos and behavior patterns of their users so they’re able to identify fraudulent accounts and block them from their communities.

Protect Your Personal Information: Set up an email address for yourself that is only used for your online dating account. It is not necessary to provide your full name, address, phone number, link to your Facebook page or work details when setting up your profile, so don’t include those details. Provide additional personal information only once you’ve gotten to know each other better. Make sure to have several phone conversations with your new love interest before agreeing to meet in person and always meet in a public place.

Use Your Instincts: If it seems too good to be true, it probably is. Scammers love to use pictures of beautiful people, particularly trustworthy ones like men and women in uniform. Beware of any relationship where the person professes his or her undying love immediately. Flattery is nice, but too much of it too quickly should set off your warning bells. Eloquent romantic language is often plagiarized from elsewhere on the internet and it’s easily discovered through a quick Google search. If someone claims to have been born in the United States, but uses poor grammar or verb conjugation, be wary; they may be a scammer from a foreign country. Lastly, and most importantly, run for the nearest exit if anyone asks you to wire them money for any reason (travel expenses, medical emergencies and financial difficulties are common).
Do Your Homework: Upload a photo of your date to Google Images by clicking on the camera icon on the side of the search field and choosing “Upload an Image.” If the picture appears under the name of several people, you know it’s not legit. If you’ve been communicating through email, you can use the IP address from the email URL to tell you where the email was sent from. If your date claims to be from Minnesota, make sure she’s where she says she is. Review their profile thoroughly and check into details of information they provide by asking questions they should be able to answer or using Internet searches to verify what they’re saying is accurate. Test your date’s knowledge of local events and places if they claim to live in your city and watch for mistakes.

Video Chat for Security: Before meeting or offering personal information to someone you’re interested in, arrange to use a free video chat service like Skype, Google Video Chat or Facetime to “see them” before you meet.

Report the Scammer: If you think you’ve been victimized or you’ve identified a potential fraud, file a complaint with the Internet Crime Complaint Center (www.ic3.gov). They’ll report it to higher authorities and their data analysis links complaints together to help to identify culprits.

[nerdsbio]
Enhanced by Zemanta

Friday, January 4, 2013

Mobile Security: Protecting your Phone

Mobile Security for your Android Phone


Two Easy Steps to Protect Yourself
Whether you’re one of the millions of Americans that already owns a mobile handheld device (like a Smartphone, tablet or iPod Touch), or you’re hoping Santa slips one under your tree this year, there’s something you likely haven’t put much thought towards: mobile security.

 

According to a report released by Forrester Research, it’s estimated that 46% of all bank account holders will utilize mobile banking services by 2017.  Even if you aren’t accessing your bank or credit account from your handheld device, you likely have email; social networking and a multitude of apps that give a would-be thief plenty of valuable information should they get a hold of your phone or tablet.  Take a few easy steps to protect that information from loss or theft.


Step One:  First, enable a pass code lock that requires a code or pattern be entered when your phone or tablet is reactivated from sleep mode.  I know, you’re thinking, “what a hassle to have to enter a number or trace a pattern every time I want to use the phone,” but keep in mind that most thieves are looking for an easy target.  If the gadget they snatch turns out to be locked, someone looking to steal data is likely to abandon the endeavor rather than go to the effort of trying to hack past the lock screen.

 

Apple devices (as well as many other handheld gadgets) offer the option to erase all data in the event that the wrong code is entered more than ten times.  This safety measure immediately brings to my mind the image of my son relentlessly pressing buttons trying to get to his games until my phone is made useless.  However, if you’ve taken the precaution of backing up your data and apps to a cloud application (such as iCloud, SugarSync, etc), even an errant data wipe isn’t tragic.

 

Step Two:  Next, utilize a mobile security application that allows you to control your phone or tablet remotely in the event it is lost or stolen.  Look for one that shows your gadget’s approximate location (provided your device is powered and you have GPS activated) on an online map.  If it’s somewhere in or around your home, use the software to activate a repeating alarm beep to help you find it.  Should you discover it’s at your local Starbucks, or worse, in someone else’s possession, the application should allow you to remotely lock the phone, post a message on the home screen with your contact info, or if necessary remotely wipe your data.

 

iPhone, iPod and iPad users should activate Apple’s Find my iPhone (or Find my iPod/iPad). It does all of the things listed above; best of all it’s free and comes pre-installed on all current iOS mobile devices.  If you didn’t enable it when you activated your device, navigate through the Settings menu to the section for iCloud, then the Find My iPhone (iPod/iPad) option. Toggle the switch to ON. When prompted to allow the application to access your location, select Allow.

 

Avast! Free Mobile Security (www.avast.com/en-us/free-mobile-security#tab3) is a great free option for Android users. It runs silently in the background so it's difficult to detect or remove and can survive hard-resets. In addition to the features listed above, it includes a siren that gets louder if thieves try to turn it off and call forwarding so you don't miss a call or text while your phone is MIA.  If an unauthorized SIM card is detected, the phone will lock, activate the siren and send you a notification containing the phone's new number and geographic location.  All the anti-theft settings are able to be modified remotely, so they're easily customizable to your particular situation.

 

Andrea Eldridge is CEO and co-founder of Nerds On Call, an on-site computer and laptop repair service for consumers and businesses. Andrea is the writer of two weekly columns, Nerd Chick Adventures in The Record Searchlight, and Computer Nerds On Call, a nationally syndicated column for the Scripps-Howard News Service.  She regularly appears on ABC, NBC, FOX, and CBS on shows such as Good Day Sacramento, Good Morning Arizona and MORE Good Day Portland, offering viewers easy tips on technology, Internet lifestyle, and gadgets.  Andrea recently has begun working with Demand Media to produce content for eHow.com and has written a book for them Smartphone101: Integrating your iPhone into a Windows World. Andrea is available for Q & A’s, expert tech quotes and will appear on your show, call today! See Andrea in action at www.callnerds.com/andrea.

 

 

Monday, October 29, 2012

The Perils of Online Free Trial Offers

Free Trial Offers: Don't Get Scammed!




Free trial offers, particularly those that require your credit card to sign up, are like internet quicksand. The bright, shiny “Try Now for Free!” emblazoned all over the webpage lures you in. You think, “30 days is a long time. I can test it out and if it’s not something I use I can just cancel.” Before you know it, though, you spot the charge on your credit card statement for the service you forgot to use and forgot to cancel.

The Better Business Bureau included “Not So “Free” Trial Offers” on their list of Top Online Scams (www.bbb.org/top-online-scams/). Many companies make it easy to sign up and hard to cancel. Some will continue to charge credit cards even after attempts to discontinue service. But there are ways to ensure that your free trial remains charge and hassle free.



In an article written for PCWorld.com, Tom Spring signed up for and then attempted to quit 40 free trials that required a credit card number. What he discovered was troublesome. Nearly half buried the instructions for how to cancel, requiring lengthy searching to find a path to service termination. Once contact info was found, in some cases web-links to cancel online were broken, phone numbers were disconnected and email addresses incorrect. Almost a quarter required a phone call to stop automatic billing. In most cases this allowed a salesperson an opportunity to attempt to upsell continued service.
Even if you manage to cancel service before you’re charged, you’ll likely continue to be regaled by email offers from the company and their affiliates now that they have your contact information.

If you’ve read my previous articles, you’ve probably noticed that I’m a girl who flocks to free. I would never tell you to shun all free trial offers. Instead, take a few precautions before you hand over your credit card to a company you aren’t ready to commit to.

Do your homework in advance. Search the site for cancellation steps before you sign up for a trial. Pull up the site’s Terms of Service or FAQ section and use your browser’s search function to look for the keyword “cancel.” If you’re still hesitant, do a web search for “cancel XX” to see if others have reported difficulty.

Pick your card wisely


If you do elect to supply a credit card, don’t choose a debit card. Visa, Mastercard, American Express and Discover have consumer protections in place that will make it easier to cancel charges through your credit card company should you have difficulty terminating service with the vendor.

To be extra safe, consider picking up a pre-paid Visa, Mastercard or American Express gift credit card in a small denomination. Or, inquire with your credit card company as to if they offer single-use card numbers that will allow for a onetime charge without supporting recurring charges. PayPal offers a similar product. Be sure to confirm that use of the number is limited to one time as some card companies allow multiple charges from the same vendor. You can always update your account with a regular card once you’ve decided to commit.

Cancel at least a day early


It’s tough to determine exactly when a free trial will end. Periods typically last calendar days, so the 7-day trial you sign up for on Tuesday at 8pm will likely end Monday (not the following Tuesday at 8pm as it would seem). Don’t chance it. Set a calendar reminder for at least a full 24-48 hours before the trial is likely to end and decide if you want to continue service before you’re billed for it.

Check to make sure you’re getting the best price before you commit


Tom Spring found that some companies charge a higher annual rate to their free trial customers than those customers that sign up without a trial. If there’s a better price to be had, cancel and call the sales department (it’s almost always easy to find a phone number to call to sign up) to ask them to extend to you the lowest possible price.

Photo used by permission Better Business Bureau

Friday, October 26, 2012

How to Stay Safe Online

Being Safe Online Made Easy



A lot of people these days have two lives: the one that they live using their body and a second one that only exists online. Facebook alone has more than 800 million accounts, which is over twice the population of the United States. However, not all of these accounts are owned by people who are looking out for you, much like in the physical world. There's no need to worry, though. It's very unlikely that you will be the subject of a specifically targeted attack, but there are some steps that you should take so that you won't ever be tricked by some booby-trap set for innocent wanderers on the internet. The first and most important rule that you should always follow is simple: don't ever assume something is secured unless you've been assured by a reliable source. With that in mind, here are some tips for each area that needs security.

Email:


Probably everyone has fallen for a fake email at some point in their life. Even us Nerds have been duped by a particularly convincing email - hackers can send emails from the accounts of our friends make it seem as if they are recommending a virus-infected link. If you get an unsolicited email from someone that you would normally trust, but seems a little out of place, it doesn't hurt to double-check with them by emailing back or texting just to make sure that the content is legitimate.

When sending an email to a lot of people who don't all know each other, make sure to put yourself in the TO: field, and then put all of the other addresses in the "BCC" field, which stands for "Blind Carbon Copy." This will ensure that the email addresses don't get passed on to others. Just like you shouldn't share others' physical addresses with strangers, you should make sure that you don't accidentally spread email addresses around. Make sure to pass this tip on to all your friends!

Web browsing:


One good tip to always keep in mind when using the internet is that once entered online, data is never truly destroyed. Be careful with any pictures you upload - a good tip to keep in mind is that if you wouldn't want your kids to stumble across it, you don't want to put it online. And if you do post something sensitive to a site that you trust, make a note of it so that if it ever comes up, you know where it came from.
When you do enter information like credit cards online, always look up at the address bar before proceeding. Instead of the normal "Http" before the address, it should say "Https." This means that the connection is secured. While you may not actually need the security, it assures you that the site is legitimate and that the information can't be passed on without your express permission.

Your information is tracked on websites that you visit via files called cookies. While they are helpful for day-to-day activities, you should delete them regularly so that if you ever succumb to malware, it can't access all your sensitive information.

Passwords:


While it may be much simpler to have one password that you use across every site, this can compromise every account you use. If malicious software is able to get a hold of one of your passwords, the hacker can gain access to all your information, including your banking account. It is best to use a different password for every site, but if you can't keep track of all of them, use different ones for your financial information than the ones you use for social networks and the like.

If you share a computer with other people, you shouldn't keep your passwords stored there. Even if you trust the other users, you don't want that information to leak out from an accident. And the same goes for writing down passwords - it's fine to do, but keep them where others can't see them.

General internet use tips:


You should lock your computer when you leave it if you work in an environment with others - and don't leave your laptop unattended when you can help it, especially in public environments.

When you're not using the wireless capabilities on your devices, you should switch off the adapter. This will both save battery and increase your security.

Finally, when you decide to get rid of an electronic device, always make sure to get rid of any data stored on it. Whether selling it or disposing it, you want to make sure that your data doesn't fall into the hands of someone you don't know.

We've posted a few tips in the past on how to stay safe on a variety of social networking sites. If you've missed those, check them out here:

Facebook

Twitter

Google+

LinkedIn

Photo used by permission moneyblognewz

Thursday, October 25, 2012

Staying Safe on Google+

For those of us who have opted to use Google+, there are already a great many options such as circles that help keep your information where you want it. But here are a few tips on making sure you have complete control of your data.