Be on the lookout and be extra cautious for phone scams this holiday season. They usually come out in full-force around this time as perps like to take advantage of people looking to score big on merchandise for the holidays.
One example such as this is a friend of mine who received a call from someone stating that their name was randomly selected, they won a large sum of money, and that they would need their bank account info in order to complete the deposit. <red flag> Don't EVER give your personal info, let alone your bank account info to an untrusted individual or company. The best thing to do is write down the date/time that you received the call, as well as the phone number & name from the CallerID, then disconnect the call. Promptly call police and inform them of the scam. This is what my friend had done after receiving the call.
My friend was kind enough to give me the CallerID info, and I went the extra step as well and did a lookup of the area code. Come to find out that the call originated from Seattle, Washington. Although the CallerID info was most likely spoofed, the call can still be traced back to its origin. I sent the info in an email to the FBI branch in Seattle, informing them of the scam.
Just to note...A majority of the scammers will prey on senior citizens as well. So if you have elderly family members or neighbors, make sure you educate & inform them about these scams.
Stay safe!!
--ma
Michael
Saturday, November 26, 2011
Monday, November 21, 2011
The holidays are among us... And so are the threats & risks....
Well, I am back.... After getting my homework & midterm done for school, as well as the final exam, I'm all done until late January. Time to catch up on some blogging!
A lot of has happened in the InfoSec world since I've been away, but I'm not going to discuss any of that here. However, since the holidays are right around the corner, so aren't the risks of shopping online. With the infamous "Black Friday" vastly approaching, as well as Christmas, the cybercriminals will be in rare form, as they use the holiday season to take advantage of weary & unsuspecting customers looking to cash in on sweet deals.
With all the holiday hooplah going on, always keep your guard up. Thieves will do anything and everything to get a hold of your creditcard, personal, or banking information to siphon your bank accounts. Beware of emails purporting to come from some online retailer with exclusive sales on good & services. Especially if they come from a retailer that you've never heard of or have not signed up for. This could very well be a phishing scam aimed at getting your personal or financial info.
Be weary of online retailers that you plan on doing business with. There are various ways to check their online reputation (score) to ensure that they're legit and safe. Once you've decided on an online retailer make sure their website is secured (https:) and has a verified seal at the bottom of the website. It's also a good idea to only shop at websites that are located in the USA. Again, checking the retailers reputation should divulge where they're located if you aren't sure.
When paying for purchases online, NEVER use your bank's checkcard or debitcard. That's a huge no-no. Using your debitcard could potentially allow cyber-thieves to have complete access to your entire checking account if in the event your debitcard info is compromised. Use either a creditcard or a prepaid debitcard with the amount allotted to your purchases (including taxes and shipping costs). Using a creditcard is better, because under certain laws you will be protected if you spend a certain amount and unauthorized purchases are made. Not to mention that your bank will usually refund you the amount of losses if your creditcard number is stolen and used for fraudulent purchases.
After you made your purchases keep an eye on your account statements to ensure that unauthorized transactions weren't made using your card. If there were any made, you can take care of them right away.
Before embarking on any online shopping spree, make sure your browser is up-to-date. I've posted a blog entry a while back about the "Qualys Browser Check add-on" for all the major web browsers. It'd be a good idea to install and run that tool prior to your shopping spree to update your browser and computer, and patch any security holes. Cybercriminals will almost certainly be infecting legitimate websites to serve up malware (malicious software) to infect your computer. There are also various browser add-ons that you can use to alert you of fake online websites used to phish your info.
Lastly... Don't forget to make sure an anti-virus program is installed, working, and up-to-date!
Good Luck & be careful... The Internet is a scary place!
--ma
Michael
A lot of has happened in the InfoSec world since I've been away, but I'm not going to discuss any of that here. However, since the holidays are right around the corner, so aren't the risks of shopping online. With the infamous "Black Friday" vastly approaching, as well as Christmas, the cybercriminals will be in rare form, as they use the holiday season to take advantage of weary & unsuspecting customers looking to cash in on sweet deals.
With all the holiday hooplah going on, always keep your guard up. Thieves will do anything and everything to get a hold of your creditcard, personal, or banking information to siphon your bank accounts. Beware of emails purporting to come from some online retailer with exclusive sales on good & services. Especially if they come from a retailer that you've never heard of or have not signed up for. This could very well be a phishing scam aimed at getting your personal or financial info.
Be weary of online retailers that you plan on doing business with. There are various ways to check their online reputation (score) to ensure that they're legit and safe. Once you've decided on an online retailer make sure their website is secured (https:) and has a verified seal at the bottom of the website. It's also a good idea to only shop at websites that are located in the USA. Again, checking the retailers reputation should divulge where they're located if you aren't sure.
When paying for purchases online, NEVER use your bank's checkcard or debitcard. That's a huge no-no. Using your debitcard could potentially allow cyber-thieves to have complete access to your entire checking account if in the event your debitcard info is compromised. Use either a creditcard or a prepaid debitcard with the amount allotted to your purchases (including taxes and shipping costs). Using a creditcard is better, because under certain laws you will be protected if you spend a certain amount and unauthorized purchases are made. Not to mention that your bank will usually refund you the amount of losses if your creditcard number is stolen and used for fraudulent purchases.
After you made your purchases keep an eye on your account statements to ensure that unauthorized transactions weren't made using your card. If there were any made, you can take care of them right away.
Before embarking on any online shopping spree, make sure your browser is up-to-date. I've posted a blog entry a while back about the "Qualys Browser Check add-on" for all the major web browsers. It'd be a good idea to install and run that tool prior to your shopping spree to update your browser and computer, and patch any security holes. Cybercriminals will almost certainly be infecting legitimate websites to serve up malware (malicious software) to infect your computer. There are also various browser add-ons that you can use to alert you of fake online websites used to phish your info.
Lastly... Don't forget to make sure an anti-virus program is installed, working, and up-to-date!
Good Luck & be careful... The Internet is a scary place!
--ma
Michael
Sunday, November 6, 2011
Be back soon...
Hi all,
Sorry, been busy with school and trying to catch up with getting my midterm and one of my last homework assignments of the semester done.
As soon as class is over (Nov 14th), I'll be back to posting routinely.
Thanks for your patience....
--ma
Michael
Sorry, been busy with school and trying to catch up with getting my midterm and one of my last homework assignments of the semester done.
As soon as class is over (Nov 14th), I'll be back to posting routinely.
Thanks for your patience....
--ma
Michael
Friday, October 28, 2011
John McCarthy (1927 - 2011)
A few days ago the programming and technology community lost yet another pioneer, John McCarthy, creator of the LISP programming language.
Although I don't know much about the man behind the programming language, nor the programming language itself, I felt that it was my duty to pay respects to a man admired by many for his contributions.
Here's an article that details his life and accomplishments....
http://news.cnet.com/8301-1001_3-20125026-92/john-mccarthy-creator-of-lisp-programming-language-dies/
Thank You, Mr. McCarthy for all that you have done and shared with so many.
God Speed....
--ma
Michael
Although I don't know much about the man behind the programming language, nor the programming language itself, I felt that it was my duty to pay respects to a man admired by many for his contributions.
Here's an article that details his life and accomplishments....
http://news.cnet.com/8301-1001_3-20125026-92/john-mccarthy-creator-of-lisp-programming-language-dies/
Thank You, Mr. McCarthy for all that you have done and shared with so many.
God Speed....
--ma
Michael
Saturday, October 15, 2011
Dennis M. Ritchie (1941-2011)
A few days ago, it was reported that we lost yet another technology pioneer. Dennis Ritchie was one of the creators of the ever popular Unix operating system, as well as the father of the C programming language. He died at the age of 70 after a long illness.
Mr. Ritchie, along with his fellow geeks, Ken Thompson, Brian Kernighan, Douglas Mcllroy, and Joe Ossanna were the ones responsible for creating Unix. The operating system would become so popular that it was the OS of choice for the Internet. It's impact is still felt today as many businesses use it to run their core applications. Many ISPs run some variant of Unix on their data-center servers as part of their infrastructure.
He also created the C programming language, which has become the most widely used programming language to date. It has been used by just about every up-and-coming programmer in the world today. His book, "The C Programming Language", in which he co-wrote with Brian Kernighan, has been adopted as the "C Bible" by geeks all over.
Because of his contributions to the technology community in the late 70's & early 80's, Mr. Ritchie had developed a cult following for decades to come. Many newbie geeks would aspire to become him and looked to him for his wisdom.
Thank You, Mr. Ritchie for all that you have done for the Internet & technology communities. You will be greatly & sadly missed. God Bless & Godspeed!
--ma
Mr. Ritchie, along with his fellow geeks, Ken Thompson, Brian Kernighan, Douglas Mcllroy, and Joe Ossanna were the ones responsible for creating Unix. The operating system would become so popular that it was the OS of choice for the Internet. It's impact is still felt today as many businesses use it to run their core applications. Many ISPs run some variant of Unix on their data-center servers as part of their infrastructure.
He also created the C programming language, which has become the most widely used programming language to date. It has been used by just about every up-and-coming programmer in the world today. His book, "The C Programming Language", in which he co-wrote with Brian Kernighan, has been adopted as the "C Bible" by geeks all over.
Because of his contributions to the technology community in the late 70's & early 80's, Mr. Ritchie had developed a cult following for decades to come. Many newbie geeks would aspire to become him and looked to him for his wisdom.
Thank You, Mr. Ritchie for all that you have done for the Internet & technology communities. You will be greatly & sadly missed. God Bless & Godspeed!
--ma
Thursday, October 6, 2011
Farewell, Steve Jobs (1955 - 2011)...
Yesterday we lost a true visionary, a computing pioneer, a perfect example of the American Dream. Steve Jobs finally succumbed to his battle with pancreatic cancer that he had been fighting for quite some time. It became inevitable that he was losing the battle when he abruptly stepped down as Apple's CEO a couple of months ago.
I never really got to use Apple computers all that much except a few times in my teens in the 80's and quite recently tinkering with a friend's MacBook (Pro). I always called them the "Rich man's computer" because they are rather expensive, but definitely worth it if you can afford one. I admire how Apple does things. Their reliability and performance are legendary, much like Steve Jobs himself. However, I do currently own an iPod Touch and love it. Perhaps one day soon I'll give in and purchase a MacBook or MacBook Pro.
Thank You, Steve Jobs for all that you have done and brought to the world of computers. You've inspired many people, as well as touched so many you came into contact with. You will not soon be forgotten. Even future generations will know who you are. Godspeed & God Bless, as you make your way up to that big iPad2 in the sky!
--ma
Michael Alestock
I never really got to use Apple computers all that much except a few times in my teens in the 80's and quite recently tinkering with a friend's MacBook (Pro). I always called them the "Rich man's computer" because they are rather expensive, but definitely worth it if you can afford one. I admire how Apple does things. Their reliability and performance are legendary, much like Steve Jobs himself. However, I do currently own an iPod Touch and love it. Perhaps one day soon I'll give in and purchase a MacBook or MacBook Pro.
Thank You, Steve Jobs for all that you have done and brought to the world of computers. You've inspired many people, as well as touched so many you came into contact with. You will not soon be forgotten. Even future generations will know who you are. Godspeed & God Bless, as you make your way up to that big iPad2 in the sky!
--ma
Michael Alestock
Sunday, October 2, 2011
Nice web browser plug-in to help keep your system safe...
There's a nice plug-in that has been around for a little while, but I figured it needs to be mentioned. The plug-in is called, "Qualys Browser Check". You can go directly to the site itself to install the plug-in or just click on this link... http://browsercheck.qualys.com.
The plug-in works with all the major browsers (IE, Firefox, & Chrome). If it's your first time to the site you will be given the opportunity to install the plug-in. After installing it you may need to restart your browser, depending on which one you're using. Once the browser is restarted it will automatically start doing a scan of your browser & system for any outdated plug-ins, add-ons, or other system components that may pose a security threat to your system.
Once the scan is done (which only takes about 20-30 seconds), and if any critical security issues are detected, they will be highlighted at the top of the page. Below, it will give you a page of detailed results. To the right of each result you will be shown a color coded box along with a status. Anything highlighted in RED is serious and should be checked immediately. Orange is considered a warning, and green is good. In the next column you will see a blue "Fix It" button that will either bring you to your system's component page to check its security settings or take you to the corresponding plug-in's website to download the latest version of the insecure item and upgrade it.
Upon updating and/or upgrading any out-of-date items, it's best to do a re-scan of the Qualys page so you can see if the updates were installed correctly. You can do so by clicking the blue "Re-Scan" button at the top right-hand corner of the page or simply refreshing the page. If so, then you should see the number of security issues decrement.
**Note: Sometimes a plug-in or add-on that you just updated will not immediately show that it's been updated. Sometimes a browser restart or maybe even a system restart will have to be commenced. Upon doing so, just (re)launch your browser, run the Qualys scan again, and it should show as "ok" or "up to date".
A smart idea would be to set the Qualys site as your home page. So every time you start up your browser you can immediately be alerted of any security issues, and tend to them right away.
This is a terrific plug-in. I can't say enough about it. With a majority of the malware today being distributed by way of, "Drive-by Download", this plug-in is invaluable. I recommend that everyone install it and utilize it whenever possible.
If you need help or encounter issues, there is a "Need Help?" section on the right column of the page.
--ma
Michael
The plug-in works with all the major browsers (IE, Firefox, & Chrome). If it's your first time to the site you will be given the opportunity to install the plug-in. After installing it you may need to restart your browser, depending on which one you're using. Once the browser is restarted it will automatically start doing a scan of your browser & system for any outdated plug-ins, add-ons, or other system components that may pose a security threat to your system.
Once the scan is done (which only takes about 20-30 seconds), and if any critical security issues are detected, they will be highlighted at the top of the page. Below, it will give you a page of detailed results. To the right of each result you will be shown a color coded box along with a status. Anything highlighted in RED is serious and should be checked immediately. Orange is considered a warning, and green is good. In the next column you will see a blue "Fix It" button that will either bring you to your system's component page to check its security settings or take you to the corresponding plug-in's website to download the latest version of the insecure item and upgrade it.
Upon updating and/or upgrading any out-of-date items, it's best to do a re-scan of the Qualys page so you can see if the updates were installed correctly. You can do so by clicking the blue "Re-Scan" button at the top right-hand corner of the page or simply refreshing the page. If so, then you should see the number of security issues decrement.
**Note: Sometimes a plug-in or add-on that you just updated will not immediately show that it's been updated. Sometimes a browser restart or maybe even a system restart will have to be commenced. Upon doing so, just (re)launch your browser, run the Qualys scan again, and it should show as "ok" or "up to date".
A smart idea would be to set the Qualys site as your home page. So every time you start up your browser you can immediately be alerted of any security issues, and tend to them right away.
This is a terrific plug-in. I can't say enough about it. With a majority of the malware today being distributed by way of, "Drive-by Download", this plug-in is invaluable. I recommend that everyone install it and utilize it whenever possible.
If you need help or encounter issues, there is a "Need Help?" section on the right column of the page.
--ma
Michael
Subscribe to:
Posts (Atom)