<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Computer Science Stuff &#187; Security</title>
	<atom:link href="http://compscistuff.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://compscistuff.com</link>
	<description>Dedicated to satisfying your computer needs</description>
	<lastBuildDate>Sat, 29 Oct 2011 23:37:13 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>You need to protect yourself!</title>
		<link>http://compscistuff.com/2010/02/you-need-to-protect-yourself/</link>
		<comments>http://compscistuff.com/2010/02/you-need-to-protect-yourself/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 09:30:35 +0000</pubDate>
		<dc:creator>Michael Washington</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[protecting yourself]]></category>

		<guid isPermaLink="false">http://compscistuff.com/?p=605</guid>
		<description><![CDATA[Lately there has been a large influx of attacks in the cyber world. I don&#8217;t know if you heard but there has been attacks on the 32 of some of the biggest companies in America including, Google, Adobe, General Electric, and many others. Google even went as far as pulling out of China, http://online.wsj.com/article/SB126333757451026659.html, which [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL2NvbXBzY2lzdHVmZi5jb20vd3AtY29udGVudC91cGxvYWRzLzIwMTAvMDIvMDExODEwX2hvbWVfc2VjdXJpdHkuanBn"><img class="alignnone size-full wp-image-606" style="margin: 100px 200px;" title="011810_home_security" src="http://compscistuff.com/wp-content/uploads/2010/02/011810_home_security.jpg" alt="" width="360" height="360" /></a></p>
<p>Lately there has been a large influx of attacks in the cyber world. I don&#8217;t know if you heard but there has been attacks on the 32 of some of the biggest companies in America including, Google, Adobe, General Electric, and many others. Google even went as far as pulling out of China, http://online.wsj.com/article/SB126333757451026659.html, which has the single biggest population out of all countries. Google has been making the biggest fuss out of all the companies it seems. I&#8217;m guessing they stole something that was very precious or highly secretive. It was said that the attack was very highly sophisticated and has not been seen to this degree before on commercial companies but only in the defense industry.  People in the government of the United States and defense having been opening admitting that the US is not ready for an all out cyber attack.</p>
<h2>Ways to Protect yourself</h2>
<p>So I guess your wondering now how does it effect me. Well chances are if a big company such as Google can be comprised by the same can happen to you. But I believe you have a better chance at defending yourself than Google. Why? you may say well because the companies are bigger entity which renders bigger holes than an individual which have lesser holes to close but requires education to close them.  In order defend yourself against hackers and people trying to compromise your information you need to know the mindset of hackers.</p>
<ul>
<li><strong>Weaknesses! </strong>When hackers are trying to get hack someone the first thing they will try to do is find known weakness in your software. For example if I found out that someone that I&#8217;m trying to compromise is using the browser internet explorer 6 I will look through list of known vulnerabilities and execute attacks on the browser to get what I want. Sometimes it that simple! So they gather information on you and exploit your weakness.</li>
<li><strong>Attack the biggest market share!</strong> If I was hacking I would want send out an attack could affect the largest population of users. For example if I know that windows has the biggest market share of users in the operating system world, I would attack them because I know would get the greatest return in information.</li>
<li><strong>Brute force and Dictionary Attacks!</strong> When attacking peoples accounts they use programs to first guess the typical names people use for passwords and usernames. You will be surprise at how easy this works. If this doesn&#8217;t happen to work the next step is to brute force your password. This involves trying a combination of letter combination&#8217;s to guess your password. How would you defend against this? Have password that are at least 8 to 15 letters long with caps, numbers and special characters. It won&#8217;t stop them but it will be difficult for them to crack it and may make them move to an easier target.</li>
<li><strong>Wealth of Information!</strong> With social networks and almost finding anything you want on Google, you could really get a nice synopsis on a person and what they are about. By doing finding your information on social networks this could give someone an good idea of how to go about attacking you. So adjust your facebook privacy settings!</li>
<li><strong>Social Engineering!</strong> This is probably one of the most effective way of hacking people is through social engineering.Why always go about things the hard way when you could just ask. Always question people asking for your information before they ask you something question their credentials. One of the most famous hackers wrote a book called the art of deception which talks about to get information that you want out of people by talking, being friendly and asking the right questions.</li>
<li><strong>No protection!</strong> <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL2NvbXBzY2lzdHVmZi5jb20vMjAwOS8wOS9ob3ctdG8tZ2V0LWEtdmlydXMtc3B5d2FyZS1hZHdhcmUtYW5kLWFsbC13YXJlLW9mZi15b3VyLWNvbXB1dGVyLw==">Here is my previous article on viruses</a></li>
<li><strong>Lack of Education!</strong> Self-explanatory! Read and stay updated on new attacks and technology!.</li>
</ul>
<p>Here is some more information on Security</p>
<p>Your Router:<a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL2NvbXBzY2lzdHVmZi5jb20vMjAwOS8wNy9ob3ctdG8tc2VjdXJlLXlvdXItd2lyZWxlc3Mtcm91dGVyLw=="> Here is my previous article on securing your router</a></p>
<p>Your Website<a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL2NvbXBzY2lzdHVmZi5jb20vMjAwOS8wMS84LXdheXMtdG8taW5jcmVhc2UteW91ci13ZWJzaXRlLXNlY3VyaXR5Lw==">: Here is my previous article on securing your website</a></p>
<p>Your Computer:<a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL2NvbXBzY2lzdHVmZi5jb20vMjAwOS8wOS9ob3ctdG8tZ2V0LWEtdmlydXMtc3B5d2FyZS1hZHdhcmUtYW5kLWFsbC13YXJlLW9mZi15b3VyLWNvbXB1dGVyLw=="> Here is my previous article on removing viruses</a></p>
<p>My quote:</p>
<p>Some believe that the Third World War will be fought with guns, missiles and nukes I believe it will be through cyberspace.</p>
<p>References:</p>
<p>http://online.wsj.com/article/SB126333757451026659.html</p>
<p>http://www.nytimes.com/2010/02/02/business/global/02hacker.html</p>
<p>http://www.thecowl.com/world/american-companies-hacked-by-chinese-schools-1.1173974</p>
 <img src="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?view=1&post_id=605" width="1" height="1" style="display: none;" /><img src="http://compscistuff.com/?ak_action=api_record_view&id=605&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://compscistuff.com/2010/02/you-need-to-protect-yourself/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>How to secure your Wireless Router</title>
		<link>http://compscistuff.com/2009/07/how-to-secure-your-wireless-router/</link>
		<comments>http://compscistuff.com/2009/07/how-to-secure-your-wireless-router/#comments</comments>
		<pubDate>Mon, 13 Jul 2009 05:51:11 +0000</pubDate>
		<dc:creator>Michael Washington</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[mac authentication]]></category>
		<category><![CDATA[unnamed connection]]></category>
		<category><![CDATA[wireless router]]></category>
		<category><![CDATA[wireless security]]></category>

		<guid isPermaLink="false">http://compscistuff.com/?p=487</guid>
		<description><![CDATA[Nowadays everybody is using a wireless router, but the question is how secure is it? I guaranteed that most of America when first getting a wireless router has an open connection or WEP security encryption, and a WEP encryption can be cracked quite easily with tools you can download off the internet for free to [...]]]></description>
			<content:encoded><![CDATA[<p><img class="size-full wp-image-489 alignnone" style="margin: 70px;" title="_7421-asus-wl500gp-wireless-router-connectivity" src="http://compscistuff.com/wp-content/uploads/2009/07/7421-asus-wl500gp-wireless-router-connectivity.jpg" alt="_7421-asus-wl500gp-wireless-router-connectivity" width="504" height="408" /></p>
<p>Nowadays everybody is using a wireless router, but the question is how secure is it? I guaranteed that most of America when first getting a wireless router has an open connection or WEP security encryption, and a WEP encryption can be cracked quite easily with tools you can download off the internet for free to enter your realm of the internet. Now the question lies how do I protect myself? Well thats why I&#8217;m here to answer.</p>
<p>I have broken down the different ways to protect yourself through router by breaking it down into three levels:</p>
<ol>
<li>Wireless encryption</li>
<li>Unnamed connection</li>
<li>Mac Authentication</li>
</ol>
<h2>Wireless Encryption</h2>
<p>In order to protect your data from outsiders, you should encrypt, or scramble, it so that nobody else can read it.  Hence why wireless encryption was created. When selecting an encryption you have to choose between WEP or WPA.</p>
<p>WEP was the encryption scheme included with the first generation of wireless networking equipment. It is very easy to crack and contain several vulnerabilities. So don&#8217;t go with this!</p>
<p>WPA was created after WEP to solve this problem. WPA has a significantly stronger wireless encryption but the stronger security impacts performance. So you will not be able to download as quick as you use too.</p>
<h2>Unnamed connection</h2>
<p>A unnamed connection is the next level of encryption that works in a completely different way.  With an unnamed connection it doesn&#8217;t display the ID or name of the connection. So a hacker will not only have to figure out an encrypted password they will also have to figure out the name so that they can connect to it which can be a big headache.<br />
<script type="text/javascript">// <![CDATA[
     google_ad_client = "pub-3332053812512101"; /* 200x200, created 8/18/09 */ google_ad_slot = "8873285113"; google_ad_width = 200; google_ad_height = 200;
// ]]&gt;</script><br />
<script src="http://pagead2.googlesyndication.com/pagead/show_ads.js" type="text/javascript">
</script></p>
<h2>Mac Authentication</h2>
<p>Remember that headache we were talking about to give the hacker. Mac Authentication can give the migraine. Mac Authentication is the process of selecting what devices are allowed to connect to the router. The way you would do this is finding out your mac address of your computer and having it registered into the router&#8217;s software. After doing so hackers will have to decrypt your password, find out the connection name and figure out a way to connect to your router or get ahold of your laptop or desktop.</p>
<p>All of the features I have mention in this article can be found on the newest routers such as linksys or netgear.</p>
 <img src="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?view=1&post_id=487" width="1" height="1" style="display: none;" /><img src="http://compscistuff.com/?ak_action=api_record_view&id=487&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://compscistuff.com/2009/07/how-to-secure-your-wireless-router/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>People are losing jobs, but do you think they are at home doing nothing?</title>
		<link>http://compscistuff.com/2009/02/people-are-losing-jobs-but-do-you-think-they-are-at-home-doing-nothing/</link>
		<comments>http://compscistuff.com/2009/02/people-are-losing-jobs-but-do-you-think-they-are-at-home-doing-nothing/#comments</comments>
		<pubDate>Wed, 04 Feb 2009 06:08:28 +0000</pubDate>
		<dc:creator>Michael Washington</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Frontpage]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[cyber attacks]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[upcoming trend]]></category>

		<guid isPermaLink="false">http://compscistuff.com/?p=306</guid>
		<description><![CDATA[Ever since this recession hit, there have been numerous I mean numerous people losing jobs.  And the trend has shown no slowing in the past few weeks. Now with all these people being laid off you have to ask yourself what are they doing or what are you doing? Well so people have been trying to find work, living off of savings or turning to cybercrime.]]></description>
			<content:encoded><![CDATA[<p>Ever since this recession hit, there have been numerous I mean numerous people losing jobs.  And the trend has shown no slowing in the past few weeks. Now with all these people being laid off you have to ask yourself what are they doing or what are you doing? Well so people have been trying to find work, living off of savings or turning to cybercrime. There has been a recent study from <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL21jYWZlZS5jb20v">McAfee</a> and Purdue University&#8217;s <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL3d3dy5jZXJpYXMucHVyZHVlLmVkdS8=">Center for Education and Research in Information Assurance and Security</a> displaying angry employees have been turning to cybercrime using their corporate data access to steal, exploit and damage information networks, and may have cost businesses as much as $1 trillion globally.</p>
<blockquote><p>Cyber thieves have hit the Veterans Affairs Department, the Transportation Security Administration, the Internal Revenue Service and several other agencies in the past two years. The Congressional High Tech Caucus is examining the issue, which means funding to protect data is likely to remain strong.  From <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL3dhc2hpbmd0b250ZWNobm9sb2d5LmNvbS9BcnRpY2xlcy8yMDA4LzAxLzExL0ZvcmVjYXN0LTIwMDgtQ3liZXJjcmltZS1pbmNyZWFzaW5nLmFzcHg=">http://washingtontechnology.com</a></p>
<p><span class="AWC-7222675">On December 18, 2008, <em>Reuters</em> reported on a two-day &#8220;cyberwar&#8221; simulation that revealed the United States is unprepared for a major hostile attack against vital computer networks. &#8220;This is equivalent in my mind to before September 11 &#8230; we were awakened to the threat on the morning after September 11,&#8221; said Booz Allen&#8217;s Mark Gerencser. <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL3d3dy5ib296YWxsZW4uY29tL25ld3NfYW5kX21lZGlhL3ByZXNzX2hpZ2hsaWdodC80MDc5Nzc1ND9scGlkPTY1OTgwNg==">From Booz Allen Hamiliton website</a></span></p>
<p>PandaLabs has predicted a continuing increase in the amount of malware (viruses, worms, Trojans, etc.) in circulation in 2009. Between January and August 2008, Panda Security’s laboratory had detected as many malware strains as in the previous 17 years combined, and this tendency is expected to continue or even grow in 2009. From <a href="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?url=aHR0cDovL3d3dy5nb3Z0ZWNoLmNvbS9kYy9hcnRpY2xlcy81NzEwMTA=">http://govtech.com website</a></p></blockquote>
<p>Or just simply google cyber threats in 2009 you will see that it will hit businesses and ordinary alike in 2009. The question is what are you going to do about it? To be continued&#8230;.lol. Leave your comments, I&#8217;m interested to hear your thoughts about this.</p>
 <img src="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?view=1&post_id=306" width="1" height="1" style="display: none;" /><img src="http://compscistuff.com/?ak_action=api_record_view&id=306&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://compscistuff.com/2009/02/people-are-losing-jobs-but-do-you-think-they-are-at-home-doing-nothing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>8 ways to increase your website security.</title>
		<link>http://compscistuff.com/2009/01/8-ways-to-increase-your-website-security/</link>
		<comments>http://compscistuff.com/2009/01/8-ways-to-increase-your-website-security/#comments</comments>
		<pubDate>Mon, 26 Jan 2009 20:52:06 +0000</pubDate>
		<dc:creator>Michael Washington</dc:creator>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Frontpage]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Website Design]]></category>
		<category><![CDATA[Barack]]></category>
		<category><![CDATA[Obama]]></category>
		<category><![CDATA[protection]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://compscistuff.com/?p=301</guid>
		<description><![CDATA[Recently I have heard about how Twitter has been hacked using brute force techniques and even how Barack Obama page was hacked on Twitter. You would think a web application as popular as Twitter would have better security measures. There are different ways to hack websites but the most common way websites are hacked is [...]]]></description>
			<content:encoded><![CDATA[<p>Recently I have heard about how Twitter has been hacked using brute force techniques and even how Barack Obama page was hacked on Twitter. You would think a web application as popular as Twitter would have better security measures. There are different ways to hack websites but the most common way websites are hacked is by poor configurations and weaknesses found in the websites. Here are the ways to combat hackers.</p>
<p><strong>1. Check the file permissions for files on your server</strong></p>
<p>If you have files that allow anybody to modify them such as groups and users then you already have a major problem. You need to only allow users to view your  content not write to it.</p>
<p><strong>2. Check the privileges of user names accessing the database you are using. </strong></p>
<p>Sometimes granting all privlieges for a username of a database can be dangerous. When designing your website that stores all of your information in a database it is best to split the privlieges between multiple usernames. This could cause the hacker some pain and time when trying to retrieve information from your database.</p>
<p><strong>3. Make sure passwords are above 6 characaters with CAPS and Numbers and double hash them.</strong></p>
<p>When passwords are short lengths and contain no caps and no numbers it makes it easier to do brute force attacks on the websites.  So always make sure it is over 6 characters and add caps and numbers to your password. On the backend make sure you double hash passwords. When you double hash them use two different types of hashes. This is will throw hackers off some.</p>
<p><strong>4. Always validate the visitors input.</strong></p>
<p>When you have visitors enter in information that will be sent to the database make sure you protect against query attacks. There are certain combinations that visitors could use to reset passwords or drop your database. So every time they enter in values make sure you have a function to remove bad characters to protect your database.</p>
<p><strong>5. Use computer generated pictures when allowing users to login or signup.</strong></p>
<p>When hackers hack login information, they use a program and to loop through all the possible combinations for a password.  If you use computer generated pictures for validation it will cause them even more discomfort for a hackers because they will need a program to read computer generated pictures which is close to none!</p>
<p><strong>6. Use SSL.</strong></p>
<p>SSL  is a cryptographic system that uses two  keys to encrypt data.  SSL creates a secure connection between a client and a server, over which any amount of data can be sent securely.  To get a better understanding look below at the block quote from php.net.</p>
<blockquote>
<p class="simpara">SSL/SSH protects data travelling from the client to the server, SSL/SSH      does not protect the persistent data stored in a database. SSL is an      on-the-wire protocol.</p>
<p class="simpara">Once an attacker gains access to your database directly (bypassing the      webserver), the stored sensitive data may be exposed or misused, unless      the information is protected by the database itself. Encrypting the data      is a good way to mitigate this threat, but very few databases offer this      type of data encryption.</p>
</blockquote>
<p class="simpara">You can buy SSL certificates from your web hosting company or from independent websites.</p>
<p class="simpara"><strong>7. Keep your system up-to-date.</strong></p>
<p class="simpara">If you are using php 3 and php 5 is out then you need to UPGRADE!!! Usually when you update your system they include patches to solve security problems that the previous release did not have.</p>
<p class="simpara"><strong>8. Customize your security and create no documentation for IT!!!</strong></p>
<p class="simpara">Most of the time on the internet everybody is using the code because they downloaded it from somewhere in which over a thousand users downloaded the same thing. Hackers will download it to so they can know how to hack it to. If you are real serious about security I suggest you create your own technique after researching other methods out there and create NO documentation for it. I agreed with open source but not when it comes to <strong>SECURITY</strong>! This will make it hard for hackers and they will move on to an easier website to wreck havoc.</p>
 <img src="http://compscistuff.com/wp-content/plugins/wordpress-feed-statistics/feed-statistics.php?view=1&post_id=301" width="1" height="1" style="display: none;" /><img src="http://compscistuff.com/?ak_action=api_record_view&id=301&type=feed" alt="" />]]></content:encoded>
			<wfw:commentRss>http://compscistuff.com/2009/01/8-ways-to-increase-your-website-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

