FeedAgg.com Logo
Your Account | Sign In | Sign Up

Add Feed | Search | Home | Help | Contact | Blog

Feed: Folder Lock™. Official Blog - AggScore: 25.3



Summary: TalkSecurity


NewSoftware's Blog

Misleading Google Search Results- Beware of the fake Firefox 7 website


As soon as the news of Firefox 7 sprouted over internet, many people rushed to download it to experience the new features and all those new developments that were anticipated to be unleashed with Firefox 7. Hackers and scammers found it the best opportunity and a peak time to plan a strategy to fool people into falling into their evil traps.

Let’s give you an idea of what they planned this time!

alt
By Googling the term ‘Firefox 7’, the first Google result appeared in the search result is a link from the website firefox7.org. Makes any sense? No, let’s give you a bit more information about Firefox and its original creators.

Mozilla is the name of the organization that develops Firefox web browser. So, naturally any major update for such a product would be enlisted under the website of the original organization. This means that, if Firefox 7 is the latest update of the web browser, it should be shown under the website of Mozilla and not in a website made solely under its name.

Hence, the search result shown by Google misleads the user to enter into an illegitimate website that doesn’t have anything to do with the original creator.  All you’ll find in that fake website is a bulk of promotional stuff about Firefox 7. While, at the bottom of the main page, you’ll find what appears like some legitimate Firefox 7 download links for MAC, Windows and Linux, but clicking on those links takes you, not to the legitimate Mozilla website but to a weblog created with the domain of mozilla.blogspot.com.

Before finding out exactly where these download links were directed to, we were of the opinion that this person is a fervent fan of Firfox 7 and dedicated a whole page in its name.  But, the discovery that those download links direct the user to a misleading Mozilla blogspot, it was clear that the creator of such a thing is either trying to earn some revenue over the good name of Mozilla and its browsers or he is trying to gain traffic to the website so that later on he can upload some malicious stuff to the server to be infused into the systems of every person coming to download Firefox 7.

Ironically, the site is appearing on first position in the Google search results for Firefox 7 and the person who is behind all this scam is certainly trying to gain some advantage over it. It is, however, pretty silly on the part of Mozilla team that they have not yet reported Google to block this site or pull down its page ranking for the reason of copyright or misleading content. For a web browser as popular as Firefox, it’s quite a big slip up on the part of Mozilla team for not having this domain registered already in their name so as to avoid any such thing from happening.

But, never too late for our readers as we are always here to keep you aware of everything that can compromise the security of your online as wells offline existence.

It is, therefore, advised to all of those people who want to upgrade their older Firefox browsers to the newer version to download the new update from the legitimate website of Mozilla only. All it requires is a bit of analytics and some of the awareness we spread, to spot the difference between the original and the fake one.   Always avoid falling into the traps of any fake third party website that might have some unfair motives attached with their smart moves. Beware and stay security aware!

 

 

Date Published: Oct 04, 2011 - 1:38 am



Stay Safe from Information And Identity Theft


Stay Safe from Information and Identity Theft
With the pace which technology world has been advancing with, it has now become a norm that every new day comes with a news flash of another data breach striking the global information security world.

And in the presence of giant hacking activist like LulzSec and Anonymous, nothing you keep online or even in your computers are safe from being technologically invaded. A story of a similar kind has been sprouted lately about LulzSec breaking into SonyPictures.com and obtaining access to good one million user accounts in one go. One attack and one million user’s personal data compromised! Isn’t it too much to lose in one day only?

identity-theft

Well, it most definitely is. So what can be done to avoid such an attack? Or at the very least, what exactly can be done to limit or minimize the potential for damage?
So, if you are a victim of a potential data breach or if you fear such an incident, do read the following guidelines to avoid such happening and stay safe from information theft.

Eye-out for phishing scams and malicious emails.

In case of getting your email address leaked in a data breach incidence, watch-out for scammers, spammers and malware authors that may attempt to populate your email inbox with misleading malicious emails containing fraudulent content masked as the one that comes from an authentic source. Refrain from downloading attachments from the emails that contain money refund offers, or a courier reaching your address asking for you to confirm your details or credits card updates. Always remember to back check the authentic sources by either calling them or visiting their website. Be on a lookout for any suspicious looking link in those emails or even those links that pops up when you visit any unknown website. Avoid any sort of drive by download on your way of surfing the internet. And never, ever click on ANYTHING that gives you a nagging feeling or appears suspicious or anonymous to you.

Always create a strong and hard-to-crack password

The second most important thing to be taken into consideration is the setting of your personal passwords. Whenever it comes to create a password for any account over internet, always create a password that makes a combination of alphanumeric characters. Do not use the same password for multiple accounts over internet. You can expose your online existence to more risks if you practice the use of same passwords for all of your accounts online. And this may be a good time to change your approach to passwords – check out our comprehensive tutorial on how to create a password that can be easy for you to remember but impossible for others to get even near to it.
.
Use of a strong and reliable security program

Even if you have taken all the above preventive measures in due time, there is still a chance that hackers and other cyber criminals manage to break into your privacy walls and can attack directly at the sensitive information that you save on your systems. A good way to curb even the remotest chance of such an intrusion is to keep your files and folders locked and encrypted. Check out our security products that aim to serve you for the same purpose.

You may not be able to put a full stop to data breaches, but you can still have a way around them. Do something to protect your online existence and the information you store on your system. Be on your guard, and keep an eye out for anything suspicious at all times. Stay Safe.

Date Published: Sep 22, 2011 - 6:13 am



Stanford Hospital Data Breach Incident


According to the New York Times, the patients visiting the emergency room at Stanford Hospital in 2009, got their private data leaked over the internet.
A site called Student of Fortune leaked the information regarding their names, diagnosis codes, account numbers, admission and discharge dates, and billing charges. The information has been available for well over a year to students on that site who can pay for tutorials that help them in doing their homework.It was probably leaked by Multi-Specialty Collection Services, a billing contractor for the hospital.

The leaked spreadsheet with sensitive information was posted as an answer to a question which required assistance in how to convert information into a bar graph.

hacker_steals

Why was such sensitive data posted on a public forum without encryption and who would do such a thing are the questions to be raised now.

Firstly, HIPPA and HITECH acts in US require medical organizations to protect confidential data, but they outsource it to third parties, but it still can be kept safe by simply inserting a few more clauses in the contract that require them to keep the data well protected.
Secondly, our laws and attitudes need adjustment regarding protection of such data. You should treat data in the same manner even if it’s inside or outside.

Confidential information should not be considered “inside” or “outside”.

If your data requires protection when you are using it inside of your organization like while transferring it through USB flash drives, laptops and other gadgets then you should make sure that its safe when it’s on your (or your partner’s) servers and databases as well.

Rather than going after who got the data leaked, getting them fined and punished, it’s better to take precautionary measures and make sure it doesn’t happen again. Now is the high time to stop taking online and system based security of your data for granted and start giving firewalls, antivirus software programs and security applications a serious consideration.

Stay with us and get to know about how to separate least important data from the most critical one so that you identify which data is confidential and shouldn’t get leaked. Take all the steps needed in ensuring that you control that data and it remains safe.

Date Published: Sep 22, 2011 - 6:06 am


Western Union Money Transfer Scam


Previously, we covered the Australian Taxation Office scam that swindled people into handling their bank account and credit card details to the scammer operating behind the veils of a legitimate source. Next on the similar page, we now have Western Union Money Transfer scam which is; perhaps, more problematic than the one we have covered before.

As the time passes and more advancements have been embraced by the technology, online scammers and all the other people working in muddling bad internet stuff with the good and legitimate stuff over internet have now become powerful in their efforts in fiddling and defrauding innocent people into believing in the deceptive material

Western-Union-Money-Transfer-Scam-image

Let’s take a good look at what they have planned for you this time!

Not many people are aware of the cunning ways these bad guys plan their scams in. And this time, using Western Union as bait clearly indentifies their target. Yes, you must have guessed it now. The aim, this time, is those people who either have someone living overseas or the person who lives overseas himself. They know that email communication is generally a preferred medium when distances take a longer figure between two ends and usually people living in overseas send their remittances via Western Union Money Transfer because of the feasibility and reliability factor being involved in here.

So, they designed their trap in exactly the way they know people would react it to. A malicious email containing a virus in its attachment and a subject of ‘MONEY TRANSFER INFORMATION’ from the source email looking nearly legitimate is the best trap for someone who is naïve as well as in a vulnerable state as he or she is expecting a remittance from abroad.

It was detected that the attachment containing ‘More information’ envelops a malware named as ‘Mal/Zbot-CX’.

“Mal/Zbot-U is a network-aware computer worm which attempts to replicate across existing networks. Mal/Zbot-U requests malicious files from the Internet and has the ability to send out email messages with a built-in SMTP client engine which can send private emails directly to a recipient mail server for malicious purposes. Mal/Zbot-U contains characteristics of an identified security risk and should be removed from the system.” – SpyWare Remove

Save you privacy and security from being seriously compromised and avoided opening attachments from emails that has anything to do with your money or the money you are likely to receive. Confirm the source first by either calling them or visiting their office physically. Moreover, keep your anti-virus software up-to-date. And last but the most important step that you must not forget is keeping your important data secured and encrypted.

Check out our top notch data security software programs and stay safe!
Date Published: Sep 22, 2011 - 4:52 am


Shut The Doors of Your Network For hackers and Attackers


For all the internet users, ever since the first virus attack came into its existence, security of your online being has become a persistent issue over the entire world.  When and where can our personal information be leaked into is the matter of sheer uncertainty given that you are not advancing with the pace which cyber criminals are progressing with.

Not many internet users are aware of the possible consequence the theft or loss of their personal data can leave them with.With the kind of frequent and perhaps very dangerous anti-security activities being carried out lately, not much care and diligence has been taken and applied at the user end that could nip the consequences of such data breach immediately in the bud so that further data loss can be duly avoided.

NetworkSecurity

Not too much late!! We can still help you in fighting with these bad guys in protecting your confidential and personal data from ending up into wrong hands. We have covered almost every critical security issue in this article and you may also find a quick work around of these issues. Keep reading!
Open and unprotected networks are always a serious threat to the security of your data. All those ends of a network that are needed to be kept private and secure, if left unguarded ,can be highly prone to network hijacking and information theft. Because of not being able to be encrypted in its entirety, these networks can be hacked with little effort resulting into the invasion of your privacy and system integrity.

Not only can these open networks be a problem to its authorized users but people from outside the authorized circle may also get their data stolen if they happen to log into an unsecure and open network like these. The best and the most common example is open WiFi network.
Any person connected with an unsecure and unprotected network may get his data sniffed over when it either, goes out of the network or comes in.

Your passwords, something as important and dearest to you as your home or car key, can be conveniently copied using lots of advance network hijacking applications. Think of your oh-so-dearer Facebook, Twitter or LinkedIn passwords going into wrong hands. Alarming it becomes when you use the same password for every online account you have.
To make it a bit more comprehendible, take the example of an online data exchange between a laptop and a wireless router.

Anyone within the range can use a packet-sniffing software to snivel into the transmission. Someone listening in can copy usernames and passwords, email and file transfers. Only those connections are secure that are made to a secure website, even across such a network, because the encryption originates at the website and extends to the user’s computer.

Hence, to keep your wireless LAN secured from local eavesdropping, all data that passes through the laptop and router must be encrypted using software security options built into the wireless router. In this case, the entire LAN broadcasts in an encrypted format. The router only decrypts LAN traffic to send it on to the Internet. This does not make surfing the Internet any more secure than it otherwise is, but it does eliminate risks associated with potential eavesdropping on the LAN side.

So, keep your online existence safe and secure by, at first, taking control of your network securing every entry point it has for the hackers to invade it through as well as try some top notch end-point security software to secure your computer data from local eavesdropping. Stay Safe

Date Published: Sep 12, 2011 - 5:29 am


A Parcel Has been sent to you- FedEx Scam


Folks have reported us that they’ve been receiving emails from courier services claiming to have a parcel couriered at their homes and asking for further information.

An email claiming to have been sent from Federal Express says that a parcel has been sent to the recipient’s home address which he will receive within 5 business days. They also attaches a zip file In the email for the recipient to obtain further information about the parcel so sent to him and its tracking id or number.
Although, with all the ‘too genuine too be doubted’ appearance of the email and its content, you know one thing that is:

FedExSCAM a) FedEx will never send this type of sensitive information about your parcel through an email attachment.
And
b) Even if it does, it will never make this level of stupid spelling errors in an official email to its valued customer.

Do not give in to your curiosity and go on downloading the attachment in that fraudulent email because that attachment is not just a deceiving zip file, it’s actually a Trojan that gets installed in the system without asking the user’s permission or coming into his knowledge. This kind of Trojan is capable of launching pop ups alerting the user that his system has been infected with viruses. If you fall for these messages and click on one of those pop ups flashing on your screen, this Trojan will install a fake antivirus program in your computer that will launch itself automatically and start scanning the system for viruses and worms.

Alerting and scaring the user about false and exaggerated threats, the antivirus program will fool the user into purchasing its full version- the most common way to trick people into handing over their personal information.
So, if you come across any such email, you are advised not to fall for it. But, if in any case you get infected by this attachment, we have some instructions for you to remove this Trojan.

1. Reboot your system and press F8 to enter into Safe Mode with Networking.
2. Download MalwareBytes to your desktop and rename it to Explorer.exe as Windows Security 2011 blocks the program named MalwareBytes. If you can’t download files, try using another machine that’s not infected and saving the files to a flash drive or other storage device.
3. Download and Run RKILL to stop all background processes related to Windows Security 2011.
4. Launch MalwareBytes and run a (Full Scan) to remove infections.
5. Delete the file called “Hosts” in C:WindowsSystem32DriversetcHOSTS and add the default Hosts file (below) for your operating system in C:WindowsSystem32Driversetc

This is how to can say stay safe from this Trojan even if you get infected by it. Be careful about what you click over internet as not everything is truly what it appears to you. Keep reading our articles and
Stay Safe!!

Date Published: Sep 07, 2011 - 11:32 pm


Internet Security- A grim issue for small business


For a gigantic economy of America, businesses of small size are the chief contributors and growth determiners. According to some recently collected statistics from Small Business Administration of America, there have been more than 27 million small businesses operating currently in America. Handling financial data, dealing with intellectual property and personally identifiable information, it is highly significant for a small sized business to ensure that the data it deals with regularly, stays secure and protected.

Not just a small size business, but every company-big or small, corporations and every individual should realize that internet security is not just an issue;

InternetSecurity it’s a grim responsibility and a general risk affecting both the corporate and the global world.
When we talk about a cyber security plan that every business needs in this modern age, we’re not only referring to the installation and proper implementation of security programs, establishing a whole infrastructure but it also covers the pre-established relationships in the government and law enforcement sector- someone who you can give a call to, if anything unfavorable happens. Practicing a comprehensive security strategy while having a plan in place ensures your customers that you have been maintaining an infrastructure that is utterly responsible and advanced. It ultimately impacts your company brand and customer trust.
In this age of modern technology, cyber security has been at serious take when a great number of hoaxes, scams, malwares and deadly viruses are being designed and infiltrated into the networks of much big and small sized organization. It’s an adversary to deal with and which require proper implementation of security methods and policies.
Here are few tips that you can follow:
After establishing basic security practices to protect your sensitive information, communicate those practices to all your employees. Describe how to protect sensitive customer information and guide them about information handling. Now if you want them to abide by the instructions you laid down about data security, announce the penalties they could be charged to if they deviate from these policies.
You responsibility doesn’t end here. Employee awareness is not the only step that you should take, but installation
All operating system vendors regularly provide patches and updates to their products to correct security problems and improve functionality. Configure all software to install such updates automatically.
Regularly backup the data on every computer used in your business. Critical data includes word processing documents, electronic spreadsheets, databases, financial files, human resources files and accounts receivable/payable files. Backup data automatically if possible, or at least weekly.
Prevent access or use of business computers by unauthorized individuals. Laptops can be particularly easy targets for theft, so make sure they are stored and locked up when unattended.
To hide your Wi-Fi network, set-up your wireless access point or router so it does not broadcast the network name also known as the Service Set Identifier (SSID). In addition, make sure to turn on the encryption so that passwords are required for access. Lastly, it is critical to change the administrative password that was on the device when it was first purchased.
Setup a separate account for each individual and require that strong passwords be used for each account. Administrative privileges should only be given to trusted IT staff and key personnel.
Do not provide any one employee with access to all data systems. Employees should only be given access to the specific data systems that they need for their jobs, and should not be able to install any software without permission.
Passwords that stay the same, will, over time, be shared and become common knowledge to coworkers and can be easily hacked. Passwords should be changed at least every three months.
Date Published: Sep 07, 2011 - 6:42 am


Floating workforce – A risk for your business


Over the past few decades, liberation of data and the ways to stage-manage it has come with numerous benefits to the users that frequently deal with chunks of data every day. With the advantage of every useful thing, always comes the disadvantage intact. Hence, data controlling and manipulating trends have not emerged alone and have brought forward a much tedious task to ensure absolute protection of every bit and byte a user is dealing with.

Data protection is particularly a huge headache when you are relying on a floating workforce, especially when you have allowed your employees to access your database with their passwords as well as the use of USB memory stick and other portable storage devices is not prohibited or restricted to some extent.

floating-employees

A disgruntled employee equipped with a password and USB memory stick is a serious risk to any organization that has not yet implemented any sort of security measures over its server and database. Few minutes of a hideous activity can expose your company to a serious event of data breach.

When you have not protected your databases from unauthorized access, a determined employee with the password and a USB memory stick can easily copy your data and move it out of your bounds within a few minutes. Once the data leaves the premises of your company, it is lost or has fallen into wrong hands resulting into a commercial and reputation damage of your company, which is – unless it happens-, cannot really be estimated.

Not only does this kind of events push the company into the financial and reputational damage but the loss of time is also a dire outcome of these data losses. Management has to give it good hours or days in attempting to reverse the damage or at the very least recover what they have lost.

A temporary worker might feel little loyalty to an employer. He may be a spy working for your rival or some disgruntled one who is not really satisfied with the way you handle your things. For an employee like this, there might be a zero level or little loyalty can be expected for the company, which makes him a great risk to your data and sensitive information. IT support companies report that security problems often start with poor recruitment processes, over-reliance on agency staff or employee retention problems.

But is that really a solution? I bet it’s not. Even a permanent employee can turn disloyal to the company and pilfer the data he was authorized to access. The actual solution to this problem is at first to employ good human resource practices so that a clear view of security policy can be projected to your employees. The staff should be very smartly informed about the boundaries of what they are and are not allowed to do, access and modify. Emails and internet usage do count in it.

Not every member of your staff needs to access every bit of the data you are storing in your database which calls for the restriction of access to data with a grant to assign additional rights on a case-by-case basis. The management should also be aware of the actual need of the employee before assigning him the access to the data he asks permission to. Moreover, the right to modify the data these employees get access to should be limited to a certain authorization level. It is always smart to set different levels of login and security so that a secure server can easily become manageable by even the non-technical end workers.

Furthermore, the most sensitive and extremely private company information should be kept locked and encrypted on your servers or at the very least be strongly password protected so that no user except for the one with authority can access the data so protected.
In the same way, USB ports and CD/DVD drives should never be left opened and unprotected in an organization where a great number of employees are working and dealing with lots of data every day. The use of these devices should be restricted to call-on basis so that whenever an employee needs to pop a USB memory stick into a protected port, he asks the management for the permission to use it.

The crux of all this discussion falls onto the deployment of a perfect security plan in your organization as soon as you can. Nobody wants to have to ring their clients to admit that their confidential information has been lost or stolen. Worse than that, if someone from your floating workforce walks out with data in his hands, it can rip the heart out of your business.

Check out our top notch data security products and rest assured that your security is in good hands.

Date Published: Sep 07, 2011 - 6:20 am


CHALLENGES FACED BY ORGANIZATIONS IN PREVENTING DATA LOSS


Information being the backbone of every organization is highly relied on to make decisions, to maintain a competitive edge, improve public safety, administer healthcare and maintain a great economic growth.

With the rapid advancements is technological developments, we are now able to access more and more of data in less time, and perhaps more quickly than ever before . When data can be accessed quicker than ever, without involving more of your time and energies, organization tend to amass more and more of their confidential data on their systems or internet.

DataLossUnderstandably, organizations go to great lengths to protect valuable data that’s on paper and disks. They’re kind of assets kept in locked doors and vaults.

Yet, organizations often fail to adequately protect digital information on their IT networks and hard drives-Information that is increasingly vulnerable to accidental loss and theft because of its confidentiality and organization dependency.

Much of the data so critical to organization is highly sought by cyber criminals. This includes social security numbers, credit card numbers, confidential health records and bank account records, competitive intelligence and proprietary company information.

We are all aware of the potential harm data breaches can inflict on businesses, agencies, health care organizations and schools as well as the individual involved.

Whenever a breach occurs, executives face a public relations crisis that affects their organization’s reputation and ultimately impact their bottom line. In regulative market such as finance, government and health care, the consequences of non-compliance are COSTLY, as our legal liabilities that result from leaked personal data.

It could be as simple as a misguided email, as fast as a mouse-click. Once corporate data is exposed, its too late. Without proactive smart email security, organizations might as well hand over the keys to the vaults. It’s all about prevention.

So, why is data loss prevention challenging for many organizations.

Once, because too often businessmen think that traditional security is too adequate for their data. However new threats require new proactive solutions.

Two, most email security solutions simply block content based on file-type keywords or URLs. This is partially effective because the content within the email never gets scanned. And It often lead to false positives and false negatives. Either impeding an employee part activity by blocking legitimate communications, or worse, failing to protect data loss entirely.

Third, because many email DLP solutions are cost-prohibitive, organizations are forced to settle for less effective and reactive DLP protections.

Now, to solve these challenges businesses need to dig deeper. Stay with us to find more about it. Keep reading our articles and stay informed.

Check out our security products to find the best solution for your Data Security.

Date Published: Sep 05, 2011 - 4:09 am


Two-in-One Data Protection


Ever felt the need to protect your important documents, financial reports, source codes or private files from theft or illegal duplication? With your computer, you have little choice but to worry about the inadequate data protection available in your machine. With countless USB drive slots, open ports, CD/DVD Writers, Memory Card slots and Network Access points, your data is ever so vulnerable to outside attacks.

A two-in-one data protection solution is what you need if you find yourself in a similar situation. The above scenario may not be as farfetched as you may think at first.

altData leak prevention & copy protection programs are your only saviors. These applications help you lets you prevent copying of sensitive information to any unauthorized portable device including USB drives, external hard drives, memory cards, digital cameras, iPods, CDs/DVDs, Network Computers and more.

Software that allows you to block external devices from connecting to your computer are usually permission based utilities, which once installed, allows only users with the correct password to have access to the computer. A strong data protection mechanism, the application also maintains a list of all authorized drives and devices that you want access to on a regular basis, while blocking all non-authorized USB and external drives.

The added capability to allow you to monitor and keep a record of all devices that have tried to access your PC can spearhead hack monitoring and allows you to prevent data-leak, illegal copying, and duplication of your private and classified data and information. With strong monitoring system and active logs detailing all illegal program deletion attempts, unauthorized uninstall attempts as well as invalid password attempts, you are in very safe hands. The added feature of operating in complete stealth mode can prevent the application from being discovered on your computer.

A device control and strict access management software not only offers strong data leak prevention for your files and folder but also blocks USB Drives or External Drives that do not belong to you from accessing your data, including drives and devices that are used for transmitting malicious ware across networks.

Basic benefits of using a data protection-cum-data leak prevention software

Prevent theft of your data!
Install once and block ALL such drives and devices that do not belong to you. Share your PC without the fear of data theft.

Simple and Effective Device List Management Console
All activities from all blocked devices, drives, unauthorized log attempts, uninstall attempts, and invalid password attempts are maintained for active list management.

Data Leak Prevention at its Best!
Use USB Block to protect your data and information against data-leak & data theft.

Strong Monitoring Of All Activities
Check detailed reports & logs to regularly monitor which device was authorized, when and by whom.

Protect your PC from Viruses and Spyware
Stay in control of who can access your files and folders. Prevent all possible malicious attempts by hackers or crackers to install unwanted spying software on your computer.
Date Published: Aug 28, 2011 - 11:54 pm


 
Visitor Rating: 2 (1) (Rate)

Story Clicks: 29

Feed Views: 113

Lenses (Add|?)

Comments (Log in to add)
blogger4u - Its a good software, and i being a blogger for 5 years want to share another information with you guys. Recently there is a software called desksense. Google "Desksense" and you will get it. This software is creating a huge appeal in the internet mar
Feed Details
Date Added: 02/24/2009
Date Approved: 02/24/2009
By: Anonymous
Search FeedAgg.com




3600 sp3006 serv 2.3432 seconds to generate.