Wednesday, December 15, 2010

【 Weak current College 】 what to hide my computer inside those "little secrets"


How many are there for everyone "secrets", or bank account number and password, or contact address book or journal and MSN, QQ chat logs, and so on; even in our mailbox email do not want others dipped, but privacy leaks and everyone had to face reality. If our Bank, real estate developers, intermediary sellers we feel helpless information, for our own computer, or some skills allows us to avoid being skinned doesn't even diku left quandary.

Now although there are many articles and reports on privacy protection in the comments, but truly describes the useful experience of rarely, so the following content is what you want to see: the action is the most important.

● TidBITS

Exhaustive and dictionary attack method

Exhaustive and dictionary attack method refers to the use of the computer running the speed advantage, every second to hundreds of password combination to guess the correct password, if your password is simple or just belong to the entries in the dictionary, it's easy to guess; any password from being captured such tools may be just a matter of time, but the complex password combinations may take tens of thousands of years to solve.

1 protect email code

Email is the most commonly used for the Internet, but because of its long history, so email technologies development is relatively early, security is also very common. Plus, many e-mail services are free of charge, service providers have "forgotten password" convenience retrieve settings, which to some extent to certain people steal other people's letters in the mail account.

Safe use of e-mail, the first rule is not in the message Server storage too many letters. Although the mailbox capacity is large, frequently 3GB, 5GB, even unlimited capacity mailbox service provider, but the messages on the server, 7 × 24 hours are connected on the network, people may compromise your mailbox, enter your account feel free to browse the letters, and even may impersonate you to reply. The best strategy is to use Outlook as the email client software will letters are downloaded to the local computer, in the letter on the server are automatically deleted after the download is complete. Thus, even if the mailbox being violated, he could not see any sensitive correspondence, unable to do too many bad things. Another reason is the existence of the local computer, letters, because most people rarely 24 hours power on, the invasion of small lots.

E-mail is usually the POP3 and IMAP protocols, many servers for exhaustive and dictionary attacks almost powerless to do anything, so the mailbox password setting is very important. Recommended length of 6-bit above, uppercase and lowercase letters + numbers and it is best not to use Ruby, telephone number and birthday, meaningful forms — these combinations are relatively easy to circumvent. More details on the password settings can refer to the following password settings section.

In addition, e-mail service providers generally have "forgotten password" reset or recover design, this might be the solution to your mailbox. Recommended not to use such as "my parents and what's your name?", "my birthday?" asked questions like this to set the password problem, otherwise very easy to use. Try to choose some unpopular, only you know the answer strange problem.

2 IM software and chat protection code

We will use every day IM instant chat software, MSN, QQ, MSN, etc. really let us communicate more easily, but the secret is easier. IM software generally have the chat log feature, not a good many of my friends very secret whispers will be other people onto the network, or as a means of coercion against others, it is very depressing.

Protect the safety of MSN, QQ, the first most important thing is not to use the modified version of the non-official program. Some versions which you can remove the ads, or view each other's IP address of the function, if the user has installed the MSN and QQ, is likely to be a horse; therefore, the use of official QQ and MSN programs is very important.

QQ and want want security doing quite well, chat with encryption, as long as you do not disclose your password, you do not have to worry about others see the chat content; and MSN to save chat log XML plaintext, anyone can feel free to use the "open Notepad" software. Recommend manually delete MSN Chat or simply not save chat transcripts, of course not sensitive content also does not matter.

3 Internet banking and payment Bao protection code

Internet banking and payment Bao is very much concern focused on protection, because once the invasion, losses may be substantial. The most secure Internet banking solution is for USB shield, this is the individual banks provide fee-based services, sometimes free, the benefits are using hardware to detect if I use, compared to digital certificates and other means, to be more secure. Similarly, Alipay also offers USB protection shield, truth and similar network Bank.

Another important skill is to account and mobile phone text messaging bundle. Alipay and many banks are providing such services, as long as the account of any significant action will SMS tell you that in case of malfunctions or timely knowledge and contact PayPal or bank account frozen in time and processing.

Another technique is to use the virtual machine (famouser have VMWare, VirtualPC and SUNVirtualBox), the account does not transfer to a virtual machine, virtual machine no other unrelated software, reduce Trojans steal Alipay and bank online banking account.

4 game account and virtual property protection code

Game login account, And inside the virtual property is easily one of the objectives of the theft. To prevent the game account theft, there are a few important principles to note: to download the game, be sure to choose the official and the official recommended site, use the official recommended clientfor download; from the other site of game clients may already be doing the hands and feet, bundled Trojan, Backdoor. In addition, using official recommended means of protection, such as registration phone registration, use the password card secure login.

Installation for gaming PC antivirus software, such as drug tyrants, Norton, rising, and so on. Because this type of professional commercial antivirus software in the memory footprint, and game design aspects when DND is better than free antivirus software and shareware. Many people use free antivirus software in the past, but because I feel computer slow or play games uninterrupted experience and quit unexpectedly "streaking" (meaning not installed antivirus software), this is very dangerous.

5 How to set the high-strength password?

Set password is an art, set well very convenient, the setting is not good, not only does not increase security, back to their much trouble. Sets the password of the principle is simple: lowercase letters + digital + symbols, generally at least 6-bit, 16-bit above is very secure: whether dictionary attacks or brute force method to tens of thousands of years to be captured.

Despite this, but the reality is often not so simple because we at setup time often encounter some limitations. For example: bank card password General numbers only, and cannot contain letters, and only a 6-bit, more or less. Why not recommend the password contains characters? because many systems once input Chinese characters, may be wrong.

Sets the password of the principle is: do not use your own or your family's birthday, telephone number, house number and Hanyu Pinyin, English names, and other meaningful words. It is similar to the "yCAw8yx5% jkQ" such mixed string strength than "19800808" password to be difficult to guess.

If you feel prepared this password is too troublesome, there are also Web sites (http://strongpasswordgenerator.com) do to help you, just enter the password length and contains symbols that can be automatically generated to meet the requirements of the password. You need to do is to copy the password to the book, or copy and paste the password management software.

6 How to remember complex passwords?

For many people, remember different mailboxes, different banks, MSN, QQ, MSN, Alipay, everyone, happy NET, micro-Bo, Forum BBS and so many different places of the password is almost impossible; therefore, many people will have different account password is set to the same. In doing so, it is convenient, but also very dangerous, because as soon as the others to know, all of the account is equal to being clean sweep.

The best way is to prepare a small book, apply different password is copied in the above, you need to use to lookup. But little book has lost may also terrible consequences. In fact, there are other solutions: use password management software, and some even have included with the antivirus software free of charge, such as Norton 2011 Edition can store different Internet accounts, in need of a Web page automatically filled in, avoiding the Trojan intercepts account number and password.

No comments:

Post a Comment