Showing posts with label secure password. Show all posts
Showing posts with label secure password. Show all posts

Monday, March 23, 2020

Here are some cyber security tips you should know when working remotely.

One of the key preventative measures for the spread of COVID-19 is social distancing. Luckily, in this increasingly connected world we can continue our professional and private lives virtually. However, with huge increases in the number of people working remotely, it is vital that we also take care of our cyber "hygiene".

Awareness and preparedness are both vital - you'll want to be sure you have the following basics:
 
  • Secure wifi connection. Most wifi systems at home these days are correctly secured, but some older installations might not be. With an insecure connection, people in the near vicinity can snoop your traffic.
  • Fully updated antivirus system in place.
  • Up to date security software. Security tools such as privacy tools, add-ons for browsers etc need to be up to date. Patch levels should be regularly checked.
  • Remember to back up periodically. All important files should be backed up regularly. In a worst case scenario, staff could fall foul of ransomware for instance. Then all is lost without a backup.
  • Lock your screen if you work in a shared space. (You really should be avoiding co-working or shared spaces at this moment - social distancing is extremely important to slow down the spread of the virus).
  • Make sure you are using a secure, encrypted connection to your work environment.
Things employers should do: 
  • Provide initial and then regular feedback to staff on how to react in case of problems. Who to call, hours of service, emergency procedures and how they evolve.
  • Give suitable priority to the support of remote access solutions. Employers should provide at least authentication and secure session capabilities (essentially encryption).
  • Ensure adequate support in case of problems.
  • Define a clear procedure to follow in case of a security breach.
  • Consider restricting access to sensitive systems where it makes sense.
If you have any questions about these tips or need to setup remote login to your office, give us a call at 781-816-9437.

Tuesday, January 19, 2016

The list is in! Here are the top 25 most common / dumbest passwords used in 2015.

People are still using really bad passwords to secure online accounts, despite constant advice to the contrary. As reported by Engadget, SplashData has revealed its list of the worst passwords of 2015, drawn from the 2 million passwords that leaked last year.

This year’s list is very similar to last year’s list:
  1. 123456
  2. password
  3. 12345678
  4. qwerty
  5. 12345
  6. 123456789
  7. football
  8. 1234
  9. 1234567
  10. baseball
  11. welcome
  12. 1234567890
  13. abc123
  14. 111111
  15. 1qaz2wsx
  16. dragon
  17. master
  18. monkey
  19. letmein
  20. login
  21. princess
  22. qwertyuiop
  23. solo
  24. passw0rd
  25. starwars
The sets of contiguous numbers are dumb for obvious reasons, and single words without any numbers are never going to be particularly secure. And then there are the likes of "password," "qwerty," and "letmein."

As these passwords all belonged to accounts that were hacked or otherwise compromised, these are essentially the most popular bad passwords. Suffice to say anyone who wants to stay safe online should avoid using these under any and all circumstances.

Source:  Engadget

Monday, June 1, 2015

The hackers are coming! The hackers are coming!

Hacking: it’s not just for Anonymous and the U.S. government anymore.

Cybercrime is ever-encroaching and can happen to anyone. Including you and your business. In fact, it’s cost the global economy more than $400 billion, and it’s increasingly hurting smaller operations.

The problem goes far beyond the leaking of sensitive emails and sexy selfies. Targeted attacks against small businesses nearly doubled in 2013. And of the one in five that experience a cyber attack annually, 60% will close their doors within six months as a result (source: Symantec).

But not you. Protect your business with these three tips:

1. Be password savvy. If your password is still “Password123,” it’s time to get serious. Create unique codes for each of your accounts, and make sure they’re at least 8 characters long (with a few special ones thrown in). Use password managers like LastPass 3.0 or Dashlane 3 to keep track.

2. Encrypt emails and valuable information. If a hacker does breach your system, encryption makes it that much harder to get away with critical data. Voltage, DataMotion, and Proofpoint are industry leaders worth checking out. 

3. Back up your data. Copying your key company data onto a cloud based system, such as Dropbox or Carbonite, or a USB hard drive takes minutes, and will save you time and anxiety if your system is ever compromised.

For professional help, call IES today at 781-816-9437. We can have you safe and secure in hours, not days!

Wednesday, April 16, 2014

A tip for a much stronger password.

Use a passphrase: a sentence you can remember. Then replace each word of the phrase with its initial, a similar digit or symbol, or, at random, use a whole word.

For example: My Dad Bob Yelled At My Idiot Brother
m d b y @ m ! b

The new password is mdby@m!b.

That may still be tough to remember. If you need to, write a reminder and hide the paper somewhere safe. But write the phrase or a hint, not the password.

Generally, if you have a strong password, you don't need to change it unless you suspect you've been hacked. But don't use the same one for different services.