hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

Full Version: 12 Quick Tips
manu
12 quick tips

1. Update / patch ALL your software every now and then!

2. Check / adjust ALL your settings so they are safe, since they ARENT by default!

3. Use firewall, like Sygate or ZoneAlarm to control what goes in and out from your computer!

4. Use good passwords: at least 13marks long, containing both letters and numbers. Remember to change your password every few months atleast and dont ever use the same password in two places!

5. Get a good antivirus program: AVG, F-Secure or Norton Antivirus and keep it updated!

6. Don't open or execute files that you are not 100% sure are absolutely safe nomatter where or how you get them.

7. Wipe your historyfiles (like cookies, internet history and temporary files, etc.), logs and personal files, with specific wiping program (like Eraser) instead of just deleting them.

8. Use encryption to enhance your privacy! Use encrypted email (like Hushmail or Ziplip), www-surfing and encrypt sensitive files on your computer (PGP).

9. When you are finished using some internet-based service like email, sign out of it rather than just closing your browser! Also, when you leave your computer, make sure that none of such programs or connections are left open that someone could abuse. In WindowsNT/2k/XP, press Windowskey+L to lock the workstation.

10. Don't use public computers for anything you need to type in your logins, they usually have Trojan horses that capture your passwords.

11. Make backups and store them in safe place! Easiest way to do a total-backup is to make an "Image" of your harddrive or partition and store it on safe location, but floppies will usually be just fine for storing documents, etc.

12. Don't assume anything. If you don't know, find out! If you cant or don't understand, ask someone who knows! There's nothing more dangerous than doing something you don't really know anything about. That's the best way to cripple your system or get a Trojan horse on your computer!

Manu biggrin.gif
phrozen77
QUOTE
5. Get a good antivirus program: NOD32, F-Secure or Norton Antivirus and keep it updated!


sure, get norton and think youre safe tongue.gif

for talking serious, iŽd recommend kaspersky wink.gif
mrBob
nice tips
although i had to laugh a little when you mentioned norton laugh.gif
DumpZ
Well as an Anti-Virus app i would recommend McAfee, because it detects most trojans/virusses/exploit-executebles/scan appz/etc than other.

Norton really sucks. It doens't even detect an unpacked and unmophined Optix Trojan, or an modded servu daemon.
saetji
the good antiviruses so far ive found are: mcafee, fsecure, kaspersky and most chinese/jap/korean antivirus
tweakz20
QUOTE
1. Update / patch ALL your software every now and then!

not ALL, just stuff that you use (for one) and that uses the internet (ESPECIALLY one acting as a server)... i never updated notepad and don't plan to.

my favority firewall would have to be zonealarm
manu
QUOTE (tweakz20 @ Jun 13 2004, 01:47 AM)
QUOTE
1. Update / patch ALL your software every now and then!

not ALL, just stuff that you use (for one) and that uses the internet (ESPECIALLY one acting as a server)... i never updated notepad and don't plan to.

my favority firewall would have to be zonealarm

Tweaks,

Come on man. I wasnt telling you you to go and update your Notepad or any other Card game stuffs or like that. Just catch the point, ok, for you, I will take care next time to avoid these kind of MISTAKES. Thank you.

Manu wink.gif


One more thing, Why are you guys jumping at NORTON AV? , I personally like AVG, But still NORTON is ok for me. You should have an Antivirus, You can select what you like. It is up to you guys.

Manu ohmy.gif
nuorder
nice one manu, tho there are a few things i might disagree with u about the general idea is good
(KAV pwns norton, and for 4. if its LM hash then 13 is still insecure)
manu
QUOTE (nuorder @ Jun 13 2004, 03:07 PM)
nice one manu, tho there are a few things i might disagree with u about the general idea is good
(KAV pwns norton, and for 4. if its LM hash then 13 is still insecure)

I never used KAV nuorder. I should have used atleast once before telling any comments na, So, may be it is better, I didnt check the whole Anitivirus softwares available ohmy.gif .. You should have an AV, the best one you believe. laugh.gif

Ok, using complex passwords is secure than putting simple names or words, I was telling to take care when you think of passwords. Anyway, nothing is secure if it is connected to NET. You can minimize risk with some of those tips I mentioned.

Manu dry.gif
tweakz20
lol.. sorry if it sounded like a flame, it wasn't.. (trying to find a vulnerability in Notepad.... that sounds interesting actually smile.gif )

and on norton... i think most people don't like it because it has sooooooo many vulnerabilities.... i have a shirt that says "not even nortan can protect you" (from jinx)... then people pretend to be cool and pretend to know what it's suppost to mean.. lamers.
ryoggi
Stop to use Internet explorer and use Mozilla FireFox smile.gif
And MBSA to check your windows patchs
KuerbY
fdisk C:\ and install linux, 80% of security holes are cleaned wink.gif
gman24
QUOTE (tweakz20 @ Jun 12 2004, 06:47 PM)
QUOTE
1. Update / patch ALL your software every now and then!

not ALL, just stuff that you use (for one) and that uses the internet (ESPECIALLY one acting as a server)... i never updated notepad and don't plan to.

my favority firewall would have to be zonealarm

Just using notepad as an example since you used it.

Actually, updating everything is a good idea. Say right now someone just found out you don't update notepad. So someone discovers or finds on the net (well he would be using one that has a patch so find on the net) a vulnerability for notepad. Someone sends you a txt file with that vulnerability, your not patched. You think "well it's a txt file not anything dangerous let's see whats in it". You open it and it seems like an ad or whatever, but just backdoored your computer.

Just a possible example, I don't think there are any notepad vulns out there like that. But applications had had vulns in the past where you can format the files in certain ways so that it does stuff like that.
evoLv3
i would recommend kerio pf as a very good fw ! you can choose exactly what u want and it has an ids integradet.
i lked it very much... =)

gr33tz
supermax
QUOTE (gman24 @ Jun 15 2004, 10:24 PM)
QUOTE (tweakz20 @ Jun 12 2004, 06:47 PM)
QUOTE
1. Update / patch ALL your software every now and then!

not ALL, just stuff that you use (for one) and that uses the internet (ESPECIALLY one acting as a server)... i never updated notepad and don't plan to.

my favority firewall would have to be zonealarm

Just using notepad as an example since you used it.

Actually, updating everything is a good idea. Say right now someone just found out you don't update notepad. So someone discovers or finds on the net (well he would be using one that has a patch so find on the net) a vulnerability for notepad. Someone sends you a txt file with that vulnerability, your not patched. You think "well it's a txt file not anything dangerous let's see whats in it". You open it and it seems like an ad or whatever, but just backdoored your computer.

Just a possible example, I don't think there are any notepad vulns out there like that. But applications had had vulns in the past where you can format the files in certain ways so that it does stuff like that.

notepad I haven'T see some for now but I'Ve see calculator local exploit that was use as a trojan to get root on some windows box by some kiddies on irc
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.