Tuesday, June 16, 2015
Tech Tip Tuesday – Security Freeze
This is not your normal TTT but with the recent Office of Personnel Management (OPM), LastPass, Anthem, and the other 350+ breaches this year alone (that we know of), we think it's worthwhile to talk about some ways to protect yourself in the event your personally identifiable information (PII) gets out. Credit monitoring services do not prevent “bad guys/gals” from applying for credit in your name. They let you know it happens. A “security freeze” prevents potential creditors from pulling your credit file, unless you “unfreeze” your file beforehand. Hopefully, the bad guys/gals leave you alone and move on to one of the other 1 billion+ records.
http://krebsonsecurity.com/2015/06/how-i-learned-to-stop-worrying-and-embrace-the-security-freeze/
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Labels:
Anthem,
Brian Krebs,
credit,
data breach,
LastPass,
OPM,
security freeze
Tuesday, June 9, 2015
Tech Tip Tuesday – Windows 10 Free Upgrade
Are you thinking about upgrading to Windows 10 from 7 or 8.1? Why not right? It’s free (this year) and you get all the cool features like two factor authentication, containerization technology and a new code signing system BUT with all this added security and functional comes a cost. Microsoft has decided to remove pre-bundled versions of Solitaire, Minesweeper and Hearts. Choose wisely.
http://www.itnews.com.au/News/404916,the-features-youll-lose-when-upgrading-to-windows-10.aspx
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Labels:
free,
hearts,
Microsoft,
minesweeper,
solitaire,
upgrade,
Windows 10,
Windows 7,
windows 8
Tuesday, June 2, 2015
Tech Tip Tuesday- Pretty Good Privacy (PGP)
Facebook announced support for PGP but what does that mean and how does it work? At the heart of PGP is an asymmetric scheme that uses a pair of keys (public and private). You publish/share your public key the world and the sender will use it encrypt the message. Only your private key can decrypt the message. There’s some other PGP magic that happens and the following link will explain PGP in great detail. Will you be using PGP to send your secret squirrel messages via Facebook?
http://www.pgpi.org/doc/pgpintro/
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Tuesday, May 26, 2015
Tech Tip Tuesday – Netflix F.I.D.O.
No it’s not a new Netflix series, the Fully Integrated Defense Operation (FIDO) is an open source security incident event manager. The focus is to automate and expedite incident response with an alert-to-ticket process. Netflix built the tool to solve in-house issues but saw the opportunity to share it with the security community.
http://www.tripwire.com/state-of-security/latest-security-news/netflix-unveils-fido-an-open-source-incident-response-tool/
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Tuesday, May 19, 2015
Tech Tip Tuesday – Cybergamut
If you like Tech Tip Tuesdays you are going to love Technical Tuesdays from cybergamut. Cybergamut is a community of practice for cyber professionals. The next scheduled talk is on June 9th, “Using EMET to Defend Against Targeted Attacks” but there’s a catch. You need to be at Microsoft facility in Maryland or at a cybergamut node. Sadly, there are none in Hawaii. Anybody want to volunteer?
http://cybergamut.com/2015/03/technical-tuesday-9-june-2015-using-emet-to-defend-against-targeted-attacks-by-robert-hensing-of-microsoft/
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Tuesday, May 12, 2015
Tech Tip Tuesday – Microsoft Local Administrator Password Security (LAPS)
When an attacker compromises any workstation, the local administrator password hash can be obtained and used to access every other workstation using the classic Active Directory exploit Pass-the-Hash (PtH). Fortunately Microsoft now has a solution to protect local administrator accounts from reuse. Labeled LAPS (Local Administrator Password Solution), a compromised local admin account cannot be used to as a launch point for other malicious activity by an adversary.
http://www.praetorian.com/blog/microsofts-local-administrator-password-solution-laps
If you have a Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Tuesday, May 5, 2015
Tech Tip Tuesday – Microsoft Group Policy Search Website
Have you wanted to make a change to Windows Group Policy but didn’t know where to start? The Microsoft Group Policy Search Website is a great resource. The search bar allows you to find specific topics (e.g. password-complexity, minimum password length). You can also filter out specific operating systems (e.g. Windows XP, Server 2003) and applications (e.g. Internet Explorer 7). This could be a useful training aide for CyberPatriot VIII.
http://gpsearch.azurewebsites.net/
If you have a #CyberPatriot Tech Tip you want to share, send them to info@cyberhui.org and we'll get them out next #TechTipTuesday.
Subscribe to:
Posts (Atom)