Skip to main content

Avoid this easy email scam!


Produced By: Yahoo tech
Wed Sep 3, 2008 11:31AM EDT


Never mind creating a password with at least eight characters, two of which are numbers, one of which is a capital letter, and one of which is a symbol like (*&^%$). The easiest way for a hacker to weasel into your account is likely the "Forgot your password?" link.

"Forgot your password?" features are older than the Internet, providing businesses and site owners a simple way to let a user reset a forgotten password, provided he can verify his credentials by asking a few personal questions that only the rightful user should know.

For years the archetypical question was, of course, the "Mother's maiden name" challenge. In recent years, additional challenges have emerged, such as asking the street you grew up on, your favorite pet, and grandparents' first names.

Is all of this stuff really secure? More than one researcher is sounding the alarm over these tools, noting that while this data may have been private a decade ago, in an era of personal blogs, online resumes, and rampant social networking services, "personal" information drawn from your past is now widely available for public consumption. According to a researcher at PARC, you can even buy black market directories of personal information "like dog's names," for about $15 per batch. It's certainly a lot easier than guessing passwords like AHFplug41*.

Think this doesn't happen? There aren't any statistics available, but these hacks are widely suspected in myriad cases where accounts have been compromised. (Even Paris Hilton is said to have fallen prey to the "what is your dog's name?" password reset hack. It doesn't help to have one of the most infamous dogs in America...) But if you need more proof, check out this "how I did it" step by step guide to hacking a password from one writer at Scientific American. In about an hour, it seems, our researcher managed to compromise one (willing) victim's life entirely through password reset links.

MSNBC has an exhaustive amount of additional information on the issue, but the takeaway is clear: If you provide information for password reset systems, don't use data (like other people's names and addresses) that can be easily discovered or guessed. Better yet, consider creating a second tier of passwords you use for questions like these, and keep them written down and locked in a safe if you must. In other words: Your mother's maiden name may really be Jones, but that you can't pretend it wasn't Mxlpxlxl!7631.

Comments

Popular posts from this blog

Soy Products Can Reduce Sperm Counts!

By: Heather Hajek Published: Friday, 25 July 2008 www.healthnews.com C alling all men who want to become fathers! Soy products may reduce a man's sperm count. Based on a recent study, men who consume soy products may have lower sperm counts than those who don't. The study was based on a small group of men who visited the Massachusetts General Hospital Fertility Center from 2000 to 2006. Even though the study found that some of the men who ate soy products on a regular basis had lower sperm counts, the researchers conducting the study are not saying that soy products were the cause of the lower sperm concentrations. The men who had soy products in their diets recorded lower sperm counts than those that didn't, but their counts were still within the normal range. Researchers don't deny that during the study men who consumed soy products had lower sperm counts, but they want people to realize there are other factors other than soy products that may have played a role in th...

Obesity linked to quantity of sleep!

P eople who sleep fewer than six hours a night - or more than nine - are more likely to be obese, according to a new US study that is one of the largest to show a link between irregular sleep and big bellies. The study also linked light sleepers to higher smoking rates, less physical activity and more alcohol use. The research adds weight to a stream of studies that have found obesity and other health problems in those who don't get proper shuteye, said Dr Ron Kramer, a Colorado physician and a spokesman for the American Academy of Sleep Medicine. "The data is all coming together that short sleepers and long sleepers don't do so well," Kramer said. The study is based on door-to-door surveys of 87,000 US adults from 2004 through 2006 conducted by the National Centre for Health Statistics, part of the Centers for Disease Control and Prevention. Such surveys can't prove cause-effect relationships, so - for example - it's not clear if smoking causes sleeplessn...

Women with long nails speak out against iPhone design.

M ost people either love or hate the iPhone's touch screen, and based on a report on the LA Times , women with long fingernails are among the haters. Why? Well, since the iPhone's touchscreen only responds to electrical charges emitted by your bare fingertips, women with long nails are left out in the cold. A woman interviewed for the article went so far as to suggest Apple was being misogynistic because it did not include a stylus for women and didn't consider womens' fingers and nails when designing the phone. Honestly, though, this same argument has come up against keyboards, touch screen monitors, and anything else that involves the use of your fingers, so should every gadget maker change the design of its products to accommodate users with long nails, or should people with long nails learn to work around this problem like they have in the past? I'd love to hear what Apple has to say about all this, but I doubt they'll ev...