<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>HuberBlog ::Jason Huber &#187; security</title>
	<atom:link href="http://huberblog.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://huberblog.com</link>
	<description>This is where Jason puts his stuff of personal interest.</description>
	<lastBuildDate>Thu, 17 May 2012 17:03:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Another reason to use DropBox</title>
		<link>http://huberblog.com/2010/02/22/another-reason-to-use-dropbox/</link>
		<comments>http://huberblog.com/2010/02/22/another-reason-to-use-dropbox/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 14:50:24 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Educational]]></category>
		<category><![CDATA[Teaching]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[dropbox]]></category>
		<category><![CDATA[online storage]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://huberblog.com/?p=461</guid>
		<description><![CDATA[Today I had a student call me on my google voice number and tell me that his laptop would not start up with video. Nothing on the screen. He even tried to hook it to a TV and there was nothing coming out. Video card seemed to be toast. No big deal? Normally this would [...]]]></description>
			<content:encoded><![CDATA[<p>Today I had a student call me on my google voice number and tell me that his laptop would not start up with video. Nothing on the screen. He even tried to hook it to a TV and there was nothing coming out. Video card seemed to be toast. </p>
<h3>No big deal?</h3>
<p>Normally this would be a bummer because you would need a new laptop or at least an expensive repair, but in his case it is 3 days before senior project. I know these students had placed most of their code into github.com and that this student has already delivered much of the code to the client (he logs into the client server regularly while I am assisting him). So yeah pretty big deal just before senior project.</p>
<h3>How does Dropbox help?</h3>
<p>Any computer with Office 2007, Visual Studio and Remote Desktop Connection would allow this student to keep working and finish anything he needed for his project. He can just log into dropbox.com and manually upload and download the files he needs. Piece of cake. </p>
<p>I sent him the signup code: <a href="https://www.dropbox.com/referrals/NTgxNTA3OQ">https://www.dropbox.com/referrals/NTgxNTA3OQ</a>. I was notified within minutes that my storage was increased because he has signed up.</p>
<p>Good job Jake. Move everything you want saved into your dropbox folder inside of my documents and just let it do the uploading. 2 gigs for free and when you refer friends you get a bit more: <a href="http://huberblog.com/wp-content/uploads/2010/02/spaceincreased.png"><img src="http://huberblog.com/wp-content/uploads/2010/02/spaceincreased-300x112.png" alt="" title="spaceincreased" width="300" height="112" class="alignright size-medium wp-image-462" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://huberblog.com/2010/02/22/another-reason-to-use-dropbox/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>DBAN &#8211; selling your computer or HDD. Read this</title>
		<link>http://huberblog.com/2010/01/20/dban-selling-your-computer-or-hdd-read-this/</link>
		<comments>http://huberblog.com/2010/01/20/dban-selling-your-computer-or-hdd-read-this/#comments</comments>
		<pubDate>Wed, 20 Jan 2010 14:31:24 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Educational]]></category>
		<category><![CDATA[Hardware]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[DBAN]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://huberblog.com/?p=431</guid>
		<description><![CDATA[So I sell a fair share of my old computers and I have computers from two of my jobs that I regularly turn in for upgrades. When I do this I like to make sure my data is no longer on the machine. It isn&#8217;t that I am doing anything wrong, it is just that [...]]]></description>
			<content:encoded><![CDATA[<p>So I sell a fair share of my old computers and I have computers from two of my jobs that I regularly turn in for upgrades. When I do this I like to make sure my data is no longer on the machine.</p>
<p>It isn&#8217;t that I am doing anything wrong, it is just that I do not need the next guy who gets my machine to look up my photos or something like that. I might have some unencrypted files that I do not want them to access. You know stuff like that.</p>
<p>So what do I do before I sell a laptop or otherwise release a HDD into the wild?</p>
<p>I use <a href="http://www.dban.org/">DBAN</a>. I simply install it to a bootable USB (or DVD) and let it run. I choose all the defaults and just let it go. The last drive I ran it on it took 36 hours to run. I feel reasonable secure that my data is no longer on the drive and it is left in a state that I can either install the OS or place the restore disks from the manufacturer in the machine and let it go.</p>
<p>Seriously a good option. I remember Shawn asking me a few years ago if I did this and I kinda laughed it off. I took him very serious after some reports of data on HDDs coming off of Ebay etc.</p>
<p>http://www.dailymail.co.uk/news/article-1178239/Computer-hard-drive-sold-eBay-details-secret-U-S-missile-defence-system.html</p>
<p>http://blog.alertsec.com/2009/09/ebay-allowing-unencrypted-drives-to-live-on/</p>
<p>Anyway. Not my data.</p>
]]></content:encoded>
			<wfw:commentRss>http://huberblog.com/2010/01/20/dban-selling-your-computer-or-hdd-read-this/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Passwords, passwords and more passwords</title>
		<link>http://huberblog.com/2010/01/18/passwords-passwords-and-more-passwords/</link>
		<comments>http://huberblog.com/2010/01/18/passwords-passwords-and-more-passwords/#comments</comments>
		<pubDate>Mon, 18 Jan 2010 14:12:38 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://huberblog.com/?p=427</guid>
		<description><![CDATA[So you know the saying that you need to have a separate password for each site you access right? Most of us do not. I am as guilty of this as anyone. Why is it so important (and why am I going to change my behavior)? Let&#8217;s say China gets into Google&#8217;s servers and finds [...]]]></description>
			<content:encoded><![CDATA[<p>So you know the saying that you need to have a separate password for each site you access right? Most of us do not. I am as guilty of this as anyone.</p>
<p>Why is it so important (and why am I going to change my behavior)?</p>
<p>Let&#8217;s say <a href="http://googleblog.blogspot.com/2010/01/new-approach-to-china.html">China gets into Google&#8217;s servers </a>and finds my password. They can probably assume that they can now also get into my twitter and facebook accounts too (and they would be correct). They can probably access 100 different services and find information or change information about me to suit their needs. I know China is out for me.</p>
<p>So I have to get a new password for each site I visit. </p>
<p>I have a plan. I already have a password that is something like Y0u4reAB1gD0rk, but now I will add in something like the last three characters of the site in &#8220;their location in the alphabet&#8221; to the password. So for google you will have gle. g = 4, l = 12, and e = 5, so 21. I will change my password there to be Y0u4reAB1g21D0rk. Neat huh? </p>
<p>They will never catch me this way <img src='http://huberblog.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p>So what about changing my password often? Do I need to do that? No.<br />
The idea from changing your password often is that if your password is compromised you change it and the bad stuff stops. Well if you are using a different password for each site then the bad stuff was limited to that site and the bad guys probably locked you out anyway. </p>
<p>If you are using the same password for all sites then the bad guys are probably going to use your password really quickly. So you need to change your password like every minute to overcome this. Ready for that task? No. Don&#8217;t bother. Just create a good password for each site and change it every so often. I might go with once every 90 days or so, but really it just does not matter.</p>
<p>The password I used above: Y0u4reAB1g21D0rk is rated &#8220;BEST&#8221; by Microsoft <img src='http://huberblog.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>http://www.microsoft.com/protect/fraud/passwords/checker.aspx</p>
<p>According to KeePass my password Y0u4reAB1g21D0rk is 87 bits. This means it would take like 76 years to crack it. I can have my Grandchildren change it for me long after I am gone <img src='http://huberblog.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>BTW. The wikipedia article has some great quotes on writing down your password and not using the same one on multiple sites. </p>
<p>http://en.wikipedia.org/wiki/Password_strength#Time_needed_for_password_searches</p>
]]></content:encoded>
			<wfw:commentRss>http://huberblog.com/2010/01/18/passwords-passwords-and-more-passwords/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

