SiteVision News & Tips: May 2013

PasswordsNew Rules for SiteVision Email!

To comply with Anti-Spam regulations and standards:

As of April 16, new passwords must: be at least 8 characters long and contain a capital letter, lower case letter, and number.

By now, you are surely aware of our new email account requirements, limits and password requirements.  It’s become a really critical issue for you and for all of us in the digital world.

In an internal review, we have discovered that most of your SiteVision email passwords could be easily hacked using a standard desktop computer.

Since nonsensical passwords can be difficult to remember, consider using a pass-phrase that reminds you of something, or is familiar.  Examples:  iLuv2shop,  d0n’tskipLunch, meetMyQu0ta, and so forth.

For the full scoop visit this article at our Help Desk and our tutorial on passwords

Helpful Email Tips

Use Unique Passwords for Your Important Accounts. Never use the same passwords for your important banking, stock, healthcare and personal information accounts. Hackers test stolen passwords and user-names from a particular site across many Internet sites, meaning your identity and banking and stock resources could be severely compromised with single use passwords. Give each of these account types a unique password!

Keep your password reminders in a Safe Place. Most of us couldn’t’t possibly remember all of our passwords to all of the sites we commonly use. So, if you decide to save your passwords, don’t leave notes with your passwords lying around in plain sight. If you save your passwords in a file, create a unique name for the file, so that people don’t know what’s inside. Avoid giving the file an obvious name, such as “my passwords.”

convertible_No More Parking Tickets?

Several clever new mobile apps not only help you park, but check your meter and find your car, too. ParkMe for Apple displays the closest parking and real time availability.  Another, HONK, for iPhone & iPad checks your meter, records where you parked your car and reminds you where to find it again.  Waze, for Apple and Android, is a social GPS app lets you get up to the minute traffic, detours and such from fellow travelers.  Take a look at this USA Today video here.  You can also visit the app sites:  ParkMe  Honk  Waze

Google-GlassDevs:  If  You Don’t Play Nice, Google Will Brick Your Google Glasses.

For those of you developers who rushed to purchase Google Glasses for development purposes and paid a hefty price, don’t get silly and try to sell, rent, loan or otherwise try to make a penny or two off of your prized possession.  Best to stick to the challenge at hand:  developing apps for the device. Cnet gives you the details

 Mycestro-the-next-generation-mouseAw, Our Beloved Mouse Is Probably Going, Going, Gone!

How long have we had that faithful little companion around?  Would you believe about 60 years?  And  now, it seems inevitable, perhaps, that mousey will bite the dust.  Here’s one example of a 3D finger-mounted device called Mycestro that’s in the works.

javaiconHoly Moly! Oracle Fixes 42 Holes in Java.

In an effort to calm the stormy seas, Oracle has released a patch that fixes not one, not two, but 42 Java vulnerabilities.  While some recommendations have included disabling Java entirely, many companies have legacy software that relies on Java and have pushed for safer implementation. You can read about it here.

 

 

More Java Breaches, Fixes, New Phone Tablet . . .

[image source_type=”attachment_id” source_value=”4776″ align=”left” size=”Small 150 width” quality=”100″] Java Problems Ongoing.  Are You At Risk?

As we outlined last month, the serious flaws in Oracle’s Java7 were enough to set the industry abuzz with criticism.  Since our last newsletter remaining flaws in Java7 permitted attacks on Facebook and Apple, though the companies claimed no customer or user data was compromised.  Twitter warned that about 250,000 user accounts were compromised.

In essence if you are running an outdated version of Java you are at risk.  Oracle has scrambled to provide fixes.  The most recent came in early February and contained some 50 security fixes; then another February 19 with several additional fixes. According to PC World, the latest update, Java 7 (Update 15) and Java 6 (Update 41), address five additional vulnerabilities that couldn’t be included in the emergency Java update that Oracle released on Feb. 1 due to time constraints.

For the average user who may be confused, uninitiated and wary, geek.com has provided a handy guide for disabling Java in your browsers.  It should be noted that all browsers as well as Windows, OS-X, and Linux operating systems are vulnerable.

Furthermore, according to Information Week mobile developer sites were targeted in the recent attacks, so if you are a mobile developer and feel you’ve been compromised, it’s critical that you check your source code. We’ve included some helpful links if you want to further explore the issue:  Information Week, geek.com, PC World, Oracle Java topics, Oracle downloads

[divider]

ASUS FonepadHello!  A Tablet That Can Call Home.

The Asus Fonepad is what many of us have been waiting for:  A tablet that’s a phone that’s a tablet.  Who wants to carry a slew of devices around to talk, type, hype and chat?  In short Fonepad is a 7″ Android tablet that features 3G data and voice capabilities.

But, is it really the bomb?  Do you really want to hold a 7” tablet up to your ear?  For some, perhaps, who rely on speakerphone, no big deal?  For others, probably, no way!  As one reviewer put it:  who wants to hold something up to your ear that blocks out the sun?

On the other hand the Fonepad is expected to be relatively inexpensive (about $250 US), resembles the Nexus 7 in many respects, and adds a phone into the mix.  So use the phone or not, it’s there at a very decent price.  Asus hasn’t  yet given a US release date, so for the moment we can wait and see how it’s received in the UK and Asia.

[divider]

Do Operating Systems Matter Anymore?

While they certainly will matter on the back end — to the average user, the operating system is becoming less and less important.

Why?  For starters, a proliferation of device sizes, shapes, capabilities and operating systems are now in direct competition with the traditional PC model.  Furthermore, Software As A Service (SAAS) is dynamically affecting how we receive and use applications for business and pleasure.

As a business owner, I might utilize several servers, a cloud-delivered custom customer relations management system, and a proprietary accounting system; permit a BYOD environment for certain employees, and use, say, Google Docs or Windows for my daily word processing and spreadsheet applications.

It hasn’t been so long ago that the Microsoft OS had us pretty locked into a rigid my way or the highway mentality. Surely you remember the blue screen of death.  Surely you remember that your primary OS choices were Windows or Apple.  Application delivery is a fast shifting paradigm, and it will be fascinating to see how it coalesces, or, indeed, if it does; and whether it even matters. Here’s more if you want to explore:  ForbesComputerworld.

[divider]

Welcome New Clients!

[divider]

March Maintenance Schedule

March 19th @ 5pm

Please contact us if you experience any problems.

SiteVision News & Tips: February 2013

[image source_type=”attachment_id” source_value=”4777″ align=”left” size=”Small 150 width” quality=”99″] Beware! Browsers Using Java Still Vulnerable After Oracle “Fix”

Unfortunately, according to numerous experts, it boils down to the fact that Java is flawed.  Period!  View an infected web page and get infected. Oracle’s new edition of Java – the fix issued on January 13, (Version 7, Update 11) –  is already “busted.”

Since then numerous new vulnerabilities have been discovered.  The new flaws, like the earlier highly publicized one, permit an unsigned Java program to break out of its sandbox and do as it pleases with the victim’s computer.

In brief, the current issues are with Java from Oracle which does not run on android, but does run on Windows, OS-X, and Linux – an enormous user base.  Importantly, this can be true in all browsers and versions – in one instance even with the Java Control Panel set on the “Very High” setting.

Adam Gowdiak of Security Explorations in his posting said, “… recently made security “improvements to Java SE 7 software don’t prevent silent exploits at all. Users that require Java content in the web browser need to rely on a Click-to-Play technology implemented by several web browser vendors in order to mitigate the risk of a silent Java Plugin exploit.”

Sadly, according to Michael Horowitz, Computuerworld, “that advice is only useful to techies that understand both Java and Click-to-play.”  According to Horowitz the best strategy for Windows and Mac users is to uninstall Java and hope nothing breaks.

And while this discussion deals with online hazards, offline use has no restrictions in applications at all, with the only cure that of uninstalling Java completely.   Horowitz has a good article on how to be as safe as possible here
[divider]

NoAs of Now, Unlocking Your Cell Phone Is Illegal Without the Permission of the Carrier Who Locked It . . .

In a rather esoteric (some might call it bizarre)  interpretation by the Librarian of Congress of the Digital Millennium Copyright Act, if you want an unlocked phone you now have to buy it that way.

No more unlocking by alternative means, if you get my drift.  The new rule basically says you can’t buy a new highly discounted carrier phone and then unlock on your own. You must have the carrier’s permission.

I guess we’ll see how that works for us, huh? Lots of petitions in the works.  Sure to be more to come.
[divider]

Virus ProtectionBest Android Apps to Help Keep Your Smartphone Safe

As Smartphones proliferate, so do the dangers.  AV-Test,  an international and independent service provider in the fields of IT security and anti-virus research, says after inspecting 41 different virus scanners for Android,  about half of these scanners are not yet suitable for use as reliable products.

In general, the tried and true come from the desktop products you are familiar with.  The best products in their 2012 tests (with detection rates of 90% and above) were in alphabetic order: Avast, Dr. Web, F-Secure, Ikarus, Kaspersky, Lookout, McAfee, MYAndroid Protection/MYMobile Security, NQ Mobile/NetQin and Zoner.

Note that new 2013 testing has already begun, but you can check out their existing results here
[divider]

 February Maintenance Schedule

Tuesday, February 19th @ 5pm
Please contact us if you experience any problems.

Why SiteVision?

We’re your advocate. SiteVision has been providing web development and hosting services to government agencies and non-profit organizations for over 20 years. We understand how overwhelming it can be to seek out a reliable solution for you website, custom application, and hosting needs.

At SiteVision we are passionate about creating solutions for customers that make their life better. We excel at understanding your business process and developing an application that is easy to learn and operate. We will always be fair, knowledgeable, honest, and professional.