March 2009

Various Project States

Well it's been a while since I've actually touched some of my projects (or even started for that matter.)  I know I've said I was going to work on this, do that, release this etc.  Here's what's happening so far with my projects.

Read more

How Social Networking Helps Hackers

passwordWhat is your pet's name?  Where were you born?  What is your favorite book?

These are some of the many questions that can be asked in order to recover lost account information for things like Yahoo! Mail and other popular online services.  These questions (sometimes called Account Security Questions) are used because, usually, the account holder is the only one who can answer the questions correctly.

But with today's social networking sites, like Facebook and Myspace, the answers to these questions can be found very easily and without any advanced tricks or tatics.

Let's look at resetting a Yahoo! Mail account.

The first thing you need is the e-mail address.  If you're friend has it on their Facebook, this is simple to get.
The next question asks for their Birthday, Country, and zip-code.  Again, this is all found on a Facebook page.

Now the third question is the Account Security Question.  This all depends on what they selected when signing up for the account.  One of the popular ones is "favorite pass time."  Look under their Activities or Hobbys section on their Facebook.

See how easy it is?  With no programming, hacking, or true computer skills you reset the password and have gained access to your friends e-mail account.  But it's not just that account; every account they have online that is linked to that e-mail address is now potentially compromised (banking, IM, blog, Myspace, Facebook, Paypal, eBay, forums, etc.)  And it's not just friends who are at risk.  Anyone with their profile open to the public (as long as it contains enough personal information) is at risk.

This is the same way hackers gained access to Gov. Sarah Palin's e-mail account.  Using public information, as well as information from her speeches, the password to her account was reset and taken.

If you have a lot of personal information on your Myspace, Facebook, or other web site, you may want to rethink what's on your profile.  Also be aware of the privacy settings and who you're allowing into your pages.  An innocent blerb of your favorite book can end up opening your e-mail account to hackers.

Reply from Thaddeus McCotter

Today I received an e-mail from Thaddeus McCotter of Congress in reply to the message I sent him regarding my opinion of moving the dtv transition date.  As you can read below, he agrees with me and what was said in my earlier blog post. (Click on the title or Read More to view the entire email.)

 

Dear Mr. ********:

 

Thank you for informing me of your opposition to delaying the digital television (DTV) transition. Your thoughts on this important matter are most welcome and appreciated.

 

I agree with you.

Read more