Get Tech Support Now - (818) 584-6021 - C2 Technology Partners, Inc.

Get Tech Support Now - (818) 584-6021 - C2 Technology Partners, Inc.

C2 provides technology services and consultation to businesses and individuals.

T (818) 584 6021
Email: [email protected]

C2 Technology Partners, Inc.
26500 Agoura Rd, Ste 102-576, Calabasas, CA 91302

Open in Google Maps
QUESTIONS? CALL: 818-584-6021
  • HOME
  • BLOG
  • SERVICES
    • Encryption
    • Backups
  • ABOUT
    • SMS Opt-In Form
    • Terms and Conditions
    • Privacy Policy
FREECONSULT

New Top Level Domains Coming Next Week

  • 0
admin
Wednesday, 29 January 2014 / Published in Woo on Tech

Late last year, the Internet Corporation for Assigned Names and Numbers (ICANN) announced that they were opening up registration for more top level domains on the internet. Starting next week, the familiar “.com”, “.edu” and the other 20 well-known TLD’s maybe joined by as many as 1900 new domains over the course of the next few years. Among the first that will be released for use will be “.book”, “.bike” and “.wed” as well as specific corporate domains for large companies like “.apple”, “.google” and “.ford”.

What this means for you:

If you already work for a company with a well-established and/or well-known domain, your marketing folks (and the lawyers) may explore the new TLD’s primarily to protect the company’s brand from competitors or domain squatters. They should know that as part of the introduction of more TLD’s, ICANN has also introduced a new trademark clearinghouse where infringement challenges can be handled before the legal knives come out. If you are in the process of establishing your online identity and have been under the impression that all the “good” domain names have been taken (for TLD’s like “.com” they have, for the most part), the new TLD’s may present an opportunity for certain businesses and creative marketers.

However some industry analysts are worried that the proliferation of TLD’s may just lead to more confusion and uncertainty on the internet for the majority of users. For example, once “.google” goes live, when I want to search for something, do I go to “google.com” or “search.google” or “www.google” or “google.google”. My guess, at least with Google, all of those will work, but imagine trying to tell your grandmother the difference between them (there might be!) or why there is more than one URL, especially after you finally got her to start using Google in the first place. It’s too soon to say, but given how confusing the internet is now, one thing it’s not likely to simplify will be internet security.

Image courtesy of jscreationzs / FreeDigitalPhotos.net

AppledomainsfordGoogleicanninternettop level domains

Microsoft Employees get Hooked in Phishing Scam

  • 0
admin
Tuesday, 28 January 2014 / Published in Woo on Tech
Microsoft Hacked

In case you are feeling like the only one under constant cyber attack, Microsoft has recently admitted that the Syrian Electronic Army has successfully hacked some of its employee email accounts, apparently in pursuit of documents pertaining to ongoing law enforcement surveillance requests. As is typical with these types of breaches, Microsoft has yet to determine if any customer data was exposed, and so far is saying very little in that regard. This comes on the heels of it’s the Microsoft Office blog being defaced only days prior, as well as successful attacks on high-profile Twitter accounts and blogs used by other Microsoft divisions. 

What this means for you:

The Microsoft employees who were hacked were compromised through nothing more sophisticated than the ole “phishing” tactic. In case you still don’t know what that is, I’ll describe it in brief:

  1. You receive a legitimate-looking email, warning that your account at a popular service has been compromised, or your password has been reset, or that some other urgent action is required. Other popular phishing tactics include packages (or money) awaiting delivery, important faxes being held, etc.
  2. The email directs the recipient to a website that may be designed to look legitimate, but is not. The hacker owns that website, and any data typed into it.
  3. In all cases, the hacker is trying to get the recipient to volunteer specific information about themselves, usually things like user IDs, passwords, Social Security numbers, addresses, anything that could be used to compromise and possibly steal your ID.
  4. On top of tricking you into entering your important data, the website will often attempt to install other malware on your computer, resulting in severe infections and further data theft if it’s not caught quickly. This can even happen if don’t enter any information on the website. Visiting that first page is often all it takes to get a bad malware infection.

If you haven’t figured out why it’s called “phishing”, the hackers are the fishermen, the email is the bait (and hook), and you are the fish. “Spear phishing” is when specific groups of recipients are targeted (as was probaby the case with the Microsoft incident above), and “whaling” is when high-profile executives or critical employees are specifically targeted with carefully crafted emails tailored for the individual coupled with other social engineering tactics to lend legitimacy to the attack. And don’t think that you are immune to whaling attacks just because you aren’t a high-powered executive. Analysts are even now investigating possible AI-generated whaling attacks that being generated based upon information gathered on the internet from sites like Facebook and Linkedin, making it harder and harder to spot the fakes in your email.

blogemailHackingmicrosoftphishingscamsecuritysyrian electronic armyTwitter

Stop Using Weak Passwords

  • 0
admin
Wednesday, 22 January 2014 / Published in Woo on Tech
Lock it up!

Password manager app maker SplashData released it’s annual report on the worst passwords of the year, and despite all the hype cybercrime is getting even in mainstream media, it seems that many, many people still don’t take passwords seriously. For better or worse, passwords are one of the few security measures we have in technology that stands between us and the cyber outlaws, but passwords like “123456” – the most popular password of 2013 – are the equivalent of painting a big red target on yourself. “123456” unseated the defending, 2-year champ “password” which fell to second place.

What this means for you:

Unless you have a better means of security such as biometric scanners or 2-factor devices, passwords are a fact of digital life, and if you value anything of your digital life, you should use a strong password and not something that is easy to type. It doesn’t matter that you use strong passwords where it matters – security is only as strong as the weakest password, and just like water, hackers will take advantage of any weak spot to flood into your life. If anything, read through this list of bad passwords and use them as a guide of how NOT to secure your technology. Better yet, make sure your favorite password isn’t on that list, because it will only be a matter of time before you find yourself (and possibly others around you) compromised.

Curious about how strong your password is? Be careful of visiting just any “password strength meter” website – double check the domain, and look for someone you trust. Here are two reputable sites. If you’ve been paying attention, you already know to roll-over and check where these links lead before clicking on them:

Microsoft’s Password Strength Checker

Intel’s Password Strength Checker

Password Strength Testing Tool | Bitwarden

How Secure Is My Password? | Password Strength Checker (security.org)

Image courtesy of Stuart Miles / FreeDigitalPhotos.net

passwordsecuritystrength

Keep Your Hard Drive Clean

  • 0
admin
Tuesday, 21 January 2014 / Published in Woo on Tech
Windows Recycle Bin

“Keep your area clean.” You’ve been hearing it all your life. First, no doubt from your mom or dad, and then from your teachers. You’ve probably heard it throughout your professional career, and possibly offered it as guidance yourself to others. Regardless of how tidy you are in your physical space, I’ve only encountered a lonely few who also keep their digital space clean. Cheap, large hard drives and superfast searching have allowed us to sprawl digitally all over the place, and just like Nature abhors a vacuum, cyberspace will expand to fill all empty gigabytes when you aren’t watching. In one extreme case (that will probably go down in my personal record books!) I encountered a client whose nearly full one-terabyte hard drive (1000 gigabytes) was over half full with junk and temporary files. That’s nearly 500 gigabytes of wasted space! Aside from the lost storage space, there was another, even more critical issue caused by all those useless files.

What this means for you:

Well written and properly configured internet programs, such as web browsers, will regularly keep their areas (browser and history caches) containing those temporary files clean, but sometimes they don’t. In the case of the above client, the 500 gigabytes of junk was created over time by a browser and operating system malfunction, and then exacerbated by a virus infection. The result was tens of millions of small files that the antimalware software had to scan everytime it was checking for viruses. If you thought a regular anti-virus scan was painfully slow, multiply that by 100 and that’s what was happening on the machine in question. As you can imagine, the antimalware software (and the computer in general) just gave up and stopped working properly, leading to further infections and actual damage to the filesystem. How can you avoid this?

  1. Make sure your web browsers are keeping their caches tidy. Here’s an all-encompassing guide on how to do that.
  2. Always keep an eye on your available hard drive space. A good rule of thumb is to keep a minimum of 20-30GB free at any given time. If you suddenly start running low, there might be a problem.
  3. Know the approximate size of your document space and evaulate whether it makes sense for what you do, and what you are required to maintain. Office documents typically aren’t very large on average (thousands of them can easily fit on a 16GB thumb drive), but high-res photos can easily be several hundred megabytes easily. If your document space seems unexpectedly large, you might have a problem.
  4. Don’t interrupt your anti-malware scans. If they are taking too long, note where it’s getting stuck, pause the scan, clean out the affected area (usually temp files as mentioned above) and see if scan times improve. They should, even if the total space cleared doesn’t seem to be much. Browsers create thousands of tiny temp files everyday, and if they aren’t cleared properly, they add up really fast.

​In a worst-case scenario, where millions of files have built up in a temporary folder, removing them could take hours, even days, as was the aforementioned case. Luckily for the client, I didn’t bill straight hourly, otherwise the cure would have been worse than the disease. Savvy technicians will have tools at their disposal to help clean up cluttered and infected drives, but when there are millions of useless files there are only two ways to clean it up – delete those files one at a time (via scripts, of course), or nuke the whole drive from orbit, ie. re-format. There are advantages and disadvantages to both approaches, so make sure you discuss which option makes the most sense for your data and your budget.

anti-virusantimalwarebrowser cachehard drive spacescantemporary files

Ten Ways to Be Safer in 2014

  • 0
admin
Wednesday, 15 January 2014 / Published in Woo on Tech
Security Switch

Though it sounds crazy to hear it, I’m pretty sure I’m not the only technology professional who wishes computer security was as easy as flipping a switch. Fixing broken technology is a major part of how I make a living, and nothing breaks technology like security breaches. In fact, I don’t want anyone to get infected, hacked or for their data to get corrupted, just like doctors don’t want to see their patients get sick. In keeping with the medical metaphor, there are technology guidelines and practices that can act as preventative medicine for your technology lifestyle. Here are ten suggestions that I hope you will resolve to follow to keep your technology streamlining and not derailing your path to success.

  1. Put a password or pin on your smartphone. This bears repeating over and over. I know it’s inconvenient, but think of how inconvenient it will be if someone got ahold of your unsecured smartphone and used it to access your private information, or worse, your clients’ information.
  2. Encrypt your mobile devices and thumb drives. If your device happens to fall into unknown hands, encryption provides a layer of protection that will discourage casual data thieves. In the case of certain smart devices, it may even give you time to remotely wipe and deactivate the device. Certain types of data (especially confidential client or customer information) should always be stored with strong encryption.
  3. Open attachments and links from emails with extreme caution. The most common vector of infection is via email, either by opening attachments or clicking links to compromised websites. Even if the email comes from someone you know, pay close attention to every aspect of the email for hints that it may be a fake, and if you are at all uncertain, pick up the phone or delete it and ask the sender to resend the email.
  4. Check your anti-malware software regularly. I know plenty of people who know they have anti-virus installed, but don’t know the name of the product, whether or not it’s up to date, or even if it’s working. Check your antimalware at least once a week to make sure it’s updating and if it’s caught anything recently.
  5. Don’t allow unsupervised, non-professional use of your computer. Originally, this rule was about keeping work and personal use completely separate, but I realize that is near impossible these days, so I amended it to focus on a potentially dangerous aspect of computing, which is allowing less security-conscious individuals access to the devices you use for business. If you wouldn’t trust this person with your business, don’t grant them unfettered access to your business devices.
  6. Back up your data. Viruses, thefts and hard drive crashes happen. Like death and taxes, hard drive crashes are inevitable, and it will fail when you can least afford it to fail. Unlike the first two, countering the negative consequences are handled by a simple process.
  7. Ensure confidential customer/client data is stored securely. If you are in a regulated industry, you are more likely to understand why this is important. But if your business services clients who are part of a regulated industry, you might be held to the same standards of security as your clients. Know what data you are storing, know where you are storing it, and how you are storing it.
  8. Familiarize yourself with the privacy policies of any social networking platforms you use. Even if you’ve managed to avoid the big names in social media (Facebook, LinkedIn, G+, Twitter, etc.), any community you participate in that has a digital component should have a clearly stated privacy policy that governs how your personal information will be used by that organization or platform. Don’t be surprised if you’ve inadvertently relinquished much more control and/or privacy than planned over information and the content you author on that platform.
  9. Make sure you have a proper firewall anywhere you use the internet. For the moment, you should consider the internet a wonderful AND dangerous place. Your office probably has a firewall in place (check anyways if you are the least bit unsure), but make sure you have a proper firewall working at home, AND on your desktop or laptop (where practical/allowed by corporate policy). Yes, they can be a bother sometimes, but weigh the inconvenience against a data breach, virus infection and uncomfortable client conversations about losing their data.
  10. Practice constant vigilance, and encourage it in everyone around you. You may be always on your toes, but you are more likely to let down your guard when interacting with co-workers, friends and family. The more you educate them about the above practices, the safer they will be, and you will improve your odds of keeping your own technology safe.

As in just about every facet of normal life, there are no guarantees, and no magical security switches to flip on and forget, but taking the above ten practices to heart can better prepare you for rougher aspects of technology and the internet. It also helps to have a guide while you are navigating the twisting paths of technology, and you should always consider C2 Technology ready to help you find your way to success with technology.

Image courtesy of Stuart Miles / FreeDigitalPhotos.net

2014backupsbest practicesconfidential datadata breachespasswordsresolutionsafetysecuritysmart phones

Snapchat Hacked – Millions of Mobile Numbers Exposed

  • 0
admin
Wednesday, 08 January 2014 / Published in Woo on Tech
Snapchat Hacked

Another day, another social networking site hacked. This time, unfortunately, it was new internet darling SnapChat that was breached, exposing over four million mobile numbers and user names. The hacker(s) who published the data did so purportedly to compel Snapchat to take action on security flaws in its platform that have been known since earlier in the year, but remained unpatched up to (and even past) the public release on Dec 31, 2013 of the information harvested by exploiting the security flaws.

What this means for you:

SnapChat is very popular with younger generations who moved to the service for a variety of reasons, not the least of which was more privacy (from Facebook-savvy parents and authority figures) and less permanence (Snaps are deleted forever within seconds of being shared). Irony aside, the data exposed in the security breach reveals sensitive personal data from millions of individuals, many of whom are probably minors, a demographic that may include your child(ren).

You can check this website to see if any of your family’s mobile numbers were leaked by this SnapChat hack. While the data released isn’t as sensitive as bits like Social Security numbers, birthdates or debit card pins, some other services do use mobile numbers as identifying data, alongside usernames which many people (including Snapchat teens) like to re-use as part of their online “brand.” Armed even with these slender morsels, clever social engineers can wedge their way into someone’s online presence and use it as a stepping off point for a complete takeover of an identity, leading to credit fraud, theft and much, much worse.

breachexploithackleakmobile numbersprivacysecuritysnapchat

Can the NSA hack your new iPhone?

  • 0
admin
Wednesday, 08 January 2014 / Published in Woo on Tech
Eye (of Sauron) Phone?

German newspaper Der Spiegel launched a media frenzy last week with the provocative story that the NSA can (and probably has) compromise the iPhone in a way that gives them complete “ownership” of the device for the purposes of surveillance. Fueled by documents released by infamous informant Edward Snowden, the article details a specific program called “Dropout Jeep” that could completely compromise an iPhone…in 2007.

What this means for you:

Today, in the internet economy, media outlets have priorities that aren’t always compatible: keep their audiences informed, and get as many eyeballs/clicks/likes as possible. As you can imagine, stories about iPhones and NSA spying are hot commodities right now, so when the two subjects align, how can you not lead with such an explosive story?

Several articles spurred by the Der Spiegel piece speculated that Apple may have been working with the NSA all along. Most suggested that the NSA can and has owned even current gen iPhones. Apple, of course, has denied any collaboration with the spy agency. The NSA itself continues to remain silent on stories like this. But, as mentioned above, the Dropout Jeep program was active in 2007, and required the hacker to have physical access to the device. As many of you have heard me say before, if someone has physical access to your device, compromising the device (regardless of manufacturer or type) becomes much more straightforward. The Snowden document did indicate that the NSA was working on future versions of the spyware that wouldn’t require physical access to the device, but for the moment, there is no proof that they can “own” modern iPhones.

But there’s no proof that they can’t, either.

 

Appleder spiegeldropout jeepHackingiPhonensaspying

In-line video ads coming to Facebook

  • 0
admin
Wednesday, 18 December 2013 / Published in Woo on Tech
Facebook logo

I can count on one hand the number of people that have said to me, “There’s not enough stuff on Facebook!” without using any fingers (and she was new to Facebook). More often, I hear, “I can’t keep up,” or “I have to sort through a lot of fluff to find anything good.” According to an opinion piece published in Business Insider, Facebook appears to be collapsing under the weight of its market dominance that is only exacerbated by the ease of posting anything to their stream from just about any device. So take this fire hose of updates from everyone you know and add video advertisements that will automatically play as they appear (sound muted…for now).

Yep, Facebook is adding commercials to your already overflowing news stream.

What this means for you:

If you weren’t already avoiding Facebook, in-line video advertisements might just push you over the edge. Advertisers seem to be salivating at the prospect, with some analysts predicting 1-day 30-second spots costing millions of dollars, but with the potential of reaching billions of viewers. Seeing as Facebook can segment their users into just about any size demographic target, they may start carving up the ad space into more affordable chunks, giving us the social media equivalent of late-night cable community channel or local TV station commercials. I’m only guessing, but this might raise the banality factor a bit too high for most folks, and Facebook could continue to see an exodus of its highly-prized 18-24 demographic as they move on to more focused and less spammy social media platforms like SnapChat, Instagram and WhatsApp.

advertisingfacebookinstagrammarketingnews streamsnapchatvideo adswhatsapp

Gmail change thwarts some image tracking

  • 0
admin
Wednesday, 18 December 2013 / Published in Woo on Tech
Gmail envelope

Last week, Google made a change to it’s widely used webmail platform Gmail: instead of asking if you want to “show images” in emails, Gmail will automatically display them by default instead of asking permission. This particular behavior is also seen in the other two webmail titans (Yahoo and Microsoft), as well as a common feature in mail clients like Outlook. Why aren’t images loaded by default? Primarily because when you open that email full of graphics and you actually want to see them, the mail client (or webpage) makes a request to the server hosting the images, which is usually the same server that sent the email in the first place.

If that sounds like a sneaky way to confirm that you’ve opened a particular email, that’s because it is. This process reveals certain data about the recipient, including date and time of opening, what browser or mail client you are using to view the email, as well as some rough geographical data about your location, based upon your IP address. So why is Google loading images by default? It’s because now they are caching the images to their own server, and then showing them to you, which effectively acts as a proxy between you and the sender, and blinds many marketers who were relying on the image requests to track you.

What this means for you:

Whether you realized it or not, your email client’s annoying tendency to not show you images in emails was actually in your best interests. Because displaying images required you to actively “opt in” by choosing to view the graphics, if that email was sent by a marketer, you sent them a nice packet of data and a positive affirmation that you saw the email, whether you intended to or not. With Gmail’s image caching, some of that data is no longer being unwittingly sent by its customers, however, notice that I wrote “some.” The more clever marketers out there (including Mailchimp, the service I use for my own email) tag email images individually, so they can still track opens, as Gmail still has to load the image to its servers before showing it to you. In my case, this is merely so I can tell if anyone is reading my newsletters, but even that one point of data is still valuable information to email marketers, and you can bet they will find other ways to track your online activity.

cachingemailgmailGoogleimagesmarketingmicrosoftoutlooktrackingyahoo

Chrome not as safe as you might think

  • 0
admin
Wednesday, 11 December 2013 / Published in Woo on Tech
Chrome Logo

Back when Google’s Chrome browser was brand new in the browser market and demonstrating how poor Microsoft’s Internet Explorer security was in comparison, it was easy to recommend it as the faster, more secure option. However, with market share comes concessions to convenience and feature-creep, and it seems that Google may be stretching itself too thin to be the browser on everything and for everyone. Aside from the rather disturbing and glaring security flaw pointed out earlier this year in the desktop versions of Chrome (and steadfastly refuted by Google…until it was fixed), Chrome has typically been viewed as the “most secure” of the big three Windows browsers (the other two being IE and Firefox).

Unfortunately, security firm Identity Finder has burst this bubble by revealing another weakness in Chrome. In the spirit of convenience, Chrome offers to save information used to fill out the countless webforms we all run into on a daily or even hourly basis while surfing. Most of these fields are what would be considered personally identifying information (names, addresses, account numbers, etc.) and Chrome stores them in plain text on your hard drive so as to be able to retrieve them for autopopulating other web forms. The problem with this, of course, is that anyone with access to your hard drive can read that data and use it to nefarious ends. And in case you’re still trying to sort out why this is bad, access isn’t limited to someone working on your computer or stealing your hard drive. Unauthorized access is most often gained now through malware infections.

What this means for you:

Sadly, achieving better security is no longer simply a matter of changing your browser, no matter how much any company (even Google!) would have you believe otherwise. If you want to disable the above mentioned “feature” in Chrome, you can do so by visiting Settings -> Advanced Settings -> Passwords and Forms and unchecking “Enable Autofill to fill out web forms in a single click.” You should never rely on just a browser choice to determine the totality of your security. Good security is a combination of browser choice, settings, malware protection and constant vigilance. Chrome still remains a solid choice as a browser but beware convenience features like Autofill and saving passwords in your browser, as this convenience may come at the price of security.

autofillchromeGoogleidentity theftmalwarepasswordssecurity
  • 50
  • 51
  • 52
  • 53
  • 54

Recent Posts

  • woman afraid of technology

    Why Your Team Fights New Technology (Fun Fact: It Has Nothing to Do With the Software)

    Employees resist new technology because it thre...
  • man working on his desk

    Why We Say Please and Thank You to AI

    A client of mine was using a Claude agent to he...
  • man working on open laptop

    Network Monitoring: Why Professional Services Firms Need 24/7 Oversight

    Your network does not take nights off. Neither ...
  • code in a laptop screen

    Software Updates: When to Install, When to Wait, When to Worry

    On July 19, 2024, CrowdStrike pushed a routine ...
  • half open laptop

    Technology Transparency: Why We Don’t Hide Our Markups

    Go look up Microsoft 365 Business Basic on Micr...

Archives

  • GET SOCIAL
Get Tech Support Now - (818) 584-6021 - C2 Technology Partners, Inc.

© 2016 All rights reserved.

TOP