<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Tech DC &#187; password</title>
	<atom:link href="http://www.techdc.com/tag/password/feed" rel="self" type="application/rss+xml" />
	<link>http://www.techdc.com</link>
	<description>home and office computer support for D.C., Virginia &#38; Maryland</description>
	<lastBuildDate>Wed, 01 Feb 2012 21:07:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>12 Tips for Protecting Your Computer from Snoopers</title>
		<link>http://www.techdc.com/12-tips-for-protecting-your-computer-from-snoopers</link>
		<comments>http://www.techdc.com/12-tips-for-protecting-your-computer-from-snoopers#comments</comments>
		<pubDate>Thu, 31 Dec 2009 22:48:35 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Apple]]></category>
		<category><![CDATA[Computer Hardware]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[dropbox]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[password]]></category>

		<guid isPermaLink="false">http://www.techdc.com/?p=2419</guid>
		<description><![CDATA[<p>In the DC area especially, there are people who have reason to be concerned about computer espionage, either for work (national or corporate secrets) or personal reasons (divorce or blackmail). Here are 12 tips to guard against intruders snooping on your activities:</p> Use decent passwords. The easiest way for someone to access your email and [...]]]></description>
			<content:encoded><![CDATA[<p>In the DC area especially, there are people who have reason to be concerned about computer espionage, either for work (national or corporate secrets) or personal reasons (divorce or blackmail). Here are 12 tips to guard against intruders snooping on your activities:</p>
<ol>
<li><strong>Use decent passwords</strong>. The easiest way for someone to access your email and other information is if they know or can easily guess your passwords. It is estimated that 1 out of every 9 people use a password on the <a href="http://www.whatsmypass.com/the-top-500-worst-passwords-of-all-time" target="_blank">top 500 worst password list</a>. Most passwords are &#8220;cracked&#8221; not through problems with the encryption itself, but with the password being poor. Don&#8217;t use dictionary words, the names of loved ones, the names of your pets, your birthday, etc.  Longer passwords are better so government institutions often require at least 10-14 characters. Passwords should be random and use letters, numbers, and special characters.</li>
<li><strong>Use different passwords for different things</strong>. If someone sees your computer login password over your shoulder, you don&#8217;t want them to then have access to your bank account because it has the same password.</li>
<li><strong>Change passwords regularly</strong>. Government and corporate security protocols typically require that passwords be changed at least every 3 months.</li>
<li><strong><img class="alignright size-full wp-image-2433" title="KeePass" src="http://www.techdc.com/wp-content/uploads38454/2009/12/keepass.png" alt="KeePass" width="111" height="92" />Use a password manager</strong>. Seeing a theme here about the importance of passwords? If you have different random passwords and change them regularly, then you either have a memory like Rain Man or you keep track of the passwords somewhere. The most popular software tools to manage passwords are <a href="https://lastpass.com/" target="_blank">LastPass</a> (<a href="https://lastpass.com/misc_download.php" target="_blank">Free </a>or <a href="https://lastpass.com/features_premium.php" target="_blank">Premium</a> for PC, Mac, and others),  <a href="http://keepass.info/download.html" target="_blank">KeePass</a> (Free for PC, Mac, and others) and <a href="http://agilewebsolutions.com/products/1Password" target="_blank">1Password</a> ($39.95 for Mac). Password software allows you to keep all your passwords encrypted with one master password. It can autofill site information so that you only have to remember that one master password. It also has a Password Generator to create random strong passwords, a great idea. Without this, most people use passwords that are similar. To the extent that your passwords are similar, an investigator can more easily guess your other passwords. (Tip: use <a href="http://www.techdc.com/dropbox" target="_blank">Dropbox</a> to <a href="http://wiki.dropbox.com/TipsAndTricks/SyncAllYourPasswords" target="_blank">backup/sync KeePass </a>or <a href="http://lifehacker.com/5063176/how-to-use-dropbox-as-the-ultimate-password-syncer" target="_blank">1Password</a> encrypted files. LastPass syncs automatically between computers).</li>
<li><strong>Do not use personal information that can be guessed as the answers to your online secret questions.</strong> This is how Sarah Palin&#8217;s Yahoo email was &#8220;hacked&#8221; in September 2008 simply by someone guessing the answers to her challenge questions such as where she went to high school.</li>
<li><strong>Tie your Yahoo or other login site to another email account or cell phone number</strong>. This will let you know of any attempted password resets and help if tip 5 doesn&#8217;t work.</li>
<li><strong>Encrypt files</strong>. As we explained in our post <em><a href="http://www.techdc.com/encryption-on-usb-flash-drives" target="_blank">Encryption on USB Flash Drive</a></em>, <a href="http://www.truecrypt.org/" target="_blank">TrueCrypt</a> can be used to encrypt your important data. Remember that although TrueCrypt can not be cracked, someone could guess your password if you chose it poorly.</li>
<li><strong>Remember that your router is a computer too. </strong>Your router manages all the data between your computer and the Internet. If your router software is compromised, you could be sent to a site claiming to be your bank but really being a completely different site due to website misdirection from a bogus DNS system used by your router. The router software should be checked, firmware reloaded, and the password on the router should be changed. Most people unknowingly leave the router login defaults. That is safe enough if your local network is not breached, your WiFi isn&#8217;t hacked, and your router is not remotely accessible.</li>
<li><strong>Use strong WPA2 WiFi encryption.</strong> WPA2 is not easily cracked like WEP. Tools such as BackTrack and KisMAC can crack WEP in minutes. (See photo of &#8220;war driver&#8221; below hacking into a WiFi network.)<img class="aligncenter size-full wp-image-2430" title="War Driver Hacking into WiFi" src="http://www.techdc.com/wp-content/uploads38454/2009/12/war_driving.jpg" alt="War Driver Hacking into WiFi" width="300" height="189" /></li>
<li><strong>Turn down your WiFi antenna strength.</strong> Hackers can crack into a WiFi access from over a block away with directional antennas and a good line-of-site to their target. If you don&#8217;t need the extra signal strength, turn it down since a weak signal is harder to crack. This isn&#8217;t an option on all routers. If you want to take extra control of your router for this and other options, see if you can load the alternative <a href="http://www.dd-wrt.com/" target="_blank">DD-WRT firmware</a>.</li>
<li><strong>Check for keyloggers.</strong> Keyloggers will log everything you type. They can be in the form of software or physical devices that are attached to a USB port or between the keyboard and computer.<img class="aligncenter size-full wp-image-2455" title="Keylogger" src="http://www.techdc.com/wp-content/uploads38454/2009/12/keylogger_usb2.jpg" alt="Keylogger" width="300" height="177" /></li>
<li><strong>Wipe computer and start fresh.</strong> If someone has had physical access to your computer or if the computer is already compromised, all bets are off. Some experts and government institutions will simply decommission a compromised computer and trash it. But most people should be satisfied with wiping everything. The <a href="http://www.techdc.com/wiping-or-destroying-your-hard-drive-on-purpose" target="_blank">hard drive can be wiped</a> and the operating system reinstalled. The BIOS (seen from the very initial startup) can be reflashed and checked. The computer can be opened and physically checked for modifications.</li>
</ol>
<p>Let me know if you have other suggestions for keeping your computer information safe from surveillance.</p>
<p style="padding-left: 30px;"><strong><br />
</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://www.techdc.com/12-tips-for-protecting-your-computer-from-snoopers/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Crack the Windows Login Password</title>
		<link>http://www.techdc.com/crack-the-windows-login-passwor</link>
		<comments>http://www.techdc.com/crack-the-windows-login-passwor#comments</comments>
		<pubDate>Tue, 07 Oct 2008 22:46:20 +0000</pubDate>
		<dc:creator>Rick</dc:creator>
				<category><![CDATA[Software]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[find]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[login]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[Vista]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[xp]]></category>

		<guid isPermaLink="false">http://www.techdc.com/?p=775</guid>
		<description><![CDATA[<p>Recently a Falls Church, Virginia customer called me to help them get into their computer after they forgot their Windows login. They were locked out of their own computer. Luckily for them (and unluckily for most people), the passwords can be found using brute force and dictionary cracking tools.</p> <p>There are many programs to recover [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.techdc.com/wp-content/uploads/2008/10/ophcrack.jpg"><img class="alignright size-medium wp-image-778" title="ophcrack" src="http://www.techdc.com/wp-content/uploads/2008/10/ophcrack-300x225.jpg" alt="" width="300" height="225" /></a>Recently a Falls Church, Virginia customer called me to help them get into their computer after they forgot their Windows login. They were locked out of their own computer. Luckily for them (and unluckily for most people), the passwords can be found using brute force and dictionary cracking tools.</p>
<p>There are many programs to recover the Windows XP and Windows Vista passwords. My favorite is <a href="http://ophcrack.sourceforge.net/" target="_blank">Ophcrack</a>. Download the Live CD, burn the iso to disk (not as a file but as a disk image), and boot the computer off the disk.</p>
<p>Ophcrack will start automatically and typically take 5-30 minutes to determine all the passwords that it can. The shorter the password, the faster Ophcrack can find it. Unless there is a very long password (over 14 characters), Opencrack will be able to tell you what it is.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.techdc.com/crack-the-windows-login-passwor/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Served from: www.techdc.com @ 2012-02-08 09:55:32 -->
