Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Saturday, April 11, 2015

LastPass - a must

It's really that simple:

Using the same password for each and every site or webservice is just not an option:
a) because of different and incompatibly password rules and policies
b) for simple security reasons.
If one site gets hacked and passwords leak (and it will and they will) then those nasty nasty people will have access to all (or many) of your accounts.

Creating (much less remembering) 100 separate and secure passwords in your head simply wont work.
So you need a service to do this for you.

I choose LastPass some time ago, and it works great, especially the random password generator, and the auto-fill feature on web-sites and Android apps.

I know, some will say, that LastPass can get hacked and then all my accounts (incl online banking and all) are revealed. True. But still more unlikely than all the other scenarios.

As of today this is the most secure choice for me.

There are others like 1Password, or Apple's key chain... (here's a list).  If you don't yet have any of those, get LastPass now.

Saturday, December 22, 2012

Someone hacked my gmail

... or in any other way got access to it and sent (non critical) spam from it.

So first and foremost, if you got an unsolicited email from my gmail account this night, I do apologize. It probably only contains a link to a non existent document. If you can see any data / route / ip / trace in the email that could help me identify the source, kindly reply to me via this email.

I was under the impression that a) my google password is quite strong, and b) that I'm very selective with app or site I allow access to my gmail account.

The weird thing is the list of recipients they picked. It's a strange combination from people I've sent email to in the past, and people I follow on g+ (but did not send an email to).
They all exist in my gmail address book, and the only common denominator I found  so far is, that none of them have a phone number in the address book entry... apart from that I have to draw a blank.

I also found the original email (not only the non-delivery replies) in my sent folder, so I looks like the email has really been sent through my gmail account (and not only with my email in from/reply-to).

Of course in the meantime I not only changed my gmail password, I also reviewed the web-apps and services that have access to my gmail, and will go through the apps on my iPad and Android phone.

Again, sorry... If you have any data to help, just pass it on.