1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

The Six Dumbest Ideas in Computer Security

Discussion in 'Security and Privacy' started by charlesvar, 2005/09/12.

  1. 2005/09/12
    charlesvar

    charlesvar Inactive Alumni Thread Starter

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    http://www.ranum.com/security/computer_security/editorials/dumb/

    Regards - Charles
     
  2. 2005/09/12
    BOBBO

    BOBBO Geek Member

    Joined:
    2002/01/07
    Messages:
    1,892
    Likes Received:
    19
    charlesvar: An eye-opening piece, indeed. And well written, too.

    I suspect that just about all of us are guilty of at least two of the Six Dumbest Things. That leaves us with the question, if we're not supposed to do any of those things, what are we supposed to do to protect our systems and how do we do it?
     

  3. to hide this advert.

  4. 2005/09/12
    charlesvar

    charlesvar Inactive Alumni Thread Starter

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    Hi Bobbo,

    what are we supposed to do to protect our systems and how do we do it?
    That's a toughie - and I'm still re reading this article.

    One example of the way I practice default deny is with ActiveX when using IE. I've operated a long time with ActiveX disabled as a matter of course and toggling it on only when there is a specific reason and only on sites that I'm familiar with. The problem with most users is they are intimidated with "the web page loaded but with errors" message when ActiveX is disabled. Two problems there - one, not knowing why, and two, convinced to turn it on - social engineering, even though most of the time it's meaningless.

    Regards - Charles
     
  5. 2005/09/15
    charlesvar

    charlesvar Inactive Alumni Thread Starter

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    Hi BOBBO,

    "Default deny" has arrived in IE:

    Microsoft Unveils IE 7 Beta 2 Features
    Regards - Charles
     
  6. 2005/09/15
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
    charlesvar--How do you "toggle" ActiveX on? I gave up on Internet Options|Security tab as taking too long, especially when you had to reverse the process. Now I put the site into Trusted Sites (using PowerTweaks) and take it back out when I am finished.
    About a year ago there was a long thread that the Information Bar warning about Active X and the Bar's supposed 'option" to allow ActiveX to run (toggle) does in fact not work for anyone who participated in the thread. You just get referred to IE Help about using Security tab.
    This is what is supposed to happen, but it seems not to
    http://support.microsoft.com/default.aspx?kbid=843017&product=windowsxpsp2
     
  7. 2005/09/15
    charlesvar

    charlesvar Inactive Alumni Thread Starter

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    Hi Jim,

    Yeah, I agree it is a PITA.

    I just simply disable every ActiveX except the one for Admin which I have as prompt which doesn't come up too much, but it does let me know what sites want to use it.

    Of course if it's a flash page then I have to go thru all that nonsense. It does make you think twice about whether you want to see "dancing girls" or not. Of course, on some pages, have to use flash, otherwise you don't anywhere.

    Regards - Charles
     
  8. 2005/09/15
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
  9. 2005/09/15
    charlesvar

    charlesvar Inactive Alumni Thread Starter

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    Hi Jim,

    Thanks for the Internet Explorer 5 Power Tweaks Web Accessory, that'll come in handy - wasn't aware of it.

    Regards - Charles
     
  10. 2005/09/15
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
    charlesvar--You are most welcome. So seldom that I can be of help to you. :)
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.