±Recent Visitors

Recent Visitors to Com-Central!

±User Info-big


Welcome Anonymous

Nickname
Password

Membership:
Latest: HighestAce
New Today: 0
New Yesterday: 0
Overall: 6648

People Online:
Members: 0
Visitors: 101
Total: 101
Who Is Where:
 Visitors:
01: Home
02: Community Forums
03: Community Forums
04: Community Forums
05: Community Forums
06: Home
07: Search
08: Community Forums
09: News Archive
10: Community Forums
11: Downloads
12: Community Forums
13: Community Forums
14: Community Forums
15: Community Forums
16: Community Forums
17: Community Forums
18: Community Forums
19: Community Forums
20: Community Forums
21: Downloads
22: Community Forums
23: Community Forums
24: Community Forums
25: Home
26: Community Forums
27: Community Forums
28: Community Forums
29: Home
30: Home
31: Community Forums
32: Community Forums
33: Home
34: Community Forums
35: Community Forums
36: Community Forums
37: Community Forums
38: Home
39: Community Forums
40: Community Forums
41: Community Forums
42: Community Forums
43: Community Forums
44: Community Forums
45: Home
46: Photo Gallery
47: Home
48: Community Forums
49: Home
50: Home
51: Community Forums
52: Home
53: Home
54: Home
55: Home
56: Home
57: Community Forums
58: Community Forums
59: Photo Gallery
60: Community Forums
61: Community Forums
62: Home
63: Photo Gallery
64: Community Forums
65: Community Forums
66: Community Forums
67: Community Forums
68: Photo Gallery
69: Community Forums
70: Home
71: Home
72: Community Forums
73: Home
74: Community Forums
75: Community Forums
76: News
77: Home
78: Community Forums
79: Home
80: Home
81: Downloads
82: Community Forums
83: Community Forums
84: Community Forums
85: Community Forums
86: Community Forums
87: Photo Gallery
88: Community Forums
89: Photo Gallery
90: Home
91: Community Forums
92: Community Forums
93: Community Forums
94: Downloads
95: Community Forums
96: Community Forums
97: Community Forums
98: Community Forums
99: Community Forums
100: Community Forums
101: Photo Gallery

Staff Online:

No staff members are online!
E-mail security tips... :: Archived
This is a forum for Software related items such as OS', Virus notices, cool or free programs, etc. Gaming software should go in the gaming folder pertaining to the current info.
Post new topic    Revive this topic    Printer Friendly Page     Forum Index ›  Software

Topic Archived View previous topic :: View next topic  
Author Message
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7019
Location: Central Illinois, USA
PostPosted: Tue Nov 18, 2008 2:48 pm
Post subject: E-mail security tips...

The need for computer security seems to be a never ending battle between the 'not-so-savory' computer users and ourselves. This is an article about Email security and some tips to keep your information YOUR information. Good tips IMO and something all of should be aware of as computer users... Wink

- Chad Perrin- Tech Republic
There’s a lot of information out there about securing your e-mail. Much of it is advanced and doesn’t apply to the typical end user. Configuring spam filters such as SpamAssassin, setting up encrypted authentication on mail servers, and e-mail gateway virus scanner management are not basic end-user tasks.

When one can find end-user e-mail security tips, they’re usually specific to a single mail client or mail user agent such as Microsoft Outlook, Mozilla Thunderbird, or Mutt. This sort of information is of critical importance to many users of these applications, but there are few sources of more general security information for e-mail users that aren’t specific to a given client application.

The following is a short list of some important security tips that apply to all e-mail users — not just users of a specific application. They are listed in the order one should employ them, from the first priority to the last. This priority is affected not only by how important a given tip is, but also by how easy it is to employ; the easier something is to do, the more likely one is to actually do it and move on to the next tip.

1. Never allow an e-mail client to fully render HTML or XHTML e-mails without careful thought. At the absolute most, if you have a mail client such as Microsoft Outlook or Mozilla Thunderbird that can render HTML e-mails, you should configure it to render only simplified HTML rather than rich HTML — or “Original HTML” as some clients label the option. Even better is to configure it to render only plain text. When rendering HTML, you run the risk of identifying yourself as a valid recipient of spam or getting successfully phished by some malicious security cracker or identity thief. My personal preference is, in fact, to use a mail user agent that is normally incapable of rendering HTML e-mail at all, showing everything as plain text instead.

2. If the privacy of your data is important to you, use a local POP3 or IMAP client to retrieve e-mail. This means avoiding the use of Web-based e-mail services such as Gmail, Hotmail, and Yahoo! Mail for e-mail you wish to keep private for any reason. Even if your Webmail service provider’s policies seem sufficiently privacy-oriented to you, that doesn’t mean that employees won’t occasionally break the rules. Some providers are accused of selling e-mail addresses to spamming “partners.” Even supposedly security-oriented Webmail services such as Hushmail can often be less than diligent in providing security to their users’ e-mail.

3. It’s always a good idea to ensure that your e-mail authentication process is encrypted, even if the e-mail itself is not. The reason for this is simple: You do not want some malicious security cracker “listening in” on your authentication session with the mail server. If someone does this, that person can then send e-mails as you, receive your e-mail, and generally cause all kinds of problems for you (including spammers). Check with your ISP’s policies to determine whether authentication is encrypted and even how it is encrypted (so you might be able to determine how trivial it is to crack the encryption scheme used).

4. Digitally sign your e-mails. As long as you observe good security practices with e-mail in general, it is highly unlikely that anyone else will ever have the opportunity to usurp your identity for purposes of e-mail, but it is still a possibility. If you use an encryption tool such as PGP or GnuPG to digitally sign your e-mails, though, recipients who have your public key will be able to determine that nobody could have sent the e-mail in question without having access to your private key — and you should definitely have a private key that is well protected.

5. If, for some reason, you absolutely positively must access an e-mail account that does not authorize over an encrypted connection, never access that account from a public or otherwise unsecured network. Ever. Under any circumstances.

Be aware of both your virtual and physical surroundings when communicating via e-mail. Be careful. Trust no one that you do not absolutely have to trust, and recognize the dangers and potential consequences of that trust.

Your e-mail security does not just affect you; it affects others, as well, if your e-mail account is compromised. Even if the e-mail account itself is not compromised, your computer may be if you do not take reasonable care with how you deal with e-mails — and that, in turn, can lead to affecting both you and others adversely as well.

Don’t be a victim.


Link to the article: CLICK HERE!

Back to top
View user's profile Visit poster's website Photo Gallery
Kitform
Bar Maid

Offline Offline
Joined: Jan 22, 2005
Posts: 2011
Location: Cleveland. UK.
PostPosted: Tue Nov 18, 2008 11:06 pm
Post subject: Re: E-mail security tips...

I thought the use of PGP was banned in the US ?
Back to top
View user's profile Send e-mail Visit poster's website Photo Gallery
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7019
Location: Central Illinois, USA
PostPosted: Wed Nov 19, 2008 1:06 am
Post subject: Re: E-mail security tips...

I can't say for sure Kit, but I think PGP (Pretty Good Privacy) is ok. If not, GnuPG (GNU Privacy Guard) is fine.

The GNU Privacy Guard (GnuPG) package is a ``complete and free replacement for PGP. Because it does not use the patented IDEA algorithm, it can be used without any restrictions. GnuPG is a RFC2440 (OpenPGP) compliant application.''


[sarcasm](Not that the US Gov would spy on anyone's email ) [/sarcasm] LOL
Back to top
View user's profile Visit poster's website Photo Gallery
Display posts from previous:   
Post new topic    Revive this topic    Printer Friendly Page    Forum Index ›  Software
Page 1 of 1
All times are GMT - 6 Hours

Archive Revive
Username:
This is an archived topic - your reply will not be appended here.
Instead, a new topic will be generated in the active forum.
The new topic will provide a reference link to this archived topic.