iHelp Innovate

Twitter Linkedin Google+

Pages

  • Home
  • Reviews
  • About
  • Posts
  • Services
  • Contact
There's a new, very serious,  and worrisome threat that can affect any Windows user. Even if you're a Mac or Linux user, keep reading because you inevitably know someone with a Windows PC. Even if you don't know any Windows users, it's only a matter of time before a special version of this threat is made just for you.

Before I describe the ransomware and its very serious threat, let me stress that prevention is the best defense. Do not assume that you are safe just because you have anti-virus or anti-malware software installed.

Follow these recommendations

1. Avoid being tricked by phishing email. 
Do NOT click links in email or open attached applications. If you get an email that looks reasonable and has a link, do not click it unless you are certain about where that link is going to take you. Typically you can mouse over a link (without clicking it) and you will be able to see where it's going to take you. Most browsers show this at the bottom left of the browser window.

2. Avoid the use of Internet Explorer. I have lost faith in Microsoft to adequately secure this browser. They have been endlessly trying and do not seem to be able to do it for any significant length of time. Exploits are frequent. For secure browsing I suggest any of the following browsers for Mac, Windows or Linux users

Firefox, Chrome, Safari (for Mac users) or Opera

3. Avoid web pages that you are unfamiliar with or that look official, but something is not quite right. If you are unsure, do a Google search and look for search results that show the name of the service or company in the first part of their web address. This is not always the case, but very often it is what the company or service will use.

Example:  Although Microsoft has many other websites, you are safest to navigate to a Microsoft satellite website by first starting from www.microsoft.com and searching for what you are looking for from there.

4. Look for secure sites where they should be secure. This is not to say that every site must be secure, but where appropriate, you want to verify that the site is using what is known as an SSL certificate (Secure Socket Layer) and that it is valid.  If your are navigating to your bank for example, it should always start with https:  when you are at the login page, not http:
Your browser should automatically notify you when an SSL certificate is not valid or has been revoked.

Note: Although ihelpinnovate.com does not use an SSL certificate, it is hosted by Google and you can check that it does not contain any threats by using Symantec's Norton Safe Web, where it is registered and has been verified.

View my Norton Safe Web report at https://safeweb.norton.com/

While we're on the topic of site security certificates, any site that asks for you to enter a username and password for an account you hold, should always start with https: when you are at the login stage. Some exceptions are certain sites that have a separate drop-down window for login. This annoying trend practiced by companies like Bell Canada is in-fact connecting you by a secure link. Unfortunately, non-technical users do not have the simple method of verification by looking at the browser address bar before entering confidential username and password information when logging on via their home page. If you're a Bell Canada user and you want to be sure you're logging onto your account via a verifiably secure webpage, use the link https://mybell.bell.ca/

OK, so now that we've reviewed basic prevention, let me tell you about the ransomware and its very serious and costly threat.

There's been a lot written about this and it's been in the mainstream media lately as well. This latest malware threat called CryptoLocker holds victims hostage to pay a $300 ransom within 72 hours. They do this by using a very strong, unbreakable encryption algorithm and systematically applying it to all files on your local disk and attached drives.

In order to decrypt the files, you must obtain what is known as a private key. This is required to "unlock" the encryption. Since this malware attacks "hot" volumes with mapped drive letters, like Drive C, D, E, etc., your files on services like DropBox are also at risk of being encrypted. Even if you've already encrypted your files before storing them, the encrypted files can still be encrypted by the malware, making access by your own decryption software impossible without the private key from the attackers.

If you don't have the files backed up via a "cold" backup solution that is either offline at the time of the infection or that is not backed up via a shared drive letter (i.e. Drive C, D, E, etc.) then you will not be able to regain access to your files unless you pay the ransom, get the decryption key and hopefully, it works. There have been reports of all types. Ranging from the ransom being paid without a decryption key being delivered or the ransom was paid and the key did not decrypt the files, to the ransom was paid and the files were successfully decrypted, making them once again accessible.

It's easy to recommend not paying the ransom because it encourages this kind of criminal activity in the future or you might not regain access to your files anyway. But if you don't have the files safely backed up and you really need them, then there is no other way to decrypt your files. It is not possible to break this encryption level.

Worse still, the ransomware is reported in recent incarnations, to also be deleting windows shadow copies. A shadow copy is the technical term for Microsoft's roll back technology that normally allows you to restore the system to an earlier state, before a problem existed.

In the latest security news covering this, there is apparently a service being offered by the offenders that will get your files back even after the 72 hour period has past, but it will cost you 10 Bitcoin, which is about $3200 at the moment.

One particularly bad result of this is, people who have not backed up might misunderstand the exact severity of this whole thing. Part of the reason I felt compelled to write about this in the first place. If you simply remove the malware, well that may not be what you wanted if you were willing to pay the ransom. It's not so easy to just say goodbye to data that is critically important, when you had no backup and there's a chance for recovery.

It's not all grim. There are some effective means of protection.

1. Use Sandboxie.
http://www.sandboxie.com/
By using this software to "Sandbox" (isolate) your web browser and email client, you are able to stop the malware from encrypting files on your local hard drive or shared drive.

2. Backup your files using products that run backup applications to backup to cloud backup, without mapping the drive. An example is a product like Cryptonite Cloud Backup.

3. If you're a slightly technical user, you can always run your web browser and email inside a virtual machine, like Virtualbox
https://www.virtualbox.org/

4. For now, users of the paid OpenDNS Umbrella service are reportedly safe, because the malware cannot reach the randomly generated domains it needs to, in order to begin encrypting the victims files. However, a solution like this may not last if the attackers modify the malware to generate an encryption key locally that could still be effective at ruining your day.

5. Lastly, there is CryptoPrevent, but this is one of the less favorable forms of protection and it can cause a lot of false positives.


I hope this information helps to prevent you from getting the malware. I'm following this in the security arenas and I'll update this blog if I find some good updates.

Please share this blog. I know it's long, but if not in its entirety, please at least share the information regarding best practices and prevention.


For more information about this, please visit the following safe links, leave me a comment or send me a tweet @dougkrug

http://www.us-cert.gov/ncas/alerts/TA13-309A

https://www.grc.com/sn/sn-427.txt




Image courtesy of Pixomar/FreeDigitalPhotos.net
Tweet
Share
Share
No comments
Whether traveling the world or just crossing town, Voice over Internet Protocol or VoIP for short, can dramatically reduce the cost of reaching out to anyone, anywhere in the world.

Find out more about the gift of freedom this Cloud-based technology can provide you, in my latest Travel Technology post on Solo Traveler Blog.

Image courtesy of Chanpipat/FreeDigitalPhotos.net
Tweet
Share
Share
No comments
The Announcements

If you were hoping for revolutionary, and were disappointed by the evolutionary announcements from Apple on September 10, take a break from hype and the haters to see it for what it is. I'm not going to describe every feature and curve of the phone, Apple are masters of that, so start by having a look at their website if you missed what's new.

A7 64bit Processor

64bit processors matter where you're dealing with math that can't fit into 32bit. The obvious winner from this is the iPhone 5S and later owner. This would seem to indicate that Apple is serious about security since one of the key benefits is cryptography.

Another key benefactor of 64bit architecture is graphics. There will be a new iPad soon and having better gaming graphics was highlighted in the iPhone keynote. Harmonizing 64bit apps across the top sellers makes perfect sense.

Touch ID

Apple's mysterious new fingerprint scanner to unlock your phone and purchase items from the App Store, some have commented is one of few innovations in this latest generation of iPhone. On the surface, it definitely sounds as though Apple has taken the time to do this properly out of the gate.

Security-wise, it stores your impression as an encrypted hash. This is good, as it means that even if someone were to somehow gain access to the stored information representative of your fingerprint, it would be useless to them.

Although it's early to make a call, many who understand biometrics are claiming that simply analyzing a print without measuring temperature leaves the iPhone 5S open to spoofing by lifting prints and copying them on a 3D printer. Once the phone is in the hands of the public, we'll have the answer, because you just know there's a line up of hack attempts waiting for it.

Still, the fact that Apple is putting their money where their mouth is by allowing purchases from their store, says a lot about their confidence in this new feature.

The M7 coprocessor

This power saving addition has had very little mention versus the 64bit architecture, Touch ID and what the phone doesn't have. But even though Phil Schiller only mentioned fitness uses for the M7, this isn't to say that it won't have strong benefits to mapping and navigation. Trying to navigate in areas with spotty GPS coverage can be helped tremendously by a low powered coprocessor that can continue to report direction, movement and orientation even durning a loss of coverage.

What's most interesting about the M7 chip is not the stated use, but the potential uses from constantly tracking how an iPhone is oriented and what direction its facing. Is the phone moving and if so, how fast? This is significantly important realtime data.

True Tone Flash

I'm personally an iPhone user and strong admirer of the great innovations in Android and the phones that are challenging Apple to keep their composure. One thing that has kept me content with iPhone is the exceptionally good photos (for a phone anyway).

There's no question that Phil Schiller caused an outburst from many photographers by stating the iPhone 5S camera was in anyway DSLR level. Every iPhone is said to have a better camera than before, higher this and bigger that.

But what is exceptionally important is the idea that we can now have smartphone cameras that will balance flash photography before taking the picture. This is a big deal, since up to this point, smartphone flash photography has been a dismal effort.

iOS 7

Let face facts, the real changes are coming with iOS 7. Borrowing from Android, features like control center to put common settings in one panel will make the iPhone easier to use.

Another long awaited improvement is the ability to store passwords on the iPhone. Perhaps Apple just wasn't satisfied with their previous security capabilities, but it's been odd to have this feature only exist in MacOS until now. Regardless, you won't find me personally giving up the security and convenience of LastPass unless the NSA forces them to shut down.

AirDrop for iPhone makes perfect sense as a simple way to share photos between iPhones. This has been a wonderful feature to use since it was introduce to MacOS. Emailing or sharing via the cloud is not at all difficult, but AirDrop trumps it in terms of easy to use sharing with other iPhone users in close range. Unfortunately, you will need to have at least an iPhone 5, 4th gen iPad, iPad mini, 5th gen iPod Touch and iCloud to take advantage of AirDrop in iOS 7.

iTunes Radio, while seemingly a me too product to competing services like Pandora, Spotify, Rdio, etc., some have pointed out that they are only being served music related ads, which helps with discovery of even more music.

What's missing?

Let's face it, haters are going to hate, so let's put it all out on the table.

NFC

There's no NFC (Near Field Communication) for paying at designated stores and coffee shops. I really wanted this feature when it first stated to appear in the Google Nexus phones, but the adoption in North America has been so slow that technologies like Geo-fencing, used by Square and others have made it almost obsolete before it's really even taken root.

It's rumored that Apple is testing low energy Bluetooth radio as an alternate mobile payment system and will bypass NFC altogether.

5G WiFi

Apple skipped adding the new, faster WiFi known as 802.11ac or 5G. Possibly because of its effect on battery life. I tested a Samsung S4 for 802.11ac performance with the latest Archer C7 router from TP-Link. While the speed was nice, I didn't find that it was a significantly better experience than similar phones with only 802.11n. While my testing did not involve battery capacity, users of the first two phones with 802.11ac, the HTC One and Samsung S4, have complained that their phones need charging more frequently than the previous HTC One and Samsung S3.

Bigger Screen Size

Although many were still hoping to see screen sizes like the Android phones are getting, it was pretty obvious that if the leaked images were true, as they turned out to be, then the next iPhone screen would not grow in size, and that turned out to be accurate.

Apple has no need to follow the other phone manufactures in widening their screen size. While it seems an attractive feature, many don't want a phone that fills their pocket more or feels larger in their hand. I've heard as many complaints as praises for the size of these larger phones. Many think it's what they want until they start using the phone regularly and discover it's larger than what is comfortable for them.

While I'm not betting against Apple eventually increasing the iPhone screen size, I wouldn't be surprised to find that they resist increasing it longer than expected.

What are your thoughts about the iPhone 5S? Has Apple missed the mark or are you planning to purchase when they're available beginning September 20?

What features were you hoping for that you'll now have to wait and see if they appear in iPhone 6?

Please leave me your comments or send me a Tweet @dougkrug
Tweet
Share
Share
No comments
Newer Posts
Older Posts

About Us

“douglas

Integrity is a specialty.

Your satisfaction is our passion.

Follow Us

  • Twitter
  • Linkedin
  • Google+

Completely Simple Guides

 Available on Amazon


AVAILABLE ON Amazon

recent posts

Previous Posts

  • ▼  2017 (3)
    • ▼  October (1)
      • Your KRACK is showing!
    • ►  May (1)
    • ►  March (1)
  • ►  2016 (2)
    • ►  February (1)
    • ►  January (1)
  • ►  2015 (2)
    • ►  March (1)
    • ►  January (1)
  • ►  2014 (3)
    • ►  August (1)
    • ►  April (1)
    • ►  February (1)
  • ►  2013 (10)
    • ►  November (1)
    • ►  September (3)
    • ►  July (3)
    • ►  June (1)
    • ►  May (2)
HOME

© iHelp Innovate 2017 - All Rights Reserved