The IT security thread

Kitchen Knife Forums

Help Support Kitchen Knife Forums:

This site may earn a commission from merchant affiliate links, including eBay, Amazon, and others.
Joined
Nov 27, 2016
Messages
533
Reaction score
1,139
Location
Sweden
Triggered by the recent threads about a stolen account, I just thought I'd take the time to spread the gospel of IT security even for personal stuff. You don't want your identity or your money stolen, trust me. Neither online nor away from keyboard.

Login Credentials

Do you have good and strong passwords everywhere and don't reuse them? Good! You're in a minority.

If not, please read up on how todo that. In a recent survey among IT security professionals, I found that the tools most often used to assist in this field where 1password and lastpass ...these tools work both on computers and mobile devices. Google Chrome and other operating systems also have built in functions, even if they are a bit simpler.

https://1password.com/https://www.lastpass.com/
And please do use 2FA everywhere where personal contacts to your friends or money might be involved. If your aging uncle would get a message from a scammer posing as you through Facebook messenger, could he be convinced to Venmo money to "you"?

Mobile devices

If your phone was stolen or you dropped it into the ocean, do you know how to restore all your data? Is everything of importance synced to the cloud? Do you have theft location services activated (e.g. "Find my iPhone")? If not, please read up on how to do this.

Your mobile device should also be protected by a locked home screen so a pick-pocket cannot unlock it. If you get login codes through text messages, they should not be shown on the screen without unlocking the device first.

Cloud storage

If your google account was to be locked down or you locked out of it for any reason, do you know how to get back in? Do you have the data stored elsewhere? Google have a function called "Takeout" where you can do regular downloads of all your data just in case. The others most certainly have something similar.

Backups

Do you have a system for having up to date backups of all your local storage in your PC? If your house was to burn down or get flooded, can you restore all important files?

Other resources

Check out Security Planner, created by a team at University of Toronto. By answering a few questions about what stuff you are using and the threats you fear, you get concrete tips and links to solutions.

https://securityplanner.consumerreports.org/
One eye-opening check of known data leaks is "Have I Been Pwned?" - You enter your e-mail address and it lists which known leaks your address can be found in - if any.

https://haveibeenpwned.com/
Feel free to add to this list. :)
 
Last edited:
If your are using a 2FA, like Google or Microsoft Authenticator, make sure to keep your backup codes safe. Losing your device loses your 2FA. Using an authenticator app like Authy/Duo gets around this (as they offer backups), but could be considered slightly more insecure

Use different userids for different places. If you're userX in multiple places, if a hacker gets a foothold on one account, they can use the info of the same user id to try on other forums.
 
Great initiative, yet somehow I suspect the site admins may become awfully busy right now, with folks having a wide range of issues after restricting their acces...just saying, I've had an experience like that when the forum was administrating went through some security updates.
 
OK, because of world politics, attacks are even more probable now. Be more careful than ever, especially if you're working somewhere where IT or infrastructure is involved.

This site is quite recently updated and if you're not US-based I'm sure that your national resources have something similar:

https://www.cisa.gov/shields-up
 
@gaijin, are you in cybersec by any chance?

Good guess.

Not "in" at the moment, I'm between jobs. But I have worked with both physical security and information security over the years. And my friday dinners are with cybersec folks, among others.

Next job might be security again. Or doing dishes at my local watering hole, not sure yet. :)
 

Latest posts

Back
Top