background img

Dedicated to Google and Google products. Curated by Karmi Phúc.

Showing posts with label security. Show all posts
Showing posts with label security. Show all posts
Chrome_reset_thong_bao.
Google mới đây cho biết rằng họ đã tích hợp một tính năng bảo mật mới vào trong Chrome. Theo đó, trình duyệt sẽ thông báo cho bạn biết khi có một sự can thiệp nào đó từ bên ngoài vào cấu hình của app, và nếu muốn người dùng có thể nhấn nút "Reset" để đưa thiết lập Chrome về lại như lúc ban đầu. Việc này cũng sẽ vô hiệu hóa mọi trình mở rộng, ứng dụng nền web cũng như theme đ ã được cài, người dùng cần phải kích hoạt lại chúng sau khi reset.

Tính năng nói trên được ra mắt trong bối cảnh người dùng Chrome thường hay bị lừa cài các phần mềm mã độc và không thể chỉnh sửa lại cấu hình trình duyệt ngay cả khi họ dùng đến nút "Reset browser settings" trong phần cài đặt. Google cho biết thêm rằng đây cũng chính là lời than phiền hàng đầu của người dùng Chrome. Cách đây hai tuần hãng từng gỡ bỏ hai extension bởi nó vi phạm điều khoản của Google về việc hiển thị trái phép quảng cáo trên mọi website mà người dùng Chrome ghé thăm.

Tải về bản Chrome mới nhất để tận dụng tính năng thông báo mới này

Nguồn: Google

Source: http://www.tinhte.vn/threads/chrome-se-noi-cho-ban-biet-khi-nao-no-bi-tan-cong-co-tuy-chon-de-thiet-lap-lai-cau-hinh.2250510/

Chrome sẽ nói cho bạn biết khi nào nó bị tấn công, có tùy chọn để thiết lập lại cấu hình

Chrome_reset_thong_bao.
Google mới đây cho biết rằng họ đã tích hợp một tính năng bảo mật mới vào trong Chrome. Theo đó, trình duyệt sẽ thông báo cho bạn biết khi có một sự can thiệp nào đó từ bên ngoài vào cấu hình của app, và nếu muốn người dùng có thể nhấn nút "Reset" để đưa thiết lập Chrome về lại như lúc ban đầu. Việc này cũng sẽ vô hiệu hóa mọi trình mở rộng, ứng dụng nền web cũng như theme đ ã được cài, người dùng cần phải kích hoạt lại chúng sau khi reset.

Tính năng nói trên được ra mắt trong bối cảnh người dùng Chrome thường hay bị lừa cài các phần mềm mã độc và không thể chỉnh sửa lại cấu hình trình duyệt ngay cả khi họ dùng đến nút "Reset browser settings" trong phần cài đặt. Google cho biết thêm rằng đây cũng chính là lời than phiền hàng đầu của người dùng Chrome. Cách đây hai tuần hãng từng gỡ bỏ hai extension bởi nó vi phạm điều khoản của Google về việc hiển thị trái phép quảng cáo trên mọi website mà người dùng Chrome ghé thăm.

Tải về bản Chrome mới nhất để tận dụng tính năng thông báo mới này

Nguồn: Google

Source: http://www.tinhte.vn/threads/chrome-se-noi-cho-ban-biet-khi-nao-no-bi-tan-cong-co-tuy-chon-de-thiet-lap-lai-cau-hinh.2250510/

feedly

Millions of Chrome users place their trust in the hands of extension developers. But what happens when add-ons are sold to a new owner? 
In what sounds like the paranoid conspiracy theory of an anti-Google shill, some popular Chrome extensions are reportedly being bought up by pedlars of malware looking for a fast way to infect thousands of users at once.
This is precisely what happened to one of Chrome's most popular* third-party Feedly extensions.

'Four figure sum for an hours work'

The developer of the 'Add to Feedly' extension, Amit Agarwal, says that he was approached o ut of the blue by a (mysterious, un-Googleable) individual wanting to buy his add-on.
"It was a 4-figure offer for something that had taken an hour to create and I agreed to the deal," explains Amit on his blog.
Such an offer would tempt most of us. But in pocketing the money, and transferring ownership to another party, Amit also sold the trust of the 30,000+ users who had chosen to install it.
Just a few short months after completing the deal the new add-on owners issued their first, and thus far only, update. One that added an unwelcome new 'feature': adware.
Google updates Chrome extensions silently in the background, meaning the majority of users would have been unaware that the spammy links, pop-up ads, and intrusive affiliate code embeds suddenly affecting each and every site they visited were the fault of their dependable Feedly add-on.
Those that were able to narrow it down soon took to the Chrome Web S tore to vent their disappoint, which is how Amit first became aware of the issue.
In a galling twist, a switch to turn "off" advertisements was included with the update but, according to user reports, is nothing more than a dummy. Whether on or off, unwanted adverts continue to show up.

'Shady Practice'

But is this an isolated incident? It seems not.
Tech reporter Ron Adameo found himself experiencing the brutish reality of an ad-injecting add-on update, transforming a once-handy Twitter tool into an "ad-injecting machine" that hijacked his every Google search.
As Google Chrome grows in popularity it's probable that these sorts of shady, underhanded practices will increase along side it.
* We've chosen not to include a link to the add-on at the centre of this article.

Source: http://www.omgchrome.com/malware-buying-google-chrome-extensions/

Adware Companies Are Buying Up Popular Chrome Add-Ons

feedly

Millions of Chrome users place their trust in the hands of extension developers. But what happens when add-ons are sold to a new owner? 
In what sounds like the paranoid conspiracy theory of an anti-Google shill, some popular Chrome extensions are reportedly being bought up by pedlars of malware looking for a fast way to infect thousands of users at once.
This is precisely what happened to one of Chrome's most popular* third-party Feedly extensions.

'Four figure sum for an hours work'

The developer of the 'Add to Feedly' extension, Amit Agarwal, says that he was approached o ut of the blue by a (mysterious, un-Googleable) individual wanting to buy his add-on.
"It was a 4-figure offer for something that had taken an hour to create and I agreed to the deal," explains Amit on his blog.
Such an offer would tempt most of us. But in pocketing the money, and transferring ownership to another party, Amit also sold the trust of the 30,000+ users who had chosen to install it.
Just a few short months after completing the deal the new add-on owners issued their first, and thus far only, update. One that added an unwelcome new 'feature': adware.
Google updates Chrome extensions silently in the background, meaning the majority of users would have been unaware that the spammy links, pop-up ads, and intrusive affiliate code embeds suddenly affecting each and every site they visited were the fault of their dependable Feedly add-on.
Those that were able to narrow it down soon took to the Chrome Web S tore to vent their disappoint, which is how Amit first became aware of the issue.
In a galling twist, a switch to turn "off" advertisements was included with the update but, according to user reports, is nothing more than a dummy. Whether on or off, unwanted adverts continue to show up.

'Shady Practice'

But is this an isolated incident? It seems not.
Tech reporter Ron Adameo found himself experiencing the brutish reality of an ad-injecting add-on update, transforming a once-handy Twitter tool into an "ad-injecting machine" that hijacked his every Google search.
As Google Chrome grows in popularity it's probable that these sorts of shady, underhanded practices will increase along side it.
* We've chosen not to include a link to the add-on at the centre of this article.

Source: http://www.omgchrome.com/malware-buying-google-chrome-extensions/


"Password" unseated by "123456" on SplashData's annual "Worst Passwords" list


The 2013 list of worst passwords, influenced by postings from the Adobe breach, demonstrates the importance of not basing passwords on the application or website being accessed

LOS GATOS, CA – SplashData has announced its annual list of the 25 most common passw ords found on the Internet. For the first time since SplashData began compiling its annual list, "password" has lost its title as the most common and therefore Worst Password, and two-time runner-up "123456" took the dubious honor. "Password" fell to #2.

According to SplashData, this year's list was influenced by the large number of passwords from Adobe users posted online by security consulting firm Stricture Consulting Group following Adobe's well publicized security breach.

"Seeing passwords like 'adobe123' and 'photoshop' on this list offers a good reminder not to base your password on the name of the website or application you are accessing," says Morgan Slain, CEO of SplashData.

SplashData's list of frequently used passwords shows that many people continue to put themselves at risk by using weak, easily guessable p asswords. Some other passwords in the Top Ten include "qwerty," "abc123," "111111," and "iloveyou."

"Another interesting aspect of this year's list is that more short numerical passwords showed up even though websites are starting to enforce stronger password policies," Slain said. For example, new to this year's list are simple and easily guessable passwords like "1234" at #16, "12345" at #20, and "000000" at #25.

SplashData, provider of the SplashID Safe line of password management applications, releases its annual list in an effort to encourage the adoption of stronger passwords. "As always, we hope that with more publicity about how risky it is to use weak passwords, more people will start taking simple steps to protect themselves by using stronger passwords and using different passwords for different websites."

Presenting SplashData's "Worst Passwords of 2013":



SplashData's top 25 list was compiled from files containing millions of stolen passwords posted online during the previous year. The company advises consumers or businesses using any of the passwords on the list to change them immediately.

SplashData suggests making passwords more secure with these tips:

Use passwords of eight characters or more with mixed types of characters. But even passwords with common substitutions like "dr4mat1c" can be vulnerable to attackers' increasingly sophisticated technology, and random combinations like "j%7K&yPx$" can be difficult to remember. One way to create more secure passwords that are easy to recall is to use passphrases -- short words with spaces or other characters separating them. It's best to use random words rather than common phrases. For example, "cakes years birthday" or "smiles_light_skip?"

Avoid using the same username/password combination for multiple websites.  Especially risky is using the same password for entertainment sites that you do for online email, social networking, or financial service sites. Use different passwords for each new website or service you sign up for.

Having trouble remembering all those different strong passwords? Try using a password manager application that organizes and protects passwords and can automatically log you into websites. There are numerous applications available, but choose one with a strong track record of reliability and security l ike SplashID Safe, which has a 10 year history and over 1 million users. SplashID Safe has versions available for Windows and Mac as well as smartphones and tablet devices.

Source: http://splashdata.blogspot.com/2014/01/worst-passwords-of-2013-our-annual-list.html

Worst passwords of 2013 - SplashData's annual list updated


"Password" unseated by "123456" on SplashData's annual "Worst Passwords" list


The 2013 list of worst passwords, influenced by postings from the Adobe breach, demonstrates the importance of not basing passwords on the application or website being accessed

LOS GATOS, CA – SplashData has announced its annual list of the 25 most common passw ords found on the Internet. For the first time since SplashData began compiling its annual list, "password" has lost its title as the most common and therefore Worst Password, and two-time runner-up "123456" took the dubious honor. "Password" fell to #2.

According to SplashData, this year's list was influenced by the large number of passwords from Adobe users posted online by security consulting firm Stricture Consulting Group following Adobe's well publicized security breach.

"Seeing passwords like 'adobe123' and 'photoshop' on this list offers a good reminder not to base your password on the name of the website or application you are accessing," says Morgan Slain, CEO of SplashData.

SplashData's list of frequently used passwords shows that many people continue to put themselves at risk by using weak, easily guessable p asswords. Some other passwords in the Top Ten include "qwerty," "abc123," "111111," and "iloveyou."

"Another interesting aspect of this year's list is that more short numerical passwords showed up even though websites are starting to enforce stronger password policies," Slain said. For example, new to this year's list are simple and easily guessable passwords like "1234" at #16, "12345" at #20, and "000000" at #25.

SplashData, provider of the SplashID Safe line of password management applications, releases its annual list in an effort to encourage the adoption of stronger passwords. "As always, we hope that with more publicity about how risky it is to use weak passwords, more people will start taking simple steps to protect themselves by using stronger passwords and using different passwords for different websites."

Presenting SplashData's "Worst Passwords of 2013":



SplashData's top 25 list was compiled from files containing millions of stolen passwords posted online during the previous year. The company advises consumers or businesses using any of the passwords on the list to change them immediately.

SplashData suggests making passwords more secure with these tips:

Use passwords of eight characters or more with mixed types of characters. But even passwords with common substitutions like "dr4mat1c" can be vulnerable to attackers' increasingly sophisticated technology, and random combinations like "j%7K&yPx$" can be difficult to remember. One way to create more secure passwords that are easy to recall is to use passphrases -- short words with spaces or other characters separating them. It's best to use random words rather than common phrases. For example, "cakes years birthday" or "smiles_light_skip?"

Avoid using the same username/password combination for multiple websites.  Especially risky is using the same password for entertainment sites that you do for online email, social networking, or financial service sites. Use different passwords for each new website or service you sign up for.

Having trouble remembering all those different strong passwords? Try using a password manager application that organizes and protects passwords and can automatically log you into websites. There are numerous applications available, but choose one with a strong track record of reliability and security l ike SplashID Safe, which has a 10 year history and over 1 million users. SplashID Safe has versions available for Windows and Mac as well as smartphones and tablet devices.

Source: http://splashdata.blogspot.com/2014/01/worst-passwords-of-2013-our-annual-list.html

Popular Posts