SlideShare a Scribd company logo
1 of 16
Download to read offline
Make the web better
How to be safe on the internet

by vectorialpx.net
First rule of security: trust nobody
And some other simple rules:
1. Do not give your passwords to friends and don't type
passwords in public places. If you really need to, look both
ways and make sure no one can see your hands.

This is not a joke!
Lots of accounts got "hacked" this way.
2. Do not use your password (login) in unknown networks,
like public wiFi networks (hotels, McDonalds or others)

There may be some dude (proxy)between you and the
internet that can record any action (request) between you
and any server (website). Even your passwords.

What can you do? When you are at home, check "Keep
me logged in" on the website so when you get into public
places you will not need to enter your password.
3. Never click on unknown links. Before you click a link
make sure you check the address from the address bar.

I hate short links!!! (even fb.me or t.co ... all of them)
NOTE1:When you check the address bar make sure it is a
perfect match. As example: if it's a mail from PayPal and
the link is something like http://client12.paypl.com you
should not click it. The domain must be PayPal.com and
not paypl.com. Do not assume that an email from
paypal.com is safe. The sender can easy be changed.

Note2: Never complete a login forms unless you checked
the address-bar twice. You may get into pages that look
like the Yahoo! (just an example) interface BUT there is
another address, another website. It is a copy of the
interface to just make you enter (give) your password.
4. Do not give passwords to any support desk, bank agent
or other person that will tell you that "it's safe!" to do it.

Any support desks or administrator must have access to
your account (of any type) without your password.
Never store passwords
in plain text
(on paper, in your browser, in your phone,
in your computer)
Do not have stupid passwords
Make sure that your passwords contains at least one
special character and at least one digit and it's over 8
characters. If you have any password that doesn't meet
this, go and change it right now.
Why is this important?
Well, read this if you like technical stuff: the simplest method of getting
passwords is a savage one, named brute-force. This method consists into
entering all combinations of letters and even digits until a valid password is
found. If you add a special character and a digit into your password and
you make it long enough (over 8 chars) you will add billions of brute-force
combinations. Most of the big websites logins are protected against bruteforce (it's nothing sure) but a simple security breach could lead to
database records or files that store passwords. If you have a strong
password, it will be impossible to "unhash" it. A hash is a computed value
of a string with a one-way algorithm. So, once a password is hashed it
cannot be unhashed BUT you can make brute-force over it and trying lots
of combinations you can find the valid hash.
A programmer needs just few lines of code to create a brute-force.
And, of course, a lot of time.
Ok, how can I have a strong password?
As example: my name is Octavian and my password can
be "0C5@vi1N" and it's easy for me to remember.
We have: 0 (zero) is like "O" + big "C" + 5 is over "T", @ looks
like "A", we also have "vi" as simple string, 1 is over "A" and,
in the end a big "N". So, it's my name in a new way.

If you need, you can use something like
http://password.phpadminpanel.com
or even a password manager
Another important thing about passwords: make sure you
have a different password for every important service that
you have - Email, Facebook, forums, games, FTP accounts
(if you are a developer) and other accounts.
Why should I do that?
Sometimes, in my past, I got a website to maintain. I was surprised to see
that all passwords recorded until that time are in plain text. You could just
see passwords (even now, I cannot understand how a programmer can
be that stupid). So I took some random password and the email of the
account and just tried into the Yahoo! login form (it was a Yahoo! email).
It was amazing to find out that 3 of 5 users had the same passwords for
their emails. Of course, next thing, I hashed all passwords.
So, never have the same password for two services because you cannot
know who will bump into your clear password. At least you will lose one
account, not your entire internet life.
Have alternate ways for your
password recovery.
As example, have an alternate email to recover your
password. Both Yahoo! and Google will allow a second
email address that can reset your password. Also, if you
can, add your phone number for trusted websites so this
will also be a new method to recover your password.
If you don't have an alternate email, add it now!
Make sure you have a
good updated antivirus and
you make a scan once a month
A good antivirus will also have a firewall. In case it does
not, make sure your OS (ie: Windows) firewall is ON.
Also, update your system at least once a month because
there are security updates that you may need.
Please share this and help me to make the web better.

Octavian Irimia
www.vectorialpx.net

More Related Content

Similar to How to be safe on the internet. Make the web better!

I forgot my password – what a secure password reset needs to have and why
I forgot my password – what a secure password reset needs to have and whyI forgot my password – what a secure password reset needs to have and why
I forgot my password – what a secure password reset needs to have and whyMichal Špaček
 
Why is password protection a fallacy a point of view
Why is password protection a fallacy a point of viewWhy is password protection a fallacy a point of view
Why is password protection a fallacy a point of viewSTO STRATEGY
 
So Many Passwords So Little Mind
So Many Passwords So Little MindSo Many Passwords So Little Mind
So Many Passwords So Little MindAlain Lemay
 
Online Self Defense - Passwords
Online Self Defense - PasswordsOnline Self Defense - Passwords
Online Self Defense - PasswordsBarry Caplin
 
How to become hacker
How to become hackerHow to become hacker
How to become hackerRaman Sanoria
 
How to choose a password that’s hard to crack
How to choose a password that’s hard to crackHow to choose a password that’s hard to crack
How to choose a password that’s hard to crackKlaus Drosch
 
Password Management
Password ManagementPassword Management
Password ManagementDavon Smart
 
Test ideas for Login / Authentication and Login Session
Test ideas for Login / Authentication and Login SessionTest ideas for Login / Authentication and Login Session
Test ideas for Login / Authentication and Login SessionSanthosh Tuppad
 
Honeywords - BSides London 2014
Honeywords - BSides London 2014Honeywords - BSides London 2014
Honeywords - BSides London 2014Gavin Holt
 
Disclosing password hashing policies
Disclosing password hashing policiesDisclosing password hashing policies
Disclosing password hashing policiesMichal Špaček
 
Web + Social Media + Cyber Security for Lawyers
Web + Social Media + Cyber Security for LawyersWeb + Social Media + Cyber Security for Lawyers
Web + Social Media + Cyber Security for LawyersJoshua Weaver
 
Password management for you
Password management for youPassword management for you
Password management for youChit Ko Ko Win
 

Similar to How to be safe on the internet. Make the web better! (20)

Protect Your Business With Web Security
Protect Your Business With Web SecurityProtect Your Business With Web Security
Protect Your Business With Web Security
 
W make107
W make107W make107
W make107
 
I forgot my password – what a secure password reset needs to have and why
I forgot my password – what a secure password reset needs to have and whyI forgot my password – what a secure password reset needs to have and why
I forgot my password – what a secure password reset needs to have and why
 
Why is password protection a fallacy a point of view
Why is password protection a fallacy a point of viewWhy is password protection a fallacy a point of view
Why is password protection a fallacy a point of view
 
Password management
Password managementPassword management
Password management
 
So Many Passwords So Little Mind
So Many Passwords So Little MindSo Many Passwords So Little Mind
So Many Passwords So Little Mind
 
Free SEO
Free SEOFree SEO
Free SEO
 
Password craking techniques
Password craking techniques Password craking techniques
Password craking techniques
 
Online Self Defense - Passwords
Online Self Defense - PasswordsOnline Self Defense - Passwords
Online Self Defense - Passwords
 
How to become hacker
How to become hackerHow to become hacker
How to become hacker
 
security procedures
security procedures
security procedures
security procedures
 
How to choose a password that’s hard to crack
How to choose a password that’s hard to crackHow to choose a password that’s hard to crack
How to choose a password that’s hard to crack
 
183433 xunleashed
183433 xunleashed183433 xunleashed
183433 xunleashed
 
Password Management
Password ManagementPassword Management
Password Management
 
Test ideas for Login / Authentication and Login Session
Test ideas for Login / Authentication and Login SessionTest ideas for Login / Authentication and Login Session
Test ideas for Login / Authentication and Login Session
 
Honeywords - BSides London 2014
Honeywords - BSides London 2014Honeywords - BSides London 2014
Honeywords - BSides London 2014
 
Disclosing password hashing policies
Disclosing password hashing policiesDisclosing password hashing policies
Disclosing password hashing policies
 
Web + Social Media + Cyber Security for Lawyers
Web + Social Media + Cyber Security for LawyersWeb + Social Media + Cyber Security for Lawyers
Web + Social Media + Cyber Security for Lawyers
 
Document
DocumentDocument
Document
 
Password management for you
Password management for youPassword management for you
Password management for you
 

Recently uploaded

ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITY
ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITYISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITY
ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITYKayeClaireEstoconing
 
4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptxmary850239
 
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17Celine George
 
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONTHEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONHumphrey A Beña
 
Field Attribute Index Feature in Odoo 17
Field Attribute Index Feature in Odoo 17Field Attribute Index Feature in Odoo 17
Field Attribute Index Feature in Odoo 17Celine George
 
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdf
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdfAMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdf
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdfphamnguyenenglishnb
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfMr Bounab Samir
 
ACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfSpandanaRallapalli
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxiammrhaywood
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptxmary850239
 
Culture Uniformity or Diversity IN SOCIOLOGY.pptx
Culture Uniformity or Diversity IN SOCIOLOGY.pptxCulture Uniformity or Diversity IN SOCIOLOGY.pptx
Culture Uniformity or Diversity IN SOCIOLOGY.pptxPoojaSen20
 
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSGRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSJoshuaGantuangco2
 
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...Postal Advocate Inc.
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPCeline George
 
Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)cama23
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Celine George
 

Recently uploaded (20)

ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITY
ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITYISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITY
ISYU TUNGKOL SA SEKSWLADIDA (ISSUE ABOUT SEXUALITY
 
4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx4.16.24 21st Century Movements for Black Lives.pptx
4.16.24 21st Century Movements for Black Lives.pptx
 
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17
Incoming and Outgoing Shipments in 3 STEPS Using Odoo 17
 
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATIONTHEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
THEORIES OF ORGANIZATION-PUBLIC ADMINISTRATION
 
Field Attribute Index Feature in Odoo 17
Field Attribute Index Feature in Odoo 17Field Attribute Index Feature in Odoo 17
Field Attribute Index Feature in Odoo 17
 
Raw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptxRaw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptx
 
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdf
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdfAMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdf
AMERICAN LANGUAGE HUB_Level2_Student'sBook_Answerkey.pdf
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
 
ACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdf
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
 
LEFT_ON_C'N_ PRELIMS_EL_DORADO_2024.pptx
LEFT_ON_C'N_ PRELIMS_EL_DORADO_2024.pptxLEFT_ON_C'N_ PRELIMS_EL_DORADO_2024.pptx
LEFT_ON_C'N_ PRELIMS_EL_DORADO_2024.pptx
 
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
 
4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx4.18.24 Movement Legacies, Reflection, and Review.pptx
4.18.24 Movement Legacies, Reflection, and Review.pptx
 
Culture Uniformity or Diversity IN SOCIOLOGY.pptx
Culture Uniformity or Diversity IN SOCIOLOGY.pptxCulture Uniformity or Diversity IN SOCIOLOGY.pptx
Culture Uniformity or Diversity IN SOCIOLOGY.pptx
 
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTSGRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
GRADE 4 - SUMMATIVE TEST QUARTER 4 ALL SUBJECTS
 
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...
USPS® Forced Meter Migration - How to Know if Your Postage Meter Will Soon be...
 
How to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERPHow to do quick user assign in kanban in Odoo 17 ERP
How to do quick user assign in kanban in Odoo 17 ERP
 
Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)Global Lehigh Strategic Initiatives (without descriptions)
Global Lehigh Strategic Initiatives (without descriptions)
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17
 
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptxYOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
YOUVE GOT EMAIL_FINALS_EL_DORADO_2024.pptx
 

How to be safe on the internet. Make the web better!

  • 1. Make the web better How to be safe on the internet by vectorialpx.net
  • 2. First rule of security: trust nobody And some other simple rules:
  • 3. 1. Do not give your passwords to friends and don't type passwords in public places. If you really need to, look both ways and make sure no one can see your hands. This is not a joke! Lots of accounts got "hacked" this way.
  • 4. 2. Do not use your password (login) in unknown networks, like public wiFi networks (hotels, McDonalds or others) There may be some dude (proxy)between you and the internet that can record any action (request) between you and any server (website). Even your passwords. What can you do? When you are at home, check "Keep me logged in" on the website so when you get into public places you will not need to enter your password.
  • 5. 3. Never click on unknown links. Before you click a link make sure you check the address from the address bar. I hate short links!!! (even fb.me or t.co ... all of them)
  • 6. NOTE1:When you check the address bar make sure it is a perfect match. As example: if it's a mail from PayPal and the link is something like http://client12.paypl.com you should not click it. The domain must be PayPal.com and not paypl.com. Do not assume that an email from paypal.com is safe. The sender can easy be changed. Note2: Never complete a login forms unless you checked the address-bar twice. You may get into pages that look like the Yahoo! (just an example) interface BUT there is another address, another website. It is a copy of the interface to just make you enter (give) your password.
  • 7. 4. Do not give passwords to any support desk, bank agent or other person that will tell you that "it's safe!" to do it. Any support desks or administrator must have access to your account (of any type) without your password.
  • 8. Never store passwords in plain text (on paper, in your browser, in your phone, in your computer)
  • 9.
  • 10. Do not have stupid passwords Make sure that your passwords contains at least one special character and at least one digit and it's over 8 characters. If you have any password that doesn't meet this, go and change it right now.
  • 11. Why is this important? Well, read this if you like technical stuff: the simplest method of getting passwords is a savage one, named brute-force. This method consists into entering all combinations of letters and even digits until a valid password is found. If you add a special character and a digit into your password and you make it long enough (over 8 chars) you will add billions of brute-force combinations. Most of the big websites logins are protected against bruteforce (it's nothing sure) but a simple security breach could lead to database records or files that store passwords. If you have a strong password, it will be impossible to "unhash" it. A hash is a computed value of a string with a one-way algorithm. So, once a password is hashed it cannot be unhashed BUT you can make brute-force over it and trying lots of combinations you can find the valid hash. A programmer needs just few lines of code to create a brute-force. And, of course, a lot of time.
  • 12. Ok, how can I have a strong password? As example: my name is Octavian and my password can be "0C5@vi1N" and it's easy for me to remember. We have: 0 (zero) is like "O" + big "C" + 5 is over "T", @ looks like "A", we also have "vi" as simple string, 1 is over "A" and, in the end a big "N". So, it's my name in a new way. If you need, you can use something like http://password.phpadminpanel.com or even a password manager
  • 13. Another important thing about passwords: make sure you have a different password for every important service that you have - Email, Facebook, forums, games, FTP accounts (if you are a developer) and other accounts. Why should I do that? Sometimes, in my past, I got a website to maintain. I was surprised to see that all passwords recorded until that time are in plain text. You could just see passwords (even now, I cannot understand how a programmer can be that stupid). So I took some random password and the email of the account and just tried into the Yahoo! login form (it was a Yahoo! email). It was amazing to find out that 3 of 5 users had the same passwords for their emails. Of course, next thing, I hashed all passwords. So, never have the same password for two services because you cannot know who will bump into your clear password. At least you will lose one account, not your entire internet life.
  • 14. Have alternate ways for your password recovery. As example, have an alternate email to recover your password. Both Yahoo! and Google will allow a second email address that can reset your password. Also, if you can, add your phone number for trusted websites so this will also be a new method to recover your password. If you don't have an alternate email, add it now!
  • 15. Make sure you have a good updated antivirus and you make a scan once a month A good antivirus will also have a firewall. In case it does not, make sure your OS (ie: Windows) firewall is ON. Also, update your system at least once a month because there are security updates that you may need.
  • 16. Please share this and help me to make the web better. Octavian Irimia www.vectorialpx.net