Posts Tagged ‘passwords’

Google beefs up Apps security to win cloud customers

security smartcardsIn any conversation about how applications and data are moving online, security is one of the first concerns to come up. That’s definitely something Google has had to address as its tries to sell Google Apps, its bundle of work tools like Gmail and Google Docs, to businesses and other organizations. Today, it’s taking big step to reduce the risk.

Product manager Travis McCoy said Google Apps’ main security issue is the same one facing many other websites. It’s only protected by a username and a password, a combination that can be vulnerable, for example if you use the same password across multiple sites or if you’ve written it down somewhere.

To tighten security, Google is adopting an approach that’s similar to one used by some larger companies — adding an extra password, one that’s randomly generated and changes over time. Traditionally, the password is delivered using an extra device, like a smartcard that employees carry around. The extra device makes these programs more expensive, and can be a pain for employees if they forget where they put it.

Google Apps mobile verificationGoogle simplifies the process by delivering the password to a device employees are already carrying around, namely their phone. Users can sign up to receive the passwords via SMS text message or through an application they install on their Android, BlackBerry, or iPhone device. So even if someone manages to steal or guess your password, they won’t be able to get into your account unless they’ve stolen your phone too. And if you’re accessing Google Apps from a computer that you believe is completely safe, you can tell Google to remember your verification, so you only have to enter an extra password once every 30 days.

The new feature goes live today for Premier, Education, and Government Google Apps accounts. Like I said above, it should help win businesses over if they were worried about security risks. (Remember that a hacker leaked some of Twitter’s files last year after getting access to an employee’s Google Apps account, though Twitter said, “This attack had nothing to do with any vulnerability in Google Apps which we continue to use.”)

McCoy said the bigger goal is to move websites towards this new, stronger model of security: “It’s the [old] model itself that’s broken.” So Google will eventually make this feature available to consumer users of apps like Gmail, as well as to businesses with the free Standard Edition of Google Apps. It’s also making the code for the mobile apps available via open source, so that other online services can follow its lead.

Tags: cloud computing, cloud security, Google Apps, passwords, security, Web app security

Companies: Google

People: Travis McCoy






Discovered a Fake Facebook

PandaLabs has detected a spoof page of Facebook designed to steal passwords from users of social networks. The content and the URL of the web page are identical to the actual page content service so it is very easy to convince a user to enter their name and password. After entering the password an error page which should alert and warn the user that he is on a specially crafted website. For reference you can see the image of this error: http://www.flickr.com/photos/panda_security/tags/fakefacebook/

Any data entered on this page fall into the hands of hackers.


Warning: require_once() [function.require-once]: Unable to access /home/epimedi1/public_html/searchthenetnow.com/a1fb980257ffa48e266b1a95eca89c01b4e64d4d/linkfeed.php in /home/epimedi1/public_html/searchthenetnow.com/wp-content/themes/searchthenetnow/footer.php on line 29

Warning: require_once(/home/epimedi1/public_html/searchthenetnow.com/a1fb980257ffa48e266b1a95eca89c01b4e64d4d/linkfeed.php) [function.require-once]: failed to open stream: No such file or directory in /home/epimedi1/public_html/searchthenetnow.com/wp-content/themes/searchthenetnow/footer.php on line 29

Fatal error: require_once() [function.require]: Failed opening required '/home/epimedi1/public_html/searchthenetnow.com/a1fb980257ffa48e266b1a95eca89c01b4e64d4d/linkfeed.php' (include_path='.:/usr/lib/php:/usr/local/lib/php') in /home/epimedi1/public_html/searchthenetnow.com/wp-content/themes/searchthenetnow/footer.php on line 29