<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>
<channel>
	<title>Comments on: The Internet is not a Place for Ostriches</title>
	<atom:link href="http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/feed" rel="self" type="application/rss+xml" />
	<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches</link>
	<description>Tek Tips Whitepaper Library</description>
	<pubDate>Fri, 30 Jul 2010 05:36:58 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Imamuddin</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-1255</link>
		<dc:creator>Imamuddin</dc:creator>
		<pubDate>Fri, 04 Dec 2009 22:57:25 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-1255</guid>
		<description>Hello Bronwyn,

Thanks for the response.

Even though those fraudulent sites come and go quickly, they can still be traced, tracked and catched, and brought to the books of law, including their service providers. If this exercise is done for a few cases the attacks will eventually slow down. Festive seasons are to enjoy and not to be fool innocents, as those phisers are doing. But prior to that a legal provision has to be made in this direction for Internet clients and service providers. 

How about preparing RFP in this direction to be submitted to Internet regulating authorities.

Imamuddin</description>
		<content:encoded><![CDATA[<p>Hello Bronwyn,</p>
<p>Thanks for the response.</p>
<p>Even though those fraudulent sites come and go quickly, they can still be traced, tracked and catched, and brought to the books of law, including their service providers. If this exercise is done for a few cases the attacks will eventually slow down. Festive seasons are to enjoy and not to be fool innocents, as those phisers are doing. But prior to that a legal provision has to be made in this direction for Internet clients and service providers. </p>
<p>How about preparing RFP in this direction to be submitted to Internet regulating authorities.</p>
<p>Imamuddin
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-1255" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('1255', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-1255-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-1255" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('1255', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-1255-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bronwyn Johnson</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-1226</link>
		<dc:creator>Bronwyn Johnson</dc:creator>
		<pubDate>Thu, 03 Dec 2009 08:26:35 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-1226</guid>
		<description>Thank you for your comments Imamuddin.

I agree that we need tighter controls over phishing site owners.  The problem is that they come and go so quickly it is not easy to keep track.  

At VeriSign we use the services of a brand protection agency to assist us when we identify fraudulent sites.  They initiate take down procedures and have been very effective.  I've noticed, however, that as we've come closer to the festive season, the reports of fraudulent sites has increased.  The public should be particularly careful during this time.

I'm pleased to see that the global community has become more aware of the threats posed by these sites and services such as www.phishtank.com have been launched to report fraudulent sites.  

In the UK, the authorities have also become more open to reports of fraudulent sites and they can be reported at www.consumerdirect.gov.uk

The public really needs to be aware of these dangers and in our effort to provide information, we have launched www.phishornophish.com (also available in about 11 other languages) which helps you to tell the difference between a fraudulent and a genuine site.  Another great site is www.trustthecheck.com which gives a lot of tips on how to stay safe online.

I'm not sure if there is an official cyber crime book but I do know that the authorities all over the world are clamping down on cyber crime.  A perfect example was Operation Phish fry which saw the FBI and authorities from all over the world arresting nearly 100 suspect hackers from US and overseas.

Thanks again for your comment.  I hope you have a great day!

Regards

Bronwyn</description>
		<content:encoded><![CDATA[<p>Thank you for your comments Imamuddin.</p>
<p>I agree that we need tighter controls over phishing site owners.  The problem is that they come and go so quickly it is not easy to keep track.  </p>
<p>At VeriSign we use the services of a brand protection agency to assist us when we identify fraudulent sites.  They initiate take down procedures and have been very effective.  I&#8217;ve noticed, however, that as we&#8217;ve come closer to the festive season, the reports of fraudulent sites has increased.  The public should be particularly careful during this time.</p>
<p>I&#8217;m pleased to see that the global community has become more aware of the threats posed by these sites and services such as <a href="http://www.phishtank.com" rel="nofollow">http://www.phishtank.com</a> have been launched to report fraudulent sites.  </p>
<p>In the UK, the authorities have also become more open to reports of fraudulent sites and they can be reported at <a href="http://www.consumerdirect.gov.uk" rel="nofollow">http://www.consumerdirect.gov.uk</a></p>
<p>The public really needs to be aware of these dangers and in our effort to provide information, we have launched <a href="http://www.phishornophish.com" rel="nofollow">http://www.phishornophish.com</a> (also available in about 11 other languages) which helps you to tell the difference between a fraudulent and a genuine site.  Another great site is <a href="http://www.trustthecheck.com" rel="nofollow">http://www.trustthecheck.com</a> which gives a lot of tips on how to stay safe online.</p>
<p>I&#8217;m not sure if there is an official cyber crime book but I do know that the authorities all over the world are clamping down on cyber crime.  A perfect example was Operation Phish fry which saw the FBI and authorities from all over the world arresting nearly 100 suspect hackers from US and overseas.</p>
<p>Thanks again for your comment.  I hope you have a great day!</p>
<p>Regards</p>
<p>Bronwyn
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-1226" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('1226', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-1226-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-1226" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('1226', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-1226-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Imamuddin</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-1225</link>
		<dc:creator>Imamuddin</dc:creator>
		<pubDate>Thu, 03 Dec 2009 08:02:20 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-1225</guid>
		<description>Hello
Thanks for the statistical picture of WWW. Now a common man can not live without that. Everyone can not afford to have all the security measures for protections from attacks. Internet regulatory bodies should work out some solution in this direction. Like most of the antiphising, malaware, infested websites are in the black list of security softwares. If such websites remain for more than a day they should be blocked golbally untill they stop their evil activities and sign the agreement either with domain registrar, DNS provider or any new entity created to regulate such matters. As a second step they should be tracked and brought to the book of cyber laws like dealing with criminals in daily routine.

Is there anything like this coming up?

Lets hope for the best.

Imamuddin</description>
		<content:encoded><![CDATA[<p>Hello<br />
Thanks for the statistical picture of <a href="http://WWW" rel="nofollow">http://WWW</a>. Now a common man can not live without that. Everyone can not afford to have all the security measures for protections from attacks. Internet regulatory bodies should work out some solution in this direction. Like most of the antiphising, malaware, infested websites are in the black list of security softwares. If such websites remain for more than a day they should be blocked golbally untill they stop their evil activities and sign the agreement either with domain registrar, DNS provider or any new entity created to regulate such matters. As a second step they should be tracked and brought to the book of cyber laws like dealing with criminals in daily routine.</p>
<p>Is there anything like this coming up?</p>
<p>Lets hope for the best.</p>
<p>Imamuddin
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-1225" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('1225', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-1225-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-1225" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('1225', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-1225-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bronwyn Johnson</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-808</link>
		<dc:creator>Bronwyn Johnson</dc:creator>
		<pubDate>Thu, 08 Oct 2009 08:08:32 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-808</guid>
		<description>Thank you for your comments David.  Personally, I recommend purchasing SSL Certification from the leading brands.</description>
		<content:encoded><![CDATA[<p>Thank you for your comments David.  Personally, I recommend purchasing SSL Certification from the leading brands.
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-808" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('808', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-808-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-808" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('808', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-808-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-806</link>
		<dc:creator>David</dc:creator>
		<pubDate>Wed, 07 Oct 2009 15:42:45 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-806</guid>
		<description>Storing passwords in your browser is not secure unless those passwords are encrypted. In Firefox, you can set a 'Master Password' that you have to enter in order to access your saved passwords. On the Tools menu, choose Options and press Security. Select 'Use a Master Password'; you may need to use the feature to change your master password to set an initial password.

Trustworthiness of sites is a big issue. For secure sites, it's well worth viewing the "Subject" of the certificate, which ideally will tell you more about the site. This feature isn't just limited to EV certificates; SSL is about more than encryption and ideally certificates should include information about who they were issued to. Unfortunately a lot of certificates on the Internet are DV certificates where only the ownership of the domain was verified and these certificates don't contain any useful information in the subject. Ideally any site handling personal or financial information will have a better certificate than a DV one.

Free DV certificates and inexpensive certificates at higher levels of verification can be had from StartSSL - https://www.startssl.com (no connection other than as a satisfied customer and as a volunteer notary in their Web of Trust programme).

Talking of Webs of Trust, http://www.mywot.com has a free Web of Trust for web sites offering ratings for "Trustworthiness", "Vendor reliability", "Privacy" and "Child safety". There's free add-ons for Firefox and Internet Explorer that display the ratings.

Ideally sites would move on beyond passwords to using client certificates. Managing a multitude of client certificates would be a nightmare, but OpenID can come to the rescue. StartSSL has a solution here - once you have your free client certificate, you can sign up to their free OpenID provider. Unfortunately many OpenID capable sites do not yet work reliably with StartSSL's OpenID provider.</description>
		<content:encoded><![CDATA[<p>Storing passwords in your browser is not secure unless those passwords are encrypted. In Firefox, you can set a &#8216;Master Password&#8217; that you have to enter in order to access your saved passwords. On the Tools menu, choose Options and press Security. Select &#8216;Use a Master Password&#8217;; you may need to use the feature to change your master password to set an initial password.</p>
<p>Trustworthiness of sites is a big issue. For secure sites, it&#8217;s well worth viewing the &#8220;Subject&#8221; of the certificate, which ideally will tell you more about the site. This feature isn&#8217;t just limited to EV certificates; SSL is about more than encryption and ideally certificates should include information about who they were issued to. Unfortunately a lot of certificates on the Internet are DV certificates where only the ownership of the domain was verified and these certificates don&#8217;t contain any useful information in the subject. Ideally any site handling personal or financial information will have a better certificate than a DV one.</p>
<p>Free DV certificates and inexpensive certificates at higher levels of verification can be had from StartSSL - <a href="https://www.startssl.com" rel="nofollow">https://www.startssl.com</a> (no connection other than as a satisfied customer and as a volunteer notary in their Web of Trust programme).</p>
<p>Talking of Webs of Trust, <a href="http://www.mywot.com" rel="nofollow">http://www.mywot.com</a> has a free Web of Trust for web sites offering ratings for &#8220;Trustworthiness&#8221;, &#8220;Vendor reliability&#8221;, &#8220;Privacy&#8221; and &#8220;Child safety&#8221;. There&#8217;s free add-ons for Firefox and Internet Explorer that display the ratings.</p>
<p>Ideally sites would move on beyond passwords to using client certificates. Managing a multitude of client certificates would be a nightmare, but OpenID can come to the rescue. StartSSL has a solution here - once you have your free client certificate, you can sign up to their free OpenID provider. Unfortunately many OpenID capable sites do not yet work reliably with StartSSL&#8217;s OpenID provider.
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-806" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('806', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-806-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-806" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('806', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-806-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bronwyn Johnson</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-804</link>
		<dc:creator>Bronwyn Johnson</dc:creator>
		<pubDate>Wed, 07 Oct 2009 10:12:28 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-804</guid>
		<description>Hi Kelly, good to hear from you again! Thanks for the great suggestion.</description>
		<content:encoded><![CDATA[<p>Hi Kelly, good to hear from you again! Thanks for the great suggestion.
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-804" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('804', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-804-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-804" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('804', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-804-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kelly Ledger</title>
		<link>http://tek-tips.nethawk.net/blog/the-internet-is-not-a-place-for-ostriches/comment-page-1#comment-803</link>
		<dc:creator>Kelly Ledger</dc:creator>
		<pubDate>Wed, 07 Oct 2009 10:11:13 +0000</pubDate>
		<guid isPermaLink="false">http://tek-tips.nethawk.net/blog/?p=2274#comment-803</guid>
		<description>Great article Bronwyn, some scary stats. Someone should develop an easy to use (for the public) password generator that not only generates passwords, but updates your password profile on various sites where the user has login credentials. We all know the nightmare of keeping track of passwords, any help would be a blessing!

Keep writing!</description>
		<content:encoded><![CDATA[<p>Great article Bronwyn, some scary stats. Someone should develop an easy to use (for the public) password generator that not only generates passwords, but updates your password profile on various sites where the user has login credentials. We all know the nightmare of keeping track of passwords, any help would be a blessing!</p>
<p>Keep writing!
<p>Like or Dislike: <img style="padding: 0px; border: none; cursor: pointer;" id="up-803" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('803', 'add', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_');" title="Thumb up" /> <small id="karma-803-up" style="font-size:12px; color:#009933;">0</small>&nbsp;<img style="padding: 0px; border: none; cursor: pointer;" id="down-803" src="http://tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/images/1_14_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('803', 'subtract', 'tek-tips.nethawk.net/blog/wp-content/plugins/comment-rating/', '1_14_')" title="Thumb down" /> <small id="karma-803-down" style="font-size:12px; color:#990033;">0</small></p>
]]></content:encoded>
	</item>
</channel>
</rss>
