Keeping your passwords safe

Slides:



Advertisements
Similar presentations
CONFIDENTIAL Using LastPass.
Advertisements

Using SD K12 SharePoint ®. What is SharePoint? Microsoft SharePoint Components Web Browser Collaboration functions Process management modules Search modules.
Using LastPass CONFIDENTIAL.  Great password management is impossible w/o a great tool  Auto-fill (hands-free login) will save you approximately 1 hour.
Two-Factor Authentication & Tools for Password Management August 29, 2014 Pang Chamreth, IT Development Innovations 1.
IDENTITY THEFT ARE YOU SAFE?. HOW DOES THIS HAPPEN TO ME? Internet “Security “ When using a public computer, never access any vital accounts like banking.
6th Grade Agenda First Class Good Morning! Who is this guy? The Gavin's Home Page The Gavin's Home Page What is this class all about? The Harbor School.
PASSWORD MANAGER Why you need one 1. WHAT IS A PASSWORD MANAGER? A modern Password Manager is a browser extension (Chrome, Internet Explorer, Firefox,
August 15 click! 1 Basics Kitsap Regional Library.
Password Management Programs By SIR Phil Goff, Branch 116 Area 2 Computers and Technology April 18,
PASSWORD MANAGEMENT MADE EASY A Project Play Date - September 26, 2008 Beth Carpenter, Library Services Manager, Outagamie Waupaca Library System.
CHC DI Group. What We Will Cover Securing your devices and computers. Passwords. s. Safe browsing for shopping and online banks. Social media.
Lecture 7 Page 1 CS 236 Online Password Management Limit login attempts Encrypt your passwords Protecting the password file Forgotten passwords Generating.
What is E-commerce Safety Precautions Password Strengths
Staying Safe Online Keep your Information Secure.
GOLD UNIT 4 - IT SECURITY FOR USERS (2 CREDITS) Thomas Jenkins.
How KeePass password safe can save you time and energy
FACEBOOK IS THE BEST THING THAT EVER HAPPENED TO FRIENDSHIP WHY I LIKE FACEBOOK! By Mike Matthews.
Internet Browsing the world. Browse Internet Course contents Overview: Browsing the world Lesson 1: Internet Explorer Lesson 2: Save a link for future.
Password Management Programs By SIR Phil Goff, Branch 116 Area 2 Computers and Technology January 17,
Protecting Your Personal Information November 15, 2013.
Internet Safety. Phishing, Trojans, Spyware, Trolls, and Flame Wars—oh my! If the idea of these threats lurking around online makes you nervous, then.
INTERNET SAFETY FOR KIDS
GOLD UNIT 4 - IT SECURITY FOR USERS (2 CREDITS) Kamran Didcote.
Using LastPass. Great password management is impossible w/o a great tool Auto-fill (hands-free login) will save you approximately one hour per month You.
Firewall firewalls Is a program on your computer to protect your computer from all types of threats and if you have a server and you wasn’t to protect.
How to Create an Address How to Create a Free Account, Read and Answer your s. Yahoo! provides FREE . To create a free .
ARMS Advanced Risk Management System User Documentation.
By John Williams. Why Secure Passwords Matter Passwords protect everything about you online. Once those passwords are discovered and used by someone else.
2004/051 >> Supply Chain Solutions That Deliver Users.
ONLINE SECURITY Tips 1 Online Security Online Security Tips.
Online Job Applications Workshop Coordinators Sharon Feeney – Andrea Reynolds –
Digital Citizenship Unit 2 Lesson 1: Strong Passwords
How to Make Yourself More Secure Using Public Computers and Free Public Wi-Fi.
Information Technology Security Office of the Vice President for Information Technology New Employee Orientation II.
IT Security Awareness Day October 19, 2016
Standard Operating Procedure
& Google Gmail.
Unit 4 IT Security.
Password Protection: How Safe Are Your Passwords?
Information Security.
Ways to protect yourself against hackers
Password Management Limit login attempts Encrypt your passwords
Online password manager By: Anthony diveronica
Welcome to Week 3 in the computer lab
Password Cracking Lesson 10.
How to build a good reputation online
Using the Kilgore College Library Online Resources
How to Use Members Area of The Ninety-Nines Website
How to open password- protected Excel file
Information Security Awareness 101
Martus Account Set Up Benetech is a non-profit organization that develops and supports Martus, a secure information management software for human rights.
Setting up an online account
Introduction to From the Saint Paul Public Library.
Digital $$ Quiz Test your knowledge.
R E A D What is cyber bullying? Hall
Lesson 2: Epic Security Considerations
Santa’s s By……..
Lesson 2: Epic Security Considerations
Lesson 2: Epic Security Considerations
Creating Passphrases Include Examples NOT REQUIRED
Zachary blum Sam Garcia Courtney Sullivan
Learning Objectives understand the characteristics of structured and unstructured data understand that data can be decomposed, organised and managed in.
Why SIMOP monitor? Knowing what should be done for SIMOP
Company Name | Phone Number | Website | Address
Communicating in the IT Industry
Data Recovery: Why Secure Deletion is so Important.
Online tendering system for United Nations Development Programme
Claiming Your Business On
Getting Started With LastPass Enterprise
Founded in 2002, Credit Abuse Resistance Education (CARE) educates high school and college students on the responsible use of credit and other fundamentals.
Presentation transcript:

Keeping your passwords safe George Skarbek 13th June 2019

Browser Autocomplete Most browsers offer to save passwords. This improves your productivity as you do not need to open the password file. But there are security issues. Do not save passwords in your browser, particularly for banking sites. If someone at your home opens that browser and clicks on a banking site, the browser will log into your account. Similarly if the computer is stolen. Another issue is when disposing of your now old computer you must remember to clear the password cache. If you do use autocomplete then beware of the risks. NOTE: It is relatively easy to export these IDs and passwords to a text file.

Password vaults Tools like  LastPass, KeePass, 1Password and others collect, retain, and often enter your login credentials for you. LastPass can also fill in other fields such as your name, full address, credit card number so that a form can be filled in with one click. LastPass stores your passwords as extremely well-encrypted data that even they do not have access to. Your data is only decrypted on your device(s), computer or USB and only when you provide the correct master password. In my opinion this type of software is worth considering.

DIY password list tips If you have created a password list some time ago and are updating it now, here are some suggestions for why it is important to understand how to keep your passwords safe. The main tip is: NEVER print your password list. Remember that Windows will index all files in the Documents folder and sub-folders. It will search over 100,000 files in under one second looking for any name in all files, for example “pass” or “bank”.

Tips on password safety If you have printed a list, NEVER have it in your wallet or handbag. What happens is this is lost or stolen? Never save it in any document that is not encrypted, such as in Excel or Word without encrypting it first. Use Help in Excel or Word for encryption method. Never save it using Notepad as this cannot be encrypted. Never call that document Passwords. It is preferable not to use the same password for more than one site.

Suggestions If you do not wish to use password manager software then using Excel is a good choice because it has good encryption build in. In the first column have the name of where the password is to be used, for example ANZ. The second column is the user ID, such as 123456 or Fred@Nurk.com The third column is the password. Other columns can have additional information such as security questions and answers. That Excel file MUST be encrypted. If your Excel is 2003 or earlier then do NOT use it as the encrypted password file can be easily cracked. That Excel master password can be written down somewhere safe.

More suggestions For all passwords, except for really trivial cases, use upper and lower case letters, at least one number and one symbol and make it at least eight characters long. Especially for the banking or super fund accounts. With six lowercase letters, using a brute-force attack of one million attempts per second it will take about 1.2 seconds to crack it. With 8 characters using upper and lower case letters, numbers and symbols the time increases to 5,845 centuries. Give your file a generic name such as Xmas2013gifts

Suggestions for extreme protection For additional safety I recommend that when creating passwords you always hide a letter by using another letter or symbol. This is done to add more protection in the unlikely case your password file is found and cracked. For example, when using a lowercase letter, say a “b” - it will always be entered as say, W or a comma, a tilde or anything but a “b” in the actual password.

And another extreme suggestion You can make it ever harder for anyone to find that password file. If you are using Excel then rename the .xlsx to something else such as .dll (Dynamic Link Library) and then to open that file right-click on it and select Open With … and select Excel. Do not save a .dll file in the Documents folder as this will really stand out. Save in the C:Windows\System32 which has about 170 .dll files just starting with A. Call it something like Abl.dll. An extra advantage is that Ransomware will NOT encrypt .dll or .exe files. Remember to back it up. If you have 10,000+ music files then call it Something.mp3 with the music files.

This way you do not need to look at a password file! Final suggestion Use an algorithmic password so that you never have to look at your password file. If your name is Fred then use an algorithm, starting as: { Fred$7 (Note the space after opening the curly bracket) Then after your selected number add two letters that pertain to that password. Say the second and third letter. If that site is Westpac, then your password will be { Fred$7se This way you do not need to look at a password file!

After death …. Having protected your wealth from hackers and thieves during your life don’t leave a huge problem when you die. Remember that your executor must have access to your password file, where to find it and how to open it with the required password. If you have transposed a letter with something else then include all details.

Any Questions?