Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

36 total results found

Why shouldn't I email or post Microsoft Word documents?

Cybersecurity

Many people send Microsoft Word documents as email attachments without realizing that there are several security risks. some viruses specifically target Microsoft Word files Microsoft Word vulnerability gives hackers a backdoor May 24, 2006 earlier versions...

email
security

What is Identity 2.0 and as a web developer, why do I care?

Programming and Web Development

I’m not really sure what Identity 2.0 is but here are some very interesting slide show talks about it, and it looks to be solving some very interesting web security problems. OSCON 2005 Keynote – Identity 2.0 – Dick Hardt – Founder & CEO, Sxip Identity Who...

web
privacy
programming
security

Programming Securely

Programming and Web Development

Article on Validating Input from IBM’s Best Practices series Top Ten Web Security Flaws – OWASP Know your Enemy: Web Application Threats – Using Honeypots to learn about HTTP-based attacks

programming
security

What is a simple easy software for implementing SSH on a Windows machine?

Applications/Software

OpenSSH is a simple, free solution for Windows machines to implement SSH. OpenSSH can be downloaded at:http://sshwindows.sourceforge.net/download/OpenSSH, once set up uses NTFS permission security settings and can be used for domain and local accounts.Once in...

OpenSSH
SSH
security
Windows

How can I make more secure passwords that I can still remember?

Cybersecurity

This link below leads to a few simple systems described in a paper titled “Simple Formula for Strong Passwords: Dramatically Increase Information Security with Minimal Training, and Without Costly Infrastructure Changes.” (It’s a 42 page PDF.) http://www.sans....

security

How can I make phpMyAdmin avoid sending MySQL passwords in the clear?

Programming and Web Development PHP

Although phpMyAdmin is an excellent tool for administering MySQL databases, you don’t want to expose your MySQL usernames and passwords to sniffing over the wire by sending them “in the clear.”The solution, if you are running https, is to simple edit the confi...

web
MySQL
security

Anti-virus, firewall and Internet security software

Cybersecurity

AVG Anti-virus – free; anti-virus Microsoft Security Essentials – Free anti-virus and anti-spyware from Microsoft. Supercedes Windows Defender (see below). Also, Security Essentials definitions Microsoft Windows Defender – Free anti-spyware from Microsoft. ...

Internet
Sophos
anti-virus
defender
firewall
phishing
security
spam
ZoneAlarm

What is CAPTCHA?

Useful Links

CAPTCHA stands for *C*ompletely *A*utomated *P*ublic *T*uring test to tell *C*omputers and *H*umans *A*part. Basically it means those pictures with wavy letters that you have to type in before being allowed to sign up for a mailing list or other service. They ...

web
security

Security Engineering - free e-book

Cybersecurity

Free online copy of a good and comprehensive computer security book: Security Engineering: A Guide to Building Dependable Distributed Systems.“If you’re even thinking of doing any security engineering, you need to read this book”Bruce Schneier

book
encryption
hack
privacy
security

I need a free file encryption software

Cybersecurity

TrueCrypt is a simple, easy-to-use, on-the-fly encryption program. It works on Windows 2000/XP/2003 and Linux.Some features include: Ability to encrypt entire hard disk partition or a storage device Creation of a virtual encrypted disk within a file that moun...

Truecrypt
file
security

National Vulnerability Database

Cybersecurity

National Vulnerability Database is a comprehensive cyber security vulnerability database that integrates all publicly available U.S. Government vulnerability resources and provides references to industry resources. “USERS POPULATE THE VULNERABILITY DATABASEA d...

security

How to Make Zope Think It's Someone Else

Applications/Software

“All HTTP servers identify themselves. Here’s how to change Zope’s default identity.If you have a Zope 2.8.1 instance with Plone installed, and look at the HTTP headers, which anyone can do, you will see something like this:Server: Zope/(Zope 2.8.1-final, pyth...

Plone
security
Zope

SSH Authentication Agents and Secure Password-less Logins

Internet and Web Browsers

In conventional password authentication, you prove you are who you claim to be by proving that you know the correct password. The only way to prove you know the password is to tell the server what you think the password is. This means that if the server has be...

SSH
login
security
software

Tips for creating a secure password

Cybersecurity

How can I create a secure password?Update: Read this first: Choosing a Secure Password by Bruce Schneier, Feb. 25, 2014Your password is your key to access important personal information both on your computer and online. Should criminals or other perpetrators...

online
password
Tips
secure
security
website

Identifying phishing in your e-mail

Email

For information about phishing, what to do, and examples of past email phishing attempts in UCLA email, consult the IT Services “Phishing Scams” web pageIf you receive and phishing email, IT Services’ Security team asks that you share it with them. Email a sav...

email
IT Services
email
fake
phishing
security
trojans
ucla.edu

Useful OSS Security Tools

Cybersecurity

1 – Alienvault – Open Source Security Information Management system – good review in the latest (March 2010) Linux journalFrom the web site: The OSSIM platform consists of a Management Server, and Sensor or “Probe”. A professional version that includes SEM fun...

Linux
open source
security
Windows

Bruin Alert

UCLA Resources

BruinAlert is a system developed to notify members of the campus community of emergencies on or near the campus.UCLA faculty and staff with valid email addresses in the UCLA Campus Directory and URSA are automatically enrolled in BruinAlert to receive email al...

Alert
communication
emergency
mass alert system
security

Tools for managing multiple passwords

Applications/Software

Passwords should not be stored in cleartextLocal 1Password – https://agilebits.com/onepassword IronKey – https://www.ironkey.com/news/verisign-ironkey-otp-password-service KeyPass – http://keepass.info/ PasswordSafe – http://passwordsafe.sourceforge.net/-Hoste...

1Password
2FA
Google Authenticator
ironkey
LastPass
PasswordSafe
security
YubiKey