Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2904577 times)

0 Members and 7 Guests are viewing this topic.

Offline Para-Noid

  • Avast Evangelist
  • Starting Graphoman
  • ***
  • Posts: 6700
  • Trust only what you test yourself!
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3150 on: October 13, 2014, 06:19:06 PM »
Dell Inspiron, Win10x64--HP Envy Win10x64--Both systems Avast Free v17.9.2322, Comodo Firewall v8.2 w/D+, MalwareBytes v3.0, OpenDNS, Super Anti-Spyware, Spyware Blaster, MCShield, Unchecky, Vivaldi Browser and, various browser security tools.

"Look before you leap!" Use online scanners before you click on any link.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3151 on: October 14, 2014, 04:35:55 PM »
DropBox Hacked.
If you're using it, change your password NOW.
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3152 on: October 14, 2014, 05:27:25 PM »
DropBox Hacked.
If you're using it, change your password NOW.
If you have 2nd factor authentication and use a unique password... Well... I'll pass...
The best things in life are free.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33920
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3153 on: October 14, 2014, 11:15:17 PM »
Breaking news: SSLv3 protocol holed.
Scary vulnerability to be revealed soon!

News on this is soon to come out, read:
https://twitter.com/briankrebs/status/522127738153750528
Brian Krebs as always, well informed.
More here: http://seclists.org/oss-sec/2014/q4/318

polonus

There was already something found wrong with java's implementation of DHE cipher suites: roughly 0.5% of SSL handshakes for DHE cipher suites fail.
Updatee - Now we know it is called Poodle. a serious security hole, read: https://www.imperialviolet.org/2014/10/14/poodle.html

D
« Last Edit: October 15, 2014, 06:24:57 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33920
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3154 on: October 14, 2014, 11:56:10 PM »
Hi Lisandro,

Well the bottom has fallen out under dropbox  :D for quite some users, so I pass, no dropbox for me.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3155 on: October 15, 2014, 07:38:53 AM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3156 on: October 15, 2014, 11:31:02 AM »
DropBox Hacked.
If you're using it, change your password NOW.
-> https://blog.dropbox.com/2014/10/dropbox-wasnt-hacked/
I can sell you the Brooklyn Bridge at a very reasonable price. :)
Technically, they are right the passwords were compromised through a third party app.
End result still has the same effect. The advice still stands. Change your password.
For help on doing this, follow these simple instructions:
http://youtu.be/gDCv4xPeoVI
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3157 on: October 15, 2014, 11:32:09 AM »
I can sell you the Brooklyn Bridge at a very reasonable price. :)
Deal. ;D
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89131
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3158 on: October 15, 2014, 03:57:50 PM »
I can sell you the Brooklyn Bridge at a very reasonable price. :)
Deal. ;D

We already sold London bridge to the USA - they though they were buying Tower bridge ;D
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3159 on: October 15, 2014, 04:01:38 PM »
I can sell you the Brooklyn Bridge at a very reasonable price. :)
Deal. ;D

We already sold London bridge to the USA - they though they were buying Tower bridge ;D
I saw it in Lake Havasu City, AZ. :)
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3160 on: October 17, 2014, 01:12:22 AM »


Gmail does a fairly good job at weeding out Spam and suspicious emails.
Nothing else to add except be careful!
« Last Edit: October 17, 2014, 01:14:18 AM by bob3160 »
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

REDACTED

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3161 on: October 17, 2014, 01:45:19 AM »
DropBox Hacked.
If you're using it, change your password NOW.

Er...  Just had a Cap'n Cook at https://blog.dropbox.com/2014/10/dropbox-wasnt-hacked/.

Please--and it's not just you Bob--if we're gonna post warnings, can we have some evidence?  We all know how frustrating False Alarms are on our AV apps  >:(

OTOH, it always pays to have backups of your Cloud Storage, and certainly I only use DropBox for sharing purposes.

Gordon.

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3162 on: October 17, 2014, 04:11:48 AM »
DropBox Hacked.
If you're using it, change your password NOW.

Er...  Just had a Cap'n Cook at https://blog.dropbox.com/2014/10/dropbox-wasnt-hacked/.

Please--and it's not just you Bob--if we're gonna post warnings, can we have some evidence?  We all know how frustrating False Alarms are on our AV apps  >:(

OTOH, it always pays to have backups of your Cloud Storage, and certainly I only use DropBox for sharing purposes.

Gordon.
@Gordon,

Technically speaking, Dropbox's servers did not get breached.
Photos and login credentials apparently leaked from third-party sites or apps that piggyback on these services.
The end result, if you used any of these 3rd party apps, still put you at risk.
The recommended procedure was to change your password and use two-step verification.
IMHO, it's always safer to go the extra step to make sure you're safe. :)

Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

REDACTED

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3163 on: October 17, 2014, 11:00:23 AM »
Photos and login credentials apparently leaked from third-party sites or apps that piggyback on these services.
The end result, if you used any of these 3rd party apps, still put you at risk.

Which is why very few (if any) of my passwords are shared between "services", and I never "Sign on from xxx".  It's just not worth the risk.  I'm trying to remember the security expert who had all his Apple i-stuff raped by (I think) Anonymous: he had everything linked.  He couldn't even phone up from his iPhone, as his "Secret Questions" had been reset!  IIRC, Amazon was involved at some stage, and had a lot of explaining to do.  BUT: this fellow was the chief culprit, for linking everything.

A-a-a-n-d, I have CryptoPrevent to save me from CryptoLocker & clones  8)  Reminder to self: upgrade every 1st-of-the-month!!!!!!

Quote
...and use two-step verification
I had a look at the recommendations, but how kludgy!  The biggest problem is time.  It's going to take some minutes to get the SMS from DropBox, while you've got the log-in screen open and ditto but much longer for the email.  I've often waited up to 30 minutes for some "activation" emails to get back to me...  My bank gave us this little gizmo that flashes up a number or something and gives you 36 seconds to get it into the form field with your log-on.  So the time factor is eliminated. And--of course--it's a different number each time.


Gordon.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33920
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3164 on: October 18, 2014, 06:31:04 PM »
Hi gotdon451,

Goes to show that we haven't arrived at a "secure" secure "IntheCloud' service.
Too many parties involved to keep it secure and big Pebkas issues,
which maybe are the worst of the pack.
I don't want that on my back all the time.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!