02.11.2014 Views

untangling_the_web

untangling_the_web

untangling_the_web

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

DID: 4046925<br />

UNCLA55IFIEDh'liOM: OlililelAL USE ONLY<br />

Despite changes in IE7, Microsoft's browser still relies heavily on ActiveX controls,<br />

which are often exploited by browser hijackers. In fact, PC World lists IE as <strong>the</strong><br />

number one Internet threat of 2007 because of IE's "reliance on Microsoft's ActiveX<br />

technolog~, which allows Web sites to run executable programs on your PC via your<br />

browser." 82 Although Firefox is becoming a more tempting target for malicious<br />

hackers, IE remains <strong>the</strong> target of choice for now both because it is <strong>the</strong> most popular<br />

browser and because of its dependence on ActiveX.<br />

Disable Autocomplete for Forms and Names/Passwords on Forms<br />

This is ano<strong>the</strong>r case where placing convenience ahead of security could cost you<br />

dearly. You do not want passwords or forms saved to <strong>the</strong> browser so that someone<br />

else might use <strong>the</strong>m for some nefarious purpose, Passwords should not be saved<br />

unencrypted or without strong protection anywhere at any time. Many online stores<br />

will ask you if you would like to save your credit card information for future use. Do<br />

not allow <strong>web</strong>sites to save your credit card number: Make a habit of entering<br />

such personal and financial data each time it is needed and only for that transaction.<br />

AutoComplete listspossible matches from entriesyou've<br />

typed before.<br />

Todelete stored form data and passwords, dick <strong>the</strong><br />

General tab, dickDelete, and <strong>the</strong>n did< Delete forms or<br />

Delete passwords.<br />

( o~:::=] I Cancel<br />

182 Scott Spanbauer, "Thwart <strong>the</strong> Three Biggest Internet Threats of 2007," 24 January 2007,<br />

(31 January 2007).<br />

532 UNCLA551FIEDfiFOR OFFlOllltL USE ONLY

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!