Internet / Network Security

  1. Home
  2. Computing & Technology
  3. Internet / Network Security

Network Security Blog

From Tony Bradley, CISSP-ISSAP, for About.com

Don't Underestimate the Need for Security

Friday September 5, 2008
A while back I wrote a blog post called '4 Minutes to Compromise' noting that a recent report claimed that an unpatched and unprotected Windows XP system would not last more than 4 minutes on the public Internet without being compromised. Along those same lines, About.com's Internet for Beginners Guide Paul Gil recently addressed the question So, How Bad is the Threat of Hacking? Four minutes seems pretty bad. It is certainly not enough time to download and install the patches and updates necessary to protect the system. Paul's post includes an interview with whitehat hacker Jacques Erasmus and a demonstration of just how fast these systems can be 0wn3d.

Comments

September 5, 2008 at 9:58 pm
(1) Jason says:

Tony, i have seen windows xp non sp pc’s get compromised seconds on connecting to the internet, its insane, thats why all my friends & family have routers.
The internet is not safe without them

September 13, 2008 at 3:45 pm
(2) Tony says:

WOW. That is scary, what about your username and passwords getting hacked?

I use a remote access software to get my home PC when I’m traveling, is that going to get hacked?

September 15, 2008 at 7:30 pm
(3) William says:

Well, authentication is another story and whether your username and password are compromised depends heavily on your habits when you create them. One way to limit the problem is to introduce 2-factor authentication, which means that your username and password is not the only obstacle to get access to a system. There are some new solutions involving ordinary wireless and wireline phones, which make it really easy and cheap to set 2-factor up, even as a regular consumer.

September 15, 2008 at 8:15 pm
(4) Tony says:

Thanks William,

2-Factor Authentication sounds like the way to go. I like the sound of easy and cheap, what solutions do you suggest?

September 16, 2008 at 10:48 pm
(5) JacoP says:

I just came across this article. My company uses a product called Phonefactor for logmein which provides that 2-factor authentication.
You can download it here:
http://www.phonefactor.com/solutions/logmein/

September 17, 2008 at 10:31 am
(6) Tony says:

PhoneFactor looks pretty good, thanks for the link. I’ve installed it, easy to set and use. I guess my home pc is lot more secure now, great!

September 17, 2008 at 11:36 am
(7) Fred says:

PhoneFactor is interesting because it is, among others, a 2-factor solution that relies on wireless and wireline phones. It depends heavily on the idea that users already have something at hand (a particular phone line) that does not have to be specially delivered. IMHO, this means that 2-factor authentication can be delivered a lot more ubiquitously than has been true in the past.

Leave a Comment

Line and paragraph breaks are automatic. Some HTML allowed: <a href="" title="">, <b>, <i>, <strike>

Explore Internet / Network Security

About.com Special Features

Build Your Own Website

Step-by-step advice on how to do everything from choosing a Web host to promoting your content. More >

Connect Your Home Computers

Easy ways to connect two computers for networking purposes. More >

Internet / Network Security

  1. Home
  2. Computing & Technology
  3. Internet / Network Security

©2009 About.com, a part of The New York Times Company.

All rights reserved.