check out the new remote control Jockey Wheel SmartBar rearview170 Beam Communications SatPhone Shop Topargee products Enginesaver Low Water Alarms
Members Login
Username 
 
Password 
    Remember Me  
Post Info TOPIC: Could Save You Grief


Guru

Status: Offline
Posts: 1880
Date:
Could Save You Grief


THIS IS IMPORTANT..............................

What is the difference between http and https?

 

 

FIRST MANY PEOPLE ARE UNAWARE OF

**The main difference between http:// and

         https:// is  ... It's all about keeping  you secure**

HTTP stands for HyperText Transport Protocol,

which is just a fancy way of saying it's a protocol

(a language, in a manner of speaking) for data to

be passed back and forth between web servers and

clients.  The important thing is the letter 'S' which

makes the difference between HTTP  and HTTPS.

The S (big surprise) stands for "Secure".

If you visit a website or webpage, and look at the

address in the web browser, it will likely begin with

the following: http://.

This means that the website is talking to your browser

using the regular 'unsecure' language. In other words,

it is possible for someone to "eavesdrop" on your

computer's conversation with the website. If you fill

out a form on the website, someone might see the

information you send to that site.  This is why you

never -ever- enter your credit card number in an

http website!

But if the web address begins with https://, that

basically means your computer is talking to the

website in a secure code that no one can eavesdrop on.

You understand why this is so important, right?

If a website ever asks you to enter your credit card

information, you should automatically look to see

if the web address begins with https://.

If it doesn't, there's no way you're going to enter

sensitive information like a credit card number.



__________________

Pets are welcome but children must be leashed at all times



Guru

Status: Offline
Posts: 1218
Date:

Thanks Wombat.I appreciate that info.Cheers  Ibbo.wink

__________________

"Wings Over The Navy"



Guru

Status: Offline
Posts: 669
Date:

thought I was savvy with computors, but nobody has told me this,
was hacked for 5 grand back in 2004 and the commonwealth bank paid it back, but even they did'nt say anything about this
thank you a hell of a lot mate

__________________
Mike and Judy


enjoy your sunrises,we only have a limited number


Guru

Status: Offline
Posts: 700
Date:

Thanks Wombat
like most of us my computer knowledge is very limited,and this type of info
is just great.


john

-- Edited by jandas fun at 09:16, 2009-02-12

__________________

There is no road to happiness. Happiness is the road.

Just Lovenit.


Wentworth Falls NSW



Guru

Status: Offline
Posts: 2333
Date:

I didn't know this. I too had issues with money dissapearing out of my mastercard account, only small amounts but over 3 years it added up to$6k and after some negotiation had it refunded but it was caused because someone had gotten hold of my account security details and was syphoning off small amounts so that I'd think they were charges....

__________________
Don't take life too seriously.... No one gets out alive

KIA Sorento CRDi EX  ( Ebony black) with 5 hex chrome plated tire air valve covers, Coramal Sunsheild, Elcheapo GPS, First Aid Kit, full KIA toolkit & Yellow lenses on the Foglights......


Senior Member

Status: Offline
Posts: 161
Date:

Wombats on the money so to speak with this one.

Although don't take the HTTPS as gospel, its very easy to setup a secure socket, I can do so on my website if I so desired. Common sense must be used. Eventually I am going to have an online shop on my site, although whilst the shopping cart itself won't run a socket, the payment gateway will, as I am going to use PayPal, easier and cheaper :)

I've known a few people who have got caught using online banking and the likes, and 9 times out of 10 it was because they logged on from an internet cafe style computer, you'd have to be pretty dumb wouldn't you?

Likewise I've heard a lot of stories where people say they have been 'hacked' etc etc. Whilst in some cases this is definately true, a lot is actually nothing to do with hacking, but more software malfunction or registry errors in windows, which can cause some very weird things to occur.

I've been on the net for well over 10 years now, and in that time I have only ever twice had virus issues, once was my own fault, as I used to collect viruses, decompile them just to see how they worked. And the other time was when I installed some software I had downloaded via a torrent without checking it first - both instances my fault alone.

There are a lot of wankers on chat rooms etc who profess great hacking knowledge, most would battle to hack their way through a tissue. You can put 90% of 'self confessed chat room hackers' down to being script kiddies, who wouldn't know the first thing about hacking, rather they use programs which do the hard work for them.

Such an example would be quite some years ago with the Back Orifice program, which ironically was meant as a remote control tool, the said 'hackor' would send you the patch, usually diguised as an image, and once you clicked on it, it installed the patch allowing access to your computer, provided they knew your IP address.

Whilst on IP addresses, it is not all that easy to get someones IP address, so if you happen to be in a chat room and someone tells you that they have your IP they are most likely tossing. On chat there are usually only three ways to get an IP of another person:

1. Direct file transfer.
2. Webcam peer-to-peer.
3. Direct voice connection.

The above assumes the chat software doesn't route any of these services via their own servers, in which case you will get the IP address of the server, and not the target computer.

Its not the ones who tell you they can hack you that you need to worry about, they are glory seekers, its the ones sitting back shutting their gobs that know what they are doing, and can easily slip in and out of someones computer without to much drama.

Although these days, with proxy servers, and advances on the server end of things (your isp) and firewalls etc (every adsl modem has a built in firewall), its very rare to have any issues.

The real hackers are simply not interested in the general public, unless you happen to really get up their noses. They are more interested in accessing corporate servers, and most real hackers don't do this to cause destruction, its more to do with the challenge of being able to beat what should be a secure server. Think NASA, DOJ etc in the USA.

I have met one of Australia's most prolific hackers (80's era), and its quite interesting to talk to some of these people, who are not interested in destructive hacking, but finding 'security holes'. It is amazing how many servers are simply not secure.

Speaking of security, if you own a wireless router (home wireless network), for godsake enable the WEP key, and don't leave your network open. Whilst been hacked is a likelyhood, the bigger problem is people being able to access your Internet connection.

Take a drive around Melbourne (or any large city, and even small ones) with your laptop, and chances are you will find an open wireless network, where you can just log on and happily use their internet connection, all for free and in most without them even realising it.

A local business where I live had their wireless network open, which I stumbled upon, been the nice upstanding person that I am, after checking my email and chatting on MSN for a little while using their network, I went and told them that their network was open and accessible to anyone. At first they claimed I 'hacked' them, until I got the laptop and showed them. After which I put a key on their wireless router for them, and disabled broadcast of the ESID. They were extremely greatfull for this, not as greatfull as their kids were I am sure, as the kids were being blamed for the excess internet data useage on a regular basis, so obviously someone else was well aware of their wireless being open and making regular use of it.

__________________

Cheers;
Stew, VK3FEMT.
¸.·´¯`·.´¯`·.¸¸.·´¯`·.¸><(((º>

Pam


Guru

Status: Offline
Posts: 1227
Date:

A padlock symbol appears as well either on the top or bottom tool bar when you are on a secure https site

__________________

From  NSW



Guru

Status: Offline
Posts: 2333
Date:

bamphoto wrote:

Wombats on the money so to speak with this one.

Although don't take the HTTPS as gospel, its very easy to setup a secure socket, I can do so on my website if I so desired. Common sense must be used. Eventually I am going to have an online shop on my site, although whilst the shopping cart itself won't run a socket, the payment gateway will, as I am going to use PayPal, easier and cheaper :)

I've known a few people who have got caught using online banking and the likes, and 9 times out of 10 it was because they logged on from an internet cafe style computer, you'd have to be pretty dumb wouldn't you?

Likewise I've heard a lot of stories where people say they have been 'hacked' etc etc. Whilst in some cases this is definately true, a lot is actually nothing to do with hacking, but more software malfunction or registry errors in windows, which can cause some very weird things to occur.

I've been on the net for well over 10 years now, and in that time I have only ever twice had virus issues, once was my own fault, as I used to collect viruses, decompile them just to see how they worked. And the other time was when I installed some software I had downloaded via a torrent without checking it first - both instances my fault alone.

There are a lot of wankers on chat rooms etc who profess great hacking knowledge, most would battle to hack their way through a tissue. You can put 90% of 'self confessed chat room hackers' down to being script kiddies, who wouldn't know the first thing about hacking, rather they use programs which do the hard work for them.

Such an example would be quite some years ago with the Back Orifice program, which ironically was meant as a remote control tool, the said 'hackor' would send you the patch, usually diguised as an image, and once you clicked on it, it installed the patch allowing access to your computer, provided they knew your IP address.

Whilst on IP addresses, it is not all that easy to get someones IP address, so if you happen to be in a chat room and someone tells you that they have your IP they are most likely tossing. On chat there are usually only three ways to get an IP of another person:

1. Direct file transfer.
2. Webcam peer-to-peer.
3. Direct voice connection.

The above assumes the chat software doesn't route any of these services via their own servers, in which case you will get the IP address of the server, and not the target computer.

Its not the ones who tell you they can hack you that you need to worry about, they are glory seekers, its the ones sitting back shutting their gobs that know what they are doing, and can easily slip in and out of someones computer without to much drama.

Although these days, with proxy servers, and advances on the server end of things (your isp) and firewalls etc (every adsl modem has a built in firewall), its very rare to have any issues.

The real hackers are simply not interested in the general public, unless you happen to really get up their noses. They are more interested in accessing corporate servers, and most real hackers don't do this to cause destruction, its more to do with the challenge of being able to beat what should be a secure server. Think NASA, DOJ etc in the USA.

I have met one of Australia's most prolific hackers (80's era), and its quite interesting to talk to some of these people, who are not interested in destructive hacking, but finding 'security holes'. It is amazing how many servers are simply not secure.

Speaking of security, if you own a wireless router (home wireless network), for godsake enable the WEP key, and don't leave your network open. Whilst been hacked is a likelyhood, the bigger problem is people being able to access your Internet connection.

Take a drive around Melbourne (or any large city, and even small ones) with your laptop, and chances are you will find an open wireless network, where you can just log on and happily use their internet connection, all for free and in most without them even realising it.

A local business where I live had their wireless network open, which I stumbled upon, been the nice upstanding person that I am, after checking my email and chatting on MSN for a little while using their network, I went and told them that their network was open and accessible to anyone. At first they claimed I 'hacked' them, until I got the laptop and showed them. After which I put a key on their wireless router for them, and disabled broadcast of the ESID. They were extremely greatfull for this, not as greatfull as their kids were I am sure, as the kids were being blamed for the excess internet data useage on a regular basis, so obviously someone else was well aware of their wireless being open and making regular use of it.



Stew, now I thought I was computer literate but mate I don't have a clue what you are talking about with your no doubt very correct nomenclature. For the laypersons could you give us perhaps a glossary of your acronyms and a basic explanation of what for example a "secure socket" is. You have to remember most of us are not up on the PCTT or even the buzz words....
And I think you are the right bloke to head up our technology forum (if we ever get it)......



__________________
Don't take life too seriously.... No one gets out alive

KIA Sorento CRDi EX  ( Ebony black) with 5 hex chrome plated tire air valve covers, Coramal Sunsheild, Elcheapo GPS, First Aid Kit, full KIA toolkit & Yellow lenses on the Foglights......


Guru

Status: Offline
Posts: 669
Date:

its all double dutch to me ,
How about putting in the full word after using the capital letters

__________________
Mike and Judy


enjoy your sunrises,we only have a limited number


Guru

Status: Offline
Posts: 2601
Date:

"WOT THE"........................................ I'll stick to travelling thank you

__________________
 me, the dragon, & little blue,  never stop playing, live long,  laugh lots, travel far, give a stranger a smile, might just be your next best freind.  try to commit a random act of kindness everyday

 http://daventhedragon.blogspot.com



Senior Member

Status: Offline
Posts: 161
Date:

Ok, sorry if I got to technical there, worst of being an ex network admin I guess.

Once I get things sorted and my wireless internet going I will explain it all in normal terms. Just handed the keys of the house back today, so I am now officially on the road, although will be in the gap over the weekend due to the jazz festival and work.

Then Monday going to my parents place, then after that most likely the Whittlesea/Kinglake area, depends on where I get placed.

So seeyas all when I am renetted and thanks for all the help so far.

__________________

Cheers;
Stew, VK3FEMT.
¸.·´¯`·.´¯`·.¸¸.·´¯`·.¸><(((º>



Guru

Status: Offline
Posts: 2601
Date:

stew, you get as technical as you like mate, we, as grey nomads, are a little out of touch when it comes to these things, the more info that we can sit down and read and then re-read until we understand it, the better, we oldies are vulnerable to all sorts of electronic attacks from these cyber thieves simply because most of us dont understand what we are doing, all info is good info!! keep it coming!! oh and I place myself firmly in the vulnerable mob!!!

__________________
 me, the dragon, & little blue,  never stop playing, live long,  laugh lots, travel far, give a stranger a smile, might just be your next best freind.  try to commit a random act of kindness everyday

 http://daventhedragon.blogspot.com



Guru

Status: Offline
Posts: 1880
Date:

dave06 wrote:

stew, you get as technical as you like mate, we, as grey nomads, are a little out of touch when it comes to these things, the more info that we can sit down and read and then re-read until we understand it, the better, we oldies are vulnerable to all sorts of electronic attacks from these cyber thieves simply because most of us dont understand what we are doing, all info is good info!! keep it coming!! oh and I place myself firmly in the vulnerable mob!!!



Mate we are all in that mob otherwise the hackers wouldn't  enhance their skill profile .  Pity they couldn't find an honest  outlet for the skills they have obviously developed like tracking down pedophiles and terrorist organizations  

 



__________________

Pets are welcome but children must be leashed at all times



Senior Member

Status: Offline
Posts: 161
Date:

Okay, SSL is not easy to explain simply, due to its complexity.
Lets see...

SSL is a program layer that sits between the Internets HTTP (Hypertext Protocol) and the TCP (Transmission Control Protocol). The sockets (Secure Socket..) refers to the sockets method of passing data between computers.

SSL is now superseeded by TLS (Transport Layer Security) which is for the end user an enhanced version of SSL.

Basically speaking, when you connect to your banks servers for example, the SSL/TLS will authenticate the data transmissions.

There is a lot of 'scare-mongering' around re online banking, whilst some of it is substantiated, a lot of 'scare-mongering'. Avoiding bank scams is very easy.

1. Only use online banking via your banks web-site, for example if you bank with National Australia Bank (I don't hehe), but if you do...

Open your browser and go to www.nab.com.au (or your banks internet address) and login to banking via the home page.

When you are transported to online banking, look for that paddlock and "https" in the address line, for example: "https://onlinebanking.yourbank.com.au"

2. Don't click on any links to online banking from an e-mail.
I highlighted this, as its the one that catches most people out.
Regardless of how authentic it/they may look, most, if not all banks do not ask you to access online banking via an e-mail, nor do they ask you to send account details via e-mail.

I've seen some very impressive e-mails presumably from banks, with links to online banking, with sites that even mimic your banks own site. The tell-tale signs to look for is obviously the internet address, again if your with NAB the address is going to be www.nab.com.au, a phising site may be something like www.nab.com or www.mab.com.au, close, and sometimes enough to fool the unwary or non-observant out there.

If you get an e-mail claiming to be from your bank, and wanting you to log in to your online banking account, delete the e-mail, and then log in to your banks online banking via their own website. That way you will be confident you are logging into your banks acutall system, not someone elses.

3. Never do online banking on public computers such as internet cafes and kiosks. Same applies for shared computers, unless you really trust the person who owns it.

4. Never (if your using a laptop) leave the computer unattended whilst connected to Internet banking, for example you may be sitting at Maccas, like I am right now, and doing some banking, and then walk over to get a coffee, it only takes 30 seconds or so for someone who is quick with a computer to jump on your computer, transfer some money to themselves and be gone. So, log off when your not near the computer, also if there are people around, its best not to use Internet banking at all, if they can see you typing its possible they can see what your entering for your login details as well.

5. Dont save your internet banking login details (or any other passwords) on your computer.

6. If your really paranoid, or suspect a problem, change your online banking password regularly, for example once a month.


Okay enough on banking....
If anyone has any specific questions they are pondering I am more then happy to attempt answering them, I am no guru, I will try my best though.

__________________

Cheers;
Stew, VK3FEMT.
¸.·´¯`·.´¯`·.¸¸.·´¯`·.¸><(((º>



Guru

Status: Offline
Posts: 2601
Date:

close enough for me mate, now when I get through working out what you just said (about a week from tuesday) then I will have some questions for you!!

well done and thanks for all that! and good to hear from you again!

__________________
 me, the dragon, & little blue,  never stop playing, live long,  laugh lots, travel far, give a stranger a smile, might just be your next best freind.  try to commit a random act of kindness everyday

 http://daventhedragon.blogspot.com

Page 1 of 1  sorted by
 
Quick Reply

Please log in to post quick replies.

Tweet this page Post to Digg Post to Del.icio.us
Purchase Grey Nomad bumper stickers Read our daily column, the Nomad News The Grey Nomad's Guidebook