Catherine Forsythe

Catherine Forsythe
Bio
know a bit about computer security, dogs, horses, skiing, medicine and making risotto. My nickname in real life/online is "Noggie" - I'm on Twitter, with the @dogreader account.

OCTOBER 13, 2010 2:15PM

How to Avoid Computer Infections While on Open Salon

Rate: 24 Flag

An article about updating Microsoft security has generated some comments and direct messages about becoming infected with malicious software (malware) while on Open Salon. There is an easy step to avoid this. 

Most likely, you are on a machine where you have administration privileges. This means that you can do such things as selecting a piece of software and installing that program on the computer. That sort of upgrade may happen infrequently but, as the owner and administrator of the computer, it is something that you are allowed to do. Most people operate the computer on an administrator's account. A safe guess is that you are doing so, at this very moment. 

The problem is that, if a hacker or cyber-criminal bypasses your computer security, the administration account allows the intruder to install malware on the computer. To avoid that, create an account that does not have administrative privileges. That account means that it is still possible to do the daily online things such as check email, browse sites, post to Open Salon, use instant messaging and so forth. What that limited account does not allow is installation of software. 

If you do find a program that you want to install, simply switch back to an administration account and install that software. It is simple to switch accounts. If you are on a non-administration account and your computer is compromised, it is far more difficult for the hacker to install a malware program. The account that you are using simply will not allow it.

A non administration account is called a "LUA", which means Least Privilege Account. Here is a part Microsoft discussion on the topic:

"...  Limited user accounts significantly reduce the attack surface for malicious software because these accounts have minimal ability to make system-wide changes that affect operational security. In particular, limited user accounts cannot open ports on the firewall, stop or start services, or modify files in the Windows system folders."


Don't let the 'tech-speak' deter you. Creating a new account is not difficult. This is a simple way of protecting your computer from infections. You will not notice the difference when you using the non administration account for your daily activities. That means that, while you are on that non administration account, you can click on an Open Salon link someone has provided and feel fairly safe that malware will not be installed on your computer. 

Catherine Forsythe
 
some additional links:
 
 
 
 
helpkey 

Your tags:

TIP:

Enter the amount, and click "Tip" to submit!
Recipient's email address:
Personal message (optional):

Your email address:

Comments

Type your comment below:
This is cool Catherine...and I understood it. I am going to paste in on my FaceBook.
I try to be much safer, which is why I always wear a condom when using the Internet. You don't know who the Internet has been with.
SC, thanks - this one is easy to do and does not cost anything to implement.

Duane, nice to know about your prophylactic habits. And look forth ways before you cross the information highway.
I shove a Penicillin Capsule into my USB port every morning.
So far, so good.


{[R]}
Larry, let us know if you are going to use the library computer. We'll start collecting bail money.
Kate, hi - thanks for dropping by. I hope you are working on "additional" chapters!
okay! I'm going to do this BUT how do you know all this stuff?!
you lost me at "an"
Great advice, Catherine.
Eve, try hanging out with geeks and people in the engineering building. You'll be amazed at what trivia comes by osmosis.

Hey Brian, did you keep the shipping material for the computer? Ship it to me when it turns into a brick ;)
You are always helpful with your knowledge, Catherine. Thank you very much. ~R
Hey Fred, thanks for dropping by.

Matt, you should be issuing 'avatar change' warnings!

Fusun, you're welcome. Thanks for your support. I know that computer security is never a popular topic on these pages.
Thanks Catherine,

I'm going to try this because I did get a malicious attack on my computer a few weeks ago. Don't know where it came from. But (and this is a separate question) how did my networked computer (non administrative priviledges) at work get a virus that spread to other computers (that used the same program) through out our office? Just curious...
Nelly, the default answer is "I don't know". However, I will venture a guess. Your computer is networked. That means that, on the network system, some administrator can upgrade your computer without disturbing your specific user settings. That is one of the benefits of a networked system. It can be done remotely, without a visit to each individual station. The administrator must be absolutely certain that the computer he/she is using is free of malware, trojans, root kits and other such problems. If that security check is not done or if there is a very recent infection on the admin system, once the administrator upgrades the office systems, that infection will spread. That is one possible scenario - there are others.

Nelle, I was waiting for the first Apple comment. Steve Jobs loves you!
Thanks for the info. Our IT department disabled all work computers (in terms of administrative rights) for that reason. Does OS still have virus problems? We had a few incidences of virus attacks last spring. They were caused by Google ads.
Kanuk,

I don't know if it is an ongoing problem. I would not be surprised if Open Salon was a target. You well know that this site is a spam target. Your posts have demonstrated that amply.

When I posted about the recent Microsoft security patch in another article, some people mentioned about malware in the comment section and through direct messages. I thought it would be far better to post something, as a preventative measure, rather than be reactive once the malware has struck. As I mentioned, computer security is never a popular or well-read topic on these pages. People make the assumption that these infections happen to other computer users.
Thank you for this! Can we nuke the spammers, though? R
Libmomrn, I have written about the spam issue. Some of my posts are:  A Possible Approach for Open Salon Spam Control and Requesting These Comment Spam Features from Open Salon. I have sent these suggestions to Open Salon. I have volunteered to help 'pro bono'. There has never been an answer, which in itself is an answer. 
I'm back with what might be a very dumb question. I created that account that you suggestion. I'm using it right now. What I want to ask is whether that non admin account can be faster. Catherine, it seems faster to me and I was wondering if it's just my imagination.
Ah HA! How simple! along with Trend Micro or Kapersky security software , of course.
Eve, it might be faster. It all depends on how your computer is set up and what programs that you have installed. The non-administrative account may be able to use the CPU more efficiently and/or you may have more RAM available. Just enjoy the faster speed.

Good luck with your school term - and thanks for your support on these pages.
OS seems so slow at times that I just cannot take the time to stop in.

After the ibuprofen kicks in I'll see if I can make sense of this. I'm sure some have been helped and your efforts are noted.
xenonlit, it is simple. Just remember to switch back to your administration account when you want to update security or install some new software.

aka, I hope it was not Open Salon that necessitated the use of an analgesic.
Obviously I am having way too much fun puttering around on this thread and not accomplishing much work.
I like that you put "os user manual" in the tags, it's helpful for old timers and newbies alike.

I'm with Nelle, though I'm not an evangelist. I believe that people should use what they want to get their work done in the best way possible, but viruses and malware are just off the radar in my mac centric office ( that's a pic I posted on an OS article here). The pic is actually out of date, since there's newer equipment in here now.

In the pic, there's one lonely PC in the corner, which even with firewalls in place for wired and wireless access, it was plagued with problems--mainly because my youngest son was really the only one to use it, and he was never careful with what he downloaded. But even though he got virii through the firewall, it never affected any of the macs on the same network. Again, I don't care what people use, but I'm lucky I just don't have to worry about it-we're such a small unproductive target for the bad people.

Thanks again for a very useful blog, with good links.
You mean prayer doesn't work?? I understand more about religion than I do about computer-speak (well, OK, not much about either, to be honest)
bbd, I am truly tempted to show those pictures to some of my geek friends and see if they would weep. It is such a beautiful beautiful setup. And thank you for telling me about the "os user manual" tag that I used on previous posts.

Andy, an Apple representative will be in touch. Please make sure there is enough room on your credit card(s).
Catherine thank you. Just to be clear, do I then need to switch back to my admin account before I pass out at night so my security and Microsoft updates will mysteriously happen as I sleep?

I'm now unemployed and don't have access to the wonderful (and entertaining) world of geeks. I don't like missing out on mysterious happenings as I sleep!
l'Heure Bleue,

Let me start to answer that with an analogy. Imagine that you are on a long street, where you know that thieves lurk. They will try the front door sometimes to see if you have it unlocked. They know that some people leave their doors unlocked all the time and some people leave their doors unlocked only part of the time. It is far easier for the hackers to plague the people who leave the door open all the time.

Now, how that analogy relates to computer security. When I leave the door open, personally I want to be there and monitor what is happening. I monitor the security downloads and the definition updates. That means that the "front door" is only open for a very short time and I am there to make sure that nothing bad is going to happen. I do not allow automated update processes. I want to do it manually.

There is another reason I have for doing it this way. There are some programs that update and force a computer restart. Sometimes, that may mean that you have left work in progress on your machine when you went to bed. When you return, you might find that the computer has had a forced re-start. All that work that was in progress on your computer has vanished.

These are just a few of the reasons that I do not like the automated update. It simply leaves the door unlocked and open - and for much too extended amount of time for my liking. I am certain that other people would disagree and think that this is overly cautious. However, I would prefer to error on the side of caution rather than thinking that the risk is small and 'it won't happen to me'.
you're a cyberangel Catherine. i haven't experienced a MAC attack yet, but can see the sense in using this regardless of the operating system in use.
Thanks, Abby... The sales of iPads have been huge. I am wondering when iPads will be the target of exploits. The sheer number of iPads and wi-fi combination must be such a tempting target for hackers.
Catherine: Thanks for your answer. I talked about the first wave of virus attacks here (about 6 months ago):

Is there a computer virus hitting Open Salon?
Catherine, I have blackout drapes and still keep the lamp between me and the windows. I have outside lighting on all sides of my house. I won't tell you what I keep near me when I sleep or what is in the bed with me (sigh, it's not a gentleman). I wouldn't walk halfway down my block alone at night. I finally found a spider under the toilet seat 5 years ago after diligently checking in the middle of the night for decades!

I pre-programmed my kids and one did escape two potential rapists with minor injuries only. I will not go to sleep or leave the house with my computer running again. I loved the analogy because it's now part of my thinking process about computers. Thank you for keeping me from having headaches, I have enough to worry about.
You are a tremendous resource. Thanks
Kanuk, thanks for posting that link.

l'Heure Bleue, I am grateful that some people are interested in computer security. It always surprises me that more people are not.

TWS, thanks!
thanks for the tip. excellent advice. hints on how I got infected off of OS probably via a java attack vector. oh yeah I wasnt using a LUA. killer.