Blog (Possibly) Interrupted

January 15th, 2007 | Posted in General

The blog might be down a few times over the next week as it gets upgraded to the latest WordPress version. The downtime should be brief, but if you experience any trouble accessing the blog I apologize. It seems the older version had some security issues that may have contributed to a minor but annoying hack of the blog that happened last week. No data lost or anything, and the problem may not have anything to do with WordPress’s security… but better safe than sorry.

I suspect the problem may have been with a computer we sold via Craigslist a week or so ago. It was The Lovely Anna‘s computer, and she had gotten a new one recently prompting the sale of the old one. It sold so fast… they called, agreed on the price and drove straight over, the listing was up and down within hours… that I did not have time to properly prepare the computer to give to an unknown party. Computers store things like usernames and passwords in strings and cookies, and just clearing caches or browser history won’t necessarily get rid of them. If someone knows where and how to look, that kind of information can be recovered. I’m not saying that’s what happened, but I did use Anna’s computer to access my blog admin area, and it’s possible that my username and password was compromised and someone gained access to the editing interface.

Following the sale of the computer, Anna and I visited all the sites she ever logged into with a password and changed her password for each. She has had no problems of any kind. I even changed her e-mail password on the mail server. It did not occur to me that I had ever accessed any of my secure sites from her computer, but I had done so with the blog. I have since changed my password here. I don’t know if that took care of the problem or not, but there has been no reoccurance since that change.

Again, I don’t know if that was the problem or some bug in WordPress… but I did learn a lesson I’d pass on to everyone. In this day and age of identity theft, our computers are like boxes containing keys to our houses and cars, our checkbooks, our credit cards and our entire life savings in one flimsy digital safe. Selling an old computer should not be done lightly. I can see how the buying of old computers from the ignorant or careless Joe Sixpack by dishonest people would be a big business, using the purchased machine to extract passwords and personal info that could be used to steal. However some preventive measures will insure you do not have a problem when selling a computer. Here are some things to remember:

  1. When you buy a computer, save all the manuals and original disks carefully. You’ll need them to restore the computer to factory settings. I save it all in the original box so it’s easy to find.
  2. Create passwords for your accounts that are totally random, which include letters and numbers, and have no relation to you personally (like your street name or your birthday backwards).
  3. Change your password every so often. I change mine every 3 months for all my accounts.
  4. When you sell your computer, completely reformat your hard drive. Do a full reformat. This is the only way to completely delete all information from your drive. Then reinstall your system software. Most computers have instructions on how to bring your system back to factory standard.
  5. Right before you sell your computer, change all your passwords using your new computer.

That fourth one is most important, and something I failed to do. Just deleting files doesn’t erase them, it just tells your computer to ignore that they are there and to overwrite them when something new is installed, copied or created. They are still there and can be recovered by special software you can buy anywhere.

It’s a different world. Much of our lives exists in strings of 1’s and 0’s on magnetic disks protected by nothing but software and passwords. These days putting your wallet in your front pocket when walking down crowded city streets isn’t enough to keep from getting your digital pockets picked. Be careful out there….

Comments

  1. pagmatic says:

    another good idea is to defrag the hard drive. People don’t usually do that when they get rid of their old computers; but defragging is the best way to do it; since it erases the hard drive 😉

    -Pag

  2. Tom says:

    Actually, defragging your hard drive does not erase it. Defragging reorganizes the data in the writable sectors on your hard drive so it is more easily read and data more quickly found. It’s like if you just stuffed important papers into a file cabinet at random for a year… they are all there but it takes a lot of work to find them. That’s a “fragmented” file cabinet. If you spend a few hours organizing all the papers into logical sections, that would be ‘defragging’ your file cabinet. Defragging your hard drive regularly is always a good idea. It doesn’t erase it, though.

  3. jobi says:

    Well, Tom. Formatting also won’t destroy the data contained in the hard disk. There is a freeware utility (Eraser 5.8) that overwrites the data several times, making it harder to recover. It includes also the Nuke Boot Disk, which allows you to boot a disk from a linux program that erases all the data in your HD following some standards required by the DoD.

    Greetings

  4. Tom says:

    Well, that’s a new one to me. I’ve always been told reformatting your drive is permanent. A quick search reveals there are several consumer utilities that claim they can recover lost data on a reformatted hard drive. I guess the only way to truly delete your data is to overwrite it. Of course, by the time your reload your system software and other programs on your reformatted hard drive, a lot of that data has been overwritten. Still, better safe than sorry.

    Thanks for the tip, I will use an eraser program next time… until of course somebody writes and un-eraser eraser recovery program.

  5. pagmatic says:

    I have no idea why I said “defrag”? I meant reformat; but my wife said even that leaves a trace of info. She suggested removing the hard drive and destroying it with a hammer or something deadly. At least you’ll be sure your info won’t fall into the wrong hands.

Instagram

Claptrap Ad

GICLEES

Workshop Ad

007 ad

Catwoman ad

Dracula ad

Doctor Who ad

Superman ad

NCS