Blog

January 16th, 2012

Headaches using printers usually don't have anything to do with hacking, but now they do. Recent research done by experts from Columbia University have discovered a flaw in many printer systems that are connected to the Internet a flaw that allows easy entry by hackers into the networks printers serve.

When it comes to printers, we usually think about ink, paper jams and minor irritations but certainly NOT getting hacked. But recent research suggests that printers can be used by hackers to infiltrate computer systems.

According to researchers at Columbia University, printers that are connected to the are the weakest (and almost always unnoticed) link that can compromise an otherwise secure system. Details are emerging, as the research was done under government and corporate grants. The Federal Bureau of Investigation got the first look at the research results, followed by people from Hewlett-Packard. What is clear is that this new research reveals that printers CAN be used by hackers or online thieves not only to infiltrate networks, but also to steal personal information and even identities.

The security flaw involves the printer software used to run "embedded systems" which enables both advanced functions and connects the printer directly the Internet. Alarmingly, researchers were able to hack into a printer, and give it instructions to continuously heat up the part of the device that dried the ink after it’s applied to the paper. The resulting heat caused the paper to turn brown and smoke.

The implications of this type of security flaw are concerning, but can be addressed properly and promptly with the right planning. HP is looking into the study for their own line of printers and business owners should also take precautionary steps to protect already installed devices on their networks.

If you want to know more about how you can ensure that your systems are secure, give us a call so we can sit down with you and discuss a security blueprint that meets your specific needs.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 11th, 2012

An electronic medical record (EMR) implementation isn't just about replacing paper charts with digital technology. EMRs also provide a perfect opportunity to review and improve your workflows. The result can be increased efficiencies—which means decreased costs.

Your medical practice has probably been doing things the same way for a long time. Maybe you think you do things well, and most likely you actually do. Most practices, however, have not recently reviewed and optimized processes to the extent possible. Few have standardized procedures in writing, for example.

Implementing an EMR won't automatically make these improvements. In fact, most people think EMRs solve problems, but they actually amplify problems that already exist in a practice.

Because of this, adopting an EMR presents a good opportunity for you to make your practice more efficient by reviewing processes and optimizing your own workflows. In fact, you may find that with little effort you are able to identify new efficiencies that could save time and money.

Be patient, however. The adoption of technology is an iterative process. In other words, while EMRs are full of functions that will bring efficiency to your practice if implemented correctly, this won't happen overnight. Give it some time. Typically, health care groups are in the learning and adoption phase of their transition for several months. You should see results after that.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 10th, 2012

If you own an Android phone, you can use it as a substitute for an external drive or a USB key. You can load files into your phone simply by plugging it in to a PC with a USB cable, then tapping on “Mount” when you are prompted by the system.

This mounts the internal storage of the device as an external drive relative to the PC, and you can easily drag and drop files or create folders on the device as you see fit. Of course, it is recommended you do this on the SDCard that likely came with the device, or one that you buy for your phone.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 10th, 2012

Electronic medical record (EMR) implementations aren't always simpleespecially for small physician groups, which may lack dedicated information technology resources. However, following a few best practices regarding your constituents can help ensure that the process proceeds smoothly. Here are three.

Personalize for physicians. No two physicians are exactly like, so no two physicians should have to do things the same way. And that applies to functions both large and small. People approach even the simplest of technologies, such as email and word processing, differently. A good EMR will provide several ways to accomplish the same task, so be sure you offer physicians the option to choose which will best fit their practice styles.

Include nurses. With that said, an EMR isn't all about the physician. While physicians may be leaders and key decision-makers, they are not the exclusive users of an EMR. According to some reports, nurses account for almost 75 percent of chart use, and physicians just 25 percent. As a result, one of the greatest mistakes of EMR implementation is forgetting about nurses. When you create an EMR committee, be sure to have nursing representatives on it.

Round on users. Just as physicians and nurses "round" on patients at a hospital, you should round on everyone in the practice to gauge their comfort with the EMR. Thirty days and then again six months after you go live, visit each user to observe how he or she uses the EMR, take suggestions, and offer tips about how to best use the EMR within your workflows.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 9th, 2012

A hard drive shortage threatens to impact the worldwide computing industry due to the floods in Thailand. The majority of the world’s hard drive factories are located in Thailand and are struggling to recover pre-flood production levels.

In the same way the massive earthquake and tsunami damaged Japan's electronics industry, the flood crisis in Thailand is causing concern for companies that require hard drives for production.

The majority of the world's hard drives are produced in factories located in Thailand, where the flood crisis has put a damper on many industries, hard drive producers included.

According to reports, the shortage is already driving hard drive costs up and may just be the beginning of that trend. As companies like Hewlett Packard respond to the situation, the outlook remains unclear. PC sales could be affected well into 2012 and beyond. With flooding still an issue for some producers the shortage could expand.

As of now, there is still no concrete solution in sight for the problem with the supply of hard drives in the world, and while reconstruction efforts in Thailand are ongoing, getting the hard drive industry on its feet will take a while. As for the effects on the computing world as a whole, PC prices will likely rise as pre-flood inventories are sold out and replacement stock is delayed.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 6th, 2012

Some companies have decided to tap into the phenomenon of social networking to create similar networks within their own organizations. While this can do wonders with the way every member of the business communicates with each other, it’s important to have proper and specific rules that pertain to its use.

With the waves created by social networking in how companies do business nowadays, many have also utilized the same principle to develop internal social networks to enhance their in-house communications as well. However, the use of this new medium of communication also requires that companies develop new policies to cover its use.

One concern that may leave you apprehensive about creating an internal social network might be the fear that it could be abused by employees. However, reports have shown that introducing an in-house social network has produced generally positive results.

As long as company policies regarding the use of internal social networks are developed and implemented properly, employees will view such a network as an extension of the workplace, and will try to put their best foot forward. Such policies must specifically tackle the use of the internal social network, and many experts recommend revising existing company rules that govern the use of email, IT resources, and even external social networks. To be on the safe side, it's a good idea to consult with a lawyer to avoid any legal problems with the policy in the future.

Who's going to be in charge? Your managers, of course. Since the social network will be for company use, it follows that department heads should be given administrative duties and permissions which they will use for moderating communications and discussions in and pertaining do their respective sections.

While an internal social network can do wonders for your in-house communications, good policies and rules pertaining to its use will be what keep it working like a well-oiled machine.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 3rd, 2012

If you are in the habit of using passwords like 'password', 'qwerty' or '123456', you may be helping hackers and online thieves steal your data. Security experts have compiled a list of the 25 most common passwords – passwords that you should avoid.

If you think using 'password' as your password is no big deal, then it's time to rethink.

Security experts have recently compiled a list of the worst passwords users can choose, and 'password' is at the very top of the list. Weak passwords make your information more vulnerable simply because hackers can guess them. It may be easier to pick a password that you don't have to think about, but it's a choice that you may come to regret.

To help you avoid common password choice mistakes that users make, management application provider SplashData has compiled a list of the 25 worst passwords to use:

  1. password
  2. 123456
  3. 12345678
  4. qwerty
  5. abc123
  6. monkey
  7. 1234567
  8. letmein
  9. trustno1
  10. dragon
  11. baseball
  12. 111111
  13. iloveyou
  14. master
  15. sunshine
  16. ashley
  17. bailey
  18. passw0rd
  19. shadow
  20. 123123
  21. 654321
  22. superman
  23. qazwsx
  24. michael
  25. football
Make a smart password choice Experts advise using a combination of letters and numbers when creating your passwords, and to avoid things that anyone might be able to guess, such as birthdays and anniversary dates. Passwords with eight characters or more are safer and it's best to use different passwords for different accounts and websites. Use a password manager to help you keep track of all of your passwords if you're finding it difficult to remember them all..

No matter how sophisticated your security system is, a weak password gives hackers and online thieves an advantage. Helping all the users in your organization understand the importance of password strength will help you secure the IT systems in your organization.

If you're interested in learning more, please contact us so we can develop a comprehensive and custom security blueprint that meets your specific needs.

Reference: Worst Internet Passwords

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
January 2nd, 2012

If you are using Windows Gadgets (or those small mini-applications that are embedded on your desktop that show interesting things like the latest news, weather updates, or sports scores), you may sometimes wish you can just quickly hide them to declutter your workspace.

In Windows 7, you can do just that. Simply right-click on the desktop, go to View, and then clear the check mark on Show desktop gadgets. This will hide the gadgets. If you want to bring them back, just restore the check mark again.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
December 29th, 2011

A joint operation between the United States Federal Bureau of Investigation (FBI), authorities in Estonia, and IT security firm Trend Micro recently put down a massive bot network that victimized an estimated 4-5 million users around the globe.

Four million is a big number which makes four million bots, in security terms, a staggering and frightening number as well.

It is a good thing, then, that four million is also the number of bots taken down in a recent bust by the United States Federal Bureau of Investigation, the Estonian Police, and security firm Trend Micro. Data centers in New York City, Chicago, and Estonia were raided by authorities, shutting down hundreds of servers used to create a network of bots that spanned some 100 countries.

The said bust, dubbed “Operation Ghost Click”, is one of – if not THE – largest cybercriminal bust in history, putting to sleep a sophisticated scamming operation that victimized 4 to 5 million users and was said to have generated at least $14 million in illegal revenue.

The scam mainly involved hijacking Domain Name Server (DNS) settings in infected computers, which can be used not only to introduce more malware into an IT system, but also to hijack search results and replace advertisements loaded on websites visited through an infected computer.

While this bust does bode well for all IT users everywhere in the world, it also illustrates the scope of influence and level of organization behind security threats. Since this is probably not the only scam / fraud / botnet operation in the world, it is always best to have a comprehensive security policy for your IT infrastructure to minimize the risk of compromising your company’s data and information.

For more details on the bust, check out Trend Micro’s blog post here.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share
December 23rd, 2011

Have you ever sent an email and then immediately regretted sending it? If you are using Gmail as your mail client, you can do just that with an interesting but buried option in Gmail settings.

To enable this feature, go to Mail Settings in Gmail (upper right corner, under the gear icon). Navigate to the "Labs" tab. In the labs search box, look for "Undo Send" and choose Enable, then save. Now in Mail Settings you will see an option to "Undo Send: Send cancellation period: __ seconds." Enter the number of seconds that Gmail will allow you to change your mind in the future (try 10 seconds).

With this enabled, the next time you send an email, you’ll be able to “Cancel” it from being sent out, as long as it is within the time frame you specified.

Published with permission from TechAdvisory.org. Source.

Bookmark and Share