| **** NewsBytes **** NewsBytes **** NewsBytes **** |
The author of the first ever successful mass-mailing worm was sentenced to 20 months imprisonment and fined US$5,000 in May. David L. Smith's "Melissa" worm, released in June 1999, was subsequently used as a model by other hackers for similar mass mailers like The Love Bug and Anna Kournikova. Melissa was reckoned to have resulted in more than £55 million pounds worth of damage, according to the sentencing court at New Jersey.
Find money for your projects! Charities looking to source £5000 or more for a project should visit the superbrands.org site, a sort of billboard connecting with corporates who are just itching to spend their social responsibility budgets.
Sage has consolidated its no.1 postion in the UK as suppliers of accounting software and is gearing up to become the global no.1 as well, after a 12-month buying spree of related companies, including acquistions of Web-hosting and Palm Pilot technologies to achieve better integration. This puts Sage up against Microsoft, whose similar intentions resulted in acquiring Great Plains Software last year.
Memory up - but the chips are down. Prices for memory chips have been increasing in the early months of this year, with the results filtering through now and raising the real cost of PCs slightly. However, processor chips costs are likely to fall now that manufacturing margins for the two leaders, Intel and AMD, are on a par. Although it only costs these giants around US$21 to manufacture their respective Pentium and Athlon chips, the street price for the eventual processors reach us, the buying public, at 5 and 20 times that.
|
The EU stops taking the crap! More specifically all our old electrical equipment will have to be collected and recycled and it's the producers who made them in the first place who will have to fund that. This is the result of the European parliament voting in the Waste Electrical and Electronic Equipment (WEEE) Directive to prevent our throw-outs being buried or burnt.
Oxfam has been running a mobile phone recycling scheme since June 2001, making £20,000 to date in the process, and electrical outlet Comet is launching its own scheme.
Micky Boy gets stacked up. Not content with just having a full-time IT support job at Co-Operative Systems, upcoming rock star Mike Strickson's band Ciccone has had a video playlisted for Kerrang! TV. You can vote for their new single, "All Stacked Up", on the Sky Digital/Cable music video channel by dialling 09067 533433 (calls cost 75p) and selecting number 471. Micky Boy was quoted as saying "For your money you get to see me jumping around with my guitar on a roof top in Waterloo! Please rush out and buy the CD. Thanks." Released on 27th May, the "All Stacked Up" CD has 3 tracks for about £2 - bargain!. Get down to any good record shop and stack up your collection. Band: Ciccone. Catalogue number: MUF01. Distributor: Cargo. Rating: off the scale.
|
| **** end of NewsBytes **** |
^ Back to contents ^
|
| |
2. Get patched!
If you were sensitive to catching cold, you would hardly walk around naked while continuing to get flu jabs from your GP, would you? But that's just how many people treat their networks!
| |
| |
What is it ?
In a similar way that we might take a course of flu jabs, we all keep our networks secure from computer viruses by subscribing to anti-virus software from one of the major vendors. But if your body is susceptible to colds in some way, that may not be enough. Likewise, computer systems have many weaknesses, or vulnerabilities - and these can be exploited by hackers or by the second-order effect of other viruses.
These 'holes' must be patched before anti-virus software can do its job properly. In 2001, a large percentage of virus attacks were successful precisely because users did not patch their computers adequately, even though anti-virus software was running on them.
Where are the vulnerabilities ?
The most common vulnerabilities fall into these categories, although viruses may use combinations of them to launch attacks :
- Microsoft Outlook
Viruses are increasingly email-borne and the No.1 favourite with hackers is still Outlook or Outlook Express. Viruses can 'disguise' themselves and appear genuine by collecting information as they travel - like "Reply-to" addresses, subject headers, address book data and document titles - and substituting that data into bogus emails to encourage unsuspecting recipients to open them, thus triggering malicious payloads. Early viruses like Bubble Boy made use of an Outlook vulnerability without even requiring the email to be opened.
- Microsoft Internet Explorer
IE has been the subject of numerous patches to vulnerabilities like the cache bypass one. Hackers are hoping to lure potential victims, say from advertising in an email, to a web site they control. While the victim browses the site, malicious files may be downloaded undetected to their PC, possibly to be activated later on, or sensitive information like password files could be uploaded from the PC to the site.
- System files and scripts
A large number of viruses gain control over your PC by renaming system and library files or editing startup files or the registry. Microsoft Visual Basic (VB) is a favourite route for hacking since it provides an up-and-running engine that can run a script (VBS), which although executing many everyday tasks, can just as easily run a damaging script if a hacker can place one on your PC.
- Microsoft Word macro
Word provides a simple method of executing actions (rather than just inputting passive text, tables and images), but this has proved to be another entry route for hackers who can deceive recipients into opening a macro virus.
Plugging the holes: How to make it happen
Regularly apply Windows updates
Remove Win9x Windows scripting host if you're not using it
Control Panel | Add Remove Programs | Windows Setup tab
Use an NT 'professional' series machine in preference to 'home' editions (ie NT4, Win2000, Win XP Pro)
Turn off macro execution in Word97 (Tools | Options)
In Word 2000: Tools | Macro | Security
Patch Outlook or Outlook Express with fixes available from Microsoft's Web site at :
http://www.microsoft.com/technet/security/bulletin/MS01-027.asp
The major Anti-Virus Vendors
Sophos http://www.sophos.co.uk
Symantec http://www.symantec.com/
Datafellows/F-Secure http://www.f-secure.com/
Network Associates http://www.nai.com/
-IB-
|
|
| I | | B |
^ Back to contents ^
|
| |
3. Eliminate screen flicker
| |
| |
Oh no - what is it now ? I've got a headache!
One of the most tiring forms of computer related strain.
A poorly-adjusted screen can go undetected for months or years, partly because people have different degrees of tolerance to flickering light sources, but also because, even when it's known about, users will often just plough on, thinking "I'll get around to fixing it later".
A simple way to check flicker
This is an easy test and, what's more, it's subjective - so it checks your interaction with the monitor, rather than measuring the monitor against some technical benchmark.
To do the test, you need to display as much white surface on your screen as possible. For instance, maximising an empty wordprocessor or editor like Notepad does the job admirably.
- Start your wordprocessor or editor
( Start | Programs | Accessories | Notepad )
- maximise it (click middle button in top RH corner)
- now check the flicker by staring into the distance above or to the side of the monitor - about 4" or 100cm above. If there is flickering, you will notice it 'out of the corner of your eye' while still staring into the distance.
You may want a few attempts at this, perhaps checking several monitors to see what the effect looks like.
Benefits
Reduces the strain on your eyes.
How to make it happen
We need to alter the "refresh rate" of the screen: the frequency with which it is painted. The default is often 60 Hertz (60 times per second) but, unless you need an incredibly high resolution for detailed work, this figure is usually too low and well within the 'bounds of annoyance' for most people.
In Windows :
- Desktop, right-click | Properties | Settings
- click "Advanced" button
- click "Adapter" tab
- for Windows 95/98 in the "Refresh rate" section , pull down the selection "Optimal", if it exists
otherwise select a rate close to 70-75Hz
- for Windows 2000, click the "List All Modes" button, select a rate close to 70-75Hz (and probably a resolution of 1024x768 with 16-bit colour)
- click OK, and "Yes" to continue
The screen takes a second or so to adjust new rate, then prompts you to keep it. Click "Yes" if it's flicker-free.
- click OK to return to desktop.
-IB-
|
|
| I | | B |
^ Back to contents ^
|
| |
4. BT opens its doors to broadband
... but is it getting trampled in the customer rush?
| |
| |
What is it ?
BT’s mass-market internet business, BTopenworld, kicked off a series of nationwide 'Broadband Summits for Business' at BT Centre in London on 17th May, headed up by speakers like TV presenter Nick Ross and director of industry at the Office of the e-Envoy, Richard Barrington. The aim of the summits is to raise awareness of the benefits of broadband and act as a forum for debate and dialogue and hopefully encourage a greater number of smaller companies to join the broadband revolution.
Supporting the general theme of "working together to build a broadband nation", BTopenworld's chief executive officer Alison Ritchie said: "BT is now putting broadband at the heart of the company and we have a major commitment to support and promote its development." It seems that 2,000 businesses a week are taking up broadband connections like ADSL.
Contentions
Our recent experiences with consulting on and setting up several ADSL connections suggest things are less than rosy behind the scenes.
Conversations with the various strata of BTopenworld sales and technical people have resulted in contentions over what is and isn't technical possible or providable by them, notably:
whether BTopenworld is or is not hosting space for domains
support for problems when using your own third party mailing software
confusion over email addresses supplied (Business 500 Plus Service supplies BTclick addresses and those from the Internet Business Pack (IBP) are BTConnect addresses and never the twain shall meet
Recent press reports that the various companies that constitute the BT Group plc are competing in price against each other, by offering the same broadband services/products, might not exactly add to your confidence in 'going broadband'.
Considering the move to ADSL ?
It is now common for not-for-profit sector organisations to have their own registered domains, hosted web space and email systems - they are no longer starting 'from the ground up'. And since all those undertakings may have 'grown organically', they often lie in the hands of several different commercial operations. So a move to new Internet connections is no longer a case of a simple 'buy and fit' - it has to be weaved into your existing infrastructure (you don't rebuild a house just to install new central heating). There seems to be precious little emphasis from providers like BT on this crucial transfer of existing services and Internet infrastructure and much more on prices and offers for installation. The latter they should have 'off-pat' by now, but the former is where customers can get into a tangle.
The good news is that the major ISPs seem to have a good handle on it!
Our take on ADSL installations
Bear in mind these key points :
- An ADSL network connection is basically going to cost around £75 per month unless your network is 4 workstations or less, where the 'SoHo' offerings at £22 - £30 per month might apply.
- We have good experience with Demon (ISP) and Microsoft Exchange (mail system) as a combination - it's a 'blindfold build' for us so generally we will stick with this wherever possible
- BT are fine as broadband providers while using their service in conjunction with another ISP (eg Demon or EasyNet).
- If we are instructed to look at other ISPs, telecoms companies or mail providers, we do it only on an open ended consultancy basis. We provide the "best advice" on the basis of the information given to us. A suitable, functional solution is rarely produced when dealing with under-resourced telecoms companies implementing emerging technologies.
- We're unlikely to give guarantees if you do your own ISP/telecoms paperwork
- Keep a fallback position - it's vital to retain your old analogue (dialup modem/ISDN) connections until the new broadband connections work satisfactorily
The BT Group of companies
BT Group (the listed holding company for the BT Group of companies) is made up of:
- BT Retail - UK's largest communications service provider and prime channel to market for BT's other businesses;
- BT Wholesale - provider of network services and solutions to communications companies, network operators and service providers;
- BT Ignite - datacentric solutions and broadband IP business for European corporate and wholesale markets;
- BTopenworld - mass-market narrow and broadband Internet business.
See the BT structure chart here:
BT companies group structure
BTopenworld dialup changes
BTopenworld Access numbers and charges changed from May 2002.
NUMBERS
- Surftime: now 0844 040 4005
No call charges, 6pm - 8am weekdays and all weekend
Dialling this number during the Daytime period is subject to a 5p minimum call charge.
- Daytime: now 0845 756 0000
Calls charged at BT local rates, 8am - 6pm weekdays
- BTopenworld Pay-as-you-go: now 0845 756 0000
Calls charged at local rates
Need help configuring your dial ups ?
Simultaneously a very useful set of instructions - telling you how to configuring your dial-up networking for most PC operating systems - and also one of the most annoying set of web pages ever devised - non-sizeable windows, castrated 'back' buttons, inconsistent navigation (don't know where you are), suppressed web addresses!
Networkers 1, Webmasters 0.
Help on configuring your dial-up to BTopenworld
CHARGES
- Anytime: Unmetered Internet access to the internet goes up to £15.99 per month from 1st May (was £14.99). No call charges
- Pay-as-you-go: From the 3rd May 2002, BTopenworld Pay-as-you-go charges will increase to:
Monday to Friday 8.00am-6.00pm: 4p a minute
Monday to Thursday 6.00pm-8.00am and Friday 6.00pm-midnight: 1.5p a minute
Midnight Friday to midnight Sunday: 1p only (ie. no change in price for weekend access)
(5p minimum charge applies.)
Contacts
Homepage: www.btopenworld.com
Registration: register.btopenworld.com
Mail (pop3 & SMTP) mail.btopenworld.com
Newsgroups: news.btopenworld.com
Webspace ftp.btopenworld.com
-IB-
[Acknowledgements: Zorina Baksh, Phil Anthony]
|
|
| I | | B |
^ Back to contents ^
|
| |
5. Migrating a Novell IPX Environment to Pure IP
Less sexy than Shakira perhaps but with more fans around the world, Novell's original IPX/SPX protocol remains popular with NetWare users. But these days a single TCP/IP protocol is all that's needed on our networks.
| |
| |
What is it ?
Many organisations that have already upgraded to NetWare 5.x or 6.x overlooked what was required to move from an IPX to a pure IP environment, or did not even realise that these later versions supported pure IP. Older versions of NetWare encapsulated NCP (NetWare Core Protocol) commands in IPX/SPX packets only. Modern versions of NetWare can also encapsulate NCP in TCP/IP packets, thus allowing network clients to login using IP only (IPX is not even required on the workstation). The experience to the end user is really no different, but the overhead with supporting multiple protocols is completely removed. However, unlike IPX, an IP environment requires careful initial planning, and possible subsequent day-to-day management.
Benefits
So you might be wondering why you would want to move to a pure IP environment?
Possible reasons and benefits include:
- Simplifies network routing and troubleshooting by moving to a single protocol. This is especially useful for large networks that span physical locations, as expensive routers only need to be equipped with IP software, and configured for IP routing only.
- Removes the need for complex legacy IPX queue-based printing. NetWare 5.x and 6.x supports pure IP printing utilising NDPS (Novell Directory Printing Services). Each printer is represented by a single NDS object - not three as in NetWare 4.x.
- Reduces configuration complexities on networked PCs - only a single protocol stack is required to connect to all local and remote network, and Internet resources. This also saves memory, and reduces processing overhead.
- Allows the implementation of proper DNS (Domain Name Service) and DHCP (Dynamic Host Configuration Protocol) services onto the local network. DNS allows users to refer to network resources by friendly names rather than awkward IP addresses. DHCP dynamically allocates IP addresses to networked PCs, substantially reducing day-to-day administration.
- Modern NetWare applications (e.g. backup) support IP only, and support for applications that depend on IPX or bindery services is fading.
The move from proprietary to standard protocols
Unlike earlier versions of NetWare that used SAP (Service Advertising Protocol) to locate services (e.g. servers, printers, etc) on the network, NetWare 5.x and 6.x uses SLP (Service Location Protocol). SLP is a fully ratified TCP/IP standard - not a Novell proprietary protocol like IPX. Service Location Protocol in an IP environment provides a similar role to SAP in an IPX environment. However, SLP is a far more efficient protocol and is not a “broadcasty” protocol like SAP, thus saving bandwidth utilisation, especially on wide area networks.
How to make it happen
Implementing pure IP in a NetWare 5.x or 6.x environment has advantages for both small and large networks, and makes good sense in today’s connected world. But careful planning and forethought is required, especially if your current use of TCP/IP has just evolved gradually over time.
Phasing in pure IP slowly
When setting up NetWare 5.x and 6.x servers, it is normal to configure IPX and IP at the same time. Thus :
- Clients and/or devices that use legacy IPX clients can continue to login over IPX
- Applications or devices with newer versions of client software or firmware use IP
In the latter case, it may depend on which options are installed, for example printers need to support NDPS which requires further configuration. This is fairly straightforward in a pure HP JetDirect environment.
Summary
Overall it really is quite simple. More thought is only really required in a multi-server, multi-site environment where SLP, NDS Replication, Time Sync and IP routing considerations may apply.
Once the core infrastructure is in, you can migrate to pure IP (from a client perspective) by simply removing IPX (it's best to reinstall the client). A check worth doing is to ensure there are no applications that use SPX, such as RCONSOLE which is replaced with an IP equivalent.
Contacts
Setting up Novell's NetWare 5.
Novell document
Migrating IPX to IP.
acamologySolutions
-IB-
Adrian Hallet, acamologySolutions
|
|
| I | | B |
^ Back to contents ^
|
| |
6. Viruses get ambiguous - JDBGMGR.EXE
A new hoax, but possibly one with a malicious payload ...
| |
| |
What is it ?
Another hoax - of sorts.
What is it called ?
A warning message is being distributed via email in various languages asking you to search and destroy a file on your PC called JDBGMGR.EXE. The warning claims you should do this because it is infected by a virus which may trigger after 14 days. Sound familiar? Well, its been slowly spreading its way round quite a few people lately.
What to do
In the first instance, be sceptical.
If - and only if - you have anti-virus software installed with regular functioning updates, then don't delete the file.
The JDBGMGR.EXE file may reside quite legitimately on your computer, being the Microsoft Debugger Registrar for Java.
But is it a hoax ?
Another older virus, W32/Magistr-A dating back to last year, confuses the issue, however, because this virus is capable of emailing out infected copies of JDBGMGR.EXE to recipients. A potential scare may have started this way. Your anti-virus software will have been detecting and foiling W32/Magistr-A since around March 2001.
The JDBGMGR scare in print
Usually looks like this:
The objective of this e-mail is to warn all Hotmail users about a new virus that is spreading by MSN Messenger. The name of this virus is jdbgmgr.exe and it is sent automatically by the Messenger and by the address book too. The virus is not detected by McAfee or Norton and it stays quiet for 14 days before damaging the system.
The virus can be cleaned before it deletes the files from your system. In order to eliminate it, it is just necessary to do the following steps:
1. Go to Start, click "Search"
2.- In the "Files or Folders option" write the name jdbgmgr.exe
3.- Be sure that you are searching in the drive "C"
4.- Click "find now"
5.- If the virus is there (it has a little bear-like icon with the name of jdbgmgr.exe DO NOT OPEN IT FOR ANY REASON
6.- Right click and delete it (it will go to the Recycle bin)
7.- Go to the recycle bin and delete it or empty the recycle bin.
IF YOU FIND THE VIRUS IN ALL OF YOUR SYSTEMS SEND THIS MESSAGE TO ALL OF YOUR CONTACTS LOCATED IN YOUR ADDRESS BOOK BEFORE IT CAN CAUSE ANY DAMAGE.
Contacts
More info:
http://www.sophos.co.uk/virusinfo/articles/jdbgmgr.html
-IB-
[Acknowledgements: Sophos]
|
|
| I | | B |
^ Back to contents ^
|
| |
7. Kitting out teleworkers
A teleworker or home worker is going to be inherently 'remote'. What can you do to kit them up effectively?
| |
| |
How to make it happen
Here is a suggested IT checklist of what to provide:
- A properly patched PC and an anti-virus subscription.
- An email account is essential, with a Webmail account being a hot favourite, due to the lack of setup required on the remote PC - all it needs is a working Web browser. Search http://www.emailaddresses.com/email_web.htm for suppliers of free email accounts.
- Likewise, an phone with messaging machine should not be overlooked, even if it means using and recompensing the home phone bill.
- A fast Internet connection. The basic phone line puts teleworkers at a disadvantage, compared to their office equivalents, in that they cannot make calls and Web surf simultaneously. An ISDN ("What is ISDN?") or xDSL ("What is ADSL?") is also much faster. Be aware that ADSL bandwidth is shared locally, though with little residential take-up at present, home workers stand a good chance of getting a decent throughput.
- A firewall is essential to protect even a standalone home PC from scanners and hackers these days, particularly if it's connected via an 'Always-On' service like ADSL. Of the many choices, ZoneAlarm is the probably the simplest and safest to configure and what's more is a free download for the basic version. For a small fistful of dollars you can buy the Pro version containing 'pro' features.
- Voice recognition software is hopeless in an open-plan office, but really comes into its own in a quieter home environment. As a much faster way of 'banging in text' for documents, it cuts down on typing and strain injuries (RSI). Look for packages like Dragon's "Naturally Speaking" series and IBM's "ViaVoice" series which can cost as little as £25. Around 15 minutes training may be needed for a package to 'learn' your voice characteristics, but training then progresses on-the-job and full 'joined-up speech' is translated into text at normal talking speeds.
Complement the software with some 'soft skills':
- Allow for training teleworkers in communication skills and time management; replacing face-to-face contact in the office with email and voicemail may not come naturally to everyone and scheduling their own time can be more difficult than expected.
- Delegate a 'corresponder' or 'buddy' for each teleworker.
A conversation at least once a day helps to keep them in touch. Catching them in the morning ensures they're out of bed and not online yet; an evening call helps check if those end-of-day deadlines have been met. Agree the format first so it doesn't translate Big Brother/Sister - although to some extent, that's what a line manager should do.
- Set a worksheet plan
Don't miss out on agreeing the basics like which days are in or out of the office, when teleworkers should be 'available' (in contact), how often to check various message boxes (some of this can be automated).
- Set up support mechanisms for when things go wrong
These need to cover both technical and human problems.
Related articles
Homework becomes popular!
Cut IT support costs with hot desking
-IB-
[Acknowledgements: Bulletpoint]
|
|
| I | | B |
^ Back to contents ^
|
| |
8. Scams or Urban Myth - how do you tell?
If in doubt, become a sceptic.
| |
| |
What is it ?
Two urban myths are newly circulating the Net, emails, gossip, grapevine, etc.
Namely the gift vouchers and postcodes one and the AT&T technician one.
(Clips provided below).
Out of 29 valid returns from the Net, only one identifies this as a myth - the remainder all effectively repeat the same story, from leading newspaper articles to local OAP newsletters.
So how do you call it?
The answer as with everything else on the Net is to ask yourself: do you believe in what you see? Does wider reporting make something true?
The key is to look at the sources in any article and also its pedigree. Do they provide references?
The other key here was to note that all the other 28 returns showed identical copies of the story - practically never occurs in real life!
In this case, it seems that the research on the snopes.com web site looks pretty sound, so we vote for myth not scam. Here are their analyses for gift vouchers and postcodes and AT&T technician.
Barbara and David P. Mikkelson, who run the site, provide some fairly rigorous references to the Royal Mail, Royal Ulster Constabulary and nail them down as having started as UK-specific myths, with a decent analysis to follow.
Elsewhere they define their philosophy as: "Unlike the plethora of anonymous individuals who create and send the unsigned, unsourced e-mail messages that are forwarded all over the Internet, we show our work. The research materials we've used in the preparation of any particular page are listed in the bibliography displayed at the bottom of that page so that readers who wish to verify the validity of our information may check those sources for themselves."
Gift vouchers and postcodes myth
... goes something like this :
"We have been informed of the following scam, which is targeting females in particular. They receive a phone call from the Post Office asking them to confirm their postcode. When this is given, they are told that they have become eligible for some gift vouchers for their co-operation and are asked to provide their home address and postcode in order to receive the vouchers.
So far 90% of the women who have provided this information have been burgled, as it is assumed that their homes are empty during office working hours. The police are aware of this scam and the Post Office have confirmed that they are NOT conducting any postcode surveys."
AT&T technician myth
... goes something like this :
"It has been reported if you receive a telephone call from an individual who identifies him/herself as being an AT & T service Technician who is conducting a test on that line, or if anyone else asks you to do the following DON'T. They will state that to complete the test the recipient should nine, zero (90) then the hash key and then hang up. This will give them full access to your phone line, which allows them to place long distance, international or chat-line calls. These are then billed to your
account. The information which the police have suggested that many of these calls are emanating from local prisons. The information has been checked out by the police and is correct DO NOT PRESS 90 FOR ANYONE.
Would anyone reading this please pass it on to friends and colleagues etc... otherwise it could cost someone a lot of money."
Lesson to learn: be sceptical
The most lessons are to be sceptical about giving out your information - whether it's your own postcode or your organisation's phone access - without good reason and certainly some sort of verification. After all, if a house-caller asked the same question, you'd be wanting to see their id badge!
-IB-
Paul Craig
|
|
| I | | B |