<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Michael M. Knight</title>
	<atom:link href="http://www.michaelmknight.co.uk/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.michaelmknight.co.uk</link>
	<description>Quis custodiet ipsos custodes?</description>
	<lastBuildDate>Fri, 16 Apr 2010 14:21:27 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Stop Phishing: A simple guide</title>
		<link>http://www.michaelmknight.co.uk/2009/11/stop-phishing-in-5-steps/</link>
		<comments>http://www.michaelmknight.co.uk/2009/11/stop-phishing-in-5-steps/#comments</comments>
		<pubDate>Sat, 21 Nov 2009 17:22:46 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Hoax]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[email]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=301</guid>
		<description><![CDATA[Phishing has been around for a while now. Longer than most of you think, and over the next year or so, its going to get worse. Can you detect a Phishing site or Scam? Are you protected&#8230; stolenfrommichaelmknight 
What is Phishing
OK, for those of you who don&#8217;t know what phishing ...]]></description>
			<content:encoded><![CDATA[<p>Phishing has been around for a while now. Longer than most of you think, and over the next year or so, its going to get worse. Can you detect a Phishing site or Scam? Are you protected&#8230; stolenfrommichaelmknight </p>
<p><strong>What is Phishing</strong></p>
<p>OK, for those of you who don&#8217;t know what phishing is, here&#8217;s a quick overview. This exploit originates via email and typically requests account information, such as usernames or passwords, a situation that could easily lead to identity theft. According to the United States Federal Trade Commission, nearly 255,000 cases of identity theft were reported in 2003, most of them attributed to the crime of phishing.</p>
<p>Phishing now crosses over to the web, where fake websites are created that look like legitimate sites like Banks. You fill in your details as usual to check your online banking account, only to be redirected to your original bank. Whats actually happened here is that you have entered all your information into a fake website that now has your login details. These are then used to steal your identity or funds from your bank.</p>
<p><strong>What can be done to protect yourself?</strong></p>
<p>Well, here&#8217;s a security concept for everyone: &#8220;if you can&#8217;t do it securely, then don&#8217;t do it at all.&#8221;</p>
<p>This particularly applies when it would be far more &#8220;convenient&#8221; to do it in an insecure fashion. I&#8217;m not talking convenience here, I&#8217;m talking security. So, how this applies to <strong>phishing</strong> is, don&#8217;t use email to send links or account information. Some sites are sort of getting around to this. One such is eBay. Now <a title="eBay" href="http://www.ebay.com" onclick="return TrackClick('http%3A%2F%2Fwww.ebay.com','eBay')" target="_blank">eBay</a> will include a copy of all legitimate correspondence they send you in your email account at eBay.</p>
<p>Of course, the problem is if someone can match their website close enough to fool you into entering you eBay username/password on their server and do a man-in-the-middle attack on your account (and including their own phishing email in what you see) you&#8217;re still <strong>100% compromised</strong>. And all that takes is time and skill to set up.</p>
<p>Given the limits of <strong>email </strong>right now (including <a title="Sender Policy Framework" href="http://en.wikipedia.org/wiki/Sender_Policy_Framework" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FSender_Policy_Framework','Sender+Policy+Framework')" target="_blank">SPF</a> and such), it is impossible for the average user to know whether or not a specific email is legitimate or not. Sure, www.ebay.com is easy to verify, but is www.myebaysecurity.com also legitimate? Should I click on the enclosed link? SPF,<a title="Reverse DNS" href="http://en.wikipedia.org/wiki/Forward-confirmed_reverse_DNS" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FForward-confirmed_reverse_DNS','Reverse+DNS')" target="_blank"> rDNS</a>, and everything else can confirm that that IP address is legitimately assigned to that name.</p>
<p>So, the easiest solution would be to not send email with links. Yes, I am aware that this will mean the end of the cute <strong>HTML</strong> email ads that you send/receive. That&#8217;s the part about &#8220;if you can&#8217;t do it securely then don&#8217;t do it at all.&#8221; There&#8217;s no use in crying about what you can&#8217;t do if you can&#8217;t do what you want to do in a secure fashion.</p>
<p>It&#8217;s 2005 and the technology has advanced enough for any<strong> financial site</strong> (that means any site that involves money being exchanged) to run its own web-email-type system. They wouldn&#8217;t even need it to be <a title="A protocol used to send email" href="http://en.wikipedia.org/wiki/Simple_Mail_Transfer_Protocol" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FSimple_Mail_Transfer_Protocol','A+protocol+used+to+send+email')" target="_blank">SMTP</a>-capable. It would only be used for outside people reading their email from that business and sending email to employees inside that business and for employees at that business to send/receive email from the clients connected to it.</p>
<p>This isn&#8217;t to say that you&#8217;d have to check that email account all the time to see if you have email. Again, this is 2005. We have all kinds of means of <strong>alerting people</strong> when they need to check something. We can send a text message to their pager or mobile phone, we can leave a voice message on their pager, cell phone or home phone. It would even be possible to send a text only email without any links telling them that they have email at such-and-such bank/auction site/wherever and that they should go there to check it. Since they should already know the web site name (they have used it before, right?) they shouldn&#8217;t need to have it spelled out for them in the email.</p>
<p>It is economical for a bank to have a computer call phones and leave voice messages if you need to contact the bank (they already do this) but it is not economical for the <strong>phishers</strong> to do that (even if they&#8217;re running <a title="Skype - VoIP Telephone and Messaging Client" href="http://www.skype.com" onclick="return TrackClick('http%3A%2F%2Fwww.skype.com','Skype+-+VoIP+Telephone+and+Messaging+Client')" target="_blank">Skype</a> or whatever). And it gets even easier if the bank (or whatever) allows you to choose the text message to be sent to your pager/cell phone.</p>
<p>The best part is that this would not require<strong> 51%+</strong> of the email servers to be upgraded or modified or anything else. For this to work for a specific bank/site it would only require that they change. And the technology is <strong>100%</strong> available (and Open Source) today.</p>
<p>It should be noted that this does not in any way describe any method for securing financial transactions done over the Web. This is just a method to <strong>kill phishing </strong>attempts and the losses associated with successful compromises.</p>
<p>Read more about Phishing here: <a title="Phishing Info" href="http://en.wikipedia.org/wiki/Phishing" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FPhishing','Phishing+Info')" target="_blank">http://en.wikipedia.org/wiki/Phishing</a></p>
<p><strong>Note</strong>: I published this article earlier in the year and I have decided to re-post it due to demands I&#8217;m getting from people finding me from this site: <a title="Link to my article" href="http://www.realtime-websecurity.com/articles_and_analysis/2007/04/cut_phishing_by_keeping_it_sim.html" onclick="return TrackClick('http%3A%2F%2Fwww.realtime-websecurity.com%2Farticles_and_analysis%2F2007%2F04%2Fcut_phishing_by_keeping_it_sim.html','Link+to+my+article')" target="_blank">http://www.realtime-websecurity.com</a> &#8211; Since I re-designed my blog, I had removed this article, hence the re-post.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Stop+Phishing%3A+A+simple+guide+http://bit.ly/7GbcVE" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Stop+Phishing%3A+A+simple+guide+http://bit.ly/7GbcVE" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/11/stop-phishing-in-5-steps/&amp;t=Stop+Phishing%3A+A+simple+guide" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/11/stop-phishing-in-5-steps/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Cyber Affairs &#8211; The new adultry</title>
		<link>http://www.michaelmknight.co.uk/2009/11/cyber-affairs-the-new-adultry/</link>
		<comments>http://www.michaelmknight.co.uk/2009/11/cyber-affairs-the-new-adultry/#comments</comments>
		<pubDate>Fri, 20 Nov 2009 09:47:54 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[cheating]]></category>
		<category><![CDATA[cyber affair]]></category>
		<category><![CDATA[help]]></category>
		<category><![CDATA[provention]]></category>
		<category><![CDATA[support]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=121</guid>
		<description><![CDATA[Why do people cheat? Well its usually for a few reasons. Mostly its because they are not happy in their relationship (more on this later). Other times is because they can, they don&#8217;t care or have no respect for the person the are with. It could be for revenge or ...]]></description>
			<content:encoded><![CDATA[<p>Why do people cheat? Well its usually for a few reasons. Mostly its because they are not happy in their relationship (more on this later). Other times is because they can, they don&#8217;t care or have no respect for the person the are with. It could be for revenge or they fall in love with someone else. But now, in the information age, people cheat  because its never been easier to meet people. stolenfrommichaelmknight </p>
<p>With the availability of chat  applications like Windows Live Messenger/MSN, Yahoo, Google Chat and chat rooms or  on Internet Web sites like dating sites, <a title="Twitter" href="http://twitter.com" onclick="return TrackClick('http%3A%2F%2Ftwitter.com','Twitter')" target="_blank">Twitter</a> and <a title="Facebook" href="http://www.facebook.com" onclick="return TrackClick('http%3A%2F%2Fwww.facebook.com','Facebook')" target="_blank">Facebook</a>, the temptation to meet new people online increases. According to research, online relationships provide individuals with an outlet to tell secrets and express themselves to a stranger anonymously, while allowing for the creation of another persona, or to flirt and get to know someone before they meet.</p>
<p>Men often create a well-groomed, professional, athletic persona, while women create a thin, beautiful and adventurous alter ego. When online, people create fictitious, seemingly perfect personalities that are desirable to others to fill social and psychological needs.Though, most come clean after a short period when it becomes time to meet the other person. In 40% of the cases, online cheating is with someone the person already knows.</p>
<p><strong>Divorce and Relationship Breakdown</strong></p>
<p>A recent survey found that Facebook and Twitter are now fuelling <strong>Divorce </strong>and the<strong> </strong>breakdown of relationships. The UK Newspaper &#8216;The Telegraph&#8217;  published <a title="Facebook and Divorce" href="http://www.telegraph.co.uk/technology/facebook/6857918/Facebook-fuelling-divorce-research-claims.html" onclick="return TrackClick('http%3A%2F%2Fwww.telegraph.co.uk%2Ftechnology%2Ffacebook%2F6857918%2FFacebook-fuelling-divorce-research-claims.html','Facebook+and+Divorce')" target="_blank">this  story</a> about the divorce factor. However, this is not something new. Relationships have always been subject to online misuse. These <strong>Social Networking</strong> sites just make it easier for people to have infidelity whilst in a relationship.</p>
<p><strong>Why it happens</strong></p>
<p>Once the honeymoon phase of marriage or a courtship is over, couples sometimes get bored, begin to take each other for granted and stop doing the nice things they did for one another before getting married or involved. When that happens, (spouses or partners) are vulnerable and may seek affection and attention from someone else. Men are goal oriented. They can’t read (women’s) minds. Women should tell their husbands what they need. Most of the time, men just want to do what their wives need them to do. If a woman needs attention, she should tell her husband exactly what she wants.</p>
<p><strong>Warning signs, consequences and recovery</strong></p>
<p>There are warning signs that an individual might be having an online relationship such as an increase in time spent privately on the Internet, reluctance to let others access the computer, frequently erasing Internet histories and constantly deleting e-mails.</p>
<p><strong>In addition to providing warning signs,there are tips to stop having an online affair</strong>:</p>
<ul>
<li> Admit Internet use is causing problems in the relationship</li>
<li> Only use the computer for specific reasons — do not “surf” the Internet</li>
<li> Move the computer to an open area</li>
<li> Remove online messaging programs and change e-mail addresses</li>
<li> Install computer monitoring software</li>
<li> Spend more time with your loved one, family and friends</li>
<li>Communicate more with your loved one. Don&#8217;t keep secrets</li>
</ul>
<p>Sometimes people become addicted to the Internet. If an individual is addicted, then more intensive counselling to battle the addiction may be necessary.</p>
<p><strong>The Signs of a Cyber Affair</strong></p>
<p>I&#8217;m sure all of us who have been in relationships wonder what our significant other is doing when they are on-line. There is a distinct difference between that random thought that may enter your jealous mind, and a real reason to be thinking about what your loved one is doing or who they are chatting with on-line. If you ever have wanted to know if your loved one was guilty of infidelity, but don&#8217;t know how to go about finding out without asking them, then these few tips may help you out.</p>
<p>Lying is always an indicator of something gone wrong in a relationship and is often a sign of infidelity. If your loved one begins to tell you they are &#8220;just surfing the Internet,&#8221; and they do it in privacy, you may have something to worry about. You must ask yourself how many times this has been happening, There is a fine line before having friends of the opposite sex on the Internet and constantly being with them on-line. If he/she has nothing to hide, then he/she shouldn&#8217;t be lying to you in the first place, and you shouldn&#8217;t turn into the questioning and jealous loved one until the excuses begin occurring much more frequently.</p>
<p>You should also look for signs (listed below) to see if your loved one seems to be drifting away from you as well. Try to pay more attention to the inner workings of your relationship. See if husband/wife/partner still spends quality time with you willingly, or if he/she avoids speaking with you about anything besides superficial topics. If they are not paying as much attention to you, and you know they do not have a significant reason to want to be alone or more aloof, then this may also be a sign of infidelity. Are they simply avoiding you, or avoiding their friends as well? Usually if a person is cheating on their loved one, they continue to keep contact with their friends much more than the loved one. Sometimes, the best way to tell if they are cheating on you is through the little things.</p>
<p>No matter what happens, always make sure to talk to your loved one before making any rash decisions. Sometimes you may think you have the best clues and you could be completely wrong, so confront them and ask them what&#8217;s going on and why you are worried without accusing them. You still want to give them a chance to defend themselves so you can then decide if they are telling the truth, lying once again or if they come clean with the cyber affair. So whatever you decide, discuss your thoughts and feelings with your significant other before breaking off that relationship because of the cyber affair.</p>
<p>Experts say that a gut instinct is one of the most powerful signs of infidelity. Statistics say that 85% of women who feel their lover is cheating are correct. 50% of men who feel their lover is cheating are right. The first clue is seldom obvious. Typically, it&#8217;s a &#8220;feeling&#8221; that something is different. You notice minor changes in your lover&#8217;s behaviour. Even the most skilled cheater can&#8217;t hide these clues and only a lover in total denial can miss them. The first sign of infidelity can be a comment or incident that seems harmless but remains in your mind. The following is a short list of infidelity signs:</p>
<ul>
<li> Your spouse spends an excessive amount of time in the on-line chat rooms</li>
<li>Long chats to the opposite sex on an Instant Messenger</li>
<li>Minimizes/Closes or Hides Windows when you walk into the room</li>
<li> Your spouse pays less attention to you</li>
<li> Your spouse is preoccupied with on-line chatting, more distant emotionally</li>
<li> Your spouse is insisting on chatting alone</li>
<li> Your spouse has unaccounted time away from home</li>
<li> Your spouse has a decreased interest in sex</li>
<li> Your spouse becomes defensive during normal conversations</li>
<li> Discovery of a post office box</li>
<li> The toilet bowl seat is up, (men) and when you left home it was down</li>
<li> The passenger seat in the car has been moved and is not in the usual position</li>
<li> An unusual number of hang ups or wrong number calls</li>
<li> Fragrances of colognes and/or perfumes are noticed on clothing of a cheating spouse</li>
<li> Car mileage is unusual for claims made by cheating spouse</li>
<li> Your spouse explains a late return home as a result of having to drive<br />
out of town on business, but yet the mileage on the car indicates less than ten mile driven</li>
<li> Discover the recent opening of another checking account</li>
<li> Unaccounted for hairs of a different colour on clothing</li>
<li> Cigarette smoke on clothing that can not be explained</li>
<li> Credit card transactions for unknown or unusual types of purchases</li>
<li> Cosmetic, perfume or lipstick purchases listed but not received</li>
<li> An increase in toll and/or long distance calls</li>
<li> Increase in ATM withdrawals. Check the transaction record to ID the withdrawal</li>
<li> Income tax returns revealing unexplained travel and business expense deductions</li>
<li> Florist or jewellery bills</li>
<li> Credit card gas purchases that are inconsistent for the amount of miles driven on the car</li>
<li> Joins a health gym or weight reducing clinic</li>
<li> Visits made to the tanning salon</li>
<li> New hair style</li>
<li> Wearing hair spray, colognes &amp; perfumes more often</li>
<li> Needs a pager, mobile phone, Protective of said devices</li>
<li> Excessive buying of new and different clothes</li>
<li> Sudden and unexplained change in clothing style</li>
<li> The buying of sexy underwear or lingerie</li>
<li> There is an unexplained aloofness or indifference in the relationship</li>
</ul>
<p><strong>Conclusion</strong></p>
<p>Is cheating wrong? Well, yes if you are deceiving a partner or are being deceived. In a relationship, you <em>must</em> trust your partner or spouse, if you have any room for doubt, talk to each other. Try to sort things out before they escalate and get worse. If he or she is cheating, then either sort it out and learn to trust again, or end it. You will only be causing yourself much more pain in the long run.</p>
<p><strong>Personal Service</strong></p>
<p>If your still in doubt, contact me to find out how you or I can investigate your situation and find proof that your partner is or isn&#8217;t cheating.</p>
<p><!-- http://www.LiveZilla.net Chat Button Link Code --><noscript></noscript><!-- http://www.LiveZilla.net Chat Button Link Code --><!-- http://www.LiveZilla.net Tracking Code --></p>
<p><script type="text/javascript">// <![CDATA[
 var script = document.createElement("script");script.type="text/javascript";var src = "http://www.michaelmknight.co.uk/support/server.php?request=track&#038;output=jcrpt&#038;nse="+Math.random();setTimeout("script.src=src;document.getElementById('livezilla_tracking').appendChild(script)",1);
// ]]&gt;</script><!-- http://www.LiveZilla.net Tracking Code --></p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Cyber+Affairs+%E2%80%93+The+new+adultry+http://bit.ly/5zmXaw" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Cyber+Affairs+%E2%80%93+The+new+adultry+http://bit.ly/5zmXaw" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/11/cyber-affairs-the-new-adultry/&amp;t=Cyber+Affairs+%E2%80%93+The+new+adultry" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/11/cyber-affairs-the-new-adultry/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Steganography &#8211; Invisible Secrets</title>
		<link>http://www.michaelmknight.co.uk/2009/08/steganography-invisible-secrets/</link>
		<comments>http://www.michaelmknight.co.uk/2009/08/steganography-invisible-secrets/#comments</comments>
		<pubDate>Fri, 28 Aug 2009 01:36:51 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[hidden data]]></category>
		<category><![CDATA[secret]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=218</guid>
		<description><![CDATA[A picture may be worth a thousand words, but it could also hide something more treacherous. stolenfrommichaelmknight 
Today, businesses wanting to guard against the potentially ultra-serious hazard of vitally important data being deliberately leaked to unauthorised people outside or even inside the organisation, need to get to grips with an ...]]></description>
			<content:encoded><![CDATA[<p>A picture may be worth a thousand words, but it could also hide something more treacherous. stolenfrommichaelmknight </p>
<p>Today, businesses wanting to guard against the potentially ultra-serious hazard of vitally important data being deliberately leaked to unauthorised people outside or even inside the organisation, need to get to grips with an alarming reality: a picture can also conceal a thousand words.</p>
<p>Or in some cases even up to around 5,000 words. More than enough to betray all your most precious and commercially sensitive data: locations of newly-discovered oil fields; formulae for synthesising newly-discovered molecules of breakthrough drugs costing millions or even billions to develop; designs of revolutionary products you&#8217;re planning on being the first to bring to market; ultra-sensitive lists of hard-won customers; you name it.</p>
<p>Data concealed in pictures? It may sound like the basis for a plot sequence in the next Mission Impossible movie, but it isn&#8217;t. It&#8217;s real. And unless you are prepared to let any Tom, Dick or Harry cruise around your<strong> precious data</strong>, you need to be aware of the threat it poses.</p>
<p>The technique is called <strong>steganography</strong>, from Ancient Greek words meaning hidden or covered writing, just as that lumbering dinosaur the stegosaurus is so named because its back was covered in those large bony plates whose real purpose is a mystery even today.</p>
<p>But steganography wasn&#8217;t a mystery to the <strong>Ancient Greeks</strong>; indeed they most likely invented it. The Greek historian Herodotus records that in 312 BC, Histaeus of Miletus commanded the head of his most trusted slave to be shaved and tattooed with a vitally important secret message on it. Once the slave&#8217;s hair had grown, hiding the message, Histaeus used him as an emissary to a friendly power via enemy territory to instigate a revolt against the Persians.</p>
<p>This example from history shows why steganographic writing is such a dangerous threat to security. Friends who betray us are always a more potent threat than people we recognise as enemies from the outset, and steganographic messages look friendly and innocent.</p>
<p>You could devise a simple steganographic message by agreeing with your recipient that your real message will consist of the first letter of every word of your apparent message. &#8216;Bring us your invoice by Monday&#8217;, for example, would really mean &#8216;BUY IBM&#8217;. In steganographic writing the apparent message is known as the covertext and the real message is called the plaintext.</p>
<p>The innocuous appearance of the <strong>covertext</strong> in the example illustrates why steganographic writing doesn&#8217;t tend to set alarm bells ringing. It looks innocent, whereas the message &#8216;BUY IBM&#8217; encrypted in a simple code that consisted, say, of substituting each letter for the next letter in the alphabet &#8211; &#8216;CVZ JCN&#8217; &#8211; obviously looks dodgy and would be certain to awaken the suspicions of even the most credulous member of an industrial espionage prevention team.</p>
<p>The point is that any encrypted message will tend to raise suspicions because even though it can&#8217;t readily be read you will know it&#8217;s been encrypted and will instantly conclude that something fishy&#8217;s going on.</p>
<p>In the highly competitive ocean of modern business, the threat of steganography has recently become a major issue in corporate life.</p>
<p>It&#8217;s actually been a significant threat for several years due to the increased computing power available on everyone&#8217;s desktop, but people have been distracted by publicity about cryptography and steganography has rather remained in the background.</p>
<p>It&#8217;s a particularly worrying threat now because of the enormous computing power on desktops today, the massive volume of electronic communications, and the number of freely available tools that allow even a routine user to employ steganographic techniques.</p>
<p>By far the biggest type of threat is the potential for concealing steganographic writing within computerised images. With Windows you can literally drag and drop your hidden text onto a picture and the deed is done.</p>
<p>As Gordon Gekko reminded us in the film <a title="Wall Street" href="http://www.imdb.com/title/tt0094291/" onclick="return TrackClick('http%3A%2F%2Fwww.imdb.com%2Ftitle%2Ftt0094291%2F','Wall+Street')" target="_self">Wall Street</a> (1987), the most valuable commodity of all is information. And it&#8217;s precisely that which can so easily be given away today &#8211; or sold &#8211; using image-based steganographic techniques.</p>
<p><strong>What&#8217;s actually happening when you carry out what looks like a simple drag and drop?</strong></p>
<p>An electronic image is comprised of thousands of &#8216;<strong>picture elements</strong>&#8216; or &#8216;<strong>pixels</strong>&#8216;. A pixel is a binary number that provides information on the colour or (in a black and white picture) the shade of grey that should be displayed in that particular pixel.</p>
<p>The binary number will look something like this: <strong>10011011</strong> etc depending on the pixel in question. The individual numbers (the 1 or the 0) are known as bits and the further along you go to the right the less significant the bits become in defining the precise colour of the pixel.</p>
<p>Why does the opportunity for steganography exist? Because while each pixel is defined by a series of bits, some of these bits can be changed without affecting the resulting pixel to any discernible extent. In a computerised image whose size is 256 by 256 pixels, making a total of 65,536 pixels, there would easily be room to conceal say, about 5,000 words of data.</p>
<p>This method of concealment is known as &#8216;<strong>bit twiddling</strong>&#8216;. An obvious place to conceal a secret message would be within a computerised picture that does not show any apparent changes.</p>
<p>Bit twiddling is the most common way to conceal text within a computerised image. There are many more techniques, though, particularly when using image formats such as the now ubiquitous<strong> jpeg</strong> which many will have encountered through their digital cameras.</p>
<p>An apparently innocuous picture of &#8211; of example &#8211; an employee&#8217;s child&#8217;s first day at school taken with a standard family digital camera could easily be used to conceal a damaging leak. The leak could be so fatal that by the time the school term ends, thousands of other mums and dads at the business from which the information was leaked will have had to find new jobs &#8211; if they can. <strong></strong></p>
<p><strong>Insider Threats</strong> are big business, and selling or leaking company information, customer<strong> credit card details</strong> and more can now all be hidden in a single image file and emailed or innocently be taken out of the building on a laptop or removable media.</p>
<p><strong>What&#8217;s the best way to guard against the hazard of modern image-based steganographic betrayal?</strong></p>
<p>The first step is to recognise that it is a potential problem and get help to understand what tools are likely to be available to a malicious team member. You also need to know the manner in which these tools can be used because they often leave little trace of their presence &#8211; some are even termed &#8216;<strong>zero footprint</strong>&#8216; by those who develop them.</p>
<p>Yet help is at hand because dedicated teams of experts have been making available tools to help detect steganography. The technique they use is known as &#8216;steganalysis&#8217;.</p>
<p>Steganalysis is as much an art as a science. The detection tools need to be used so that the appropriate steganalysis resource is used in the appropriate situation.</p>
<p>Admittedly, this is not easy, when the range of steganography tools and the steganalysis counterparts have proliferated and are proliferating just as the threat from viruses did when they first emerged into the IT environment.</p>
<p>At work I began my own anti-steganography work as a forensic technical exercise but was soon alarmed at what my experiments were told me, not just about the power of the steganography tools available but also about the degree of care that needs to be applied to combat this potent security hazard.</p>
<p>Taking the threat of betrayal by apparently innocuous pixels seriously will lead you to put into practice the measures necessary to defend against it. And you do need to take this threat very seriously indeed. The stegosaurus may be long extinct, but <strong>steganographic treachery</strong> is, unfortunately, here to stay.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Steganography+%E2%80%93+Invisible+Secrets+http://bit.ly/IqGaq" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Steganography+%E2%80%93+Invisible+Secrets+http://bit.ly/IqGaq" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/08/steganography-invisible-secrets/&amp;t=Steganography+%E2%80%93+Invisible+Secrets" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/08/steganography-invisible-secrets/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Password Advice</title>
		<link>http://www.michaelmknight.co.uk/2009/08/password-advice/</link>
		<comments>http://www.michaelmknight.co.uk/2009/08/password-advice/#comments</comments>
		<pubDate>Wed, 12 Aug 2009 23:28:41 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[help]]></category>
		<category><![CDATA[password]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=200</guid>
		<description><![CDATA[Your passwords are the keys you use to access personal information that you&#8217;ve stored on your computer and in your online accounts. stolenfrommichaelmknight 
If criminals or other malicious users steal this information, they can use your name to open new credit card accounts, apply for a mortgage, or pose as ...]]></description>
			<content:encoded><![CDATA[<p>Your passwords are the keys you use to access personal information that you&#8217;ve stored on your computer and in your online accounts. stolenfrommichaelmknight </p>
<p>If criminals or other malicious users steal this information, they can use your name to open new <strong>credit card</strong> accounts, apply for a mortgage, or pose as you in online transactions. In many cases you would not notice these attacks until it was too late.</p>
<p>Fortunately, it is not hard to create strong passwords and keep them well protected.</p>
<p><strong>What makes a strong password</strong></p>
<p>To an attacker, a strong password should appear to be a random string of characters. The following criteria can help your passwords do so:</p>
<p>Make it lengthy. Each character that you add to your password increases the protection that it provides many times over. Your passwords should be 8 or more characters in length; 14 characters or longer is ideal.</p>
<p>Many systems also support use of the space bar in passwords, so you can create a phrase made of many words (a &#8220;<strong>pass phrase</strong>&#8220;). A pass phrase is often easier to remember than a simple password, as well as longer and harder to guess.</p>
<p>Combine letters, numbers, and symbols. The greater variety of characters that you have in your password, the harder it is to guess. Other important specifics include:</p>
<p><strong>The fewer types of characters</strong> in your password, the longer it must be. A 15-character password composed only of random letters and numbers is about 33,000 times stronger than an 8-character password composed of characters from the entire keyboard. If you cannot create a password that contains symbols, you need to make it considerably longer to get the same degree of protection. An ideal password combines both length and different types of symbols.</p>
<p><strong>Use the entire keyboard</strong>, not just the most common characters. Symbols typed by holding down the &#8220;Shift&#8221; key and typing a number are very common in passwords. Your password will be much stronger if you choose from all the symbols on the keyboard, including punctuation marks not on the upper row of the keyboard, and any symbols unique to your language.</p>
<p><strong>Use words and phrases</strong> that are easy for you to remember, but difficult for others to guess. The easiest way to remember your passwords and pass phrases is to write them down. Contrary to popular belief, there is nothing wrong with writing passwords down, but they need to be adequately protected in order to remain secure and effective.</p>
<p>In general, passwords written on a piece of paper are more difficult to compromise across the Internet than a password manager, Web site, or other software-based storage tool, such as password managers.</p>
<p><strong>Create a strong, memorable password in 6 steps</strong></p>
<p>Use these steps to develop a strong password:</p>
<p>1. Think of a sentence that you can remember. This will be the basis of your strong password or pass phrase. Use a memorable sentence, such as &#8220;My son Aiden is three years old.&#8221;</p>
<p>2. Check if the computer or online system supports the pass phrase directly. If you can use a pass phrase (with spaces between characters) on your computer or online system, do so.</p>
<p>3. If the computer or online system does not support pass phrases, convert it to a password. Take the first letter of each word of the sentence that you&#8217;ve created to create a new, nonsensical word. Using the example above, you&#8217;d get: &#8220;msaityo&#8221;.</p>
<p>4. Add complexity by mixing uppercase and lowercase letters and numbers. It is valuable to use some letter swapping or misspellings as well. For instance, in the pass phrase above, consider misspelling Aiden&#8217;s name, or substituting the word &#8220;three&#8221; for the number 3. There are many possible substitutions, and the longer the sentence, the more complex your password can be. Your pass phrase might become &#8220;My SoN Ayd3N is 3 yeeRs old.&#8221; If the computer or online system will not support a pass phrase, use the same technique on the shorter password. This might yield a password like &#8220;MsAy3yo&#8221;.</p>
<p>5. Finally, substitute some special characters. You can use symbols that look like letters, combine words (remove spaces) and other ways to make the password more complex. Using these tricks, we create a pass phrase of &#8220;MySoN 8N i$ 3 yeeR$ old&#8221; or a password (using the first letter of each word) &#8220;M$8ni3y0&#8243;.</p>
<p>6. Test your new password with a <strong>Password Checker</strong>. A Password Checker is a non-recording feature on this <a title="Password Checker" href="http://www.michaelmknight.co.uk?wp_ct=2" target="_blank">Web site</a> that helps determine your password&#8217;s strength as you type.</p>
<p><strong>Password strategies to avoid</strong></p>
<p>Some common methods used to create passwords are easy to guess by criminals. To avoid weak, easy-to-guess passwords:</p>
<p><strong>Avoid sequences</strong> or repeated characters. &#8220;12345678,&#8221; &#8220;222222,&#8221; &#8220;abcdefg,&#8221; or adjacent letters on your keyboard do not help make secure passwords.</p>
<p><strong>Avoid using only look-alike</strong> substitutions of numbers or symbols. Criminals and other malicious users who know enough to try and crack your password will not be fooled by common look-alike replacements, such as to replace an &#8216;i&#8217; with a &#8217;1&#8242; or an &#8216;a&#8217; with &#8216;@&#8217; as in &#8220;M1cr0$0ft&#8221; or &#8220;P@ssw0rd&#8221;. But these substitutions can be effective when combined with other measures, such as length, misspellings, or variations in case, to improve the strength of your password.</p>
<p><strong>Avoid your login name</strong>. Any part of your name, birthday, social security number, or similar information for your loved ones constitutes a bad password choice. This is one of the first things criminals will try.</p>
<p><strong>Avoid dictionary words in any language</strong> &#8211; Criminals use sophisticated tools that can rapidly guess passwords that are based on words in multiple dictionaries, including words spelled backwards, common misspellings, and substitutions. This includes all sorts of profanity and any word you would not say in front of your children.</p>
<p><strong>Use more than one password everywhere</strong> &#8211; If any one of the computers or online systems using this password is compromised, all of your other information protected by that password should be considered compromised as well. It is critical to use different passwords for different systems.</p>
<p><strong>Avoid using online storage</strong> &#8211; If malicious users find these passwords stored online or on a networked computer, they have access to all your information.</p>
<p><strong>The &#8220;blank password&#8221; option</strong></p>
<p>A blank password (no password at all) on your account is more secure than a weak password such as &#8220;1234&#8243;. Criminals can easily guess a simplistic password, but on computers using Windows XP/Vista or Windows 7, an account without a password cannot be accessed remotely by means such as a network or the Internet. (This option is not available for Microsoft Windows 2000, Windows Me, or earlier versions) You can choose to use a blank password on your computer account if these criteria are met:</p>
<p>• You only have one computer or you have several computers but you do not need to access information on one computer from another one</p>
<p>• The computer is physically secure (you trust everyone who has physical access to the computer)</p>
<p>The use of a blank password is not always a good idea. For example, a laptop computer that you take with you is probably not physically secure, so on those you should have a strong password.</p>
<p><strong>How to access and change your passwords</strong></p>
<p><span style="color: #000000;"><strong>Online accounts</strong></span></p>
<p>Web sites have a variety of policies that govern how you can access your account and change your password. Look for a link (such as &#8220;my account&#8221;) somewhere on the site&#8217;s home page that goes to a special area of the site that allows password and account management.</p>
<p><strong>Computer passwords</strong></p>
<p>The Help files for your computer operating system will usually provide information about how to create, modify, and access password-protected user accounts, as well as how to require password protection upon startup of your computer. You can also try to find this information online at the software manufacturer&#8217;s Web site. For example, if you use Microsoft Windows XP, online help can show you how to manage passwords, change passwords, and more.</p>
<p><strong>Keep your passwords secret</strong></p>
<p>Treat your passwords and pass phrases with as much care as the information that they protect.</p>
<p><strong>Don&#8217;t reveal them to others</strong> &#8211; Keep your passwords hidden from friends or family members (especially children) who could pass them on to other less trustworthy individuals. Passwords that you need to share with others, such as the password to your online banking account that you might share with your spouse, are the only exceptions.</p>
<p><strong>Protect any recorded passwords</strong> &#8211; Be careful where you store the passwords that you record or write down. Do not leave these records of your passwords anywhere that you would not leave the information that they protect.</p>
<p><strong>Never provide your password</strong> over e-mail or based on an e-mail request. Any e-mail that requests your password or requests that you to go to a Web site to verify your password is almost certainly a fraud. This includes requests from a trusted company or individual. E-mail can be intercepted in transit, and e-mail that requests information might not be from the sender it claims. Internet &#8220;phishing&#8221; scams use fraudulent e-mail messages to entice you into revealing your user names and passwords, steal your identity, and more.</p>
<p><strong>Change your passwords regularly</strong> &#8211; This can help keep criminals and other malicious users unaware. The strength of your password will help keep it good for a longer time. A password that is shorter than 8 characters should be considered only good for a week or so, while a password that is 14 characters or longer (and follows the other rules outlined above) can be good for several years.</p>
<p><strong>Do not type passwords</strong> on computers that you do not control. Computers such as those in Internet cafés, computer labs, shared systems, kiosk systems, conferences, and airport lounges should be considered unsafe for any personal use other than anonymous Internet browsing. Do not use these computers to check online e-mail, chat rooms, bank balances, business mail, or any other account that requires a user name and password. Criminals can purchase keystroke logging devices for very little money and they take only a few moments to install. These devices let malicious users harvest all the information typed on a computer from across the Internet—your passwords and pass phrases are worth as much as the information that they protect. Windows has an OnScreen Keyboard that you can access if needs be. Press <strong>Start </strong>&gt; <strong>Run </strong>and type <strong>OSK</strong> and click OK. Now use the mouse to type in a password.</p>
<div id="attachment_201" class="wp-caption aligncenter" style="width: 516px"><img class="size-full wp-image-201" title="osk" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/osk.png" alt="Windows 7 On Screen Keyboard" width="506" height="157" /><p class="wp-caption-text">Windows 7 On Screen Keyboard</p></div>
<p><strong>What to do if your password is stolen</strong></p>
<p>Be sure to monitor all the information you protect with your passwords, such as your monthly financial statements, credit reports, online shopping accounts, and so on. Strong, memorable passwords can help protect you against fraud and identity theft, but there are no guarantees. No matter how strong your password is, if someone breaks into the system that stores it, they will have your password. If you notice any suspicious activity that could indicate that someone has accessed your information, notify authorities as quickly as you can.  If you need further help on what to do if you think your identity has been stolen or you&#8217;ve been similarly defrauded, then contact me.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Password+Advice+http://bit.ly/z2Mm8" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Password+Advice+http://bit.ly/z2Mm8" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/08/password-advice/&amp;t=Password+Advice" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/08/password-advice/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sexting &#8211; A Guide</title>
		<link>http://www.michaelmknight.co.uk/2009/08/sexting-a-guide/</link>
		<comments>http://www.michaelmknight.co.uk/2009/08/sexting-a-guide/#comments</comments>
		<pubDate>Mon, 10 Aug 2009 04:30:20 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Child Safety / Protection]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[help]]></category>
		<category><![CDATA[images]]></category>
		<category><![CDATA[peer pressure]]></category>
		<category><![CDATA[sexting]]></category>
		<category><![CDATA[sexual]]></category>
		<category><![CDATA[video]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=178</guid>
		<description><![CDATA[What Is &#8220;Sexting?&#8221; stolenfrommichaelmknight 
When people take a sexually revealing picture or video of themselves and send it or them as text message attachments, it&#8217;s called &#8220;sexting.&#8221; And recently the practice has been increasing exponentially amongst kids. Kids &#8220;sext&#8221; to show off, to entice someone, to show interest in someone, ...]]></description>
			<content:encoded><![CDATA[<p><strong>What Is &#8220;Sexting?&#8221;</strong> stolenfrommichaelmknight </p>
<p>When people take a sexually revealing picture or video of themselves and send it or them as text message attachments, it&#8217;s called &#8220;sexting.&#8221; And recently the practice has been increasing exponentially amongst kids. Kids &#8220;sext&#8221; to show off, to entice someone, to show interest in someone, or to prove commitment. The problem with that, is that the moment the relationship ends (and most of them do) someone is in possession of a highly compromising image that can be easily posted on a social networking site or sent around via email or text.</p>
<p>There have been some high profile cases of <a title="Sexting" href="http://en.wikipedia.org/wiki/Sexting" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FSexting','Sexting')" target="_blank">sexting</a> &#8212; including<strong> High School Musical</strong> star <a title="Vanessa Hudgens" href="http://www.imdb.com/name/nm1227814/" onclick="return TrackClick('http%3A%2F%2Fwww.imdb.com%2Fname%2Fnm1227814%2F','Vanessa+Hudgens')" target="_blank">Vanessa Hudgens</a>, who sent a nude picture to her co-star/boyfriend, Zac Efron, that ended up all over the Internet and made headlines. And in July 2008, Cincinnati teen Jesse Logan <strong>committed suicide</strong> after a nude photo she’d sent to a boyfriend was circulated widely around her high school, resulting in harassment from her classmates.</p>
<p><strong>Why It Matters</strong></p>
<p>In a technology world where anything can be copied, sent, posted, and seen by huge audiences, there&#8217;s no such thing as being able to control images. Even if a photo was taken and sent as a token of love, the intention doesn’t matter &#8212; the technology makes it possible for everyone to see your child’s most intimate self. And in the hands of teenagers, when revealing photos are made public the subject almost always becomes the object of ridicule and name calling. Furthermore, sending <strong>sexual images</strong> to minors is against the law, and some states in the US and the UK have begun prosecuting kids for <strong>child pornography</strong> or obscenity.</p>
<p><strong>Advice for Parents</strong></p>
<p><strong>Don&#8217;t wait</strong> &#8211; for an incident to happen to your child or your child’s friend before you talk to your kids about the consequences of sexting. Sure, talking about sex or dating with teens can be really uncomfortable, but better to have the talk before the fact.</p>
<p><strong>Remind them</strong> &#8211; that once an image is sent, it can never be retrieved &#8212; and they will lose control of it. Ask teens how they would feel if their teachers, parents, or the entire school saw the picture, because it happens all the time.</p>
<p><strong>Talk about pressures</strong> &#8211; to send revealing photos. Let teens know that you understand that they can be pushed or dared into sending something. Tell them that no matter how big the social pressure is, the potential social humiliation will be hundreds of times worse.</p>
<p>The buck stops with them. If someone sends them a photo, have them delete it immediately. Better to be part of the solution than the problem. Besides, if they do send it on, they&#8217;re distributing pornography &#8212; and that’s against the law.</p>
<p>If you can’t deal with this, have your kids go to a professional that can help (and you should go yourself).</p>
<p><strong>Statistics</strong></p>
<blockquote>
<ul>
<li>22% of teen girls and 20% of teen boys have sent nude or semi-nude photos of themselves</li>
<li> 22% of teens admit that technology makes them personally more forward and aggressive</li>
<li>38% say exchanging sexy content makes dating or hooking up with others more likely</li>
<li>29% believe those exchanging sexy content are “expected” to date or hook up</li>
</ul>
</blockquote>
<p>Remember; revealing photos can be resent to a vast audience. If the person you or a kid sends an <strong>explicit image</strong> via mobile phone, or even email. These can be forwarded to someone else, and before you know it, the content is uploaded online or passed between peers and sending a sexual image to a minor, even minor to minor is illegal.</p>
<p><strong>Evidence</strong></p>
<p>As a parent, you may be worried what your kids are sending to each other. Where do your ethics come in to play regarding a kids privacy? Sometimes drastic measures will force you to intervene in a child&#8217;s life and development and for his or her protection.  For the worried parent there is software available that will help you. <a title="MOBILedit Forensic Software" href="http://www.mobiledit.com/forensic/" onclick="return TrackClick('http%3A%2F%2Fwww.mobiledit.com%2Fforensic%2F','MOBILedit+Forensic+Software')" target="_blank">MOBILedit</a> is a Forensic Application that works will all mobile phones and PDAs and requres a data cable (one of these usually comes with a new phone as standard, if not, they are cheap to buy).</p>
<p>MOBILedit is quite costly, but the trial is fully functional and will allow you to use the application for a short time. Which will be all you need to gather the information you need. This software can also be used to read test (SMS) messages from both sides of the conversation. This is useful if your child is being bullied, or is indeed a bully him or herself. The application can be used for many predicaments you and your child may come across, and a way of proving facts.</p>
<p>Do not use this software as just a spying tool, this would be unfair and you would be infringing on privacy issues if you have no just cause, so please use this software wisely. You can download the trial below.</p>
<p><a href="http://download.mobiledit.com/mobiledit!/MOBILedit!Forensic.exe" onclick="return TrackClick('http%3A%2F%2Fdownload.mobiledit.com%2Fmobiledit%21%2FMOBILedit%21Forensic.exe','Download+MOBILedit+Forensic+Edition')"><img class="alignleft size-full wp-image-184" title="Download MOBILedit Forensic Edition" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/downloadgrn.png" alt="downloadgrn" width="253" height="70" /></a></p>
<p>
<p>
<p>
<p>
<p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Sexting+%E2%80%93+A+Guide+http://bit.ly/GWtvd" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Sexting+%E2%80%93+A+Guide+http://bit.ly/GWtvd" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/08/sexting-a-guide/&amp;t=Sexting+%E2%80%93+A+Guide" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/08/sexting-a-guide/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Dangers</title>
		<link>http://www.michaelmknight.co.uk/2009/07/twitter-dangers/</link>
		<comments>http://www.michaelmknight.co.uk/2009/07/twitter-dangers/#comments</comments>
		<pubDate>Fri, 31 Jul 2009 01:22:45 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Child Safety / Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[Attack]]></category>
		<category><![CDATA[fake]]></category>
		<category><![CDATA[protection]]></category>
		<category><![CDATA[provention]]></category>
		<category><![CDATA[stalkers]]></category>
		<category><![CDATA[Trojans]]></category>
		<category><![CDATA[Viruses]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=160</guid>
		<description><![CDATA[We all know how fun Twitter can be. Many people have fallen in love with this micro blogging site, and don’t really see anything that could go wrong. After all, who needs Twitter safety tips against a cute, bird logo? stolenfrommichaelmknight 
Well, don’t be too caught up in your Twitter ...]]></description>
			<content:encoded><![CDATA[<p>We all know how fun<a title="Twitter" href="http://twitter.com" onclick="return TrackClick('http%3A%2F%2Ftwitter.com','Twitter')" target="_blank"> Twitter</a> can be. Many people have fallen in love with this micro blogging site, and don’t really see anything that could go wrong. After all, who needs Twitter safety tips against a cute, bird logo? stolenfrommichaelmknight </p>
<p>Well, don’t be too caught up in your Twitter postings that you forget your safety. Remember that the Internet is still a prime target market for sexual predators, <a title="Article on Stalkers" href="http://www.michaelmknight.co.uk/?p=140" onclick="return TrackClick('http%3A%2F%2Fwww.michaelmknight.co.uk%2F%3Fp%3D140','Article+on+Stalkers')" target="_blank">stalkers</a>, fraudsters, scammers, hackers and people who want to do others harm. You might need these Twitter safety tips more than you realise, especially if you have just started to use twitter.</p>
<p>Just the other day, I chanced upon this TV interview of a young, popular actress who pointed out that someone has set up an account on Twitter, pretending to be her which leads me to…</p>
<p><strong>Twitter Safety Tip # 1:  Don’t believe everything you read</strong></p>
<p>Have we not learned from the past? The Internet, while not harmful by itself, is still a haven for individuals and groups that are up to no good.</p>
<p>After all, who can say that a 50-year-old pervert isn’t a cute, 15-year-old student from London when he sounds just like a 15-year old student from London? And that picture of him in that blue shirt just backs it up, right?</p>
<p>If you are inclined to believe this, then you need this Twitter safety tip more than anyone else. People who want to befriend you can easily make up lies on Twitter. Don’t think for a second that they wouldn’t take the time and effort to prattle away about their non-existent boring Algebra classes and upcoming winter dance if it meant making themselves more convincing.</p>
<p>Be aware that there are many fake profiles on twitter. Learn how to spot them. Firstly, you&#8217;ll notice that they have not posted much, and with links being shortened, its hard to see if your being sent to a real site or a dodgy site where you will be prone to a <a title="More info about Clickjacking" href="http://en.wikipedia.org/wiki/Clickjacking" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FClickjacking','More+info+about+Clickjacking')" target="_blank">clickjacking</a> attack/scam. Other things too look out for are the following and followers. Usually you can tell by looking if this is a real person or a fake. Also keep away from people sending tweets from API. Scammers/Spammers also follow each other, and may converse between themselves to make it look like they have actual friends. Be wary. A quick example of clickjacking. <a title="Rickrolled" href="http://www.michaelmknight.co.uk?wp_ct=13" target="_blank">Click this link</a> (its safe), but its shows you how an easy link can be spoofed.</p>
<div id="attachment_230" class="wp-caption aligncenter" style="width: 515px"><img class="size-full wp-image-230" title="fake1" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/fale1.jpg" alt="The most common looking fake profile" width="505" height="411" /><p class="wp-caption-text">The most common looking fake profile with low followers</p></div>
<div id="attachment_228" class="wp-caption aligncenter" style="width: 510px"><img class="size-full wp-image-228" title="api1" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/api1.jpg" alt="Automated tweets from the Twitter API - Block these people" width="500" height="45" /><p class="wp-caption-text">Automated tweets from the Twitter API - Block these people</p></div>
<p>If you want to follow a celebrity, I suggest you look for the new Twitter <strong>Verified Account</strong> tag that&#8217;s added at the top right of a profile, and check out <a title="Valebrity - Famous people to follow" href="http://valebrity.com" onclick="return TrackClick('http%3A%2F%2Fvalebrity.com','Valebrity+-+Famous+people+to+follow')" target="_blank">Valebrity</a> for a huge list of validated celebs.</p>
<div id="attachment_232" class="wp-caption aligncenter" style="width: 515px"><img class="size-full wp-image-232" title="var" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/var.PNG" alt="An official Varified Account" width="505" height="159" /><p class="wp-caption-text">An official Verified Account</p></div>
<p>Last bits on this subject, there are lots of automated scripts out there that create fake profiles, bots that create fake posts and user accounts. So if you are unsure that this is a real person, do some investigating and look at their followers and see if any of them has ever had a proper conversation with this possible &#8216;fake&#8217;. If in doubt, don&#8217;t follow them back and block them.</p>
<div id="attachment_229" class="wp-caption aligncenter" style="width: 515px"><img class="size-full wp-image-229" title="fake2" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/08/fake2.jpg" alt="A typical Fake Profile. Notice theres no conversation" width="505" height="454" /><p class="wp-caption-text">A typical fake Profile. Notice there&#39;s no conversation, and low followers</p></div>
<p>Also beware of tweets and websites that claim <strong>Get 160,000 followers</strong> in a month, or words like that. Firstly, they don&#8217;t work, and secondly they are probably a scam.</p>
<p>Why? Well, once you click a link, you are directed to a website where you enter your Twitter login details. Now the scammers/spamers can send tweets from your account. Also, they may flood Twitter with thousands of messages. Twitter hates this and it will get your account locked and possibly deleted. If this happens and you still have access to your account, change your password immediately.</p>
<p>When visiting any website that is not directly affiliated or endorsed by twitter, be very careful when submitting your account details. You never know who owns the website or what they are using it for, so do some research first. Check the  <a title="Whois Information" href="http://www.whois.net/" onclick="return TrackClick('http%3A%2F%2Fwww.whois.net%2F','Whois+Information')" target="_blank">whois</a> information for the site (this can also be faked), search twitter to see if other people are using the site (or even an app) and see if they seem to be sending spam tweets. If all is clear, then they are probably OK.</p>
<p>Never pay for a service that links to Twitter.</p>
<p><strong>Twitter Safety Tip # 2: Don’t give out your location</strong></p>
<p>I know that micro <strong>blogging</strong> is fun. There’s just something addicting about being able to post what you’re doing or what you’re feeling at this exact moment… and having hundreds, possibly thousands of followers seeing it.</p>
<p>If you have added people in Twitter who are not really your friends, then all the more reason to be careful. If you, for example, tweets that you’re stuck in the Starbucks near your home late at night, anyone could just take advantage of that information. Its only a matter of time until you turn on the TV and hear that someone is being stalked or has been attacked or murdered because they twitted their exact location, so be warned.</p>
<p>Lastly on this location tip. Be careful if you are using an<strong> iPhone </strong>and turn on the Location Option. It looks like this in a persons profile: <strong>37.739705,-122.430799</strong> and gives you the longitude and latitude of a persons iPhone. This can be used to track you. So turn this feature off.  In a test, I activated this feature on an iPhone with Twitterrific. With a laptop and mobile phone enabled with GPS Software I travelled miles away from home, where I left the iPhone switched on. I activated the Laptop and GPS, loaded my Twitter page and got the coordinates. I entered them into the GPS system and navigated the route to 20 meters from my doorstep. Anyone could do this with just a laptop and GPS Enabled phone. You can also go to <a title="Google Maps" href="http://maps.google.com" onclick="return TrackClick('http%3A%2F%2Fmaps.google.com','Google+Maps')">Google Maps</a> and copy and paste the longitude and latitude, this will also give the location. And with Street View, you can probably see where that person lives.</p>
<p><strong>Twitter Safety Tip # 3: Don’t attract too much attention to yourself</strong></p>
<p>Twittering that you have just received a gold bracelet from your boyfriend can also attract the wrong sort of followers to your account. Trust should not be so freely given on the Internet.</p>
<p>You might want to show it off on Twitter via <a title="TwitPic - Image hosting " href="http://www.twitpic.com/" onclick="return TrackClick('http%3A%2F%2Fwww.twitpic.com%2F','TwitPic+-+Image+hosting')" target="_blank">TwitPic</a> or some other image provider or host, but think about the possible risks. It might tempt others into doing something both you, and they, will regret.</p>
<p>As much fun as Twitter is, set a limit on how much private information you’re really broadcasting to the world. Many of you may be thinking, &#8216;yeah, whateverrrr&#8217;, or &#8216;yeah OK, this will never happen to me&#8217;. But <em><strong>never</strong></em> forego you&#8217;re safety,  and <em><strong>never</strong></em> let your guard down on the Internet. If you do, you&#8217;re a fool!</p>
<p><strong>More protection&#8230;</strong></p>
<p>When using twitter, I&#8217;d suggest using a 3rd party application like <a title="TweetDeck" href="http://tweetdeck.com" onclick="return TrackClick('http%3A%2F%2Ftweetdeck.com','TweetDeck')" target="_blank">TweetDeck</a> (which is my favorite twitter app) or <a title="CoTweet" href="http://cotweet.com/" onclick="return TrackClick('http%3A%2F%2Fcotweet.com%2F','CoTweet')" target="_blank">CoTweet</a> (which is my second fave). The reason for using a 3rd party application is that it uses Twitters <a title="API" href="http://en.wikipedia.org/wiki/Application_programming_interface" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FApplication_programming_interface','API')" target="_blank">API </a>(Application programming interface) and you are less likely to get a trojan or virus from clicking on a users infected profile. Yes! You can also get a Trojan or Virus from using Twitter. A while back, Twitter was plagued by the &#8216;<strong>Mikeyy Worm</strong>&#8216; that infected you if you clicked on a profile that had been compromised by the Mikeyy worm. Incidentaly, the Mikeyy worm was actually written by Michael Mooney, a 17 year old kid and it crippled millions of Twitter accounts.</p>
<p>You can keep track of attacks on twitter<a title="Twitter Hit by News" href="http://search.twitter.com/search?q=%22Twitter+Hit+By%22" onclick="return TrackClick('http%3A%2F%2Fsearch.twitter.com%2Fsearch%3Fq%3D%2522Twitter%2BHit%2BBy%2522','Twitter+Hit+by+News')" target="_blank"> here</a>. And if you would like to report suspicious activity, a spammer or something that doesn&#8217;t look right, follow twitters <strong>Spam Team</strong> and then send them a tweet with your problem: <a title="Twitters Spam Busters" href="http://twitter.com/spam" onclick="return TrackClick('http%3A%2F%2Ftwitter.com%2Fspam','Twitters+Spam+Busters')" target="_blank">http://twitter.com/spam</a> and they should help. Also, if you have any real issues and you need support from Twitter, visit their <a title="Twitter Help And Support" href="http://twitter.zendesk.com/requests/new" onclick="return TrackClick('http%3A%2F%2Ftwitter.zendesk.com%2Frequests%2Fnew','Twitter+Help+And+Support')" target="_blank">ticketing system</a>.</p>
<p>Twitter is not perfect and is riddled with <strong>security holes</strong>, and more are being discovered or exploited daily. For a platform that&#8217;s almost over 3 years old, the boffins at Twitter really should plug these holes, tighten up security and keep people safer. Don&#8217;t let this spoil your twitting experience though. As long as you keep safe whilst on twitter, and learn how to spot the fake profiles, you&#8217;ll have a great time.</p>
<p>If you have any <strong>Twitter tips</strong> you would like to share with us, please comment below and at some point I will include these in a list, and credit you.</p>
<p>Lastly, check out <a title="Sharon Hays" href="http://sharontucci.blogspot.com/" onclick="return TrackClick('http%3A%2F%2Fsharontucci.blogspot.com%2F','Sharon+Hays')" target="_blank">Sharon Hays&#8217;</a> Blog for tons of Twitter information. She&#8217;s a pure Twitter professional, lovely person and her blog will help you get used to Twitter if you are new. Also, checkout <a title="Twitter 101" href="http://business.twitter.com/twitter101/" onclick="return TrackClick('http%3A%2F%2Fbusiness.twitter.com%2Ftwitter101%2F','Twitter+101')" target="_blank">Twitter 101</a> for some excellent information.</p>
<p><strong>Recent Twitter Bots/Scammers</strong></p>
<p><span style="color: #993300;">I will update this section of this post as new scams, bots and strategies change, so keep popping back for updats&#8230;</span></p>
<p>You will notice that they are now having conversations. But with other bots and they use rubbish English like &#8216;<strong>Howz U doin</strong>&#8216;,  &#8216;<strong>I did dat last wk</strong>&#8216; and so on. If you click on the people they are following, you will notice the same bad grammar and spellings. Some of these new spammers are also now mimicking or pretending to be up and coming actors/actresses and celebs.</p>
<p><strong>3rd Party Application Spam</strong></p>
<p>I&#8217;ve noticed that spammers are now creating profiles and posting tweets via <strong>TweetDeck</strong> and <strong>CoTweet</strong> as well as <strong>TwitterFeed</strong>. Again, there is no real conversation and the posts are riddled with useless links and random tweets. You may also notice that the spammers and bots are now using lists to make them look like normal people. Be wary.</p>
<div id="attachment_293" class="wp-caption aligncenter" style="width: 516px"><img class="size-full wp-image-293" title="fake3" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/11/fake3.png" alt="fake3" width="506" height="449" /><p class="wp-caption-text">New fake profile using TweetDeck and using Lists</p></div>
<p><strong><br />
True Twit</strong></p>
<p>This is not a danger, but I wanted to update you with this cool utility. If you are plagued by <strong>Twitter spam </strong>(or Twam) and you have had enough, you can try True Twit. <a title="True Twit" href="http://www.michaelmknight.co.uk?wp_ct=12" target="_blank"><strong>True Twit</strong></a> has been around a while now and what it does is to <strong>verify </strong>anyone following you. So, if for example, I follow you, I&#8217;m sent a DM to click a link to verify that I am in fact a cool human being and wants to follow you because I think your cool. I don&#8217;t have to enter any of my Twitter details either.</p>
<div id="attachment_309" class="wp-caption aligncenter" style="width: 520px"><img class="size-full wp-image-309" title="tt" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/11/tt.png" alt="True Twit - Helping stop Twitter Spam" width="510" height="349" /><p class="wp-caption-text">True Twit - Helping stop Twitter Spam</p></div>
<p>True Twit also has a few neat options behind the scenes, where you can send a verification note to anyone on your list to whom you think may is a spammer or may have a fake profile, they are then sent a DM to verify themselves. The message that is sent is customisable, or you can use the default message. You can also unfollow people too. Signup today and help stop the spam.</p>
<p><a title="True Twit" href="http://www.michaelmknight.co.uk?wp_ct=12" target="_blank">http://www.truetwit.com</a>.</p>
<p>Stay tuned for more info&#8230;</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Twitter+Dangers+http://bit.ly/NI4L9" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Twitter+Dangers+http://bit.ly/NI4L9" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/07/twitter-dangers/&amp;t=Twitter+Dangers" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/07/twitter-dangers/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Office 2010 &#8211; First Looks</title>
		<link>http://www.michaelmknight.co.uk/2009/05/office-2010-first-looks/</link>
		<comments>http://www.michaelmknight.co.uk/2009/05/office-2010-first-looks/#comments</comments>
		<pubDate>Tue, 12 May 2009 19:13:50 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Office]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Demo]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=147</guid>
		<description><![CDATA[Microsoft’s TechEd 2009 conference kicked off today with a fairly forthcoming keynote that included not only the announcement of a Windows 7 release date season but an indirect demonstration of the forthcoming Office 2010 Technical Preview build. The best-I-can-do-from-a-streaming-video screenshots below comes from Bill Veghte’s quick demonstration of Windows 7 ...]]></description>
			<content:encoded><![CDATA[<p><a title="TechEd 2009" href="http://www.msteched.com/online/home.aspx" onclick="return TrackClick('http%3A%2F%2Fwww.msteched.com%2Fonline%2Fhome.aspx','TechEd+2009')" target="_blank">Microsoft’s TechEd 2009</a> conference kicked off today with a fairly forthcoming keynote that included not only the announcement of a <a title="Win7" href="http://windowsteamblog.com/blogs/windows7/archive/2009/05/11/windows-7-on-track-to-hit-this-holiday-season.aspx" onclick="return TrackClick('http%3A%2F%2Fwindowsteamblog.com%2Fblogs%2Fwindows7%2Farchive%2F2009%2F05%2F11%2Fwindows-7-on-track-to-hit-this-holiday-season.aspx','Win7')" target="_blank">Windows 7 release date</a> season but an indirect demonstration of the forthcoming Office 2010 Technical Preview build. The best-I-can-do-from-a-streaming-video screenshots below comes from Bill Veghte’s quick demonstration of <a title="Official Windows 7" href="http://www.microsoft.com/windows/windows-7/default.aspx" onclick="return TrackClick('http%3A%2F%2Fwww.microsoft.com%2Fwindows%2Fwindows-7%2Fdefault.aspx','Official+Windows+7')" target="_blank">Windows 7</a> in which he launched 3 Office applications: Excel, Powerpoint and Outlook. stolenfrommichaelmknight </p>
<div id="attachment_148" class="wp-caption aligncenter" style="width: 522px"><img class="size-full wp-image-148" title="o2010_1" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/05/o2010_1.jpg" alt="Office 2010" width="512" height="287" /><p class="wp-caption-text">Office 2010 in action</p></div>
<p>Compared to the screenshots of Outlook 2010 that were leaked to ZDNet’s iGeneration a month ago, not much has changed, but the effects of a new fade-to-Aero gradient in the header bar is much more obvious. In terms of the actual applications, Excel does not seem to have changed at all whereas Powerpoint has a new “Transitions” tab possibly indicating improved effects and animations behaviors. Outlook’s changes are pretty self explanatory. Each application’s “Ribbon button” is also colored differently, allowing easy differentiation between the applications.</p>
<div id="attachment_149" class="wp-caption aligncenter" style="width: 522px"><img class="size-full wp-image-149" title="o2010_2" src="http://www.michaelmknight.co.uk/wp-content/uploads/2009/05/o2010_2.jpg" alt="Office 2010" width="512" height="287" /><p class="wp-caption-text">Microsoft Office Outlook 2010 on Windows 7</p></div>
<p>Having said all that, I have no idea what’s going on with “<a title="Official 2010 Movie" href="http://www.office2010themovie.com/" onclick="return TrackClick('http%3A%2F%2Fwww.office2010themovie.com%2F','Official+2010+Movie')" target="_blank">Office 2010 The Movie</a>“. A viral campaign for business applications? Sure, bring it on.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Office+2010+%E2%80%93+First+Looks+http://bit.ly/FqvvT" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Office+2010+%E2%80%93+First+Looks+http://bit.ly/FqvvT" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/05/office-2010-first-looks/&amp;t=Office+2010+%E2%80%93+First+Looks" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/05/office-2010-first-looks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyberstalking &#8211; A Guide</title>
		<link>http://www.michaelmknight.co.uk/2009/03/140/</link>
		<comments>http://www.michaelmknight.co.uk/2009/03/140/#comments</comments>
		<pubDate>Tue, 31 Mar 2009 18:46:34 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Child Safety / Protection]]></category>
		<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Social]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[protection]]></category>
		<category><![CDATA[stalker]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=140</guid>
		<description><![CDATA[The lack of sensory information on the Internet (like too many adults,  teenagers and younger kids with a Facebook or Myspace page or Twitter account) may have a significant impact on cyberstalkers,  &#8220;The absence of sensory-perceptual stimuli from a real person means that fantasy can play an even more expansive ...]]></description>
			<content:encoded><![CDATA[<p>The lack of sensory information on the Internet (like too many adults,  teenagers and younger kids with a <a class="t" rel="nofollow" href="http://www.facebook.com/" onclick="return TrackClick('http%3A%2F%2Fwww.facebook.com%2F','Facebook')" target="_blank">Facebook</a> or <a class="t" rel="nofollow" href="http://www.myspace.com/" onclick="return TrackClick('http%3A%2F%2Fwww.myspace.com%2F','Myspace')" target="_blank">Myspace</a> page or <a title="Twitter" href="http://twitter.com" onclick="return TrackClick('http%3A%2F%2Ftwitter.com','Twitter')" target="_blank">Twitter</a> account) may have a significant impact on cyberstalkers,  &#8220;The absence of sensory-perceptual stimuli from a real person means that fantasy can play an even more expansive role as the genesis of behavior in the stalker.&#8221; The victim becomes an easy target for the stalker&#8217;s projections, and narcissistic fantasies, that can lead to a real world rejection, humiliation and rage. stolenfrommichaelmknight </p>
<p>One of the most prominent features of stalking behaviour is fixation on victims. Their obsession can drive stalkers to extremes that make this type of investigation challenging and potentially dangerous. Although stalkers who use the Internet to target victims may attempt to conceal their identities, their obsession with a victim often causes them to expose themselves. For instance, they may say things that reveal their relationship with or knowledge of the victim, or they may take risks that enable investigators to locate and identify them. However, even when stalkers have been identified, attempts to discourage them can have the opposite effect, potentially angering them and putting victims at greater risk.</p>
<p>In 1990, after five women were murdered by stalkers, California became the first state in the US to enact a law to deal with this specific problem. Then, in 1998, California explicitly included electronic communications in their anti-stalking law. The relevant sections of the California Penal Code have strongly influenced all subsequent anti-stalking laws in the US, clearly defining stalking and related terms.</p>
<p>Any person who willfully, maliciously, and repeatedly follows or harasses another person and who makes a credible threat with the intent to place that person in reasonable fear of death or great bodily injury is guilty of the crime of stalking &#8230; &#8220;harasses&#8221; means a knowing and willful course of conduct directed at a specific person that seriously alarms, annoys, torments, or terrorizes the person, and that serves no legitimate purpose. This course of conduct must be such as would cause a reasonable person to suffer substantial emotional distress, and must actually cause substantial emotional distress to the person.</p>
<p>&#8230; &#8220;course of conduct&#8221; means a pattern of conduct composed of a series of acts over a period of time, however short, evidencing a continuity of purpose &#8230; &#8220;credible threat&#8221; means a verbal or written threat, including that performed through the use of an electronic communication device, or a threat implied by a pattern of conduct or a combination of verbal, written, or electronically communicated statements and conduct made with the intent to place the person that is the target of the threat in reasonable fear for his or her safety or the safety of his or her family and made with the apparent ability to carry out the threat so as to cause the person who is the target of the threat to reasonably fear for his or her safety or the safety of his or her family. It is not necessary to prove that the defendant had the intent to actually carry out the threat&#8230; &#8220;electronic communication device&#8221; includes, but is not limited to, telephones, cellular phones, computers, video recorders, fax machines, or pagers.&#8221; [California Penal Code 646.9]</p>
<p>The equivalent law in the United Kingdom is the Protection from Harassment Act 1997 (Chapter 40).</p>
<p>Note that persistence is one of the operative concepts when dealing with stalking. A single upsetting e-mail message is not considered harassment because it is not a pattern of behavior. Remember that anti-stalking laws were enacted to protect individuals against persistent terrorism and physical danger, not against annoyance or vague threats.</p>
<p>The distinction between annoyance and harassment is not easily defined. It is usually enough to demonstrate that the victim suffered substantial emotional distress. However, there is always the argument that the victim overreacted to the situation. If a victim is not found to be a &#8220;reasonable person&#8221; as described in the law, a court might hold that no harassment took place. Therefore, when investigating a stalking case, it is important to gather as much evidence as possible to demonstrate that persistent harassment took place and that the victim reacted to the credible threat in a reasonable manner.</p>
<p>The explicit inclusion of electronic communication devices in California&#8217;s anti-stalking law is a clear acknowledgement of the fact that stalkers are making increasing use of new technology to further their ends. In addition to using voice mail, fax machines, cellular phones, and pagers, stalkers use computer networks to harass their victims. The term cyberstalking refers to stalking that involves the Internet. This chapter briefly describes how cyberstalkers operate, what motivates them, and what investigators can do to apprehend them.</p>
<p><strong>How Cyberstalkers Operate</strong></p>
<p>Cyberstalking works in much the same way as stalking in the physical world. In fact, many offenders combine their online activities with more traditional forms of stalking and harassment such as telephoning the victim and going to the victim&#8217;s home. Some cyberstalkers obtain victims over the Internet and others put personal information about their victims online, encouraging others to contact the victim, or even harm them.</p>
<p><strong>CASE EXAMPLE (ASSOCIATED PRESS 1997)</strong>:</p>
<p>Cynthia Armistead-Smathers of Atlanta believes she became a target during an e-mail discussion of advertising in June, 1996. First she received nasty e-mails from the account of Richard Hillyard of Norcross, GA. Then she began receiving messages sent through an &#8220;anonymous remailer,&#8221; an online service that masks the sender&#8217;s identity.</p>
<p>After Hillyard&#8217;s Internet service provider cancelled his account, Ms Armistead-Smathers began getting messages from the Centres for Disease Control and Prevention in Atlanta, where he worked. Then she got thousands of messages from men who had seen a posting of a nude woman, listing her e-mail address and offering sex during the Atlanta Olympics.</p>
<p>But police said there was little they could do &#8211; until she got an anonymous message from someone saying he had followed Ms Armistead-Smathers and her 5-year-old daughter from their post office box to her home.</p>
<p>People say &#8220;It&#8217;s online. Who cares? It isn&#8217;t real. Well this is real,&#8221; Ms Armistead-Smathers said. &#8220;It&#8217;s a matter of the same kind of small-minded bullies who maybe wouldn&#8217;t have done things in real life, but they have the power of anonymity from behind a keyboard, where they think no one will find them.&#8221;</p>
<p>In general, stalkers want to exert power over their victims in some way, primarily through fear. The crux of a stalker&#8217;s power is information about and knowledge of the victim. A stalker&#8217;s ability to frighten and control a victim increases with the amount of information that he can gather about the victim. Stalkers use information like telephone numbers, addresses, and personal preferences to impinge upon their victims&#8217; lives. Also, over time cyberstalkers can learn what sorts of things upset their victims and can use this knowledge to harass the victims further.</p>
<p>Since they depend heavily on information, it is no surprise that stalkers have taken to the Internet. After all, the Internet contains a vast amount of personal information about people and makes it relatively easy to search for specific items. As well as containing people&#8217;s addresses and phone numbers, the Internet records many of our actions, choices, interests, and desires. Databases containing social security numbers, credit card numbers, medical history, criminal records, and much more can also be accessed using the Internet. Additionally, cyberstalkers can use the Internet to harass specific individuals or acquire new victims from a large pool of potential targets. In one case, a woman was stalked in chat rooms for several months, during which time the stalker placed detailed personal information online and threatened to rape and kill her. Some offenders seek victims online but it is more common for stalkers to use chat networks to target individuals that they already know.</p>
<p><strong>Acquiring Victims</strong></p>
<p>Past studies indicate that many stalkers had a prior acquaintance with their victims before the stalking behavior began (Harmon et al. 1994). The implication of these studies is that investigators should pay particular attention to acquaintances of the victim. However, these studies are limited because many stalking cases are unsolved or unreported. Additionally, it is not clear if these studies apply to the Internet. After all, it is uncertain what constitutes an acquaintance on the Internet and the Internet makes it easier for cyberstalkers to find victims of opportunity.</p>
<p>Cyberstalkers can search the Web, browse through Windows Live Messenger (MSN), Skype, Digsby, Yahoo, ICQ and AOL profiles, and lurk in Yahoo, IRC and AOL chat rooms looking for likely targets &#8211; vulnerable, under-confident individuals who will be easy to intimidate.</p>
<p><strong>CASE EXAMPLE</strong>: One stalker repeatedly acquired victims of opportunity on AOL and used AOL&#8217;s Instant Messenger to contact and harass them. The stalker also used online telephone directories to find victims&#8217; numbers, harassing them further by calling their homes. This approach left very little digital evidence because none of the victims recorded the Instant Messenger sessions, they did not know how to find the stalker&#8217;s IP address, and they did not contact AOL in time to track the stalker.</p>
<p>Of course, the victims were distressed by this harassment, feeling powerless to stop the instant messages and phone calls. This sense of powerlessness was the primary goal the cyberstalker. This stalker may have picked AOL as his stalking territory because of the high number of inexperienced Internet users and the anonymity that it affords.</p>
<p>As a rule, investigators should rely more on available evidence than on general studies. Although research can be useful to a certain degree, evidence is the most reliable source of information about a specific case and it is what the courts will use to make a decision.</p>
<p><strong>Anonymity and Surreptitious Monitoring</strong></p>
<p>The Internet has the added advantage of protecting a stalker&#8217;s identity and allowing a stalker to monitor a victim&#8217;s activities. For example, stalkers acquainted with their victims use the Internet to hide their identity, sending forged or anonymous e-mail and using ICQ or AOL Instant Messenger to harass their victims. Also, stalkers can utilize ICQ, AOL Instant Messenger, and other applications (e.g. finger) to determine when a victim is online. Most disturbing of all, stalkers can use the Internet to spy on a victim. Although few cyberstalkers are skilled enough to break into a victim&#8217;s e-mail account or intercept e-mail in transit, a cyberstalker can easily observe a conversation in a live chat room. This type of pre-surveillance of victims and amassing of information about potential victims might suggest intent to commit a crime but it is not a crime in itself, and is not stalking as defined by the law.</p>
<p><strong>Escalation and Violence</strong></p>
<p>It is often suggested that stalkers will cease harassing their victims once they cease to provoke the desired response. However, some stalkers become aggravated when they do not get what they want and become increasingly threatening. As was mentioned at the beginning of this chapter, stalkers have resorted to violence and murder. Therefore, it is important for investigators to be extremely cautious when dealing with a stalking case. Investigators should examine the available evidence closely, protect the victim against further harm as much as possible, and consult with experts when in doubt. Most importantly, investigators should not make hurried judgements that are based primarily on studies of past cases.</p>
<p><strong>Investigating Cyberstalking</strong></p>
<p>There are several stages to investigating a cyberstalking case. These stages assume that the identity of the cyberstalker is unknown. Even if the victim suspects an individual, investigators are advised to explore alternative possibilities and suspects. Although past research suggests that most stalkers have prior relationships with victims, this may not apply when the Internet is involved since stranger stalking is easier. Therefore, consider the possibility that the victim knows the stalker, but do not assume that this is the case:</p>
<p><strong>Interview victim</strong> &#8211; determine what evidence the victim has of cyberstalking and obtain details about the victim that can be used to develop victimology. The aim of this initial information gathering stage is to confirm that a crime has been committed and to obtain enough information to move forward with the investigation.</p>
<p><strong>Interview others</strong> &#8211; if there are other people involved, interview them to compile a more complete picture of what occurred.</p>
<p><strong>Victimology and risk assessment</strong> &#8211; determine why an offender chose a specific victim and what risks the offender was willing to take to acquire that victim. The primary aim of this stage of the investigation is to understand the victim-offender relationship and determine where additional digital evidence might be found.</p>
<p><strong>Search for additional digital evidence</strong> &#8211; use what is known about the victim and cyberstalker to perform a thorough search of the Internet. Victimology is key at this stage, guiding investigators to locations that might interest the victim or individuals like the victim. The cyberstalker initially observed or encountered the victim somewhere and investigators should try to determine where. Consider the possibility that the cyberstalker encountered the victim in the physical world. The aim of this stage is to gather more information about the crime, the victim and the cyberstalker.</p>
<p><strong>Crime scene characteristics</strong> &#8211; examine crime scenes and cybertrails for distinguishing features (e.g. location, time, method of approach, choice of tools) and try to determine their significance to the cyberstalker. The aim of this stage is to gain a better understanding of the choices that the cyberstalker made and the needs that were fulfilled by these choices.</p>
<p><strong>Motivation</strong> &#8211; determine what personal needs the cyberstalking was fulfilling. Be careful to distinguish between intent (e.g. to exert power over the victim, to frighten the victim) and the personal needs that the cyberstalker&#8217;s behavior satisfied (e.g. to feel powerful, to retaliate against the victim for a perceived wrong). The aim of this stage is to understand the cyberstalker well enough to narrow the suspect pool revisit the prior steps and uncover additional evidence</p>
<p><strong>Repeat </strong>- if the identity of the cyberstalker is still not known, interview the victim again. The information that investigators have gathered might help the victim recall additional details or might suggest a likely suspect to the victim</p>
<p>To assist investigators carry out each of these stages in an investigation, additional details are provided here.</p>
<p><strong>Interviews</strong></p>
<p>Investigators should interview the victim and other individuals with knowledge of the case to obtain details about the inception of the cyberstalking and the sorts of harassment the victim has been subjected to. In addition to collecting all of the evidence that the victim has of the cyberstalking, investigators should gather all of the details that are required to develop a thorough victimology as described in the next section.</p>
<p>While interviewing the victim, investigators should be sensitive to be as tactful as possible while questioning everything and assuming nothing. Keep in mind that victims tend to blame themselves, imagining that they encouraged the stalker in some way (e.g. by accepting initial advances or by making too much personal information available on the Internet) (Pathé 1997). It is therefore important for everyone involved in a cyberstalking investigation to help the victim regain confidence by acknowledging that the victim is not to blame. It is also crucial to help victims protect themselves from potential attacks. The National Center for Victims of Crime has an excellent set of guidelines developed specifically for victims of stalking.</p>
<p><strong>Victimology</strong></p>
<p>In addition to helping victims protect themselves against further harassment, investigators should try to determine how and why the offender selected a specific victim. To this end, investigators should determine whether the cyberstalker knew the victim, learned about the victim through a personal Web page, saw a Usenet message written by the victim, or noticed the victim in a chat room.</p>
<p>It is also useful to know why a victim made certain choices to help investigators make a risk assessment. For example, individuals who use the Internet to meet new people are at higher risk than individuals who make an effort to remain anonymous. In some instances, it might be quite evident why the cyberstalker chose a victim but if a cyberstalker chooses a low risk victim, investigators should try to determine which particular characteristics the victim possesses that might have attracted the cyberstalker&#8217;s attention (e.g. residence, work place, hobby, personal interest, demeanor). These characteristics can be quite revealing about a cyberstalker and can direct the investigator&#8217;s attention to certain areas or individuals.</p>
<p><strong>Questions to ask at this stage include</strong>:</p>
<p>Does the victim know or suspect why, how, and/or when the cyberstalking began?</p>
<p>What Internet Service Provider(s) do(es) the victim use and why?</p>
<p>What online services does the victim use and why (e.g. Web, free e-mail services, Usenet, IRC)?</p>
<p>When does the victim use the Internet and the various Internet services (does the harassment occur at specific times suggesting that the cyberstalker has a schedule or is aware of the victim&#8217;s schedule)?</p>
<p>What does the victim do on the Internet and why?</p>
<p>Does the victim have personal Web pages or other personal information on the Internet (e.g. a <strong>Facebook</strong> profile, <strong>Twitter</strong>, <strong>Myspace</strong> or <strong>Bebo</strong> Web page, customized finger output)? What information do these items contain?</p>
<p>In addition to the victim&#8217;s Internet activities, investigators should examine the victim&#8217;s physical surroundings and real world activities.</p>
<p>When the identity of the cyberstalker is known or suspected, it might not seem necessary to develop a complete victimology. Although it is crucial to investigate suspects, this should not be done at the expense of all else. Time spent trying to understand the victim-offender relationship can help investigators understand the offender, protect the victim, locate additional evidence, and discover additional victims. Furthermore, there is always the chance that the suspect is innocent in which case investigators can use the victimology that they developed to find other likely suspects.</p>
<p><strong>Risk Assessment</strong></p>
<p>A key aspect of developing victimology is determining victim and offender risk. Generally, women are at greater risk than men of being cyberstalked and new Internet users are at greater risk than experienced Internet users. Individuals who frequent the equivalent of singles bars on the Internet are at greater risk than those who just use the Internet to search for information. A woman who puts her picture on a Web page with some biographical information, an address, and phone number is at high risk because cyberstalkers can fixate on the picture, obtain personal information about the woman from the Web page, and start harassing her over the phone or in person.</p>
<p>Bear in mind that victim risk is not an absolute thing &#8211; it depends on the circumstances. A careful individual who avoids high risk situations in the physical world might be less cautious on the Internet. For example, individuals who are not famous in the world at large might have celebrity status in a certain area of the Internet, putting them at high risk of being stalked by someone familiar with that area. Individual who are sexually reserved in the physical world might partake in extensive sexual role playing on the Internet, putting them at high risk of being cyberstalked.</p>
<p>If a cyberstalker selects a low risk victim, investigators should try to determine what attracted the offender to the victim. Also, investigators should determine what the offender was willing to risk when harassing the victim. Remember that offender risk is the risk as an offender perceives it &#8211; investigators should not try to interpret an offender&#8217;s behavior based on the risks they perceive. An offender will not necessarily be concerned by the risks that others perceive. For example, some cyberstalkers do not perceive apprehension as a great risk, only an inconvenience that would temporarily interfere with their ability to achieve their goal (to harass the victim) and will continue to harass their victims, even when they are under investigation.</p>
<p><strong>Search</strong></p>
<p>Investigators should perform a thorough search of the Internet using what is known about the victim and the offender and should examine personal computers, log files on servers, and all other available sources of digital evidence as described in this book. For example, when a cyberstalker uses e-mail to harass a victim, the messages should be collected and examined. Also, other e-mail that the victim has received should be examined to determine if the stalker sent forged messages to deceive the victim. Log files of the e-mails server that was used to send and receive the e-mail should be examined to confirm the events in question.</p>
<p>Log files sometimes reveal other things that the cyberstalker was doing (e.g. masquerading as the victim, harassing other victims) and can contain information that lead directly to the cyberstalker.</p>
<p><strong>CASE EXAMPLE</strong>: Gary Steven Dellapenta became the first person to be convicted under the new section of California&#8217;s stalking law that specifically includes electronic communications. After being turned down by a woman named Randi Barber, Dellapenta retaliated by impersonating her on the Internet and claiming she fantasized about being raped.</p>
<p>Using nicknames such as &#8220;playfulkitty4U&#8221; and &#8220;kinkygal30,&#8221; Dellapenta placed online personal ads and sent messages saying such things as &#8220;I&#8217;m into the rape fantasy and gang-bang fantasy too.&#8221; He gave respondents Barber&#8217;s address and telephone number, directions to her home, details of her social plans and even advice on how to short-circuit her alarm system.</p>
<p>Barber became alarmed when men began leaving messages on her answer machine and turning up at her apartment. In an interview (Newsweek 1999), Barber recalled that one of the visitors left after she hid silently for a few minutes, but phoned her apartment later. &#8220;What do you want?&#8221; she pleaded. &#8220;Why are you doing this?&#8221; The man explained that he was responding to the sexy ad she had placed on the Internet.</p>
<p>&#8220;What ad? What did it say?&#8221; Barber asked. &#8220;Am I in big trouble?&#8221;</p>
<p>&#8220;Let me put it to you this way,&#8221; the caller said. &#8220;You could get raped.&#8221;</p>
<p>When Barber put a note on her door to discourage the men who were responding to the personal ads, Dellapenta putting new information on the Internet claiming that the note was just part of the fantasy.</p>
<p>In an effort to gather evidence against Dellapenta, Barber kept recordings of messages that were left on her machine and contacted each caller, asking for any information about the cyberstalker. Two men cooperated with her request for help, but it was ultimately her father who gathered the evidence that was necessary to identify Dellapenta.</p>
<p>Barber&#8217;s father helped to uncover Dellapenta&#8217;s identity by posing as an ad respondent and turning the e-mails he received over to investigators.</p>
<p>Investigators traced the e-mails from the Web sites at which they were posted to the servers used to access the sites. Search warrants compelled the Internet companies to identify the user. All the paths led police back to Dellapenta. &#8220;When you go on the Internet, you leave fingerprints &#8211; we can tell exactly where you&#8217;ve been,&#8221; says sheriff&#8217;s investigator Mike Gurzi, who would eventually verify that all the e-mails originated from Dellapenta&#8217;s computer after studying his hard drive. The alleged stalker&#8217;s M.O. was tellingly simple: police say he opened up a number of free Internet e-mail accounts pretending to be the victim, posted the crude ads under a salacious log-on name and started e-mailing the men who responded. (Newsweek 1999)</p>
<p>Dellapenta admitted to authorities that he had an &#8220;inner rage&#8221; against Barber and pleaded guilty to one count of stalking and three counts of solicitation of sexual assault.</p>
<p>When searching for evidence of cyberstalking it is useful to distinguish between the offender&#8217;s harassing behaviors and surreptitious monitoring behaviours. A victim is usually only aware of the harassment component of cyberstalking. However, cyberstalkers often engage in additional activities that the victim is not aware of. Therefore, investigators should not limit their search to the evidence of harassment that the victim is already aware of but should look for evidence of both harassment and surreptitious monitoring.</p>
<p>If the victim frequented certain areas, investigators should comb those areas for information and should attempt to see them from the cyberstalker&#8217;s perspective. Could the cyberstalker have monitored the victim&#8217;s activities in those areas? If so, would this monitoring have generated any digital evidence and would Locard&#8217;s exchange principle take effect? For example, if the victim maintains a Web page, the cyberstalker might have monitored its development in which case the Web server log would contain the cyberstalker&#8217;s IP address (with associated times) and the cyberstalker&#8217;s personal computer would indicate that the page had been viewed (and when it was viewed). If the cyberstalker monitored the victim in IRC, he might have kept log files of the chat sessions. If the cyberstalker broke into the victim&#8217;s e-mail account the log files on the e-mail server should reflect this.</p>
<p>Keep in mind that the evidence search and seizure stage of an investigation forms the foundation of the case &#8211; incomplete searches and poorly collected digital evidence will result in a weak case. It is therefore crucial to apply the Forensic Science concepts presented in this book diligently. Investigators should collect, document, and preserve digital evidence in a way that will facilitate the reconstruction and prosecution processes. Also investigators should become intimately familiar with available digital evidence, looking for class and individual characteristics in an effort to maximize its potential.</p>
<p><strong>Crime Scene Characteristics</strong></p>
<p>When investigating cyberstalking, investigators might not be able to define the primary crime scene clearly because digital evidence is often spread all over the Internet. However, the same principle of behavioral evidence analysis applies &#8211; aspects of a cyberstalker&#8217;s behavior can be determined from choices and decisions that a cyberstalker made and the evidence that was left behind, destroyed, or taken away. Therefore, investigators should thoroughly examine the point of contact and cybertrails (e.g. the Web, Usenet, personal computers) for digital evidence that exposes the offender&#8217;s behavior.</p>
<p>To begin with, investigators should ask themselves why a particular cyberstalker used the Internet &#8211; what need did this fulfill? Was the cyberstalker using the Internet to obtain victims, to remain anonymous, or both? Investigators should also ask why a cyberstalker used particular areas of the Internet &#8211; what affordances did the Internet provide? MO and signature behaviors can usually be discerned from the way a cyberstalker approaches and harasses victims on the Internet.</p>
<p>How cyberstalkers use the Internet can say a lot about their skill level, goals, and motivations. Using IRC rather than e-mail to harass victims suggests a higher skill level and a desire to gain instantaneous access to the victim while remaining anonymous. The choice of technology will also determine what digital evidence is available. Unless a victim keeps a log, harassment on IRC leaves very little evidence whereas harassing e-mail messages are enduring and can be used to track down the sender.</p>
<p>Additionally, investigators can learn a great deal about offenders&#8217; needs and choices by carefully examining their words, actions, and reactions. Increases and decreases in intensity in reaction to unexpected occurrences are particularly revealing. For example, when a cyberstalker&#8217;s primary mode of contact with a victim is blocked the cyberstalker might be discouraged, unperturbed, or aggravated. How the cyberstalkers choose to react to setbacks indicates how determined they are to harass a specific victim and what they hope to achieve through the harassment. Also, a cyberstalker&#8217;s intelligence, skill level, and identity can be revealed when he modifies his behaviour and use of technology to overcome obstacles.</p>
<p><strong>Motivation</strong></p>
<p>There have been a number of attempts to categorize stalking behavior and develop specialized typologies (Meloy 1998). However, these typologies were not developed with investigations in mind and are primarily used by clinicians to diagnose mental illnesses and administer appropriate treatments.</p>
<p>When investigating cyberstalking, the motivational typologies can be used as a sounding board to gain a greater understanding of stalkers&#8217; motivations. Also, as described earlier in this chapter, some stalkers pick their victims opportunistically and get satisfaction by intimidating them, fitting into the power assertive typology.</p>
<p>Other stalkers are driven by a need to retaliate against their victims for perceived wrongs, exhibiting many of the behaviours described in the anger retaliatory typology. For instance, Dellapenta, the Californian cyberstalker who went to great lengths to terrify Randi Barber, stated that he has an &#8220;inner rage&#8221; directed at Barber that he could not control. Dellapenta&#8217;s behavior confirms this statement, indicating that he was retaliating against Barber for a perceived wrong. His messages were degrading and were designed to bring harm to Barber. Furthermore, Dellapenta tried to arrange for other people to harm Barber, indicating that he did feel the need to hurt her himself. Although it is possible that Dellapenta felt some desire to assert power over Barber, his behavior indicates that he was primarily driven by a desire to bring harm to her.</p>
<p><strong>Summary</strong></p>
<p>Cyberstalking is not different from regular stalking &#8211; the Internet is just another tool that facilitates the act of stalking. In fact, many cyberstalkers also use the telephone and their physical presence to achieve their goals. Stalkers use the Internet to acquire victims, gather information, monitor victims, hide their identities, and avoid capture. Although cyberstalkers can become quite adept at using the Internet, investigators with a solid understanding of the Internet and a strong investigative methodology will usually be able to discover the identity of a cyberstalker.</p>
<p>With regard to a strong investigative methodology, investigators should get into the habit of following the steps described in the chapter (interviewing victims, developing victimology, searching for additional evidence, analysing crime scenes, and understanding motivation).</p>
<p>The type of digital evidence that is available in a cyberstalking case depends on the technologies that the stalker uses. However, a cyberstalker&#8217;s personal computer usually contains most of the digital evidence, including messages sent to the victim, information gathered about the victim, and even information about other victims.</p>
<p>It is difficult to make accurate generalizations about cyberstalkers because a wide variety of circumstances can lead to cyberstalking. A love interest turned sour can result in obsessive and retaliatory behaviour. An individual&#8217;s desire for power can drive him to select and harass vulnerable victims opportunistically. The list goes on, and any attempt to generalize or categorize necessarily excludes some of the complexity and nuances of the problem. Therefore, investigators who hope to address this problem thoroughly should be wary of generalisations and categorizations, only using them to understand available evidence further.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Cyberstalking+%E2%80%93+A+Guide+http://bit.ly/NrYcR" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Cyberstalking+%E2%80%93+A+Guide+http://bit.ly/NrYcR" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/03/140/&amp;t=Cyberstalking+%E2%80%93+A+Guide" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/03/140/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>The True Cost of Spam</title>
		<link>http://www.michaelmknight.co.uk/2009/03/the-true-cost-of-spam/</link>
		<comments>http://www.michaelmknight.co.uk/2009/03/the-true-cost-of-spam/#comments</comments>
		<pubDate>Wed, 25 Mar 2009 22:10:14 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Hoax]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Spam]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[cost]]></category>
		<category><![CDATA[loss of business]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=131</guid>
		<description><![CDATA[Junk email may be costing your company more than you think; here’s how to add up the real costs. stolenfrommichaelmknight 
Spam may be cheap for the people who send it, but it can be a serious expense for your business. According to a study conducted earlier this year by Nucleus ...]]></description>
			<content:encoded><![CDATA[<p><strong>J</strong><strong>unk email may be costing your company more than you think; here’s how to add up the real costs.</strong> stolenfrommichaelmknight </p>
<p><a class="t" rel="nofollow" href="http://en.wikipedia.org/wiki/Spam_%28electronic%29" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FSpam_%2528electronic%2529','Spam')" target="_blank">Spam</a> may be cheap for the people who send it, but it can be a serious expense for your business. According to a study conducted earlier this year by <strong>Nucleus Research Inc</strong>., spam management costs Businesses more than £/$ 150 billion annually in lost productivity — £/$ 1400 per employee.</p>
<p>Here&#8217;s a quick look at the various ways that spam drains your company&#8217;s bank account and how you can calculate the real cost to your business.</p>
<p><strong>Anti-Spam Technology</strong>: Spam-fighting products and services are a big business, and anti-spam vendors aren&#8217;t generating their revenue from the people sending junk email. Most companies not only spend thousands of dollars on anti-spam software and hardware solutions, but they also drop cash on employees and consultants to plan, deploy and maintain the technologies.</p>
<p><strong>Lost Productivity</strong>: Spam wastes employees&#8217; time. The average employee spends 16 seconds reviewing and deleting each spam message, according to Nucleus Research. The company estimates that at businesses that quarantine spam (where junk messages are placed in a directory for review and confirmation by recipients), each user spends an average of 4.5 minutes per week reviewing messages. Deleting messages, however, turns out to be the most expensive spam strategy. The average employee at companies that delete spam messages loses an average of 7.3 minutes per week looking for lost legitimate messages.<span id="more-131"></span><strong></strong></p>
<p><strong>Wasted Storage</strong>: Companies that quarantine spam must add extra storage capacity to accommodate suspicious mail so that users can review it at their leisure. But many users never bother to review their quarantined messages, so the email just sits there, consuming storage space and money.</p>
<p><strong>Internet Service Cost Pass-Alongs</strong>: This number is difficult to calculate. Still, it would be naive to believe that ISPs aren&#8217;t passing along junk email&#8217;s tremendous costs to their customers. In an October 2007 report, anti-spam software vendor <strong><span class="t">Symantec Corp</span></strong>. estimated that 70 percent of all email was spam. The traffic burden created by junk email forces ISPs to add extra network and server capacity, as well as to install their own anti-spam solutions.<br />
<strong><br />
An Intangible Cost</strong>: Spam has a broader economic impact as well, hitting many businesses and nations that are least able to bear the burden. Consider Nigeria, for example. Nucleus Research noted that while fraud and corruption have been rampant in Nigeria for some time, the country may be forever kept in the digital darkness because of the volume of deceptive email sent by local spammers. The research firm noted that most spam filters block any mail with &#8220;Nigeria&#8221; in the title or text, effectively keeping anyone communicating with, from, to or about Nigeria from doing it via email.</p>
<blockquote><p>Nigerian scams are also known as 419 Fraud, so named from the code given to Email fraud in Nigeria.</p></blockquote>
<p><strong>Your Cost</strong>: If you&#8217;re interested in seeing just how much spam is costing your business, use <strong>Computer Mail Services Inc.&#8217;s</strong> <a class="t" rel="nofollow" href="http://www.cmsconnect.com/Marketing/spamcalc.htm" onclick="return TrackClick('http%3A%2F%2Fwww.cmsconnect.com%2FMarketing%2Fspamcalc.htm','spam-cost+calculator')" target="_blank">spam-cost calculator</a>. For a second opinion, check out the <strong>Sendio </strong><a class="t" rel="nofollow" href="http://www.sendio.com/spamCalc/" onclick="return TrackClick('http%3A%2F%2Fwww.sendio.com%2FspamCalc%2F','spam-cost+calculator')" target="_blank">spam-cost calculator</a>.</p>
<p>Other spam-cost calculators are available at <a class="t" rel="nofollow" href="http://www.networkworld.com/spam/index.jsp" onclick="return TrackClick('http%3A%2F%2Fwww.networkworld.com%2Fspam%2Findex.jsp','NetworkWorld.com')" target="_blank">NetworkWorld.com</a>, <a class="t" rel="nofollow" href="http://www.networkcomputing.com/project/spamcalc.jhtml" onclick="return TrackClick('http%3A%2F%2Fwww.networkcomputing.com%2Fproject%2Fspamcalc.jhtml','Network+Computing')" target="_blank">Network Computing</a> and <a class="t" rel="nofollow" href="http://www.commtouch.com/site/Resources/calculator.asp" onclick="return TrackClick('http%3A%2F%2Fwww.commtouch.com%2Fsite%2FResources%2Fcalculator.asp','Commtouch')" target="_blank">Commtouch</a>.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=The+True+Cost+of+Spam+http://bit.ly/Q8Hez" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=The+True+Cost+of+Spam+http://bit.ly/Q8Hez" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/03/the-true-cost-of-spam/&amp;t=The+True+Cost+of+Spam" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/03/the-true-cost-of-spam/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Encryption 101</title>
		<link>http://www.michaelmknight.co.uk/2009/03/encryption-101/</link>
		<comments>http://www.michaelmknight.co.uk/2009/03/encryption-101/#comments</comments>
		<pubDate>Sat, 21 Mar 2009 18:36:15 +0000</pubDate>
		<dc:creator>Mike</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Forensic]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[Information]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Advice]]></category>
		<category><![CDATA[Data]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[help]]></category>
		<category><![CDATA[hide]]></category>
		<category><![CDATA[protection]]></category>

		<guid isPermaLink="false">http://www.michaelmknight.co.uk/?p=126</guid>
		<description><![CDATA[For many people, the word &#8220;encryption&#8221; invokes images of spies, clandestine operations and World War II, or NSA code breakers feverishly working to decipher enemy messages. Actually, encryption is a priceless security tool that any business can easily use to keep sensitive information confidential and safe from prying eyes. stolenfrommichaelmknight ...]]></description>
			<content:encoded><![CDATA[<p>For many people, the word &#8220;<strong>encryption</strong>&#8221; invokes images of spies, clandestine operations and World War II, or <a class="t" rel="nofollow" href="http://en.wikipedia.org/wiki/Nsa" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FNsa','NSA')" target="_blank">NSA</a> code breakers feverishly working to decipher enemy messages. Actually, encryption is a priceless security tool that any business can easily use to keep sensitive information confidential and safe from prying eyes. stolenfrommichaelmknight </p>
<p>Unfortunately, many businesses fail to take advantage of encryption technology, fearing that it&#8217;s &#8216;too complex&#8217; and &#8216;difficult to use&#8217; on a routine basis. In reality, encrypting vital data isn&#8217;t much more difficult than running a virus scanner or a data-backup program. Here&#8217;s how to get started.</p>
<p><strong>The Basics</strong></p>
<p>There are two basic ways to encrypt data. One approach is to use asymmetric PKI (<a class="t" rel="nofollow" href="http://en.wikipedia.org/wiki/Public-key" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FPublic-key','public-key')" target="_blank">public-key</a> infrastructure) encryption. PKI cryptography is based on a pair of cryptographic keys: One is private and known only to the user, while the other is public and known to the opposite party in any exchange.</p>
<p>PKI technology provides privacy and confidentiality, access control, proof of document transmission, and document archiving and retrieval support. While most security vendors currently incorporate some type of PKI technology into their software, differences in design and implementation prevent interoperability between products.</p>
<p>The other method of encrypting data is symmetric key protection, also known as &#8220;<a class="t" rel="nofollow" href="http://en.wikipedia.org/wiki/Cryptographic_key" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FCryptographic_key','secret-key')" target="_blank">secret-key</a>&#8221; encryption. Generally speedier yet less secure than PKI, symmetric encryption uses the same key to both encrypt and decrypt messages. Symmetric technology works best when key distribution is restricted to a limited number of trusted individuals. Since symmetric encryption can be fairly easy to break, it&#8217;s primarily used for safeguarding relatively unimportant information or material that only has to be protected for a short period of time.<br />
<strong><br />
Applying Encryption</strong></p>
<p>The easiest way to use encryption is to purchase a business application or a hardware product that incorporates some form of encryption technology. Microsoft&#8217;s Outlook or Outlook Express email client, for example, provides built-in encryption support. Meanwhile, vendors such as Seagate Technology LLC and Hitachi Ltd. have started incorporating encryption technology into their hard drives.</p>
<p>Since most software applications and hardware products don&#8217;t include any type of internal encryption technology, business owners and managers need to look for stand-alone encryption products. This can be a confusing process, one that&#8217;s best approached by first determining the business&#8217;s precise security requirements, then finding an encryption product that fits each need.</p>
<p>Microsoft Vista Enterprise and Ultimate users can take advantage of <a class="t" rel="nofollow" href="http://technet2.microsoft.com/WindowsVista/en/library/58358421-a7f5-4c97-ab41-2bcc61a58a701033.mspx?mfr=true" onclick="return TrackClick('http%3A%2F%2Ftechnet2.microsoft.com%2FWindowsVista%2Fen%2Flibrary%2F58358421-a7f5-4c97-ab41-2bcc61a58a701033.mspx%3Fmfr%3Dtrue','BitLocker')" target="_blank">BitLocker </a>Drive Encryption, a full disk tool that offers powerful 1024-bit encryption. Another Windows offering is EFS (<a class="t" rel="nofollow" href="http://en.wikipedia.org/wiki/Encrypting_File_System" onclick="return TrackClick('http%3A%2F%2Fen.wikipedia.org%2Fwiki%2FEncrypting_File_System','Encrypting+File+System')" target="_blank">Encrypting File System</a>), which uses symmetrical PKI technology to provide file encryption.</p>
<p>Beyond Microsoft, leading encryption vendors and products include <a class="t" rel="nofollow" href="http://www.google.co.uk/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.pgp.com%2F&amp;ei=tme4R6vYJYOgwgGM3czYCg&amp;usg=AFQjCNHDxZBs83vkLccUWlmxzt7KvhgFMQ&amp;sig2=EAvXn1l5kpx2UtToYiA-hw" onclick="return TrackClick('http%3A%2F%2Fwww.google.co.uk%2Furl%3Fsa%3Dt%26amp%3Bct%3Dres%26amp%3Bcd%3D1%26amp%3Burl%3Dhttp%253A%252F%252Fwww.pgp.com%252F%26amp%3Bei%3Dtme4R6vYJYOgwgGM3czYCg%26amp%3Busg%3DAFQjCNHDxZBs83vkLccUWlmxzt7KvhgFMQ%26amp%3Bsig2%3DEAvXn1l5kpx2UtToYiA-hw','PGP')" target="_blank">PGP</a>, free &#8211; open-source <a class="t" rel="nofollow" href="http://www.google.co.uk/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.truecrypt.org%2F&amp;ei=0Ge4R6-RA4PUwwHytuXgCg&amp;usg=AFQjCNH8UXHuTTPFsxxhk9LfQtfx7CG5Pg&amp;sig2=d_VNH6sP9Ia-q8CY0xf77w" onclick="return TrackClick('http%3A%2F%2Fwww.google.co.uk%2Furl%3Fsa%3Dt%26amp%3Bct%3Dres%26amp%3Bcd%3D1%26amp%3Burl%3Dhttp%253A%252F%252Fwww.truecrypt.org%252F%26amp%3Bei%3D0Ge4R6-RA4PUwwHytuXgCg%26amp%3Busg%3DAFQjCNH8UXHuTTPFsxxhk9LfQtfx7CG5Pg%26amp%3Bsig2%3Dd_VNH6sP9Ia-q8CY0xf77w','TrueCrypt')" target="_blank">TrueCrypt</a>, <a class="t" rel="nofollow" href="http://www.google.co.uk/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.deslock.com%2F&amp;ei=8Ge4R8efI4mOxAHYx4C7Cg&amp;usg=AFQjCNEPcET3buxqV6K5JarL5aJF-bfx2w&amp;sig2=XJlVlQK8LGph-7pdJeJkdA" onclick="return TrackClick('http%3A%2F%2Fwww.google.co.uk%2Furl%3Fsa%3Dt%26amp%3Bct%3Dres%26amp%3Bcd%3D1%26amp%3Burl%3Dhttp%253A%252F%252Fwww.deslock.com%252F%26amp%3Bei%3D8Ge4R8efI4mOxAHYx4C7Cg%26amp%3Busg%3DAFQjCNEPcET3buxqV6K5JarL5aJF-bfx2w%26amp%3Bsig2%3DXJlVlQK8LGph-7pdJeJkdA','DESlock%2B')" target="_blank">DESlock+</a>, <a class="t" rel="nofollow" href="http://www.google.co.uk/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.namo.com%2Fproducts%2Ffilelock.php&amp;ei=CGi4R4s3ksrBAcSc-MEK&amp;usg=AFQjCNFvDF5jMP7ZUl-qC0EajMVBj-fMkA&amp;sig2=K1phTgvVETEwTDjAWpVYCQ" onclick="return TrackClick('http%3A%2F%2Fwww.google.co.uk%2Furl%3Fsa%3Dt%26amp%3Bct%3Dres%26amp%3Bcd%3D1%26amp%3Burl%3Dhttp%253A%252F%252Fwww.namo.com%252Fproducts%252Ffilelock.php%26amp%3Bei%3DCGi4R4s3ksrBAcSc-MEK%26amp%3Busg%3DAFQjCNFvDF5jMP7ZUl-qC0EajMVBj-fMkA%26amp%3Bsig2%3DK1phTgvVETEwTDjAWpVYCQ','Namo+FileLock')" target="_blank">Namo FileLock</a> and <a class="t" rel="nofollow" href="http://www.google.co.uk/url?sa=t&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fwww.t3us.com%2F&amp;ei=JWi4R5PCGYGIwAHAhoG9Cg&amp;usg=AFQjCNEc6lHQvu_PFJ4BzRzVU9Ie2GgglA&amp;sig2=6eh7UfIMNoqG_UpLHjd5Nw" onclick="return TrackClick('http%3A%2F%2Fwww.google.co.uk%2Furl%3Fsa%3Dt%26amp%3Bct%3Dres%26amp%3Bcd%3D1%26amp%3Burl%3Dhttp%253A%252F%252Fwww.t3us.com%252F%26amp%3Bei%3DJWi4R5PCGYGIwAHAhoG9Cg%26amp%3Busg%3DAFQjCNEc6lHQvu_PFJ4BzRzVU9Ie2GgglA%26amp%3Bsig2%3D6eh7UfIMNoqG_UpLHjd5Nw','T3+Basic+Security')" target="_blank">T3 Basic Security</a>.</p>
<p><strong>What to Encypt</strong></p>
<p>So how do you know what to encrypt? Here are some places to start:</p>
<ul>
<li> <strong>Hard Drives</strong>: A business may choose to encrypt entire hard drives as a way to reduce or eliminate data theft.</li>
<li> <strong>Individual Files</strong>: In cases where full disk encryption is overkill, file-by-file encryption provides added security on an &#8220;as-needed&#8221; basis. Many leading encryption products offer drag-and-drop encryption capabilities.</li>
<li> <strong>Laptops</strong>: Unlike office systems, laptops are easy to lose and are prone to casual theft. By ensuring that the system&#8217;s data content is unreadable, a business can limit its loss to the cost of the laptop. A growing number of government regulators and insurance companies are demanding that businesses encrypt any data that leaves their premises and over 5000 Laptops were left in the back of a taxi cab last year.</li>
<li> <strong>Removable Media</strong>: Memory sticks, thumb drives and similar portable storage technologies provide portability, convenience, and an opportunity for data loss and theft. As with laptops, encryption limits a business&#8217;s loss to the cost of the device itself. A growing number of removable-media devices come with built-in encryption support.</li>
<li> <strong>File Transfers</strong>: Sending files over unsecured wired or wireless links can expose sensitive information to data thieves. Encryption provides an additional layer of security, even when a secured network is used.</li>
<li> <strong>Email</strong>: Encrypted email is kept secure during the transmission process and while sitting in its recipient&#8217;s mailbox.</li>
<li> <strong>IM (Instant Messaging)</strong>: A growing number of businesses are using IM to swap confidential business information. Encryption helps secure these critical transmissions.</li>
</ul>
<p><strong>Encryption&#8217;s Limitations</strong></p>
<p>Like any technology, encryption software isn&#8217;t perfect. Even the best products consume both processor speed and storage space. Users can also lose or forget passwords, thereby potentially locking systems forever.</p>
<p>Before purchasing any encryption tool, carefully research the product. Make sure that the offering addresses your company&#8217;s needs, is compatible with your systems and has a good track record concerning reliability and support. If possible, check with your friends and colleagues for their opinions on various encryption tools.</p>
<p>Lastly, if you do use any of the products available for encryption, including Windows EFS, please remember to backup and store your public and private keys. If not, you will probably lose your data.</p>
<p align="right"><a target="_blank" class="tt" href="http://twitter.com/home/?status=Encryption+101+http://bit.ly/6rKwD" title="Post to Twitter"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" class="tt" href="http://twitter.com/home/?status=Encryption+101+http://bit.ly/6rKwD" title="Post to Twitter"> </a> <a target="_blank" class="tt" href="http://www.facebook.com/share.php?u=http://www.michaelmknight.co.uk/2009/03/encryption-101/&amp;t=Encryption+101" title="Post to Facebook"><img class="nothumb" src="http://www.michaelmknight.co.uk/wp-content/plugins/tweet-this/icons/tt-facebook-micro3.png" alt="Post to Facebook" /></a></p>]]></content:encoded>
			<wfw:commentRss>http://www.michaelmknight.co.uk/2009/03/encryption-101/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
