Monday 28 April 2014

How to Click a Quality Selfie?


These days smart phone users are developing the interest on “Selfie”. Selfie fever is not mere an affliction which has spread among youth but even U.S. President Barack Obama, Vatican’s Pope Francis, and BJP’s Prime Ministerial candidate Narendra Modi are afflicted with it. All the Selfies are popular and have the tendency to find place in News Headlines. 
 
Earlier it wasn’t easy to capture your photo but the introduction of front camera in the smart phone has made it really very easy to capture a Selfie. So I,Anubhav Sachan, am here to give some tips on clicking a good Selfie.

To capture a great photograph of yours the first thing which needs to be best is the Camera. If your camera is not so advanced you can use some of apps for iOS, Windows and Android’s AppStores. More are the Pixels of your camera, quality of image will be more. Camera should have a light sensor, Flash or LED. If these are not available then it’s not possible to click a good Selfie.Love them or hate them, Selfie’s are here to stay.

Oxford Dictionaries named Selfie the Word of the Year 2013. Selfie is defined by Oxford as “a photograph that one has taken of oneself, typically one taken with a smartphone or webcam and uploaded to a social media website.”

1. Check your lighting
Pictures in general turn out better when the subject is facing the light. Avoid the creepiness below by taking a selfie in good lighting.

2. Be genuine
If you’re happy, smile! If you’re sad, frown. Whatever you do, don’t pretend to not be looking at the camera when you are clearly aware that you are taking a photo of yourself.

3. Avoid/Don’t Avoid Photobombers
Intentional photobombers can ruin a very cute, bestie Selfie. They can also turn a not so special ‘don’t’ I look good today Selfie’ into a piece of socially shareable magic.

4. Keep your hand still
Avoid the total amateur move of a blurry Selfie. Using the photo timer on your phone is a big help. It removes the accidental blurry image, caused by pressing your camera button too hard.

5. Make it interesting
We’re past the plain Selfie. Get creative! Selfie on the ground, Selfie on a swing, Selfie with a Selfie, give people a reason to click that ‘Like’ button.

6. Get a great front facing camera phone.
A great front facing camera will ensure the best quality selfie. The front facing camera also helps you frame yourself so you avoid the super close up. 

7. Above all else, embrace the Selfie.
You didn’t get that new high res camera cell phone for nothing! Don’t be ashamed that you want to get in on the Selfie game.

  Sorry Readers I was at New York sometime ago for a short piece of work but i will not disappoint you again.

Sunday 20 April 2014

Cloud security challenges go all the way to the board



Short Description: "Less hardware, scalable infrastructure, falling prices and maturing services all make cloud computing very difficult to ignore. Organisations must ensure they don't also ignore the security challenges of cloud models."




 In the rush to take advantage of cloud's benefits, businesses must properly manage the risks of handing over data, systems, and infrastructure to a third-party.  As with any risk management process this is a challenge for the board as much as for the technical security team. 

Security keeps cropping up as a (if not the) major obstacle to cloud adoption — whether it’s applications or infrastructure that is hosted in a private, hybrid or public cloud environment.
But are concerns about security in the cloud misplaced? Evidence in the 2013 Data Breach Incident Report from Verizon (which also owns cloud provider Terramark) suggests it is. Based on 47,000 breach investigations in 2012, Verizon notes that "attacks against virtualisation were not present, but attacks against weakly configured devices that happened to be hosted in an external location were common — but not more common than among internally hosted ones."

Do CIO's agree with these facts? Yes and no. For every CIO who believes cloud security concerns are overrated, there's another who believes cloud security issues are very real.

However, whether security concerns about the cloud are exaggerated or not isn't the question under discussion here. The key issue for businesses considering moving a workload to the cloud is to quantify and address risks; from assessing which applications or infrastructure can be moved to the cloud with an acceptable level of risk, to how they will be protected once moved. 


Cloud security: Same concept, different implementation

While the same concepts behind on-premise security management apply in the cloud, there are nuances in their implementation that may escape the board-level view, but could nonetheless be vital.
For example, customers may find security tools they're familiar with on-premise are stripped back in the cloud. Network access controls are just one example. 

"Network access controls are typically far more basic in the cloud compared to physical architectures, and the tools used to manage the access controls are also more basic. This can lead to poorly implemented network access controls that lead to unnecessary access to systems and services," said Ty Miller, founder of security firm Threat Intelligence. 

"Physical security appliances ensure high performance and can be made highly scalable with low level networking to load balance packets across multiple security devices. Cloud environments are designed to be scalable, but some virtual security devices don't have the same performance as their hardware equivalent."

So how should businesses go about security risk management when considering cloud service providers?  Those considering the cloud can be confronted by providers that only offer opaque visibility into how they manage security and data. But isn't that scenario also true when assessing a provider of closed-source software or an outsourcer that offers assurances based on service level agreements? 

The customer needs to build a framework to assess a provider and compare them with rivals but not overburden the provider with assurance requirements. In the end, the rigour of the risk assessment process comes down to the depth of research a buyer is willing to go into ahead of making a commitment. 

"The first thing we're talking to clients about is that not all clouds are equal," said Intelligent Business Research Services security analyst James Turner. 

"A prospective buyer should research what the cloud vendor is prepared to commit to. Most cloud vendors have realised that committing to SLAs has to be a token gesture that immature buyers will pay attention to."

Different maturity levels on the buyer-side explain why, in a recent survey (pdf) by cloud-management vendor RightScale, a third of 'cloud beginners' saw security as the major obstacle to moving to the cloud, but only 13 percent of 'cloud focused' organisations (those that make "heavy use' of cloud) shared that view. 

"Mature buyers will know that no amount of service credits can ever replace the business impact of a cloud failure. Cloud vendors are in the unenviable position of offering to provide outstanding business service and at the same time, putting themselves on the hook for protecting their customer's information assets," said Turner.

The mega-bug outlier and the perennial question of data sovereignty
Last week's discovery of a security hole, dubbed Heartbleed, in OpenSSL should give pause for thought to anyone weighing up risks in the cloud. Implementing OpenSSL on a web server should have provided encrypted communications over the internet, but instead, could be abused to leak user passwords, private keys and session tokens. 

The flaw affected components of on-premise systems, private clouds and public cloud providers. But it has different ramifications for the buyer, signs that a service provider supports good security practices turned out to be a major vulnerability. How does a buyer asses that?
Before Amazon Web Service applied the Heartbleed patch, its elastic load balancers were vulnerable to the bug. 

Microsoft's popular web server IIS is immune to the bug, but it's not uncommon today to rely on a cloud provider for backup services, such as Amazon Web Service's (AWS) Elastic Load Balancer. 
"There are definitely lessons that have been learnt via the Heartbleed vulnerability in relation to risks introduced by cloud providers," Ty Miller, CEO of Threat Intelligence told ZDNet.

"The AWS load balancer could still be exploited to capture your private SSL certificates, and potentially usernames, passwords and session cookies."

Fortunately, bugs like Heartbleed don't come along every day. A more persistent issue has been data sovereignty and the fuzzy legal risks that come with shifting data to a different jurisdiction. It's a deal-breaker for many government agencies and some regulated industries, particularly for those outside the US.

Sweden's Data Inspection Board last year undertook legal action against one municipality and several schools that migrated from on-premise systems to Google Apps. In addition to data sovereignty concerns, Google's standard contract, in the Board's view, gave too much leeway for it to do as it saw fit, which conflicted with the organisations' duties as a "data controller".
The Swedish cloud cases occurred against the backdrop of a much bigger shift within the European Union, which updated its Data Protection Directive amidst calls by some Members of European Parliament to cancel the US-Europe Safe Harbour Act that had allowed some US firms to process data about EU citizens outside the continent.  

"As part of any migration to the cloud, enterprises need to ensure they are aware of and comfortable with the locations where the data will be stored and the legal implications associated with those locations," said Craig Searle, head of cyber for BAE Systems' Applied Intelligence in the Asia Pacific region.  

These are weighty issues that go past the technical and into the legal and management sphere, and demonstrate why it's so important board level executives are on top of cloud security challenges and exposures.


Tuesday 15 April 2014

How to Force the Browser to Remember the Username and Password



We all know that e merchant’s websites like Paypal,American Express etc  are not saving passwords but you have the tendency to forget the passwords , so I’m  here for The Best within Everything with another How To Guide.
When you enter your username and password to log into a website, Google Chrome will prompt you to remember the password. If you accept, Chrome saves the password internally and the next time you open that site, it will auto-fill the username and password fields for you.

The password-saving feature is available in all modern browsers but some websites, maybe for security reasons, disable this option for their login forms. For instance, the PayPal website doesn’t allow the browser to remember your password and thus you are forced to enter the password every time you open PayPal. Some banks websites do that as well.


— Use the Remember Password extension for Chrome and it will force the browser to remember passwords even if the site has disabled the option.





How Websites Disable Password Saving

Websites can easily disable the auto-fill option for login forms by setting autocomplete=off for the password field. For instance, if the login form is written as below, the browser will never prompt the user to save the password field because form autocompletion is turned off.


1.  <form>
2.   <input type="text" name="username">
3.   <input type="password" name="password" autocomplete="off">
4.  </form>

 

Force the Browser to Remember Password

Now that you know how websites turn off the option to remember passwords, getting around this problem is simple.

You can set the autocomplete attribute of the password fields on a web page to on (if they are off) and you’ll be able to save passwords. Here’s a piece of JavaScript that will automatically turn on autocomplete for all password fields on a web page.


1.    var fields = document.querySelectorAll('input[type="password"]');
2.    for (var i = 0; i < fields.length; i++) {
3.      fields[i].autocomplete="on";   
4.    }
 
No, you don’t have to worry about the code as there’s a simple extension for Chrome – Remember Password – that does it automatically for you.

Install the Remember Password extension and then open a site like PayPal that does not allow you to save passwords. Login with your username & password and the browser will now prompt you to remember the password.

Most importantly I've referred many websites before publishing this post & would like to tell that this post may contain copyrighted material which has been reproduced under permission and general licence.

Thank You !


Contact Me (Anubhav Sachan)
On – Facebook, Twitter, Google+.
Via – anubhavsachan@outlook.com