Blog

May 16th, 2013

Security_May15_BCyber crime has been around since the very early days of the Internet and has it has become an increasingly serious problem as the number of Internet users has increased. This trend is likely to continue, and you can be guaranteed that you'll continue to see news about websites being hacked and valuable information exposed. One of the latest sites to be hacked is LivingSocial.

LivingSocial is a daily deals website that focuses on bringing bargains and original deals to users based on their geographical location. In late April, news broke that the website had suffered a massive cyber attack with 50 million accounts being compromised.

From the reports we have seen, the attack targeted accounts world-wide with only account holders in Thailand, Indonesia, South Korea and the Philippines being unaffected. An email sent out by Tim O'Shaughnessy, LivingSocial's CEO shortly after the incident said, "We recently experienced a cyber-attack on our computer systems that resulted in unauthorized access to some customer data from our servers. We are actively working with law enforcement to investigate this issue."

The company assured users that their credit card data had not been compromised, as they are kept in another database. Account passwords were also encrypted, which means they are harder to crack but not impossible.

What should you do? If you have a LivingSocial account, we recommend that you go and change your password immediately. This can be done by:

  1. Going to LivingSocial's forgot your password page.
  2. <li>Entering the email address you used to sign up for the account with. </li>
    
    <li>Pressing Reset Password.</li>
    
    <li>Checking your email for an email from LivingSocial and following the instructions in the email.</li>
    

It is advisable to pick a new password, one that is as different as possible from your old password and, as always, the longer, the better.

Is there anything I can to do protect my company? If you are a business owner who has websites that encourage customers to sign up for updates, accounts, etc. you may be wondering how you can keep your user's information secure from cyber attack. In truth, you can't keep your important information 100% secure, if a hacker is committed enough, they will be able to get the information they need or wreak the havoc they want to. But what you can do is to make it as hard as possible for cybercriminals to get your information. This could be as simple as using multiple databases to store different bits of information, or as complex as using the latest encryption methods and systems.

Each business is unique, and the best way to ensure your valuable data is secure is to work with an IT partner who takes the time to get to know your security needs and develop a solution that is as near to 100% secure as possible.

If you are worried about the security of your systems, contact us today. We may have the perfect solution that will meet your needs and budget.

Published with permission from TechAdvisory.org. Source.

Topic Security
May 15th, 2013

BCP_May15_BTake a moment and think about your business and if you are prepared for a disaster. If you are like most business owners or managers you have some form of backup and maybe even a basic disaster recovery plan. While this is a start, recent big disasters around the world have proven that a simple backup is not enough. If you feel that your business is under prepared, there are steps you can take to fix that.

Here are five tips to help ensure that your business is fully ready for the next disaster.

1. Backup everything While it can be tempting to only backup the most important data and programs, it can be a chore to identify what is deemed to be important. Who knows, a file that is non-essential today may become essential in the future. If it is lost due to a disaster, this could prove to be a problem.

It would be a good idea to look for a backup solution that covers all data and programs. But, having a full backup solution isn't enough, you also need to ensure that recovery is easy and can be implemented quickly.

2. Look into tiered recovery Establishing a tiered recovery method means identifying the value and importance of existing systems and utilizing a recovery method that meets needs. It would be a good idea to identify mission critical systems and adopt a recovery method that can have these systems up and running as quickly as possible. From there you can tier different systems and match a recovery method. For example, archived files are likely not needed right away, so they can be recovered at a later date, using a slower recovery method.

3. Keep copies of all keys and licenses With the amount of software and programs businesses use on a daily basis growing, it would be a good idea to keep copies of the activation keys (the string of digits and letters you enter to activate the full version of software) and purchased licenses.

While many of these are now distributed electronically through email, there are still software developers that distribute keys by mail or with the physical install CDs. If you lose the codes in a fire, you will be out of luck and have to purchase the software again. This is an extra charge you likely don't want.

4. Pick the right recovery locations The best recovery plans offer numerous backup solutions which are hosted in different locations. A good provider knows this and will utilize data storage centers as far apart as possible. If you choose to backup your own data, it would not be a good idea to keep the backups in the office.

Similarly, if you are preparing for a big disaster, you likely have physical locations that you can move to if your main business location is damaged or destroyed. Optimal plans will have more than one location identified, and have them as far apart as possible. This will minimize the chances of losing full operations and increase your business's ability to bounce back quicker.

5. Match your recovery plan to your business There are so many different backup and recovery options that it can be tough to pick one. The best course of action is to look at your systems and how they work. If you operate strictly offline, a cloud based backup solution likely isn't your best bet. Or, if you operate fully in the cloud, a physical tape or hard disk backup may not be optimal.

If you are looking to beef up, or establish a disaster recovery plan, try working with an IT partner like us, who can help you find the optimal solution that can meet your needs and budget.


Published with permission from TechAdvisory.org. Source.

May 13th, 2013

Use local phone number when calling the help desk!

Please note our local number to reach the help desk is 972-216-8800 extension 2. Our toll free number is no longer valid for calling into the help desk and is printed on some of our older mouse pads that users may be using. We have new mouse pads ordered with the updated information. Of course keep in mind that our preferred method of opening support issues is by submitting your request via email to us at support@cybernut.net which streamlines the process and auto creates the ticket and assigns a technician placing it in queue immediately. Calling in should be reserved for critical issues!

New Operations Manager named at Cybernut Solutions

JingerJinger Frances was recently promoted to the position of Operations Manager at Cybernut Solutions. Jinger is responsible for the management of daily operations relating to Tier 1 support provided by the Cybernut Solutions Service Desk. Jinger works closely with IT teams, other internal operating units, vendors, and our clients to ensure the IT support requirements are met in a timely fashion. Jinger is focused on the day to day tactical team management role however her role is also to assist with future departmental planning with regards to organizational structure, tool recommendation, staffing, trending, and analysis to ensure SLA’s are maintained on a daily basis as well as position the team for the future.

Topic Articles
May 9th, 2013

Microsoft_May08_BAn interesting tech trend of the past couple of years is the increasingly diverse services offered by large companies. Take Microsoft for instance: You have email, Office, cloud storage, Xbox, Windows Phone, etc. These services are about as different as they come, but are all linked by your Microsoft Account. But having all of your eggs in one basket could pose a security threat, especially if your account has a weak password. This is why Microsoft recently introduced a two-step verification to make it harder for hackers to gain access to your Account.

Below is an overview of the two-step verification system Microsoft has recently implemented.

What is it? If you use any of Microsoft's products, you likely have a Microsoft Account. This account is what you use to access SkyDrive, Outlook, Skype, Office or even the Xbox. The whole idea of this is that you have one account for all of Microsoft's products and services.

While this is great (you only have to remember one username and password), it can be a security issue. If a hacker gets into your account, they could have access to all of your personal information. Microsoft realizes this and has recently introduced two-step verification, a new Microsoft Account feature that beefs up your account's security.

Two-step verification is a feature that will ask you additional questions when you try to log in to your Microsoft Account. For example, you may be asked to enter a PIN or phrase that is sent to your phone. If you have used your credit card at the Microsoft Store, or on an Xbox in the past year, you have likely seen this feature in action. Now, Microsoft has extended it to your account.

This new feature is not mandatory for your Microsoft Account, so you have to sign up for it. But It is a good idea to consider enabling this function on your account, especially if you have sensitive information stored online. While this won't make your account 100% hack proof, it will drastically cut down the chance of a hacker gaining access.

How to set up two-step verification Microsoft has made it really easy to enable this security measure. You can do so by:

  1. Going to https://account.live.com/proofs/Manage and logging into your Microsoft Account.
  2. Selecting your phone number and Text from the drop down menu and pressing Next on the window that opens to receive a text message with a code. If you don't see this option, you should be taken directly to they account management screen
  3. Entering the code you get on your mobile device and pressing Submit.
  4. Clicking on Security Info under Overview.
  5. Selecting Set up two-step verification followed by Next.
  6. Picking from how you would like to receive verification codes (Authenticator app, Phone, or another email account). We recommend the app, which you can download onto your mobile device.
  7. Following the instructions on the screen and entering the code that is sent your the option you selected above, and pressing Next.
Your account should now have two-step verification. The next time you log in, you will be asked to verify the login using the option your selected. For example, if you selected a text message, you will receive a text on your phone with a code.

If you would like to learn more about your Microsoft Account and security measures you can take to, please contact us today.

Published with permission from TechAdvisory.org. Source.

May 9th, 2013

AndroidPhone_May08_BTech is always changing and evolving; devices seen as futuristic only a few years ago are now mainstream and in everyday use. And one of the more outlandish tech devices of the past year has been Google's augmented reality project Google Glass. This device has had some impressive media coverage, with many wondering how exactly it will work. Now that the first, limited edition has been released, we can finally answer that question...kind of.

Google recently posted a video on YouTube giving a quick run-through of how to use Glass. Before we go over how users will interact with this new tech, here's a brief overview of the project.

What is Glass? Project Glass was introduced by Google in early 2012, and is essentially a wearable computer (running a version of Android) you wear on your head like glasses. Indeed, the shape of the device at first glance resembles a pair of spectacles: there are the usual two arms along with nose grips. However, instead of glass, there is a mini screen or HUD (Head Up Display) that sits just above your right eye. The HUD displays information much like a smartphone screen, and you can interact with the computer and the Internet using voice commands.

Currently, wearer's with prescription glasses can't actually use the device, but Google has confirmed that the device, if you can call it that, will eventually have lenses much like a normal pair of glasses.

So, how does it work? The video (watch it here), uploaded by Google, sheds a little light on how a user will interact with this device. For example there is a touch-sensitive area on the arm of the device which extends from your temple to just above your right ear. Tapping this will wake it from sleep mode, and display a clock on the screen which sits just above your right eye.

The clock is your home screen, and looks similar to the clock on the lock screen of almost every Android device. You can scroll to the left (by touching the pad near your ear and moving it towards your ear. This will display upcoming information like the weather, flights, or events.

Touching the pad and swiping towards your eye will display information from previous uses like messages, pictures and videos. Tapping on the screen will activate that relevant information. For example, if you are looking at a brief overview of an event, you can tap the device to bring up more information.

One of Google's previous videos showed how you can also interact with Glass by using voice commands. Saying, "Ok glass, take a picture." Will take bring up the camera and take a picture of what you're looking at. You can also ask questions to have glass search Google Now by saying something like, "Ok Glass, What is the traffic like?" To bring up a Google Map with the latest traffic highlighted.

Will it be useful for business? While this is undoubtedly one of the coolest products of the past couple of years, the actual usefulness of the device for business remains to be seen. For now, this device will likely be the domain of app developers and extreme early adopters. But this device, like the smartphone, will likely be incredibly disruptive when it's launched for the masses.

What do you think of Google Glass? Would you buy one if you had the opportunity? Let us know.

Published with permission from TechAdvisory.org. Source.

May 8th, 2013

WindowsPhone_May08_BTo many smartphone owners, there are really only two systems: Android and Apple. But there's another system that is slowly gaining ground: Microsoft's Windows Phone. Phones that run the Windows Phone operating system offer a solid system that conveniently links with other Windows systems. Because of this, business owners and managers are becoming increasingly interested in moving over to this system. To aid them, Microsoft has recently released an app for Android that makes this transition easier.

If you have an Android phone and want to move over to a Windows Phone, Microsoft has recently released an app that can help. "Switch to Windows Phone", available on the Google Play store, is an app that scans your device for installed apps and then links them to your Microsoft Account. It will also tell you how many 'matched apps' are available for the Windows Phone.

Matched apps are either the Windows Phone version, or a similar app that has the same functionality. It is highly likely that you will see more than 70% of your Android apps available on the Windows Phone Store.

After you have matched your apps on the Android device, you can then download the companion app from the Windows Phone Store, log in to your phone using the same Microsoft Account and the app will show you the available apps and allow you to tap on them to install them.

If you have synced your contacts, email and calendar with a Google Account on your Android, you can also log into this on your Windows Phone and the three should sync automatically. This means that switching is technically as simple as signing into two accounts on your Windows Phone.

Looking to switch? Download the free Android app from Google Play here. You can find the free companion app on the Windows Phone Store here. Check back next month for an in-depth look at how to switch to a Windows Phone from another system. If you are considering switching, or would like to learn more about how a smartphone can help make business easier, contact us today.


Published with permission from TechAdvisory.org. Source.

May 8th, 2013

BCP_Feb20_BWhen it comes to your business there are many dangers that could negatively impact your bottom line, or even force you out of business. As such, it's a good idea to have a plan in place to help keep your business operational during any disaster. This strategy is commonly referred to as a Business Continuity Plan, and is something that companies will benefit from looking into.

While a Business Continuity Plan (BCP) can be complicated, and comprised of many different objectives, the main reason companies include this in their business strategy is to build up resilience. Disasters of many kinds can result in either lost data, sales or even business. While a BCP won't prevent large-scale disasters, it will help your business recover quicker.

When looking at how resilient your business is, there are three main aspects to consider.

RTO RTO stands for Recovery Time Objective and is the time period from the beginning of the disaster to recovery of operations. This number, or time period, will be different for every company. For example, companies that operate online stores will likely have a short RTO, as they rely on 24/7 uptime to conduct business and sales.

In general the RTO is an objective, one that employees and stakeholders should strive for. Having one can help planners identify potential problem areas along with critical functions that must be recovered and any preparations that will be necessary. If a business does not address, or identify a set time to recovery they could see an unnecessary increase in recovery times, or worse lost profits.

RPO RPO stands for Recovery Point Objective and represents the amount of data a business is willing, or can afford, to lose. The easiest way to figure this out is to look at your systems and think about how much data or information you personally can lose before being unable to do your job. From there, you can work out the frequency with which you should back up your systems.

For example: If you figure that you can lose a day's worth of data, then your backup should be done on a daily basis. If you currently back up your data or systems once a week, and figure you can only miss a day, then RPO helps you realize this is not enough and that you need a system or plan that better meets your needs.

The difference between RTO and RPO is that RTO is a broad process that covers the whole Business Continuity timeline, while RPO is focused on data and backup.

ROI When looking at different Business Continuity systems, it is always a good idea to calculate the ROI, or Return on Investment. You can calculate the cost of the integrating any plan, time to implement and recovery, expected value it can bring your business and avoided losses. This will give you a pretty good picture on whether current systems are strong enough, and if new alternatives are better.

By figuring out the time you expect to recover, how often you should back up and the total ROI of proposed, or existing, systems you can gain a clearer picture of how resilient your company is.

If you're looking to make your company a little more resilient, why not get in touch with us? We are happy to sit down and discuss your options with you.

Published with permission from TechAdvisory.org. Source.

Topic Social Media
May 7th, 2013

Office365_May07_BOne of the most important computer programs, aside from the operating system, is the productivity suite, or more specifically: Microsoft Office or Office 365. Of the Office programs, Word is likely the most popular. While it is useful, it's not perfect, especially when formatting documents. Have you ever struggled to get a numbered list to start over, or continue from a previous list?

Below is an overview of how you can set up ordered lists to either continue numbered lists from where you last left off, or start at #1 with new lists.

Set up numbering for all future lists

  1. Open a new Word document.
  2. Go to the Home tab (Press Home at the top of the window)
  3. Press the downward-facing arrow beside the numbered list button in the Paragraph group. (it's located on the right of the bullet point button)
  4. Select Set Numbered Value... from the drop-down menu.
  5. Click the numbering option you want from the pop-up window.
  6. Press Ok.
When setting numbered values, you have three options to choose from:
  • Start new list - If you select this option, new lists will automatically start at one.
  • Continue from previous list - Selecting this option will continue numbering from previous lists in the same document. For example: If you have a paragraph and then a numbered list with three points, and type another paragraph then enter a new list, the list will start from four.
  • Set value to: - Lets you set what number lists will start at.
Change the number value of individual lists If you have a document with numbered lists already in it, and want to change the number values of one list, you can do so by right-clicking on the first number of a list and selecting either Restart at 1 or Continue numbering.

Note that if you have a document with a continuous list that is separated by paragraphs and choose to reset one list to start at one, all subsequent lists will be changed to reflect the new ordering.

Published with permission from TechAdvisory.org. Source.

May 7th, 2013

Superstorm Sandy, the recent storm that pummeled the Eastern US, brought with it a lot of lessons for all affected. For those in the IT industry the most important lesson was that their disaster preparedness may not be as robust as they thought. Many businesses will react to this by wanting to be better prepared for major disasters. This is positive action but it is important to stress that there are also a million little issues that could pose a bigger threat to your organization. One of those is password management - who is in control of the important passwords.

Search for Terry Childs online and you'll find a number of articles about a former Network Administrator for the city of San Francisco who is currently in jail for supposedly doing his job. His job, as a network administrator, was to manage the city's network. When he was asked by his boss for the passwords to critical parts of the network, he refused on the grounds that the request went against the established network policy.

Issues like this: One employee or vendor in control of vital passwords, can pose a big problem to companies, especially during times of disaster. Imagine if you work with an administrator who is based in New York, and they lost power during Sandy. What could you do if your network crashed, or you needed access to your system and someone else has all the passwords?

The most crucial factor is you shouldn't trust one person or organization with passwords to vital systems. We don't mean personal passwords to systems, we mean passwords to vital systems, like servers or Internet connections. If one person has the passwords, there's just too much risk. If they are disgruntled, they have the power to do some serious damage, and if they are injured or are no longer alive, you'll face untold amounts in lost profit, and fees in recovering passwords and information.

There are a number of things you can do to mitigate problems like these.

  • Keep a password list - It could be a good idea to keep a physical list of the more important passwords. This is an important document, so it's a good idea to not leave this one lying around. If you have a safety deposit box or safe in the office you can put the list here.
  • Set passwords to the position, not the employee - Many companies will often give passwords to one person who will be in charge of these. When they advance, or if they switch roles, they will often take a password with them. Instead, look at organizing this a different way around: Assign a password to the position rather than an individual so that when they leave the person filling their role is given this password instead.
  • Assign a person to be in charge of passwords - This is a good idea, especially if you work with Managed Service Providers. A person of authority within your organization should be the main contact person, and they should have copies of all passwords given to outside companies.
  • Change passwords regularly - To avoid having employees steal things it's a good idea to change your passwords on a regular basis. If an employee leaves a position and is in charge of an important password, you should take steps to change this scenario even if you trust the person.
  • Create the right policy - If you are going to share passwords, or have a limited number of people who know them, it's a good idea to create a policy that clearly defines: what position has access to what; what happens when someone leaves; how to recover passwords; how many backups will be kept; how and when the password is to be shared. Basically you want to ensure you aren't caught flat footed. With employees, confidentiality agreements that explicitly state what they can and can't share and the consequences of breaching the policy should also be clearly defined and followed.
  • Pick who to trust - Important passwords shouldn't be shared with everyone, and you should take steps to vet the trustworthiness of the person or company you will be giving passwords to. If you have an established sharing process, and a vendor you're considering working with is pushing a policy that is different from yours, it may be a good idea to look for someone whose policies are closer to yours, or who can work around your policies.
If you are in the unfortunate position of not having the passwords to your system, it's a good idea to get in touch with IT professionals like us, as we are often able to recover systems and passwords, or at the very least, reset them. After you recover your systems, it's a good idea to test for vulnerabilities, especially if the last person in charge had a tendency to not share information. We can help with this and any other concerns with password management and recovery, so please contact us if you would like to learn more.
Published with permission from TechAdvisory.org. Source.

May 7th, 2013

HealthcareIT_May07_AMeaningful Use Stage 2 begins on January 1, 2014, and while many health-care providers have implemented electronic medical records (EMRs) in preparation, stumbling blocks exist. Here are three of them.

Getting patients to use portals. More than 50% of patients seen during the reporting period must receive timely online access to their health information, which means within four business days. Additionally, more than 5% of patients seen in that period must actually, "view, download, or transmit to a third party their health information."

Exchanging data. Health-care providers must provide a summary-of-care record for more than 50% of transitions of care and referrals, and for 10% of those transitions, the summary must be transmitted electronically. Moreover, at least one exchange must occur with a recipient who uses a different EMR. And, the data must be able to be generated in a specified format.

Creating medication and lab orders. More than 60% of medication orders and 30% of lab test orders must be done electronically, and test orders will involve new workflows in many practices.

While these three potential stumbling blocks may seem large, there is some good news: Stage 2 shouldn’t be burdensome for health-care providers who attested in Stage 1, as you’re essentially just demonstrating a higher level of use. If you are preparing for Stage 2, and are worried about potential challenges, contact us today to see how we can help make the tranistion smooth and worry free.

Published with permission from TechAdvisory.org. Source.