Jump to content

  • Log in with Facebook Log in with Twitter Log In with Google      Sign In   
  • Create Account

Welcome to BZPower!

Hi there, while we hope you enjoy browsing through the site, there's a lot more you can do if you register. The process is easy and you can use your Google, Facebook, or Twitter account to make it even faster. Some perks of joining include:
  • Create your own topics, participate in existing discussions, and vote in polls
  • Show off your creations, stories, art, music, and movies and play member and staff-run games
  • Enter contests to win free LEGO sets and other prizes, and vote to decide the winners
  • Participate in raffles, including exclusive raffles for new members, and win free LEGO sets
  • Send private messages to other members
  • Organize with other members to attend or send your MOCs to LEGO fan events all over the world
  • Much, much more!
Enjoy your visit!






Photo

More Ways To Stay Safe

Posted by Hahli Husky , Jun 23 2010 · 437 views

BZP keep your shirt on hackerz
6/23/10: Bumping because it's somewhat relevant.

Posted Image

For awhile, I've been wanting to share some measures of staying safe and keeping any of your accounts safe on these scary interwebs. This is stuff I've picked up over many years, and after helping friends who have their accounts hacked and stolen. After the recent hackings on BZP, now is as good a time as any.

~ Safe password

Okay, yeah, this is a given. The password advice provided here is a very excellent place to start. But I know so many people who read the advice and put off changing their password to something safer. Which brings me to my first point:

1. Care about the problem even when it's not an active concern! So maybe some features are disabled on BZP or it may be a while before someone gets hacked again. The point is, it CAN and MAY happen again. You lock your doors even if there hasn't been a robbery on your street in a long time, right? (If not, seriously consider it, lol.) If your password is unsafe or too simple, CHANGE IT NOW. Don't finish reading this, don't answer the phone, don't finish your sushi before you fix your password! If you suspect your password is unsafe, but aren't sure, change it anyway. If you don't know whether the lunchmeat has gone bad or not, THROW IT OUT. Better than puking your guts out later.

2. Getting your account hacked will not be just your problem. Whoever the hacker messages under your name will be affected. Whoever runs into the spam topics they post will be affected. So don't sit there thinking "Oh, if my account gets hacked, it's no problem for me. I won't mind." Make sure your password is safe.

3. Don't share your password with anyone. I can't believe I have to say this. But seriously, I know people who text message me things like, "Can you login to my account to delete that thing/check my messages/do this for me? My username is Schmo and my password is Puppies." My answer is usually "No, and change your password." Sometimes, though, there may be an emergency. One time at work, I texted something private to Twitter by mistake. Since I was nowhere near a computer, I asked my boyfriend to delete it. As soon as I got home I changed my password. This doesn't mean I suspect my boyfriend is going to take my Twitter account. This is just a practice for me. I would do it even if I had shared my password with my mother. If you HAVE to share it, change it as soon as you can.

4. Don't keep a file of your passwords on any computer. Even if the file is password-protected. Don't even go there. Buy yourself a little notebook, write them down in there, and keep the notebook out of sight or high-traffic areas. Trying to hide it in an obscure location, however, will increase your chances of it being read by someone else in your home.

5. Have unique passwords for high-risk websites. This means bank websites, email, BZP, and any other commonly-hacked site or site containing sensitive information.
"But I could never remember so many passwords!"
Suck it up and keep a notebook!! I have the worst memory in the world. It's probably worse than yours. If you care about your safety, you can get over your self-diagnosed "memory-loss." This is how my passwords are setup:

Personal, Business, and Possible Spam Email Accounts: Variations on an object.
Social Networking Sites: Variations on an object.
BZP Email: Variation on an object that is not related to or used in any other password I have.
BZP: Variation on an object that is not related to or used in any other password I have.
Bank: Variation on an object that is not related to or used in any other password I have.
Shopping/Selling Sites: Each is a variation on an object that is not related to or used in any other password I have.
Other Forums: Variations on an object.
Journals/Blogs: Variations on an object.
Music and Art Websites: Variations on an object.
IM Clients: Each is a variation on an object that is not related to or used in any other password I have.

This way I keep themes for each type of site. This makes other sites' passwords easy to remember. However, the sensitive sites have their own, unique setups.


~ General Safety

This is not so much about preventing being hacked as it is avoiding those who are hacked or those who are looking to hack.

1. Keep your IM accounts set on private. If you need a public one for various people to contact you, then make a seperate account, but keep your friends on your private account. Most universal clients will let you log in to more than one account at once.
When I had my accounts set on public, I got IMs from people I had never given my screen name to or knew from any website. They just found my name on a list or were typing their friend's screen name incorrectly. If someone on BZP wants to IM you, verify through private messager first.

2. Pause before opening an odd message. Same as email, right? If you get a message from a member you've never talked to or especially heard of, with a strange or undescriptive subject line, you may not want to open it right away. This is really based on situation and gut-feeling. Sometimes I'll check out the member's profile; are they suspended, have no posts or topics, have spam posts or topics? If something seems really weird, I'll let it sit about 24 hours. Sometimes it turns out to be hacker spam that gets removed, sometimes it's just a member who doesn't write relevant subject lines.
If you do open the message, be ready. Just because we strive to keep BZP clean doesn't mean it will always be, so don't waltz about expecting that all the time. Seriously, it lessens the drama and the shock. Just be ready to exit your browser or go back a page. If the message is bad/offending/inappropriate spam, don't respond. REPORT.

3. When a member you've never talked to sends you a link saying "Click here!", "Look at this!" or the like, be careful. It may be spam, or it may be advertising, or they may be stupid. Hover over the link, or copy and paste the link location into a text box to check it out. If the URL is to a BZP page, whatever. People are attention-hounds. If it's to another website, follow the steps here.

4. Pause when you've received a strange message from a friend. If JaneBohrok is usually very serious and polite, and she sends you a message saying "CLICK HERE, look at this okay!!", a flame PM without reason, or a message that seems very uncharacteristic, it may not be JB. Don't instantly fire off an angry email or IM reply saying you're no longer friends. If you suspect she has been hacked, don't respond. Notify a staff member with the message and member's name.

5. Log out when you are done. Anytime, anywhere. Clean out your cookies now and then. ALWAYS LOG OUT ON SOMEONE ELSE'S COMPUTER. If it's a friend's computer, ask if you can clear your history and/or any cookies. If it's a public computer, such as at the library, clear the history and cookies if you can.


~ During a Hack

There are also some important things to remember once a hack has been announced and/or discovered.

1. Calm down. Don't burst a blood vessel over this, or start worrying all over BZP, your blog, FB, wherever. You will only worry more members. Whether the hackers are just bored brats or upset ex-members, they feed off of your panic and attention. That's why they're wasting their time hacking a website for a kids toy line in the first place.

2. Don't open a message or topic that seems like it could be spam. Duh? Just wait it out. Nobody should be offended if you wait a day or two to open a message.

3. Don't go hunting down the hackers. Even if you or your friend gets hacked, just stay as safe as you can. You know the "no heroes during a robbery" rule at retail stores? Stay safe, okay?
EDIT 6/23/10: I am stressing this now. They just want attention, good or bad, and the more you give them, the more encouraged they are. Don't feel like you need to tell them why they're wrong. They are NOT going to listen to you.

4. Don't bother the staff for information. (Thank you, Sixie) Please?? Don't IM, tweet, or post on our walls asking when the forums will come back online. Don't ask for the run-down of the entire situation. The administrators are doing all they can for the website, and in order to do so without interruption, the forums are set to offline. Don't create more interruptions or become a pest. You should:

Find. Something. Else. To. Do. There's more internet out there. Heck, there is a WORLD out there. You're not missing anything on BZP if no one but the admins can access it.


It may seem like I'm making a big deal out of this, and I am. Don't lose sleep or get acne or ulcers over this, just make sure you're doing your part to keep BZP an awesome and safe place to hang out. And add any thoughts or suggestions!


-HH

  • 0



Photo
Shadow Kurahk
Aug 19 2009 06:33 PM
*Ahem* I'd like to begin by saying thank you for this guide. smile.gif

Another tip for strong passwords: Try using special characters, such as those found in the Windows Character Map. You should be easily able to write down the special characters used in your password on a piece of paper/notebook like HH said, and opening the character map each time shouldn't be an issue. It's a very efficient way to keep your password out of reach from softwares that aid in hacking.

I had to learn the hard way. >.>

-SK
    • 0
Thank you for the WIN guide. You get a cookie blog approval!



-Z-
    • 0
Photo
~ChanetheDemongirl~
Aug 28 2009 10:39 AM
Thank you. I need to collect this at a curtain point.
    • 0
Photo
Meso Zehvor
Jun 23 2010 06:15 PM
Thanks for the guide, HH.

Take an approval. tongue.gif



-Mesonak
    • 0
Photo
Andy Bernard
Jun 23 2010 06:19 PM
I too shall approve!
    • 0
Approved!

Thanks for this guide HH. Makes me feel a little safer now. Personally I love making passwords for things so that's not much of a problem for me. One thing I would like to check on though: Can viruses/adware/whatever be sent by PM?
    • 0
Photo
Yolanda Squarble Fried #1
Jun 23 2010 07:25 PM
This is a good idea (I think):

Set your forum controls so that you get a little pop-up whenever you get a new message. I was sent a spam message today that contained a lot of pictures, but I didn't see any of them because the pop-up doesn't show pictures; it just shows URLs in image tags. That's how I knew it was a spam message without having to actually open it.
    • 0
Photo
Hahli Husky
Jun 23 2010 07:25 PM
QUOTE(Lewa Krom @ Jun 23 2010, 04:58 PM)
Approved!

Thanks for this guide HH. Makes me feel a little safer now. Personally I love making passwords for things so that's not much of a problem for me. One thing I would like to check on though: Can viruses/adware/whatever be sent by PM?

I believe the admins have already taken serious measures to prevent this. Since viruses are usually transmitted by attachments, the chance is less likely, since PMs can't have attachments. However, a link sent in a PM could contain a virus when executed.

QUOTE(Illuminatus @ Jun 23 2010, 05:25 PM)
This is a good idea (I think):

Set your forum controls so that you get a little pop-up whenever you get a new message. I was sent a spam message today that contained a lot of pictures, but I didn't see any of them because the pop-up doesn't show pictures; it just shows URLs in image tags. That's how I knew it was a spam message without having to actually open it.

Excellent idea, thank you! smile.gif
    • 0
Photo
Jonestown Bartender
Jun 23 2010 08:47 PM
Changing your password often will be more useful then having a long complex password, our friends in black use software that grabs your password so it doesn't really matter how complex it is.
    • 0
Photo
Toa of Dancing
Jun 23 2010 09:41 PM
I'd approve your blog again if I could. This is quite helpful.
    • 0
Thank you, HH. This was very helpful *Links in sig*

My kitty was so impressed by this that she decided to approve your blog!

I did have to pay her...


You should post the wing/horn thingies in BBC!

-Zarayna
    • 0

What?

Posted Image
 
Have you been wronged recently? Are you suffering from the strain of a car accident? Do you think Bionicle's "No relationship" canon destroyed your childhood?
 
You don't have to take that! Call Hahli & Husky Legal and we will make your wrongs right.
 
 
ACNL Dream Address:
5300-3092-3634
 
Bionicle Comic Readings
by Janus, Hahli Husky, and friends
 
~Comic #1
~Comic #2
~Comic #3
~Comic #4
~Comic #5
~Comic #6
~Comic #7



Stuff That People Really Liked

~Are You Stupid Quiz
~BZP Is A Constitutional Monarchy
~Beat My Caramel Dansen Tolerance Score!
~Beat My Leek Spin Tolerance Score!
~Why Pirates = Ninjas
~Don't Post Here
~Dear Ex-BS01 Waffles
~Guess What!
~Why I'm Still Staff
~Favorite Animals (with funny pictures!)
~The Coolest Person In The World (the banner of my dreams)
~HE THINKS YOUR TOP IS DISGUSTING
~A Big Secret About Black Six
~Hacked The Prince
~A Really Important Question
~My Shipping Wall
~Ways to Stay Safe! - Password and Hacking Survival Guide


My Life Stories

~Quotes of the Day
~"This Sister"
~When You Worked For Nook
~The Name Issue
~Awoken By An Ostrich
~Laundry Room Rules
~Where It All Began
~Why I Watch Ponies


The Hahli Husky Fanclub
(yes it already exists, don't worry)

About A Nerd

Posted Image

Names: Hahli Husky, HH, Becca, Beech, Becks
Age: 25
Location: British Columbia
Sex: Yes
Married: To The Hottest Hottie Ever
Other: Christian, Pansexual, Virgo, Earth Dragon, ENFJ

Loves: Janus, All my friends, Kittens, Socks, Creepypasta, Shipping, Animal Crossing, Sailor Moon, Plushies, Rainbows, People who stand up for what's right, Animation, Game Grumps, Feeling good about myself, Singing, Clothes that help me look even hotter, Equality, Adventure Time, Simulation games, Homestuck

Dislikes: People who think they're accepting but aren't, Loud noises, Broken things, Bad smells, Waking up before 9 am, Nice Guys, Discrimination, Abuse

Favorite Artists: Janelle Monáe, Daft Punk, Skyhill, Starbomb, Paramore, Pogo, Frankie Valli and the Four Seasons, The Who, Nana Kitade, SNSD/Girl's Generation

Ships: Haruka x Michiru, Seiya x Usagi (Sailor Moon), Utena x Anthy (Revolutionary Girl Utena), Finn x Flame Princess, Fionna x Marshall Lee (Adventure Time), Peeta x Katniss (Hunger Games), Future Karkat x Past Karkat (Homestuck)

Approvals!

Blog Stamps

Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image
Posted Image

Posted Image
 
Posted Image
 
Posted Image
 
Posted Image

Posted Image

Posted Image

Posted Image
 
Posted Image

Posted Image
 

My Dumb Approval:
Posted Image

0 user(s) viewing

0 members, 0 guests, 0 anonymous users

Welcome

FOOL

ALL WE DO DOWN HERE IS LOAD .GIFS

Posted Image

Posted Image

Posted Image

Posted Image
 
Posted Image

Posted ImagePosted Image