{"id":365,"date":"2016-05-19T17:02:15","date_gmt":"2016-05-19T17:02:15","guid":{"rendered":"http:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/?p=365"},"modified":"2016-05-19T17:02:15","modified_gmt":"2016-05-19T17:02:15","slug":"some-tips-for-a-safer-windows-experience","status":"publish","type":"post","link":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/2016\/05\/19\/some-tips-for-a-safer-windows-experience\/","title":{"rendered":"Some tips for a safer Windows experience"},"content":{"rendered":"<p>Here are some simple tips to help you secure your Windows PC.<\/p>\n<h1>The checklist<\/h1>\n<ul>\n<li><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\">Ensure that <strong>Windows Update<\/strong> is enabled and set to check for, and apply, updates daily.<\/span><\/li>\n<li><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\">Ensure that you have the campus AV solution (<strong>Symantec<\/strong>) installed. Other AV products are theoretically acceptable, but may well not be licensed for professional use (eg. AVG Free, etc).<\/span><\/li>\n<li>Log on using a &#8216;normal&#8217; user account &#8211; use a separate one for administrator access.<\/li>\n<li><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\">Avoid the &#8216;unholy trinity&#8217; of often-exploited software &#8211; <strong>Java<\/strong>, <strong>Flash<\/strong>, and <strong>Adobe Reader<\/strong> &#8211; see below. Uninstall these from your PC.<\/span><\/li>\n<li>Avoid <strong>Internet Explorer<\/strong> when possible &#8211; even Microsoft is moving past it!<\/li>\n<li>Consider an update to <strong>Windows 10<\/strong> if your software supports it; if not, try installing the <strong>Microsoft EMET<\/strong> toolkit &#8211; see below.<\/li>\n<li>Accept that even if you do all of the above things will go wrong, and ensure you have suitable <a title=\"Remote backup servers\" href=\"http:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/remote-backup-servers\/\">backups<\/a>.<\/li>\n<\/ul>\n<h1>The Unholy Trinity<\/h1>\n<div>The &#8220;unholy trinity&#8221; are three commonly installed, and often exploited, bits of software. Removing these from your computer reduces the number of ways your machine can be exploited.<\/div>\n<div><\/div>\n<div>\n<ul>\n<li><strong>Java<\/strong><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> is often installed for no good reason, and even when it is needed the automatic update process is unsatisfactory, leaving older versions installed. If you don&#8217;t <\/span><em>know<\/em><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\">\u00a0that you need Java, remove it. If something important breaks then it&#8217;s easy to reinstall. Note that the commonly used <\/span><a href=\"https:\/\/imagej.nih.gov\/ij\/\">ImageJ<\/a><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> does not require a separate Java install &#8211; it has its own private copy.<\/span><\/li>\n<li><strong>Flash<\/strong><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> is possibly the most exploited software ever installed on a PC. For each of the last three months there have been urgent updated needed to address bugs which were being exploited in the wild. Not all of these were web-based either &#8211; exploits have been spread using Flash applets embedded in Word files. <\/span><strong>The only safe approach with Flash is not to install it.<\/strong><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> If there is a Flash site which you must use then Google Chrome with a suitable Flash blocking extension is a tolerable workaround, but not perfect.<\/span><\/li>\n<li><strong>Adobe Reader<\/strong><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> is not the only program which can read PDF files, but it is the most exploited one. Matters are made worse by the web browser plugin which is part of the default install, which allows PDFs embedded in web pages to open automatically. This has been used to spread malware in the past. Alternative PDF readers include <\/span><a href=\"https:\/\/www.foxitsoftware.com\/products\/pdf-reader\/\">FoxIt<\/a><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\"> and <\/span><a href=\"http:\/\/www.sumatrapdfreader.org\/free-pdf-reader.html\">SumatraPDF<\/a><span style=\"color: inherit;font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif;font-size: 15px;font-style: inherit\">. If you\u00a0<em>must<\/em>\u00a0use Reader for certain documents (eg. encrypted files such as Inter-Library Loans) then don&#8217;t use it as your default PDF viewer and <a href=\"https:\/\/helpx.adobe.com\/acrobat\/using\/display-pdf-in-browser.html\">disable the web plugin<\/a>. Also make sure that you are running the <a href=\"https:\/\/get.adobe.com\/reader\/\">current version<\/a>\u00a0as the default installation on the PCs we buy is typically several versions out of date.\u00a0<\/span><\/li>\n<\/ul>\n<\/div>\n<h1>Windows 10 and EMET<\/h1>\n<p>While <strong>Windows 7<\/strong> is still getting security patches from Microsoft, it is an OS from 2009, and the state of the art in computer security has moved on since then. <strong>Windows 10<\/strong> has many new features which help secure your PC, mitigating the effects of malware. Unless your software absolutely cannot work under Windows 10 then I suggest planning a migration sooner rather than later. Windows 10 seems quite happy on hardware which supports Windows 7.<\/p>\n<p>If you are obliged to keep running Windows 7 (or 8) then you should strongly consider installing\u00a0<a href=\"https:\/\/technet.microsoft.com\/en-us\/security\/jj653751\">Microsoft EMET<\/a> (<strong>Enhanced Mitigation Experience Toolkit<\/strong>) which adds extra security layers that have <a href=\"http:\/\/www.theregister.co.uk\/2016\/05\/16\/fireeye_researcher_details_flash_zero_day_attack\/\">proven effective<\/a> in blocking some types of malware. In the default install it toughens up Office and Internet Explorer with no additional work needed.<\/p>\n<p>If you only have one or two bits of software which won&#8217;t work in Windows 10 you may want to consider running them in a virtual machine. The School has a membership in the <strong>VMWare Academic Program<\/strong> which provides free copies of VMWare products to staff and students for teaching and research.<\/p>\n<h1>Web browsers<\/h1>\n<p>Even Microsoft has moved away from Internet Explorer, with their new <a href=\"https:\/\/www.microsoft.com\/en-gb\/windows\/microsoft-edge\">Edge browser<\/a> in Windows 10, though it&#8217;s still under heavy development and not really ready for prime time. As Edge is not even available for earlier versions of Windows I suggest installing either <a href=\"https:\/\/www.google.com\/chrome\/\">Chrome<\/a> or <a href=\"https:\/\/www.mozilla.org\/en-US\/firefox\">Firefox<\/a> and using them as your main browser. Both support a range of extensions such as advert (e.g.\u00a0<a href=\"https:\/\/getadblock.com\">Adblock<\/a>\u00a0or\u00a0<a href=\"https:\/\/adblockplus.org\">AdBlock Plus<\/a>) and flash (e.g. <a href=\"https:\/\/addons.mozilla.org\/en-US\/firefox\/addon\/flashblock\/\">Flashblock<\/a>, <a href=\"https:\/\/chrome.google.com\/webstore\/detail\/flashcontrol\/mfidmkgnfgnkihnjeklbekckimkipmoe?hl=en\">Flashcontrol<\/a>) blockers which can help protect you from malicious applets and compromised advert servers.<\/p>\n<h1>More info<\/h1>\n<p>It&#8217;s OK not to understand everything written above; what&#8217;s\u00a0<em>not<\/em> OK is to do nothing. If you don&#8217;t know, ask someone who does, like one of the school computer support staff.<\/p>\n<p>You can find more information about campus computer security on the <a href=\"http:\/\/www.qub.ac.uk\/directorates\/InformationServices\/Services\/Security\/\">Information Services Data Security<\/a> site &#8211; though you should ignore the suggestion about installing Adobe Reader! For more general computer security information <a href=\"http:\/\/krebsonsecurity.com\">Krebs on Security<\/a> is an excellent starting point.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Here are some simple tips to help you secure your Windows PC. The checklist Ensure that Windows Update is enabled and set to check for, and apply, updates daily. Ensure that you have the campus AV solution (Symantec) installed. Other &hellip; <a href=\"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/2016\/05\/19\/some-tips-for-a-safer-windows-experience\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":83,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"footnotes":""},"categories":[6,9],"tags":[],"class_list":["post-365","post","type-post","status-publish","format-standard","hentry","category-security","category-windows"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/pa93hP-5T","_links":{"self":[{"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/posts\/365","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/users\/83"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/comments?post=365"}],"version-history":[{"count":0,"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/posts\/365\/revisions"}],"wp:attachment":[{"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/media?parent=365"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/categories?post=365"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.qub.ac.uk\/screenshotsfromtheedge\/wp-json\/wp\/v2\/tags?post=365"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}