/ 17 July 2008

Everyday security for your computer

When it comes to security and computers, most people think of the well-advertised threats of viruses, spyware or adware.

But the fact is that most of us are more vulnerable to the prying eyes of our neighbours, bosses, friends or the people in the coffee shop next to use who might be reading our email than we are to malicious Trojan horses and worms.

Read on for some practical ways to beef up your everyday security.

Q: I heard that the email messages I send wirelessly are fairly easy to intercept. How can I make them more secure?
You’re right: anyone with the proper knowledge and desire can snoop on what you’re doing or sending over an unsecured network, which is what you typically find in coffee-shop cafés and other public venues where wireless internet access is freely available.

To keep your email secure in such environments, you’ll need to encrypt your email messages. Encryption used to be difficult enough to implement that it scared away most casual users of email who thought about this topic from time to time.

But encryption tools have evolved — and integration with the most popular email programs has improved to the point where anyone who wants or needs email encryption can adopt it without too much hassle.

Mozilla’s free Thunderbird email programme, for instance, has encryption capabilities built in.

Before you venture down the path of using encryption to secure your email, you’ll have to get yourself a personal email certificate, which is the cornerstone of any email encryption scheme. A certificate is used by encryption systems to guarantee the authenticity of messages that you send. You can get a free email certificate at Thawte.com.

After you sign up for a free certificate from Thawte, you’ll receive a verification email messages to which you must respond. In the process of verifying, you will choose the email program with which you wish to use the certificate, and you’ll be given some brief instructions on how to use the certificate with your email program.

The certificate is a file that you will download on to your PC and then import into your email program. Your email program itself should have further instructions for installing and using the certificate.

Bear in mind that both you and your recipient must have a certificate in order to exchange encrypted email messages. Once the certificates and encryption are set up, however, it’s a simple one-click affair to send off an encrypted email message.

Q: How can I password-protect files on my PC?
Password protection of files on a PC can sometimes be done at the application level. That means you would use the application that created the file to create the password protection.

In Microsoft Word, for example, you can require that a password be used to open a file. In the Tool menus, select Options, and then from the Security tab in the Options dialog box, you supply a password in the ”Password to open” box. Other mainstream applications allow such security, as well. Consult the Help file of the application to find out.

Of course, you might want to password-protect other kinds of files, too. One way is to use a file-compression utility such as WinZip, and assign a password to the resulting zip file. Or you could enlist the help of a third-party utility that will encrypt files and folders for you. AxCrypt is free, available in 10 languages, and after installation allows you to right-click a file and encrypt it immediately.

Q: What are some easy ways to delete files on Windows so that they cannot be recovered?
The first thing you should do is avoid the recycle bin, since that’s the first place that someone might look to find files that you’ve recently deleted. You can do so without deactivating the recycle bin holding down the Shift key whenever you delete a file from Windows Explorer, My Computer, or another folder or dialog box that displays files.

You can also deactivate the recycle bin altogether by right-clicking the recycle-bin icon on your desktop, selecting Properties from the resulting pop-up menu, and selecting the check box labelled ”Do not move files to the Recycle Bin”.

Even if you bypass the recycle bin, though, your files are probably still recoverable by someone with the know-how and proper tools.

So, if you want to ensure that no one ever gets to a file you’ve deleted, turn to a file shredder such as 2BrightSparks’s DeleteOnClick. It’s freeware that enables you, with one click, to delete a file irretrievably. The utility will also wipe free space on your hard drive so that no previously deleted files can be recovered, even with
sophisticated recovery tools. — Sapa-dpa