| This screen recording shows me typing "password" into the password box - really! |
About Start Software
Start Software is an award-winning developer and leading publisher of asbestos software, systems for the legal services industry and more.
Want to know more about asbestos software Alpha Tracker? Alpha Tracker is the most used asbestos software in the UK, Australia & New Zealand with more than 60m items of asbestos data stored.
Our legal services software Alpha Legal helps will writers, accountants, solicitors, IFAs and estate agents to communicate securely with clients. Read about developments here on the blog.
Or need help with Alpha Anywhere or Alpha Transform projects or software development? You'll find useful info here.
Complex passwords are really important. "Brute force" hacking attempts are very common on all web systems - hackers literally throw 1000s of combinations of well-known user names and passwords at web systems to see if they can find a way in. It might surprise you to learn that most publicly-facing web systems are subjected to this sort of attack every few days.
Almost all pieces of software now insist on long, complex passwords. If passwords are long enough (8 characters, say) and contain numbers, lower case characters, upper case letters and some punctuation, hackers simply can't guess or be lucky and find a matching combination.
It's for this reason that we were surprised that Microsoft Excel - the most popular spreadsheet software in the world - still allows "password" to be used as a password when encrypting a file! We found this out when testing encryption methods when preparing a webinar for our Alpha Legal users. In 2021 this is simply unacceptably sloppy on their part - it's encouraging users to use guessable passwords when potentially storing sensitive data and this should not be possible.
Here's a demonstration showing that Excel still allows "password" to be used as the "secure password" for an encrypted file:
Alpha Legal has been designed from the ground up to help you to secure your business, your clients' data and your reputation. Take cyber-security seriously and protect your business with Alpha Legal - easy, safe & secure.
Popular posts from this blog
Three emails just arrived one after the other - and each put a smile on our faces and a spring in our step! Feedback #1... "We smashed our audit! Thank you so much for your help" from a new customer where we have been providing Alpha Five support and mentoring to help them to develop an Intranet quality & audit system Feedback #2... "hi Tom. It looks fantastic! Very well done" from a client reviewing the latest changes to a web data analysis system we have written using Alpha Anywhere , SQL Server and JavaScript Feedback #3... " The launch of Alpha Tracker here is going really well ... thank you so much" from an asbestos consultancy feeling the benefits of their Alpha Tracker asbestos software installation. We really appreciate it when customers take the time to send us feedback like this - it makes the hard work seem worthwhile!
What is the Log4j vulnerability and should I be worried?
The news has been full of a new cyber-security threat that has been causing havoc since the start of the month. Log4j , as it is known, is one of the worst server vulnerabilities to ever have been discovered. In fact, some experts say it is the worst. There's a really good summary of the threat here, on Wired.com: https://www.wired.com/story/log4j-log4shell/ The Log4j vulnerability gives hackers the opportunity to do virtually anything on a compromised server - from running bitcoin mining software (causing your server to run at full speed, essentially disabling all of your server running on it) to exposing user names and passwords, or even installing dreaded ransomware. The UK has been particularly hit with attacks, as this graphic shows: The UK and North America are amongst the areas seeing most hacking attempts At Start Software, we take security really seriously and we have already checked the servers which run asbestos software Alpha Tracker , leg...
664 support calls answered in November 2021 - phew!
Our 24x7 Support Desk had a busy November answering 664 calls. It was the usual mixture of questions, queries, suggestions and problems - all good fun! Busy month on the Support Desk! Overall, we maintained our good performance from the month before with 19 out of 20 queries being resolved within the timescales set by our clients.
Blog Archive
-
-
- Really, Microsoft?!! Are you *still* allowing "pas...
- Time-saving tip! Don't hunt through the menus, use...
- More great feedback for our HSG248 changes in Rele...
- Watch out for our article and advert in Modern Law...
- Christmas gingerbread house fun!
- Dr Mavis Nye is voted SHP's Most Influential Figur...
- The release notes for Alpha Tracker Release 37 hav...
- 5* feedback from a busy asbestos consultancy follo...
- What is the Log4j vulnerability and should I be wo...
- Hello World! See how creative the Start Software d...
- Cracking feedback, Gromit! We love it when our su...
- Alpha Tracker has now surveyed more than 5 million...
- Acorn Analytical Services goes live with Alpha Tra...
- Emails cause another cyber-security nightmare - th...
- Customer feedback from the HSG248 updates for our ...
- Another week, another 1,000 clients are being prot...
- Tracker Mobile (Mobile Data) is now compatible wit...
- Tried the meeting planner yet? Give it a try and l...
- Feedback needed on Release 37 - let us know what y...
- 664 support calls answered in November 2021 - phew!
-
-
-
-
-
-
-
-
-
-
-
-
Comments
Post a Comment