<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>OS X Daily &#187; Security</title>
	<atom:link href="http://osxdaily.com/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://osxdaily.com</link>
	<description>News, tips, software, reviews, and more for Mac OS X, iPhone, iPad</description>
	<lastBuildDate>Fri, 25 May 2012 22:17:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Use a Mac as a Security Camera And Watch Live Video Remotely From an iPhone or iPad</title>
		<link>http://osxdaily.com/2012/05/03/mac-security-camera-watch-live-video-remotely-from-ipad-iphone/</link>
		<comments>http://osxdaily.com/2012/05/03/mac-security-camera-watch-live-video-remotely-from-ipad-iphone/#comments</comments>
		<pubDate>Thu, 03 May 2012 19:47:27 +0000</pubDate>
		<dc:creator>Paul Horowitz</dc:creator>
				<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[facetime]]></category>
		<category><![CDATA[Fun]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[iPod Touch]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[Mac Security Camera]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29873</guid>
		<description><![CDATA[If you&#8217;ve ever wished you could check up on your house while you&#8217;re away, wish no more because we have a simple solution. We are going to configure a Mac as a home security camera that will open a live video stream on demand which can be watched remotely from anywhere via an iPhone, iPad, [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/05/mac-security-cam.jpg" alt="Set up a Mac Security Cam and Watch the Live Video Feed Remotely from an iPhone or iPad" title="mac-security-cam" width="620" height="433" class="alignright size-full wp-image-29877" /></p>
<p>If you&#8217;ve ever wished you could check up on your house while you&#8217;re away, wish no more because we have a simple solution. We are going to configure a Mac as a home security camera that will open a live video stream on demand which can be watched remotely from anywhere via an iPhone, iPad, iPod touch, or another Mac. If this sounds potentially complicated, it&#8217;s actually not at all, and everything is achieved through a little FaceTime hackery. Read along.</p>
<p><strong>Requirements for the Mac Security Cam</strong><br />
Here&#8217;s what you&#8217;ll need before getting started:</p>
<ul>
<li>FaceTime app installed on the home Mac (comes with Lion or later, earlier Macs can get it from <a href="http://click.linksynergy.com/fs-bin/stat?id=uO47tEUahH8&#038;offerid=146261&#038;type=3&#038;subid=0&#038;tmpid=1826&#038;RD_PARM1=http%253A%252F%252Fitunes.apple.com%252Fus%252Fapp%252Ffacetime%252Fid414307850%253Fmt%253D12%2526uo%253D4%2526partnerId%253D30" target="itunes_store">Mac App Store)</a></li>
<li>A valid Apple ID to use as a FaceTime Login &#8211; you may want to create an additional unique Apple ID for this purpose</li>
<li>An iPhone, iPad, or iPod touch, or another Mac with FaceTime</li>
</ul>
<h2 style="font-size:1.2em;">Setting Up the Camera &#038; Accepting Remote Video Connections</h2>
<p>This is easier to set up than you might think. We&#8217;re going to assume you already have FaceTime on the Mac installed, if not do that first. Next you&#8217;ll want to position the Mac so that the front-facing iSight (FaceTime) camera is pointing in the direction you want to watch. With that done, here&#8217;s the most technical aspect of this set up:</p>
<ol>
<li>Launch Terminal found in /Applications/Utilities/ and enter the following command to <a href="http://osxdaily.com/2011/01/17/automatically-accept-facetime-calls-mac/">automatically accept</a> incoming FaceTime calls:</li>
<p><code>defaults write com.apple.FaceTime AutoAcceptInvites -bool YES</code></p>
<li>Still in Terminal, enter the next command, changing the email address on the end with the Apple ID you wish to automatically accept a video connection from:</li>
<p><code>defaults write com.apple.FaceTime AutoAcceptInvitesFrom -array-add change@me.com</code>
</ol>
<p>If you want to add other Apple ID&#8217;s or even a phone number to automatically accept FaceTime video calls from, feel free to do so by running the above command again with additional email addresses. Phone numbers must be prefixed with a + like so: +14085551212</p>
<h2 style="font-size:1.2em;">Opening the Live Video Feed</h2>
<p>Now for the fun part. Grab an iPhone, iPad, iPod touch, or Mac that is setup to use FaceTime with the Apple ID you chose to autoaccept invites from, and initiate a FaceTime call with the home Mac&#8217;s Apple ID. It will automatically accept the call, giving you a live video feed of what&#8217;s going on at the location of the recipient Mac. Hang up the FaceTime call at any time to close the video feed. </p>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/05/open-facetime-to-mac-security-cam.jpg" alt="Open FaceTime to Mac Security Cam" title="open-facetime-to-mac-security-cam" width="320" height="480" class="aligncenter size-full wp-image-29881" /></p>
<p>As mentioned earlier, it may be best to create a unique Apple ID specifically for the recipient Mac. That Apple ID could then be added as a contact to the iOS Address Book as &#8220;Mac Home Camera&#8221; and added to favorites for quick access.</p>
<p>The only downside to FaceTime is the feed requires a wi-fi connection or to use Personal Hotspot to <a href="http://osxdaily.com/2012/01/16/use-facetime-over-3g-without-jailbreak/">circumvent the FaceTime wi-fi limitation</a>. You could probably use Skype to get around that limitation as well, but that&#8217;d be another article. Enjoy!</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/05/03/mac-security-camera-watch-live-video-remotely-from-ipad-iphone/feed/</wfw:commentRss>
		<slash:comments>28</slash:comments>
		</item>
		<item>
		<title>Flashback Trojan Removal Tool Released by Apple</title>
		<link>http://osxdaily.com/2012/04/14/flashback-trojan-removal-tool-apple/</link>
		<comments>http://osxdaily.com/2012/04/14/flashback-trojan-removal-tool-apple/#comments</comments>
		<pubDate>Sat, 14 Apr 2012 17:26:08 +0000</pubDate>
		<dc:creator>Paul Horowitz</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[Flashback]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29384</guid>
		<description><![CDATA[Apple has released a standalone removal tool that targets Flashback malware infections. The separate utility is recommended for Mac users who do not have Java installed on their OS X Lion machine, but it&#8217;s functionality is identical to that performed by the most recent Java update to remove Flashback. If your Mac does not have [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/flashback-remover.jpg" alt="Flashback removal tool" title="flashback-remover" width="620" height="435" class="aligncenter size-full wp-image-29385" /></p>
<p>Apple has released a standalone removal tool that targets Flashback malware infections. The separate utility is recommended for Mac users who do not have Java installed on their OS X Lion machine, but it&#8217;s functionality is identical to that performed by the most <a href="http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/">recent Java update to remove Flashback</a>. </p>
<p>If your Mac does not have Java or you did not install the most recent Java for OS X updates, running this tool is a good idea. Here is what to do:</p>
<ol>
<li><a href="http://support.apple.com/kb/DL1517?viewlocale=en_US&#038;locale=en_US">Download the tool directly from Apple</a></li>
<li>Mount the DMG file and launch FlashbackMalwareRemover.pkg</li>
<li>Click Continue, click &#8220;Install&#8221; and enter the administrative password</li>
</ol>
<p>Everything beyond that is automated, if the Mac is infected it will be automatically repaired.</p>
<p>Users should always keep system software up to date as part of a <a href="http://osxdaily.com/2012/03/04/mac-maintenance-tips/">general maintenance routine</a>. Despite the recent media overhyping of Flashback, Mac OS X remains a very secure platform. If you are concerned about potential attacks, our recent guide on <a href="http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/">securing Mac OS X from potential trojans and malware</a> may be helpful to you. </p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/04/14/flashback-trojan-removal-tool-apple/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Remove Flashback Trojan from Mac OS X with New Software Update from Apple</title>
		<link>http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/</link>
		<comments>http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/#comments</comments>
		<pubDate>Thu, 12 Apr 2012 20:39:40 +0000</pubDate>
		<dc:creator>Paul Horowitz</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[Flashback]]></category>
		<category><![CDATA[Java]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29348</guid>
		<description><![CDATA[Apple has released a new Java security update that automatically removes the most frequently occurring variations of the Flashback trojan malware. The software update is recommended for all Mac users to install, even if they have previously checked their systems for infection. To get the update and remove any malware that is potentially on a [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/flashback-malware-remove.jpg" alt="Flashback Malware Removal" title="flashback-malware-remove" width="620" height="271" class="aligncenter size-full wp-image-29349" /></p>
<p>Apple has released a new Java security update that automatically removes the most frequently occurring variations of the <a href="http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/">Flashback trojan</a> malware. The software update is recommended for all Mac users to install, even if they have previously checked their systems for infection.</p>
<p>To get the update and remove any malware that is potentially on a Mac, simply download the &#8220;Java for OS X 2012-003&#8243; update from Software Update found within the  Apple menu. There is no manual checking or removal required, simply installing the update from Apple resolves any potential infection for you.</p>
<p>The new Java update also disables automatic execution of Java applets, providing further security against potential threats down the road. Release notes are as follows:</p>
<blockquote><p>This Java security update removes the most common variants of the Flashback malware.</p>
<p>This update also configures the Java web plug-in to disable the automatic execution of Java applets. Users may re-enable automatic execution of Java applets using the Java Preferences application. If the Java web plug-in detects that no applets have been run for an extended period of time it will again disable Java applets.</p>
<p>This update is recommended for all Mac users with Java installed.</p>
<p>For details about this update see: http://support.apple.com/kb/HT5242</p></blockquote>
<p>All Mac users should install the update as soon as possible. For extra protection, don&#8217;t miss our recent post on <a href="http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/">some simple tips to secure Mac OS X from viruses, malware, and trojans</a>.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>Detect FlashBack Malware in Mac OS X the Easy Way</title>
		<link>http://osxdaily.com/2012/04/09/detect-flashback-malware-easy-mac-os-x/</link>
		<comments>http://osxdaily.com/2012/04/09/detect-flashback-malware-easy-mac-os-x/#comments</comments>
		<pubDate>Mon, 09 Apr 2012 17:40:17 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[Flashback]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[mac trojan]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29263</guid>
		<description><![CDATA[Update: Apple has released an official update that removes Flashback with a Software Update. Download the latest Java updates from the OS X Software Update panel to automatically remove Flashback trojan malware. A new application has been released which makes checking a Mac for the Flashback malware infection as simple as clicking a button. This [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/easy-flashback-virus-check.jpg" alt="Easy Flashback virus malware detection" title="easy-flashback-virus-check" width="620" height="364" class="aligncenter size-full wp-image-29264" /></p>
<p><strong>Update:</strong> <a href="http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/">Apple has released an official update that removes Flashback with a Software Update</a>. Download the latest Java updates from the OS X Software Update panel to automatically remove Flashback trojan malware.</p>
<p>A new application has been released which makes checking a Mac for the Flashback malware infection as simple as clicking a button. This is a huge help for assisting less tech savvy people for checking their Macs, though if you follow us you probably already <a href="http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/">checked for the Flashback trojan</a> using the manual Terminal method. This new app-based detection method is very nontechnical and is just a two step process:</p>
<ol>
<li><a href="https://github.com/jils/FlashbackChecker/wiki">Download FlashbackChekcer from Github</a>
<li>Unzip and run the FlashbackChecker application, and click the giant &#8220;Check for Flashback Infection&#8221; button</li>
</ol>
<p>If the &#8220;No Signs of infection were found&#8221; message appears you are safe, and the chances are extraordinarily good that you will not have the infection. If you see a &#8220;Potential Issue found&#8221; message, you may have the malware, though this is exceedingly rare and we haven&#8217;t heard of a single confirmed case in our sizable readership.</p>
<p>Just because you don&#8217;t have the infection doesn&#8217;t mean you should become complacent though. Be sure to update to the latest versions of Java for OS X, and don&#8217;t miss our post on eight <a href="http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/">simple tips to protect a Mac from viruses, trojans, and malware</a>, a little prevention goes a long way.</p>
<p><em>Thanks for the tip Scott</em></p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/04/09/detect-flashback-malware-easy-mac-os-x/feed/</wfw:commentRss>
		<slash:comments>17</slash:comments>
		</item>
		<item>
		<title>8 Simple Tips to Secure a Mac from Malware, Viruses, &amp; Trojans</title>
		<link>http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/</link>
		<comments>http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/#comments</comments>
		<pubDate>Sat, 07 Apr 2012 18:45:51 +0000</pubDate>
		<dc:creator>Paul Horowitz</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[clicktoflash]]></category>
		<category><![CDATA[flash]]></category>
		<category><![CDATA[Java]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[mac trojan]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29220</guid>
		<description><![CDATA[The recent outbreak of the Flashback trojan (Apple released an update and fix, get it!) has brought a lot of attention to potential viruses and trojans hitting the Mac platform. Most of what you&#8217;ll read is overblown fear mongering hype, and practically all Mac malware has come through third party utilities and applications. What that [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/mac-virus-trojan.jpg" alt="Prevent Mac Virus &amp; Trojan Infection" title="mac-virus-trojan" width="620" height="350" class="aligncenter size-full wp-image-29226" /></p>
<p>The recent outbreak of the <a href="http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/">Flashback trojan</a> (Apple released an <a href="http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/">update and fix, get it</a>!) has brought a lot of attention to potential viruses and trojans hitting the Mac platform. Most of what you&#8217;ll read is overblown fear mongering hype, and practically all Mac malware has come through third party utilities and applications. What that means for the average user is that it&#8217;s very easy to completely prevent infections and attacks from occurring in the first place, especially when combined with some general security tips. Without further ado, here are eight simple ways to secure a Mac to help prevent viruses, trojans, and malware from effecting you:</p>
<h2 style="font-size:1.3em;">1) Disable Java</h2>
<p>Flashback and other malware has installed through Java security breaches. Apple has already released several updates to patch the Java security holes that allowed Flashback to spread (you should install those), but you can also go a step further and completely disable Java on the Mac. Frankly, the average person doesn&#8217;t need Java installed on their Mac let alone active in their web browser, disable it and you don&#8217;t have to worry about security holes in older versions of the software impacting your Mac.</p>
<p><strong>1a) Disable Java in Safari</strong></p>
<ul>
<li>Open Safari and pull down the Safari menu, selecting &#8220;Preferences&#8221;</li>
<li>Click on the &#8220;Security&#8221; tab and uncheck the box next to &#8220;Enable Java&#8221;</li>
</ul>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/disable-java-safari.jpg" alt="Disable Java in Safari" title="disable-java-safari" width="620" height="263" class="aligncenter size-full wp-image-29221" /></p>
<p>Disabling Java in the Safari browser is reasonably effective, but why not go a step further and disable it in Mac OS X completely? Chances are high that you won&#8217;t miss it, let alone notice it&#8217;s disabled. </p>
<p><strong>1b) Disable Java System-Wide in Mac OS X</strong></p>
<ul>
<li>Open the Applications folder and then open the Utilities folder</li>
<li>Launch the &#8220;Java Preferences&#8221; application</li>
<li>Uncheck the box next to &#8220;Enable applet plug-in and Web Start applications&#8221;</li>
<li>Uncheck all the boxes next to &#8220;Java SE #&#8221; in the list below</li>
</ul>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/disable-java-mac.jpg" alt="Disable Java in Mac OS X" title="disable-java-mac" width="620" height="471" class="aligncenter size-full wp-image-29222" /></p>
<h2 style="font-size:1.3em;">2) Update Apps and OS X Software Regularly</h2>
<p>Apple regularly issues Security Updates and many third party apps do as well, therefore regularly updating both your OS X System Software and OS X apps are one of the single best preventative measures you can take to keep a Mac secure. We&#8217;ve hammered home about this repeatedly as a <a href="http://osxdaily.com/2012/03/04/mac-maintenance-tips/">general Mac OS X maintenance tip</a> because it&#8217;s important and so easy to do: </p>
<ol>
<li>Open Software Update from the  Apple menu and install updates when available</li>
<li>Open the App Store and download available updates</li>
</ol>
<h2 style="font-size:1.3em;">3) Disable or Remove Adobe Acrobat Reader</h2>
<p>Adobe Acrobat Reader has had multiple security breaches recently, therefore you&#8217;ll be safer without it in your web browser. There&#8217;s little reason to have Reader installed on a Mac anyway, OS X includes Preview for viewing PDF&#8217;s. Uninstall Adobe Acrobat Reader by running the bundled uninstaller app, or locate the following file and remove it to uninstall the Acrobat browser plugin:<br />
<code>/Library/Internet Plug-ins/AdobePDFViewer.plugin</code></li>
<h2 style="font-size:1.3em;">4) Install Anti-Virus Software for Mac OS X</h2>
<p>Using anti-virus software on the Mac is likely overkill, but it&#8217;s worth mentioning again. We&#8217;ve talked about the free <a href="http://osxdaily.com/2010/11/02/free-anti-virus-for-mac/">Sophos anti-virus here before</a>, and though you probably won&#8217;t ever need it, it&#8217;s a free and effective way to fight viruses that may end up on the Mac. If you&#8217;re the cautious type and you&#8217;d rather be safe than sorry there isn&#8217;t much harm to using it as a preventative measure:</p>
<ul>
<li><a href="http://www.sophos.com/en-us/products/free-tools/sophos-antivirus-for-mac-home-edition.aspx" target="_blank">Download Sophos Anti-Virus for Mac </a></li>
</ul>
<h2 style="font-size:1.3em;">5) Disable Adobe Flash / Use a Flash Block Plugin</h2>
<p>Flash has been used as an attack vector in the past, and Macs stopped shipping with Flash installed for a reason; basically it&#8217;s a crash-prone battery hog that has occasional security breaches. Many sites use Flash for video and games though, so instead of uninstalling Flash completely we&#8217;ll recommend using a Flash block plugin for your web browser. This causes all Flash to be disabled by default until you click to allow individual plugins and instances of the Flash plugin to run, preventing unauthorized Flash from running in a web browser completely. These plugins are free and available for every major browser:</p>
<ul>
<li><a href="http://hoyois.github.com/safariextensions/clicktoplugin/" target="_blank">ClickToFlash for Safari</a></li>
<li><a href="https://chrome.google.com/webstore/detail/gofhjkjmkpinhpoiabjplobcaignabnl" target="_blank">FlashBlock for Chrome</a></li>
<li><a href="https://addons.mozilla.org/en-US/firefox/addon/flashblock/" target="_blank">FlashBlock for Firefox</a></li>
</ul>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/flashblock-plugin1.jpg" alt="Flash block plugin for Safari" title="flashblock-plugin" width="620" height="234" class="aligncenter size-full wp-image-29224" /></p>
<h2 style="font-size:1.3em">6) Disable Automatic File Opening After Download</h2>
<p>Safari defaults to automatically opening &#8220;safe&#8221; files after they&#8217;re downloaded. For added security, disable this feature and manage the opening of downloads yourself:</p>
<ul>
<li>Open Safari preferences and click the General tab</li>
<li>Uncheck the box next to &#8220;Open &#8216;safe&#8217; files after downloading&#8221;</li>
</ul>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/open-safe-files.jpg" alt="Disable Open Safe Files after downloading" title="open-safe-files" width="497" height="141" class="aligncenter size-full wp-image-29225" /></p>
<h2 style="font-size:1.3em;">7) Double-Check Anti-Malware Definitions are Enabled</h2>
<p>OS X automatically downloads and maintains a malware definition list which is actively used to combat potential threats and attacks. This is enabled by default, but you can double-check to make sure you&#8217;re getting the updates as they arrive by insuring the feature is turned on:</p>
<ul>
<li>Open System Preferences and click on &#8220;Security &#038; Privacy&#8221;</li>
<li>Under the General tab look for &#8220;Automatically update safe downloads list&#8221; and make sure it is checked</li>
</ul>
<p>You can also <a href="http://osxdaily.com/2011/06/02/check-mac-malware-definition-list-update/">check the update list</a> manually if you&#8217;re concerned the latest version hasn&#8217;t been installed, but as long as you have the feature enabled and have regular internet access, it probably is. </p>
<h2 style="font-size:1.3em;">8 ) Don&#8217;t Install Random Software You Didn&#8217;t Ask For</h2>
<p>If you see a random pop-up window asking you to install random software you didn&#8217;t request, don&#8217;t install it! This may sound like common sense, but it&#8217;s actually how some Mac malware <a href="http://osxdaily.com/2011/05/02/macdefender-malware-mac-protect-and-remove/">propagated in the past</a>. Apple patched the hole that allowed for that to happen a while ago, but the overall message is still relevant: if you didn&#8217;t download or request an app to be installed and you&#8217;re suddenly confronted with an installation dialog, don&#8217;t install it. </p>
<p>That about covers it, but if you have any additional security tips and anti-virus/malware/trojan tips, let us know in the comments. </p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/feed/</wfw:commentRss>
		<slash:comments>54</slash:comments>
		</item>
		<item>
		<title>How to Check for the Flashback Trojan in Mac OS X</title>
		<link>http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/</link>
		<comments>http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/#comments</comments>
		<pubDate>Thu, 05 Apr 2012 18:28:39 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[Troubleshooting]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[Flashback]]></category>
		<category><![CDATA[Java]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[mac trojan]]></category>
		<category><![CDATA[mac trojan horse]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=29147</guid>
		<description><![CDATA[Update: Apple has released a Java software update that includes automatic detection and Flashback removal ability. Go to &#8220;Software Update&#8221; from the  Apple menu to download that update and automatically remove the trojan if you happen to have it on your Mac. Trojans and viruses are generally something Mac users don&#8217;t have to worry [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/04/check-flashback-trojan.jpg" alt="Check for Flashback Trojan" title="check-flashback-trojan" width="620" height="145" class="aligncenter size-full wp-image-29148" /></p>
<p><strong>Update:</strong> Apple has <a href="http://osxdaily.com/2012/04/12/remove-flashback-malware-mac-os-x-update/">released a Java software update that includes automatic detection and Flashback removal ability</a>. Go to &#8220;Software Update&#8221; from the  Apple menu to download that update and automatically remove the trojan if you happen to have it on your Mac.</p>
<p>Trojans and viruses are generally something Mac users don&#8217;t have to worry about, but there&#8217;s a lot of hubub about the so-called <a href="http://news.drweb.com/show/?i=2341">Flashback trojan</a> that has apparently infected a several hundred thousand Macs worldwide. The trojan takes advantage of a vulnerability in an older version of Java that allows it to download malware which then &#8220;<em>modifies targeted webpages displayed in the web browser.</em>&#8221; As <a href="https://twitter.com/osxdaily/status/187294728008638464">we mentioned yesterday on Twitter</a>, the vulnerability has already been patched by Apple and if you haven&#8217;t downloaded the latest version of Java for OS X yet you should do so now. Go to Software Update and install the Java for OS X Lion 2012-001 or Java for Mac OS X 10.6 Update 7, depending on your version of Mac OS. That will prevent future infections from occurring, but you&#8217;ll also want to review if a Mac is infected.</p>
<p>We haven&#8217;t heard of or seen a single case of the Flashback infection on a Mac, but for the sake of optimal security we&#8217;re going to cover how to quickly check if a Mac is afflicted by Flashback trojan:</p>
<ul>
<li>Launch Terminal (found in /Applications/Utilities/) and enter the following commands:</li>
<p><code>defaults read /Applications/Safari.app/Contents/Info LSEnvironment </code></p>
<li>If you see a message like &#8220;<em>The domain/default pair of (/Applications/Safari.app/Contents/Info, LSEnvironment) does not exist</em>&#8221; than so far so good, no infection, proceed to the next defaults write command to confirm further:</li>
<p><code>defaults read ~/.MacOSX/environment DYLD_INSERT_LIBRARIES </code></p>
<li>If you see a message similar to &#8220;<em>The domain/default pair of (/Users/joe/.MacOSX/environment, DYLD_INSERT_LIBRARIES) does not exist</em>&#8221;  then <strong>the Mac is NOT infected</strong>.</li>
</ul>
<p>What if you see something different in the Terminal? If the defaults read commands show actual values rather than the &#8220;does not exist&#8221; response, you may have the trojan, though this does seem to be extraordinarily rare. In the event you run into a Mac with the problem <a href="http://www.f-secure.com/v-descs/trojan-downloader_osx_flashback_i.shtml">follow the guide on f-secure to remove the Flashback trojan</a>, it&#8217;s just a matter of copying and pasting a few commands into the Terminal. </p>
<p>All in all this is nothing to freak out about, but it does serve as another reminder as to why it&#8217;s important to update system software as part of <a href="http://osxdaily.com/2012/03/04/mac-maintenance-tips/">a general maintenance routine</a>. If you want to take some extra security precautions and preventative measures, don&#8217;t miss our article on <a href="http://osxdaily.com/2012/04/07/tips-secure-mac-from-virus-trojan/">simple tips to prevent Mac virus infections, malware, and trojans</a>. </p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/04/05/how-to-check-for-the-flashback-trojan-in-mac-os-x/feed/</wfw:commentRss>
		<slash:comments>28</slash:comments>
		</item>
		<item>
		<title>Secure an iPad or iPhone with a Stronger Passcode</title>
		<link>http://osxdaily.com/2012/03/19/secure-ipad-iphone-strong-passcode/</link>
		<comments>http://osxdaily.com/2012/03/19/secure-ipad-iphone-strong-passcode/#comments</comments>
		<pubDate>Mon, 19 Mar 2012 17:30:24 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[iPad passcode]]></category>
		<category><![CDATA[iphone passcode]]></category>
		<category><![CDATA[iPod Touch]]></category>
		<category><![CDATA[passcode]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[secure passwords]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=28575</guid>
		<description><![CDATA[The default passcode for iPad and iPhone uses a fairly simple four digit numerical password, these are fairly easy to guess because statistically many people use common passwords or some variation of a simple theme, like a repetition, countdown, or birth year. An easy way to add more security to an iOS device is to [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/03/secure-passcode.jpg" alt="Secure Passcode on iPad" title="secure-passcode" width="620" height="465" class="aligncenter size-full wp-image-28576" /></p>
<p>The default passcode for iPad and iPhone uses a fairly simple four digit numerical password, these are fairly easy to guess because statistically <a href="http://osxdaily.com/2011/06/13/10-most-common-iphone-passwords/">many people use common passwords</a> or some variation of a simple theme, like a repetition, countdown, or birth year. </p>
<p>An easy way to add more security to an iOS device is to disable simple passcodes and utilize the full keyboard, here&#8217;s how to enable this setting.</p>
<ol>
<li>Tap on &#8220;Settings&#8221; and tap &#8220;General&#8221;</li>
<li>Tap on &#8220;Passcode Lock&#8221;  and enter the current passcode</li>
<li>Next to &#8220;Simple Passcode&#8221; slide the ON button so that it&#8217;s off</li>
<li>Enter the old simple 4 digit passcode, and then enter the new password based on the full keyboard and special characters</li>
</ol>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/03/set-secure-passcode-ios.jpg" alt="Set a secure passcode in iOS" title="set-secure-passcode-ios" width="600" height="299" class="aligncenter size-full wp-image-28577" /></p>
<p>You can now use a combination of letters, numbers, and special characters, though using the latter can be difficult to remember since their placement is different on the iOS keyboard than a standard QWERTY layout. </p>
<p>Don&#8217;t set something so complicated that you can&#8217;t remember it yourself, though it isn&#8217;t too difficult to <a href="http://osxdaily.com/2011/01/16/forgot-iphone-passcode-how-to-reset/">reset if you need to</a>, assuming you have access to a computer.</p>
<p>For those especially concerned with security, you can also set the iPhone or iPad to <a href="http://osxdaily.com/2010/08/12/run-iphone-in-james-bond-mode-set-your-iphone-to-self-destruct-and-erase-all-data-after-failed-password-attempts/">&#8220;self destruct&#8221;</a> and automatically erase all data after 10 failed password attempts. This is also a fairly good anti-theft countermeasure, just make sure you don&#8217;t forget it yourself or you could accidentally wipe your device.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/03/19/secure-ipad-iphone-strong-passcode/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Password Protect Folders &amp; Files in Mac OS X with Encrypted Disk Images</title>
		<link>http://osxdaily.com/2012/01/11/password-protect-files-folders-in-mac-os-x/</link>
		<comments>http://osxdaily.com/2012/01/11/password-protect-files-folders-in-mac-os-x/#comments</comments>
		<pubDate>Wed, 11 Jan 2012 15:30:15 +0000</pubDate>
		<dc:creator>AJ</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[disk image]]></category>
		<category><![CDATA[Disk Images]]></category>
		<category><![CDATA[disk utility]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[password protect]]></category>
		<category><![CDATA[password protection]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=25853</guid>
		<description><![CDATA[You can password protect files and folders in Mac OS X by using a trick with disk images. Here&#8217;s how it works; by placing files inside of an encrypted disk image, that disk image will work like a password protected folder and require a password before it&#8217;s mounted, preventing unauthorized access to all of the [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/password-protect-folder-mac.jpg" alt="Password Protect a Folder and Files in Mac OS X" title="password-protect-folder-mac" width="619" height="285" class="aligncenter size-full wp-image-25854" /></p>
<p>You can password protect files and folders in Mac OS X by using a trick with disk images. Here&#8217;s how it works; by placing files inside of an encrypted disk image, that disk image will work like a password protected folder and require a password before it&#8217;s mounted, preventing unauthorized access to all of the contents.</p>
<h2 style="font-size:1.2em;">How to Password Protect Files &#038; Folders in Mac OS X with Disk Images</h2>
<p>Do this along with <a href="http://osxdaily.com/2011/01/21/password-protect-mac/">general password protection</a> for maximum effect.</p>
<ul>
<li>Launch &#8220;Disk Utility&#8221; located in /Applications/Utilities</li>
<li>Click on the &#8220;New Image&#8221; button at the top of the app</li>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/new-image.jpg" alt="Create a new disk image" title="new-image" width="545" height="89" class="aligncenter size-full wp-image-25855" /></p>
<li>Name the disk image and set a file size that is appropriate for what you intend to store in there</li>
<li>Click on the contextual menu alongside &#8220;Encryption&#8221; and choose either 128 or 256-bit encryption (256 is stronger)</li>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/disk-image-encryption.jpg" alt="Disk Image encryption" title="disk-image-encryption" width="476" height="339" class="aligncenter size-full wp-image-25856" /></p>
<li>Click &#8220;Create&#8221;</li>
<li>At the next screen you will set a password to access the folder &#8211; do not lose this password, you will not be able to open the disk image if you do</li>
<li>Optional: Uncheck the box next to &#8220;Remember password in keychain&#8221; &#8211; only do this if you&#8217;re the only user on the Mac, otherwise anyone can open the image without the password</li>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/set-password-for-disk-image.jpg" alt="Set a password for the disk image" title="set-password-for-disk-image" width="450" height="337" class="aligncenter size-full wp-image-25857" /></p>
<li>Click &#8220;OK&#8221; to create the disk image</li>
</ul>
<p>The encrypted disk image is now created. Now you need to locate the image, mount it which will require the password set in the creation process, and drag files and folders into the mounted image that you want password protected. The default location for new disk images is the Desktop, but if you saved it elsewhere, look there instead.</p>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/copying-files-to-protect.jpg" alt="Copying files to protect by password with an encrypted image" title="copying-files-to-protect" width="620" height="318" class="aligncenter size-full wp-image-25859" /></p>
<p>Once you are finished copying files and folders to the mounted disk image, eject it like any other disk and the contents will be safely protected within, requiring the password to access again. Because the files and folders have been copied, you&#8217;ll want to delete the originals so they aren&#8217;t visible to anyone else. Again, do not lose the password set or you will not be able to get access to the contents of the encrypted disk image.</p>
<p>This should not be considered a replacement for <a href="http://osxdaily.com/2011/01/21/password-protect-mac/">setting a general password</a> for a Mac, and it&#8217;s always a good idea to <a href="http://osxdaily.com/2011/01/17/lock-screen-mac/">lock down the screen</a> when you&#8217;re away from the computer. Filevault also provides encryption and security features, but older version have some potential speed drawbacks that are particularly noticeable on non-SSD drives, this is <a href="http://osxdaily.com/2011/08/10/filevault-2-benchmarks-disk-encryption-faster-mac-os-x-lion/">mostly a non-issue for OS X Lion</a>, however.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/01/11/password-protect-files-folders-in-mac-os-x/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>How to Enable the Root User Account in Mac OS X Lion</title>
		<link>http://osxdaily.com/2012/01/09/enable-root-user-account-os-x-lion/</link>
		<comments>http://osxdaily.com/2012/01/09/enable-root-user-account-os-x-lion/#comments</comments>
		<pubDate>Mon, 09 Jan 2012 16:24:11 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[enable root]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[Mac OS X 10.7]]></category>
		<category><![CDATA[root]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=25781</guid>
		<description><![CDATA[The root user is a special user account with high level system-wide access privileges intended for system administration, monitoring, and in depth troubleshooting purposes. By default, root user is disabled in Mac OS X for security purposes, but if you need to enable superuser, this guide will show you how to do so in OS [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/enable-root-user-account-lion.jpg" alt="Enable the Root User Account in OS X Lion" title="enable-root-user-account-lion" width="620" height="171" class="aligncenter size-full wp-image-25794" /></p>
<p>The root user is a special user account with high level system-wide access privileges intended for system administration, monitoring, and in depth troubleshooting purposes. By default, root user is disabled in Mac OS X for security purposes, but if you need to enable superuser, this guide will show you how to do so in <a href="http://osxdaily.com/tag/mac-os-x-10-7/">OS X 10.7 Lion</a>.</p>
<p>If you do not have a specific need to enable root, you should leave it disabled. </p>
<h2 style="font-size:1.2em;">Enable Root User in OS X Lion</h2>
<p>This process also sets a password for the root account.</p>
<ul>
<li>From the Mac OS X Desktop, hit Command+Shift+G to bring up Go To Folder and enter the following path:</li>
<p><code>/System/Library/CoreServices/</code><br />
<img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/directory-utility-lion.jpg" alt="Directory Utility located within CoreServices" title="directory-utility-lion" width="509" height="183" class="aligncenter size-full wp-image-25793" /></p>
<li>Inside CoreServices folder, locate and launch &#8220;Directory Utility&#8221;</li>
<li>Unlock &#8220;Directory Utility&#8221; by clicking the padlock icon and entering the administrator password</li>
<li>Pull down the &#8220;Edit&#8221; menu and select &#8220;Enable Root User&#8221;</li>
<li>Enter and confirm a password to set the root users password and to enable the account</li>
</ul>
<p>Be sure to set a strong password for the root account. If you&#8217;re bad at picking passwords or you just want the security advantages of randomness, <a href="http://osxdaily.com/2011/05/10/generate-random-passwords-command-line/">generate one randomly</a> from the command line. </p>
<p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/enable-root-user-lion.jpg" alt="Enable Root User in Mac OS X Lion" title="enable-root-user-lion" width="620" height="484" class="aligncenter size-full wp-image-25795" /></p>
<p>With root now enabled, the account can be used freely. It will not appear in the Users &#038; Groups preference pane.</p>
<p>The root account can access, read, and write to all files on a system, even if they belong to someone else. Additionally, root can also remove or replace system files. This is why it&#8217;s a potential security risk to leave the account enabled aimlessly, or to use a weak password with the account. </p>
<p>The Directory Utility control panel can also be used to change a set root password through the Edit menu, or that can be done through the command line using sudo passwd, similar to <a href="http://osxdaily.com/2010/02/06/change-the-iphones-root-password/">changing the root password in iOS</a> devices.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/01/09/enable-root-user-account-os-x-lion/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>Password Protect Zip Files in Mac OS X</title>
		<link>http://osxdaily.com/2012/01/07/set-zip-password-mac-os-x/</link>
		<comments>http://osxdaily.com/2012/01/07/set-zip-password-mac-os-x/#comments</comments>
		<pubDate>Sat, 07 Jan 2012 21:10:56 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Command Line]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[encrypt]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[password protect zip]]></category>
		<category><![CDATA[password protection]]></category>
		<category><![CDATA[terminal]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>
		<category><![CDATA[unzip]]></category>
		<category><![CDATA[zip]]></category>
		<category><![CDATA[zip password]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=25711</guid>
		<description><![CDATA[Creating a password protected zip file is easy in Mac OS X and does not require any add-ons or downloads. Instead, use the zip utility that is bundled with all Macs. If you&#8217;re familiar with the command line, the syntax of the encrypted zip command is as follows: zip -e [archive] [file] If you&#8217;re not [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2012/01/zip-password.jpg" alt="Zip Password in Mac OS X" title="zip-password" width="620" height="234" class="aligncenter size-full wp-image-25713" /></p>
<p>Creating a password protected zip file is easy in <a href="http://osxdaily.com/category/mac-os-x/">Mac OS X</a> and does not require any add-ons or downloads. Instead, use the zip utility that is bundled with all Macs.</p>
<p>If you&#8217;re familiar with the <a href="http://osxdaily.com/category/command-line/">command line</a>, the syntax of the encrypted zip command is as follows:<br />
<code>zip -e [archive] [file]</code></p>
<p>If you&#8217;re not sure how to use that, read on to learn how to create zip archives encrypted with passwords. These encrypted zip files will maintain password protection across platforms, meaning you can send a protected zip file to a Windows user and they will still need to enter the password in order to view the contents.</p>
<h2 style="font-size:1.3em;">Set a Zip Password in Mac OS X</h2>
<p>You can create password protected archives of files and folders:</p>
<ol>
<li>Launch the Terminal from the Applications > Utilities folder</li>
<li>Type the following command:</li>
<p><code>zip -e archivename.zip filetoprotect.txt</code></p>
<li>Enter and verify the password &#8211; don&#8217;t forget this</li>
</ol>
<p>The resulting archive, in this case named &#8220;archivename.zip&#8221;, is now encrypted with the password provided. The file that was encrypted, &#8220;filetoprotect.txt&#8221;, is now inaccessible without entering that password. </p>
<p><strong>Example: Zipping a Folder and Setting a Password</strong><br />
Here is an example of what this will look like from the command line, in this case we are compressing and password protecting the entire &#8216;Confidential&#8217; folder located within the users /Documents directory, and the password protected zip is being placed on the users desktop for easy access:<br />
<code>$ zip -e ~/Desktop/encrypted.zip ~/Documents/Confidential/<br />
Enter password:<br />
Verify password:<br />
  adding: ~/Documents/Confidential/ (deflated 13%)</code></p>
<p>Notice the password will not display, this is normal behavior for the Terminal.</p>
<h2 style="font-size:1.2em;">Opening the Password Protected Zip</h2>
<p>Despite being created at the command line, you do not need to unzip the file from the terminal, it can be expanded from the Mac OS X Finder or within Windows using standard unzipping apps. Just double click on the file, enter the password, and it will decompress. You can also decompress the zip archive from the command line with:<br />
<code>unzip filename.zip</code></p>
<p>Here are some use cases for password protected zip archives: </p>
<ul>
<li>Password protecting an individual file or directory</li>
<li>Sending a sensitive and encrypted file over an unencrypted network</li>
<li>Emailing confidential data to a Windows user</li>
<li>Adding an additional layer of security to a <a href="http://osxdaily.com/2012/01/06/hide-folders-mac/">hidden folder</a></li>
<li>Password protecting your own backups, outside of Time Machine</li>
</ul>
<p>While this can provide some protection on a per-file or folder basis, it&#8217;s always a good idea to <a href="http://osxdaily.com/2011/01/21/password-protect-mac/">password protect the Mac in general</a> with a login requirement on system boot, wake from sleep, and waking from the screen saver.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2012/01/07/set-zip-password-mac-os-x/feed/</wfw:commentRss>
		<slash:comments>24</slash:comments>
		</item>
		<item>
		<title>Disable Carrier IQ on iPhone, iPad, &amp; iPod touch</title>
		<link>http://osxdaily.com/2011/12/01/disable-carrier-iq-iphone/</link>
		<comments>http://osxdaily.com/2011/12/01/disable-carrier-iq-iphone/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 22:29:42 +0000</pubDate>
		<dc:creator>Matt Chan</dc:creator>
				<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[Carrier IQ]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[iPod Touch]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=24455</guid>
		<description><![CDATA[If you&#8217;ve been following the Carrier IQ brouhaha and ensuing fallout, you might be interested to know that it&#8217;s very easy to disable the Carrier IQ service, logging, and reporting on iPhone or any other iOS device: Tap on &#8220;Settings&#8221; Go to &#8220;General&#8221; and tap on &#8220;About&#8221; Tap on &#8220;Diagnostics and Usage&#8221; Tap on &#8220;Don&#8217;t [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2011/12/disable-carrier-iq-iphone.jpg" alt="Disable Carrier IQ on iPhone" title="disable-carrier-iq-iphone" width="270" height="199" class="alignright size-full wp-image-24462" /> If you&#8217;ve been following the Carrier IQ brouhaha and <a href="http://www.techmeme.com/111201/p51#a111201p51">ensuing fallout</a>, you might be interested to know that it&#8217;s very easy to <strong>disable the Carrier IQ service</strong>, logging, and reporting on iPhone or any other iOS device:</p>
<ul>
<li>Tap on &#8220;Settings&#8221;</li>
<li>Go to &#8220;General&#8221; and tap on &#8220;About&#8221;</li>
<li>Tap on &#8220;Diagnostics and Usage&#8221;</li>
<li>Tap on &#8220;Don&#8217;t Send&#8221;</li>
</ul>
<p>If this was already disabled for <a href="http://osxdaily.com/2011/10/16/ios-5-battery-life-fix-tips/">battery saving purposes</a> or whatever other reason, you should have nothing to worry about, if not, then this should prevent Carrier IQ from sending any data over to Apple. </p>
<p>For some background here, Carrier IQ is network diagnostic software that some cellular carriers have been installing on smartphones and tablets. Going beyond just gathering network diagnostics, Carrier IQ was found on some Android phones to be gathering personal and private information, including phone call logs, text message content, and even encrypted web searches, or, put simply, it&#8217;s a substantial invasion of personal privacy. Later, renowned iOS hacker <a href="http://blog.chpwn.com/post/13572216737">chpwn</a> found references to Carrier IQ in some versions of iOS, but it isn&#8217;t nearly as nefarious as what was discovered on Android, doesn&#8217;t track nearly as much personal information, and thankfully, it&#8217;s much easier to disable.</p>
<p>Keep in mind that Apple also told WSJ&#8217;s <a href="http://allthingsd.com/20111201/apple-we-stopped-supporting-carrieriq-with-ios-5/">AllThingsD</a> that they stopped supporting the feature in iOS 5 for <em>most</em> of their products, saying the following:</p>
<blockquote><p>“We stopped supporting CarrierIQ with iOS 5 in most of our products and will remove it completely in a future software update. With any diagnostic data sent to Apple, customers must actively opt-in to share this information, and if they do, the data is sent in an anonymous and encrypted form and does not include any personal information. We never recorded keystrokes, messages or any other personal information for diagnostic data and have no plans to ever do so.”</p></blockquote>
<p>We should expect an update to <a href="http://osxdaily.com/tag/ios/">iOS</a> in the near future to address this on any remaining devices.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2011/12/01/disable-carrier-iq-iphone/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Secure Keyboard Entry Brings More Security to the Terminal in Mac OS X</title>
		<link>http://osxdaily.com/2011/12/01/secure-keyboard-entry-brings-more-security-to-the-terminal-in-mac-os-x/</link>
		<comments>http://osxdaily.com/2011/12/01/secure-keyboard-entry-brings-more-security-to-the-terminal-in-mac-os-x/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 21:31:59 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Command Line]]></category>
		<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[terminal]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=24447</guid>
		<description><![CDATA[If you are using a public Mac or are just concerned about things like keyloggers and other potentially unauthorized access to your keystrokes, you can enable a feature in Mac OS X Terminal app that secures keyboard entry and input into the terminal. According to Apple, this feature &#8220;prevents other applications on your computer or [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2011/12/secure-keyboard-entry.jpg" alt="Secure Keyboard Entry in Mac OS X Terminal" title="secure-keyboard-entry" width="604" height="277" class="aligncenter size-full wp-image-24448" /></p>
<p>If you are using a public Mac or are just concerned about things like <a href="http://osxdaily.com/2010/10/01/free-keylogger-for-mac-os-x-logkext/">keyloggers</a> and other potentially unauthorized access to your keystrokes, you can enable a feature in Mac OS X <a href="http://osxdaily.com/tag/command-line/">Terminal</a> app that secures keyboard entry and input into the terminal. According <a href="http://docs.info.apple.com/article.html?path=Terminal/2.1/en/5386.html">to Apple</a>, this feature &#8220;<em>prevents other applications on your computer or the network from detecting and recording what is typed in into Terminal</em>&#8220;, making it a good additional security measure when such precautions are needed. Enabling it is extremely easy:</p>
<ul>
<li>Pull down the &#8220;Terminal&#8221; menu and select &#8220;Secure Keyboard Entry</li>
</ul>
<p>Using a personal Mac likely makes this an unnecessary precaution since the risk is very low, but it&#8217;s a helpful tip if you&#8217;re using another untrusted computer or in a situation where you&#8217;d be concerned about another application capturing keystrokes. </p>
<p>Be warned that enabling &#8220;Secure Keyboard Entry&#8221; will interfere with most password managers and anything else that attempts to automatically type and interact with the Terminal for you.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2011/12/01/secure-keyboard-entry-brings-more-security-to-the-terminal-in-mac-os-x/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Monitor Network Connections in Mac OS X for Free with Private Eye</title>
		<link>http://osxdaily.com/2011/10/28/monitor-network-connections-mac-os-x-private-eye/</link>
		<comments>http://osxdaily.com/2011/10/28/monitor-network-connections-mac-os-x-private-eye/#comments</comments>
		<pubDate>Fri, 28 Oct 2011 12:02:05 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[apps]]></category>
		<category><![CDATA[bandwidth]]></category>
		<category><![CDATA[internet]]></category>
		<category><![CDATA[Mac]]></category>
		<category><![CDATA[mac apps]]></category>
		<category><![CDATA[monitor bandwidth mac]]></category>
		<category><![CDATA[monitor network connections]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[network connections]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[Private Eye]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[tricks]]></category>
		<category><![CDATA[Utilities]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=23056</guid>
		<description><![CDATA[Private Eye is a free real-time network monitor app for Mac OS X 10.7+ that is extremely easy to use. Launching the app, you&#8217;ll start to see all open network connections, and you can then filter connections by app, monitor all open connections, or watch only incoming or outgoing transfer. Connections are reported by application, [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2011/10/private-eye-connections.jpg" alt="Private Eye open connections" title="private-eye-connections" width="620" height="383" class="aligncenter size-full wp-image-23057" /></p>
<p>Private Eye is a free real-time network monitor app for Mac OS X 10.7+ that is extremely easy to use. Launching the app, you&#8217;ll start to see all open network connections, and you can then filter connections by app, monitor all open connections, or watch only incoming or outgoing transfer.</p>
<p>Connections are reported by application, the time of the connection, and arguably the most useful, the IP address that is being connected to by the app. If you have any interest in networking, security, or you just want to keep an eye on what apps are connecting to the internet and to where, you should download this app.</p>
<ul>
<li><a href="http://radiosilenceapp.com/downloads/Private%20Eye.pkg">Download Private Eye now</a> (direct link) or <a href="http://radiosilenceapp.com/private-eye">visit the developers home</a></li>
</ul>
<p>This is a simple yet powerful tool without the complexity or the learning curves related to compiling and using the <a href="http://osxdaily.com/2011/07/11/display-a-list-of-open-network-connections-on-the-mac-os-x-desktop/">command line tools lsof</a>, watch, <a href="http://osxdaily.com/2011/07/09/watch-all-open-network-connections-in-mac-os-x-with-open_ports/">open_ports</a>, or wireshark. Highly recommended.</p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2011/10/28/monitor-network-connections-mac-os-x-private-eye/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Bypass the iPad 2&#8242;s Passcode &amp; Lock Screen with a Magnet or Smart Cover</title>
		<link>http://osxdaily.com/2011/10/20/bypass-the-ipad-2s-passcode-lock-screen-with-a-magnet/</link>
		<comments>http://osxdaily.com/2011/10/20/bypass-the-ipad-2s-passcode-lock-screen-with-a-magnet/#comments</comments>
		<pubDate>Fri, 21 Oct 2011 01:39:33 +0000</pubDate>
		<dc:creator>Paul Horowitz</dc:creator>
				<category><![CDATA[iPad]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[iOS 5]]></category>
		<category><![CDATA[iOS 5 bug]]></category>
		<category><![CDATA[iPad 2]]></category>
		<category><![CDATA[iPad 2 smart cover]]></category>
		<category><![CDATA[Smart Cover]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=22769</guid>
		<description><![CDATA[Well here&#8217;s a security flaw in iOS 5 that will quickly get patched: anyone with a magnet (or a Smart Cover) can bypass the iPad 2&#8242;s locked passcode screen and access whatever app was previously left open. The passcode bypass was discovered by 9to5mac, who recorded a video demonstrating the security breach (embedded below). From [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2011/10/ipad-passcode.jpg" alt="Bypass the iPad 2 passcode" title="ipad-passcode" width="150" height="189" class="alignright size-full wp-image-22770" /> Well here&#8217;s a security flaw in <a href="http://osxdaily.com/tag/ios-5/">iOS 5</a> that will quickly get patched: anyone with a magnet (or a Smart Cover) can bypass the iPad 2&#8242;s locked passcode screen and access whatever app was previously left open. The passcode bypass was discovered by <a href="http://9to5mac.com/2011/10/20/anyone-with-a-smart-cover-can-break-into-your-ipad-2/">9to5mac</a>, who recorded a video demonstrating the security breach (embedded below).</p>
<p><strong>From a locked iPad 2:</strong></p>
<ul>
<li>Hold down the power button until the the slider appears across the top</li>
<li>Close the iPad 2&#8242;s Smart Cover or swing a magnet over the magnetic points around the screen rim, then remove the Smart cover or magnet</li>
<li>Click &#8220;Cancel&#8221; at the bottom of the lock screen</li>
</ul>
<p>You&#8217;re now at the iOS 5 springboard, but the biggest security threat is when users have left an app open with sensitive data, since the lockscreen is bypassed directly to it. This could mean </p>
<p><strong>Protection Against the iPad 2 Lock Screen Bypass:</strong><br />
For the time being, iPad 2 users are encouraged to disable the &#8220;Smart Cover unlocking&#8221; feature found in Settings > General. </p>
<p>Here&#8217;s the video showing the password bypass:<br />
<iframe width="610" height="340" src="http://www.youtube.com/embed/NLgQ22naQhE?rel=0" frameborder="0" allowfullscreen></iframe></p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2011/10/20/bypass-the-ipad-2s-passcode-lock-screen-with-a-magnet/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Quick Fix to Prevent dscl Unauthorized Password Changes in OS X Lion</title>
		<link>http://osxdaily.com/2011/09/21/quick-fix-to-prevent-dscl-unauthorized-password-changes-in-os-x-lion/</link>
		<comments>http://osxdaily.com/2011/09/21/quick-fix-to-prevent-dscl-unauthorized-password-changes-in-os-x-lion/#comments</comments>
		<pubDate>Wed, 21 Sep 2011 16:55:03 +0000</pubDate>
		<dc:creator>William Pearson</dc:creator>
				<category><![CDATA[Mac OS X]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Tips & Tricks]]></category>
		<category><![CDATA[chmod]]></category>
		<category><![CDATA[dscl]]></category>
		<category><![CDATA[Mac OS X 10.7]]></category>
		<category><![CDATA[tips]]></category>
		<category><![CDATA[tricks]]></category>

		<guid isPermaLink="false">http://osxdaily.com/?p=21450</guid>
		<description><![CDATA[We recently wrote about the dscl utility and how it allows a Mac OS X Lion user to change a password without knowing the existing password. The lack of required admin authentication has since been widely reported as a bug, and a small Security Update will likely be issued by Apple sometime in the near [...]]]></description>
			<content:encoded><![CDATA[<div class="KonaBody"><p><img src="http://cdn.osxdaily.com/wp-content/uploads/2011/09/lock-dscl-utility-os-x-lion.jpg" alt="lock the dscl utility in os x lion" title="lock-dscl-utility-os-x-lion" width="150" height="216" class="alignright size-full wp-image-21459" /> We recently wrote about the dscl utility and how it allows a Mac OS X Lion user to <a href="http://osxdaily.com/2011/09/19/change-password-mac-os-x-10-7-lion-without-knowing-current-password/">change a password without knowing the existing password</a>. The lack of required admin authentication has since been widely reported as a bug, and a small Security Update will likely be issued by Apple sometime in the near future. Nonetheless, if you&#8217;re paranoid about someone getting ahold of your Mac and changing the user password without authorization, you can <strong>manually change the permissions of the dscl utility</strong> yourself, forcing it to require administrative privileges in order to be run.</p>
<ul>
<li>Launch Terminal (located at /Applications/Utilities/)</li>
<li>Type the following command and hit return:</li>
<p><code>sudo chmod 100 /usr/bin/dscl</code></p>
<li>You will be asked for the current administrative password to confirm the permissions change, enter it and hit return</li>
</ul>
<p>This is a simple permissions fix that likely mimics what an official security update will do. Using sudo chmod 100 states that only the owner (root) is able to execute the dscl command, which effectively prevents other non-admin users from accessing the directory services utility without using the sudo command, and thus the administrator password.</p>
<p>There may be some unintended consequences of changing those permissions, but it&#8217;s unlikely to effect most users. If you do encounter some problems you can always change the permissions back, which look to be set as 755 by default. </p>
<p>A big thanks to <a href="http://osxdaily.com/2011/09/19/change-password-mac-os-x-10-7-lion-without-knowing-current-password/#comment-240623">&#8220;Tjb&#8221; who left this tip in the comments</a>! </p>
<p><strong>Update:</strong> Jim T left the following recommendation in the comments, suggesting another chmod command to change the permissions:</p>
<blockquote><p>Instead, do this:</p>
<p>sudo chmod go-x /usr/bin/dscl</p>
<p>That will -only- remove the execute permission on group and other, leaving the other permissions (read &#038; write, and root’s full permissions) completely as was before the change. To reverse, do:</p>
<p>sudo chmod go+x /usr/bin/dscl</p>
<p>Only touch the stuff you need to touch!</p></blockquote>
<p>His reasoning is that chmod 100 is too restrictive in that it changes the command to execute only, where as before the root user could read, write, and execute. </p>
</div>]]></content:encoded>
			<wfw:commentRss>http://osxdaily.com/2011/09/21/quick-fix-to-prevent-dscl-unauthorized-password-changes-in-os-x-lion/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using disk: enhanced (User agent is rejected)
Database Caching 4/46 queries in 0.053 seconds using disk: basic
Object Caching 1325/1480 objects using disk: basic
Content Delivery Network via cdn.osxdaily.com

Served from: osxdaily.com @ 2012-05-25 17:16:02 -->
