Welcome!

Microservices Expo Authors: Liz McMillan, Derek Weeks, LeanTaaS Blog, Pat Romanski, Elizabeth White

Blog Feed Post

Five Lessons The League Can Teach Us about Cyber Security

Lessons from the hit show, The League

Internet Security and the Offensive Line

The 2013 NFL season kicks off tonight with the defending Super Bowl champion Baltimore Ravens visiting the Denver Broncos. For many of us, the start of football season means lazy chicken wing and pizza-filled Sundays in front of the TV. But, it also means it’s time to scramble together and pick your fantasy football team. If you participate in fantasy football, you may be a fan of the hit FX television show, The League which premiered last night. Don’t worry – there are no spoilers here. The League follows a group of old friends in a fantasy football league that seems to bleed into every aspect of their lives. Even if you don’t like fantasy football, or football for that matter, this show is likely to have you either laughing or turning away from the television in disgust at their attempts to make each other’s lives miserable. Aside from football, pranks, and Yobogoya, the show happens to teach us some good, not so obvious, lessons about cyber security. Read on for five lessons The League can teach us about cyber security.

  • Always Monitor

  • In football, players are constantly getting injured, traded and let go. In order to have a successful team you should be monitoring these updates as much as possible to make sure you choose the right players every week. When it comes to monitoring his team, Taco, Kevin’s obnoxious yet lovable brother, is notorious for not doing it. In fact, his lineup is usually decided by Kevin or his wife (and brains of the operation), Jenny, who simply want to keep him in the league.

    Keeping up-to-date with your fantasy team is similar to keeping your antivirus software up-to-date. New viruses are being released at a staggering rate and if your antivirus is using outdated virus signatures, the chances that your outdated AV software will detect the new virus is unlikely. Comodo Internet Security software makes monitoring a synch – it’s as simple as pressing a “Fix It” button when an update or scan is necessary.

  • Research From Trustworthy Sources

  • Kevin is helpless without advice from his wife, Jenny. He knows he needs help making his draft picks and trades but he gets lucky when he runs into the infamous Matthew Berry, an [actual] ESPN fantasy sports analyst. He enlists Matthew Berry’s help because he trusts his expert advice, but in the end, he doesn’t get to benefit from Matthew Berry’s advice because Andre harasses him when he thinks Matthew is hitting on his date.

    Just like Kevin used a trusted source for his fantasy football advice, you too should only visit trusted websites, especially when entering personal data in order to make online transactions. Websites that securely process your credit card information will have and extra “s” in the URL. So, instead Comodo and Internet Security of “http” you will see “https” in the URL while visiting secure websites. That’s because these websites have SSL Certificates to prove their authenticity. An SSL Certificate ensures that the website (or company) is authentic and safe for online transactions. Another way to spot a trusted website is to look for a trust seal which usually looks like a lock.

  • Use Secure Passwords

  • Taco is about as sharp as a marble so it’s not a huge surprise that he named his team, “Password is Taco.” Knowing Taco’s team name and taking an “educated guess” as to what his password is, another player could easily hack into his account and make unwarranted trades on his behalf. Though, he may not have the best of players to pick from since he doesn’t see the disadvantage to picking a kicker first.

    “I like kickers. They’re the toughest.” – Taco

    A strong password is fundamental to keeping your personal data safe. While a strong password alone will not protect you from being hacked, it can certainly help deter an attack. With the amount of personal information we post online (name, email, kids’ names, dogs’ name, birthday, etc.), we make it a lot easier for cyber criminals to decipher our passwords. Hackers often attempt to break into accounts by employing a “dictionary attack,” which involves using words straight from the dictionary to guess your password. Instead of essentially handing over your password by using easy-to-guess words, create them from a combination of letters, numbers, and symbols that would not be associated with a word found in the dictionary (or on your Facebook profile).

  • Don’t Let Fake Websites Fool You

  • Taco is certainly no Mark Zuckerberg but he did create the world’s first offline social network called “MyFace” where your face if your profile Don't let Fake Websites Fool Youpicture. The concept followed Facebook’s layout complete with a physical face wall, covered with outdated and awkward photos of his friends. He even created a “link” symbolized by a jewelry chain and you could literally poke or write on someone’s wall. In order to leave a message for one of his friends, he would break into their house while they were sleeping and leave a handwritten note. When his friends complained about the break-ins, Taco suggested they create a MyFace group, “People who don’t like getting their houses broken into at 4 AM.” Even though Taco’s MyFace required you to carry a corkboard-bound offline social network with you no matter where you went, he got a couple of others to join in on the fun.

    While you certainly wouldn’t mistake “MyFace” for the real Facebook, the concept of tricking people into using fake sites to steal their information happens every day. Cyber criminals deploy phishing scams in emails that entice you to click on what appears to be a link to an authentic website but actually takes you to phony scam site or legitimate-looking pop-up window. The good news is, if you fall for the scam and click through, there are some signs that alert you that the website is phony. For instance, sometimes the URL will have one different letter or one missing letter, such as www.facbook.com where you wouldn’t necessarily notice the missing “e” in the URL. Once you’re on the page that looks just like the legitimate www.facebook.com, you login and the cybercriminal has access to your password and other personal information. The consequences can be far worse if you fall for a phishing scam that takes you to a fake banking website. That’s why it’s best to never click on a link within an email from an unknown sender or enter personal information on a website that isn’t “https.”

  • It’s Easy To Catch A Virus
  • Andre had no idea what went down in his loft while the rest of the gang were supposedly making their draft picks. His final punishment for losing to Taco in the previous season was being banished from the next season’s draft. Unbeknownst to him, his other final punishment came at the same time while his so-called friends organized an adult video to be filmed in his apartment by Rafi, Ruxin’s revolting brother-in-law, and Dirty Randy, a shady Liberian/adult film maker.

    The gang planned to reveal this surprise to Andre after he lived in the soiled space for a few days. Suffice to say, his furniture needed to be burned after the event; however, Andre didn’t know and ate crackers off the couch used for the main scene. Once the act was committed, the scene of the crime was cleaned up just enough so Andre wouldn’t notice. When Andre invited the rest of the league over, he still didn’t realize that everyone was disgusted to even enter the place. Andre only found out about the punishment days after he had mysteriously contracted thrush through “immaculate infection”, a play on football’s “immaculate reception.” The point is, Andre wasn’t even a part of the video, yet he still got a virus because it’s that easy.

    Just like Andre didn’t go out of his way to catch a virus, he still ended up with one. You may think you’re keeping your device secure by steering clear of risky websites, but that’s not enough. Thousands of new viruses are created every day so keep your device secure with the proper antivirus protection.

    There you have it. If you learn from the five lessons The League can teach us about cyber security, you’ll have a much better chance at keeping your devices safe and secure from cyber criminals. Oh yeah, don’t forget to make your draft picks before it’s too late so you have a chance at winning the Shiva Bowl this season!

Read the original blog entry...

More Stories By Solar VPS

Solar VPS lives the Parallels "Optimized Computing" vision. It has created a virtual infrastructure from client offerings, data facilities and management offices. Solar VPS works very closely with Parallels to provide the highest possible service and support to customers.

@MicroservicesExpo Stories
As many know, the first generation of Cloud Management Platform (CMP) solutions were designed for managing virtual infrastructure (IaaS) and traditional applications. But that's no longer enough to satisfy evolving and complex business requirements. In his session at 21st Cloud Expo, Scott Davis, Embotics CTO, explored how next-generation CMPs ensure organizations can manage cloud-native and microservice-based application architectures, while also facilitating agile DevOps methodology. He expla...
Some people are directors, managers, and administrators. Others are disrupters. Eddie Webb (@edwardawebb) is an IT Disrupter for Software Development Platforms at Liberty Mutual and was a presenter at the 2016 All Day DevOps conference. His talk, Organically DevOps: Building Quality and Security into the Software Supply Chain at Liberty Mutual, looked at Liberty Mutual's transformation to Continuous Integration, Continuous Delivery, and DevOps. For a large, heavily regulated industry, this task ...
The notion of improving operational efficiency is conspicuously absent from the healthcare debate - neither Obamacare nor the newly proposed GOP plan discusses the impact that a step-function improvement in efficiency could have on access to healthcare (through more capacity), quality of healthcare services (through reduced wait times for patients) or cost (through better utilization of scarce, expensive assets).
SYS-CON Events announced today that Synametrics Technologies will exhibit at SYS-CON's 22nd International Cloud Expo®, which will take place on June 5-7, 2018, at the Javits Center in New York, NY. Synametrics Technologies is a privately held company based in Plainsboro, New Jersey that has been providing solutions for the developer community since 1997. Based on the success of its initial product offerings such as WinSQL, Xeams, SynaMan and Syncrify, Synametrics continues to create and hone inn...
"WineSOFT is a software company making proxy server software, which is widely used in the telecommunication industry or the content delivery networks or e-commerce," explained Jonathan Ahn, COO of WineSOFT, in this SYS-CON.tv interview at 21st Cloud Expo, held Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
The past few years have seen a huge increase in the amount of critical IT services that companies outsource to SaaS/IaaS/PaaS providers, be it security, storage, monitoring, or operations. Of course, along with any outsourcing to a service provider comes a Service Level Agreement (SLA) to ensure that the vendor is held financially responsible for any lapses in their service which affect the customer’s end users, and ultimately, their bottom line. SLAs can be very tricky to manage for a number ...
The dynamic nature of the cloud means that change is a constant when it comes to modern cloud-based infrastructure. Delivering modern applications to end users, therefore, is a constantly shifting challenge. Delivery automation helps IT Ops teams ensure that apps are providing an optimal end user experience over hybrid-cloud and multi-cloud environments, no matter what the current state of the infrastructure is. To employ a delivery automation strategy that reflects your business rules, making r...
Modern software design has fundamentally changed how we manage applications, causing many to turn to containers as the new virtual machine for resource management. As container adoption grows beyond stateless applications to stateful workloads, the need for persistent storage is foundational - something customers routinely cite as a top pain point. In his session at @DevOpsSummit at 21st Cloud Expo, Bill Borsari, Head of Systems Engineering at Datera, explored how organizations can reap the bene...
The past few years have brought a sea change in the way applications are architected, developed, and consumed—increasing both the complexity of testing and the business impact of software failures. How can software testing professionals keep pace with modern application delivery, given the trends that impact both architectures (cloud, microservices, and APIs) and processes (DevOps, agile, and continuous delivery)? This is where continuous testing comes in. D
In a recent post, titled “10 Surprising Facts About Cloud Computing and What It Really Is”, Zac Johnson highlighted some interesting facts about cloud computing in the SMB marketplace: Cloud Computing is up to 40 times more cost-effective for an SMB, compared to running its own IT system. 94% of SMBs have experienced security benefits in the cloud that they didn’t have with their on-premises service
There is a huge demand for responsive, real-time mobile and web experiences, but current architectural patterns do not easily accommodate applications that respond to events in real time. Common solutions using message queues or HTTP long-polling quickly lead to resiliency, scalability and development velocity challenges. In his session at 21st Cloud Expo, Ryland Degnan, a Senior Software Engineer on the Netflix Edge Platform team, will discuss how by leveraging a reactive stream-based protocol,...
Admiral Calcote - also known as Lee Calcote (@lcalcote) or the Ginger Geek to his friends - gave a presentation entitled Characterizing and Contrasting Container Orchestrators at the 2016 All Day DevOps conference. Okay, he isn't really an admiral - nor does anyone call him that - but he used the title admiral to describe what container orchestrators do, relating it to an admiral directing a fleet of container ships. You could also say that they are like the conductor of an orchestra, directing...
Our work, both with clients and with tools, has lead us to wonder how it is that organizations are handling compliance issues in the cloud. The big cloud vendors offer compliance for their infrastructure, but the shared responsibility model requires that you take certain steps to meet compliance requirements. Which lead us to start poking around a little more. We wanted to get a picture of what was available, and how it was being used. There is a lot of fluidity in this space, as in all things c...
The goal of Microservices is to improve software delivery speed and increase system safety as scale increases. Microservices being modular these are faster to change and enables an evolutionary architecture where systems can change, as the business needs change. Microservices can scale elastically and by being service oriented can enable APIs natively. Microservices also reduce implementation and release cycle time and enables continuous delivery. This paper provides a logical overview of the Mi...
Gaining visibility in today’s sprawling cloud infrastructure is complex and laborious, involving drilling down into tools offered by various cloud services providers. Enterprise IT organizations need smarter and effective tools at their disposal in order to address this pertinent problem. Gaining a 360 - degree view of the cloud costs requires collection and analysis of the cost data across all cloud infrastructures used inside an enterprise.
"I focus on what we are calling CAST Highlight, which is our SaaS application portfolio analysis tool. It is an extremely lightweight tool that can integrate with pretty much any build process right now," explained Andrew Siegmund, Application Migration Specialist for CAST, in this SYS-CON.tv interview at 21st Cloud Expo, held Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
DevOps promotes continuous improvement through a culture of collaboration. But in real terms, how do you: Integrate activities across diverse teams and services? Make objective decisions with system-wide visibility? Use feedback loops to enable learning and improvement? With technology insights and real-world examples, in his general session at @DevOpsSummit, at 21st Cloud Expo, Andi Mann, Chief Technology Advocate at Splunk, explored how leading organizations use data-driven DevOps to close th...
"We started a Master of Science in business analytics - that's the hot topic. We serve the business community around San Francisco so we educate the working professionals and this is where they all want to be," explained Judy Lee, Associate Professor and Department Chair at Golden Gate University, in this SYS-CON.tv interview at 21st Cloud Expo, held Oct 31 – Nov 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
Gone are the days when application development was the daunting task of the highly skilled developers backed with strong IT skills, low code application development has democratized app development and empowered a new generation of citizen developers. There was a time when app development was in the domain of people with complex coding and technical skills. We called these people by various names like programmers, coders, techies, and they usually worked in a world oblivious of the everyday pri...
The “Digital Era” is forcing us to engage with new methods to build, operate and maintain applications. This transformation also implies an evolution to more and more intelligent applications to better engage with the customers, while creating significant market differentiators. In both cases, the cloud has become a key enabler to embrace this digital revolution. So, moving to the cloud is no longer the question; the new questions are HOW and WHEN. To make this equation even more complex, most ...