You can’t collect everything

There’s been a fairly spirited discussion lately in the always excellent Yahoo Marx Train group about the merits of Marx tin trains versus plastic ones. Some people like them all, some people prefer one or the other, and almost everyone with a preference is apologizing to the people who prefer the other.

That’s part of what makes that group great–the lack of elitism and looking down on others whose preferences differ–but in my mind, there’s no apology necessary because very few hobbyists have the time, space, or budget to collect everything. Read more

What happened to Altavista

What happened to Altavista

For as long as I can remember, my home page has been about:blank. But for a good chunk of the 1990s, I would have done well to set it to altavista.digital.com. Here’s what happened to Altavista.

Most people remember Altavista as the thing people used before Google, if they remember it at all. But I remember it as the first great search engine, because I’ve done my best to forget what search was like before Altavista came along. So I was a little sad to see Yahoo shut down what was left of the first great search engine in the summer of 2013. Read more

In defense of telework

I work from home one day a week. Most of my coworkers do as well.

So I was interested when I read about Yahoo! doing! away! with! telecommuting! (with apologies to The Register. I couldn’t resist.)
Read more

How to use price guides

How to use price guides

Pricing collectibles is more art than science, and most guides have some errors in them, so large (or at least very vocal) numbers of people mistrust them.

I still use them, however. Knowing how they’re produced–or would be produced, in a perfect world with perfect data–helps someone to use them to maximum effect. The principles are the same for any guide, whether you’re talking trains or video games or baseball cards or any other collectible. Read more

Beware of unexpected links in e-mail messages

Hackers are stealing Yahoo accounts by sending messages containing malicious web page links.

The message looks like a link to a web page on MSNBC. But if an unsuspecting user clicks on it, it redirects to another page that steals the e-mail account, allowing the hacker to use the account to send spam, or grab the account’s contact list.

The gory details are here.
Read more

Workable two-factor authentication

I’m several months late to this party, but I just saw Marcel’s post on Google’s two-factor authentication with a smartphone.

He’s right. It works until someone steals your phone. Once someone steals your phone, you’re in a world of hurt. It’s just a compromise, until we find a way to do two-factor authentication the right way.

The right way is with a smartcard, issued by some sort of central authority. Read more

Testing my new Facebook plugin

The plugin I was using, FT Facepress II, decided to quit working, so now I’m trying to get the official Facebook WordPress plugin working.

If it does all it says it does, Facebook comments about blog posts will also show up here (and not just on Facebook), which would be nice.

Update: It appears to have worked, but it also appears to have replaced the comments engine. I’m not sure if that’s a good thing or a bad thing. That option is easy enough to disable; I’ll give it a trial period and see. The new engine can authenticate against Facebook, AOL, Yahoo and Hotmail, so it does give some options for those who don’t have Facebook accounts.

The upside is that this may significantly reduce the spam comments. I have a good anti-spam engine, but the comments still clutter up my database.

There’s no need to apologize for having a Yahoo or Gmail account

I saw an assertion last week that Yahoo and Gmail accounts are less secure than an account that came straight from your ISP. Perhaps there was a time when this was true, but no longer. Today there are reasons to believe the exact opposite is true.

So, no, you don’t have to apologize for using a Yahoo or a Gmail account.
Read more

Things I wish everyone knew about home computer security

I’m a security professional by trade, with two certifications. I’m not responsible for defending your computer networks, but I want your networks to be secure. There’s a really simple reason for that. If your computer and your network is secure, then it isn’t attacking mine. Or anyone else’s.

Several fellow subscribers to a train-related interest group that I like got hacked recently, and have been sending out spam messages. They’ve received a lot of advice in the hours since. Some of it has been good, and some not as good. So I tried to think of some things that people could do in about 30 minutes to keep the crooks at bay.

Incidentally, the computer crooks won’t be going away. Computer crime happens because the criminals can make more money doing that than doing something legal. The only way to make it stop is to make it too hard, so that getting a real job becomes more profitable. You won’t solve that problem in 30 minutes, but if we all take that single step down that road, we’ll make the world that much safer. So, with that, let’s roll up our sleeves. Read more

Yahoo CEO Scott Thompson needed to explain himself

I understand Yahoo CEO Scott Thompson’s predicament. I don’t agree with how he handled it.

You see, both Scott Thompson and I work in the technical industry, and neither of us have a degree in computer science, computer engineering, some other kind of engineering, high mathematics, or another socially accepted relevant-to-the-industry field. Read more