This article was written by Chester Wisniewski of Sophos and is reproduced here with their full permission. Sophos provides full data protection services including:
12 tips of Christmas - A safer Twitter for 2010
As we roll into the holiday season and many of us are taking more time away from work to spend with our families, we inevitably geek out. We have more time to read blogs, play video games, and reach out to our friends. Many of us use social networks to keep in touch and plan outings and parties. I thought I would share some tips with you on the safest way to use Twitter to keep in touch without falling victim to the many crooks targeting social networks.
- 12 apps OAuthing - For Twitter statistics, analysis, or alternative web interfaces, stick with OAuth-based applications. OAuth is a secure method of allowing application developers to access your Twitter information. Applications using OAuth will redirect you to Twitter to confirm the application's request for access to your account. Websites that directly ask for Twitter credentials are often well-disguised phishing attempts.
- 11 snoopers snooping - Treat the tweet-o-sphere as if you were standing in a pub. Don't disclose personal details that could be used to impersonate, track, or allow unnecessary contact. If you were in a pub and a stranger asked "Where do you live?" you wouldn't likely respond "2000 Main St., Apartment B." Instead, you might say "the East side."
- 10 tweeps a-stalking - If you are comfortable being tracked by friends, family, stalkers, and governments, then by all means continue to post your GPS coordinates. Many mobile Twitter applications can post your position within a few feet using the GPS in your phone and these are on by default. I recommend that everyone disable this feature. Always explore the options menu in Twitter applications you are using.
- 9 careful retweetings - Don't blindly retweet links. Always thoroughly check out a link before sending it on. Many spam attacks are socially engineered tweets that depend on blind retweeting to gather more users into the scam.
- 8 scammers bilking - Be wary of Direct Messages from those you don't know. Many users fall victim to phishing attacks every day and their accounts are often used to lure you to scam-laden URLs. These accounts will send you DMs with shortened links that could be malicious.
- 7 links a-lengthening - When shortening URLs, use a service that lets other users easily preview where they are going. Many companies offering these services do provide ways for users to automatically expand URLs, including Bit.ly (Or add a plus sign on the end of the URL), TinyURL, and is.gd.
- 6 so-called deletings - Delete doesn't mean it's gone. You can now delete tweets, but unlike emails, they cannot be rescinded. Deleted tweets may no longer show up in your timeline, but the message will have been delivered to mobile phones over SMS and to third-party Twitter clients that will not forget your indiscretions.
- 5 not-so-private tweets - As with Facebook, privacy on Twitter is not so private. Protecting your tweets provides a degree of security, but you still rely on your friends to avoid falling victim to a scam. Hackers depend on the trust we have for our friends and family and will use their accounts to gather your most personal details.
- 4 friend impersonations - Be wary of Direct Messages from your friends if they seem out of context. As with random DMs, you may wish to check the shortened link at longurls.org. When my friends send me DMs like "Increase your followers by 4000%!", I know that it's time to pick up the phone and let them know they have been compromised.
- 3 @spam alarms - Follow @spam for recommendations and alerts related to Twitter scams. Don't click links in emails appearing to be from Twitter either, always use a client, or the twitter.com website directly to confirm followers, reply to DM's, etc.
- 2 password changes - If you feel your password may have been compromised change your password immediately. What is less obvious is that you must also revoke access to the Twitter API for any applications you are using and re-register them. If the criminals who have stolen your credentials still have API access they can continue to impersonate you.
- And avoiding those fake celebrities - Verify the identities of people you follow where possible. If you are following a company (like Sophos!) or a celebrity, you can often find their real twitter ID on their website. There are more than 50 variants of Britney Spears, many of which are scams.

Why You Need to Read Web Hosting Reviews
By: Jason Kay | 19/01/2010When you are looking for web hosting how do you know that the company that you are considering is any good? Sure you can look on their website and read all the wonderful things they say about themselves, but is that really going to give you an accurate feel for...
What to Look For in Customer Service For Web Hosting
By: Jason Kay | 19/01/2010So many times when people look for web hosting the first thing they will consider is the monthly price of the web hosting service and they often overlook how good the customer service of that web hosting company is. This can be a costly mistake as a poor customer service...
Why Unlimited is Good in Web Hosting
By: Jason Kay | 19/01/2010When the Internet was a relatively new concept to people and there were not a lot of web hosting companies available there was still a need to find a web hosting company that would offer you a lower monthly price versus the big boys. This lower monthly price usually came...
Download Dante's Inferno PSP and PSP Go Game
By: John Corner | 19/01/2010If you are tire of having to pay for expensive PSP UMD disc or downloading from The Playstation Store for a high fee, I am about to show you how and where you can download Dante's Inferno for less than $0.01 legally? The Dante's Inferno PSP version will be release in 2010, once it is release you can download the game and play on your PSP handheld instantly. Visit PSP Go Download Center for more information. PSP Go Download Center contains over 200,000 Downloads making it the Biggest Database f
Download Valkyria Chronicles 2 PSP and PSP Go Game
By: John Corner | 19/01/2010Since the over-price of PSP UMD disc, many gamers are looking for alternative way to get their hand on the newest and favorite PSP games. I am about to show how and where you can download Valkyria Chronicles 2 for less than $0.01 legally? Valkyria Chronicles 2 is the up-coming will be released in 2010 for PSP handheld, so you can proceed to download the game instantly once it's release. Visit PSP Go Download Center for more information.
Download Metal Gear Solid Peace Walker PSP and PSP Go Game
By: John Corner | 19/01/2010Are you looking for alternative way to download the up-coming PSP game? Do you want to know how and where you can download Metal Gear Solid Peace Walker for less than $0.01 legally? Metal Gear Solid Peace Walker will be release in 2010, so you can proceed to download the game instantly once it's release. Visit PSP Go Download Center for more information. PSP Go Download Center contains over 200,000 Downloads making it the Biggest Database for the PSP and PSP GO! PSP Go Download Center is comp
PSP Go Download Center - place where you can download PSP and PSP Go games fore free!
By: John Corner | 19/01/2010Do you want to get your favorite game for your new PSP Go? Do you want to spend thousand of dollars to find a new but a good game? Are you tired to search on Google for your PSP or PSP Go games each day? The best way to download unlimited PSP & PSP Go games but for the least amount of money is to join a legitimate PSP downloading website. Once joined you will be able to get unlimited access to all the games, movies, music, software and more for your PSP & PSP Go. Play Station Store which runs
Get free PSP Go Games - Learn How to Download PSP Go Games
By: John Corner | 19/01/2010Are you sick of paying too much for your PSP or PSP Go games? Do you want to get your favorite games, movies, music and software for your new PSP Go? In fact, you can download unlimited PSP Go downloads from one site. In this article, I will show you how to download unlimited PSP go Games and Media online. It's a pretty simple process to download PSP Go games on your system and the website I'm going to show you is going to send you a free step-by-step guide on how to with your membership. So
5 Ways to Prevent Your Car from Being Stolen or Broken Into
By: MFrizzi | 15/01/2010 | CarsUnfortunately, many of us have been forced to endure the horrifying experience of looking for your automobile and slowly realizing that it is not where you left it. Even simply forgetting for a few minutes where you left your car can be a very unpleasant experience. Being the victim of car theft or robbery is not only a traumatizing experience, it can also potentially be quite expensive. Beyond having to pay the deductible on your insurance policy, a stolen car can result in the loss of all the
5 ways to increase driving safety
By: MFrizzi | 15/01/2010 | AutomotiveWith the busy lifestyles so many of us lead, proper safety precautions while driving are often foregone. Multi-tasking, aggressive driving, equipment neglect and other factors all contribute to decreased safety and increased likelihood of motor vehicle accidents. This article will examine some of the ways in which drivers can increase safety and avoid accidents while travelling the roads of the world.
5 Ways to Use Remote Desktop Software
By: MFrizzi | 14/01/2010 | SecurityRemote control software allows users to access their home computer from any other computer in the world. Beyond accessing, users are able to take control of their PC and run programs that may not be available at their actual location.
5 important things to consider when shopping for new tires
By: MFrizzi | 06/01/2010 | AutomotiveAlthough picking out new tires can be a daunting endeavor, there are some important pieces of information you can identify that will greatly ease the process.
What is fair trade coffee and why should it matter to you?
By: MFrizzi | 06/01/2010 | CoffeeWhen speaking of fair trade coffee, it is first important to define the term 'fair trade...'
What is Remote Desktop Software?
By: MFrizzi | 04/01/2010 | TechnologyRemote desktop software, also known as remote control or remote access software, is software that allows a user's computer to be remotely accessed and controlled by another user on a separate computer.
The storage and recycling of used tires
By: MFrizzi | 31/12/2009 | AutomotiveAlthough they rarely garner the type of media attention that vehicle emissions receive, used tires are among the most widespread and problematic sources of waste and pollution in the world.
The EB-5 Immigrant Investor Visa: What is it and how is it attained?
By: MFrizzi | 30/12/2009 | National, State, LocalThe EB-5 Immigrant Investor Visa is one of the easiest and most flexible routes an immigrant can take if they are interested in gaining a United States green card. These visas are contingent on an investment being made in the United States along with the creation, either directly or indirectly, of a set amount of jobs.
About the Author:
This article was written by Chester Wisniewski of Sophos and is reproduced here with their full permission. Sophos provides full data protection services including: security software, encryption software, antivirus, and malware.