<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SPWD &#187; Security</title>
	<atom:link href="http://www.southplattewebdesign.com/category/web-design/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.southplattewebdesign.com</link>
	<description>Modern Web Development</description>
	<lastBuildDate>Sat, 11 Sep 2010 01:55:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>The Death of A Monster?</title>
		<link>http://www.southplattewebdesign.com/2009/01/30/the-death-of-a-monster/</link>
		<comments>http://www.southplattewebdesign.com/2009/01/30/the-death-of-a-monster/#comments</comments>
		<pubDate>Fri, 30 Jan 2009 07:59:57 +0000</pubDate>
		<dc:creator>Billy</dc:creator>
				<category><![CDATA[Off-Topic]]></category>
		<category><![CDATA[Safety]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[career]]></category>
		<category><![CDATA[employement]]></category>
		<category><![CDATA[employment]]></category>
		<category><![CDATA[job site]]></category>
		<category><![CDATA[looking for work]]></category>
		<category><![CDATA[monster]]></category>
		<category><![CDATA[monster.com]]></category>
		<category><![CDATA[unemploye]]></category>

		<guid isPermaLink="false">http://www.southplattewebdesign.com/?p=375</guid>
		<description><![CDATA[So, as this post back in October says, I am looking for work. I am not the only one &#8211; there are many of us out here right now. Yes, I am still doing okay &#8211; about to lose the house my wife and I bought two weeks before doomsday, but still okay because things [...]]]></description>
			<content:encoded><![CDATA[<p>So, as this <a href="http://www.southplattewebdesign.com/2008/10/06/available-for-freelance-and-other-work/">post</a> back in October says, I am looking for work.  I am not the only one &#8211; there are many of us out here right now.  Yes, I am still doing okay &#8211; about to lose the house my wife and I bought two weeks before doomsday, but still okay because things just seem to work out sometimes.  I am optimistic.  YOU should be optimistic. You NEED to be optimistic.  Ok, Ok, I <em>was</em> optimistic until&#8230;.</p>
<p>Finding <a href="http://recentlylaidoff.com/">Rachel Steinberg&#8217;s</a> blog through Twitter user <a href="http://twitter.com/themediaishirin">@themediaishirin</a>.  What is going on there is great, by the way &#8211; themediaishirin is posting 140 character resumes in hopes to find people employment!  On to the point here, this post hit like a hurricane: <a href="http://recentlylaidoff.com/2009/01/job-site-fail/">Job Site Fail</a>.  She references the <a href="http://www.usatoday.com/money/industries/technology/2009-01-27-monster-data-hackers_N.htm">original article</a> that alerted her to the true gravity of the situation on <a href="http://www.usatoday.com">USAToday</a>.  </p>
<h2>Monster was hacked into again&#8230;.</h2>
<p>Again?  Why is it so Monster?  Why?  Seems also they didn&#8217;t have a way to &#8220;effectively&#8221; inform the millions whose data was just HACKED and put at HIGH RISK.  VERY HIGH RISK.  Seems an email wouldn&#8217;t be wise &#8211; can we kind of see their point in their notice (linked below).  Twice in the past 6-months according to the article where Rachel found out about it from.  Twice?  Six months?  They have got to be kidding, right?</p>
<p>Why is it Monster can not just look through all that data, the &#8220;public&#8221; resumes, oh wait they nearly are all public it would seem &#8211; well not the resumes according to the <a href="http://help.monster.com/besafe/jobseeker/index.asp">Monster Security Alert</a>, and find a competent web team that knows something about security?  Oh they might want to add some network security, and maybe, just maybe some physical security as well.  You think?</p>
<p>This is inexcusable in my eyes.  What about YOUR eyes, YOUR life &#8211; is it inexcusable?  </p>
<p>There is no reason for this to happen TWICE.  None.  Monster account deleted.  Time to take chances of finding a job elsewhere.  Not that Monster ever had much that wasn&#8217;t a &#8220;pay for work&#8221; scam or some other &#8220;scam&#8221; on there in the first place.  Maybe they should require employers to actually have either a Federal Employer Identification Number (FEIN), or State business license number before they can post a job?  Maybe, they should only accept employers that have true domain name email addresses, complete with a phone number, rather than accepting Yahoo and Gmail address and job postings without a bit of identifying information &#8211; &#8220;Company Confidential&#8221;, yeah, right. <strong><em>Where was their users&#8217; confidentiality?</em></strong></p>
<p>The link to the <a href="http://help.monster.com/besafe/jobseeker/index.asp">Monster Notification</a> &#8211; it points out several things of important note: </p>
<blockquote><p>&#8220;It is important to know the company continually monitors for any illicit use of information in our database, and so far, we have not detected the misuse of this information.&#8221; </p></blockquote>
<p> <strong>Yeah, and WE trust Monster to monitor the entire Internet for use of OUR information after they couldn&#8217;t even monitor their systems well enough and secure enough to prevent such potential?  Twice?</strong></p>
<blockquote><p>&#8220;&#8230;we will be instituting a mandatory password reset for all accounts that could potentially be affected. Those affected users will be prompted to change their password on their next login to the site&#8230;&#8221; </p></blockquote>
<p> <strong>For accounts that <em>could potentially be affected</em>???  Why not for all, just for extra measure?  Seems good anyway to do it that way &#8211; why &#8220;guess&#8221; or &#8220;get close&#8221; to notifying all those that &#8220;could&#8221; be effected?</strong></p>
<blockquote><p>&#8220;&#8230;and create a permanent password that is in compliance with Monster&#8217;s password standards.&#8221;  </p></blockquote>
<p><strong>If their password standards are like their security standards, maybe it is time find a competitor that does it better and <em>SAFER</em> </strong></p>
<blockquote><p>&#8221; Requiring these password resets helps us ensure that accounts are secure from any fraudulent activities.&#8221; </p></blockquote>
<p><strong>See the first Yeah above.  Why should anyone trust them to ensure accounts are secure now?  After this again?</strong></p>
<p>Anyway&#8230;.do you know of a secure employment site, that offers relevant jobs, with actual company data listed that takes care of its people?  Share it if you know it &#8211; many are in the same situation right now!</p>
<div style="margin-top: 10px; height: 15px;" class="zemanta-pixie"><a class="zemanta-pixie-a" href="http://reblog.zemanta.com/zemified/6c810ffa-4a3c-46bb-b57d-e085d75bef03/" title="Zemified by Zemanta"><img style="border: medium none ; float: right;" class="zemanta-pixie-img" src="http://img.zemanta.com/reblog_e.png?x-id=6c810ffa-4a3c-46bb-b57d-e085d75bef03" alt="Reblog this post [with Zemanta]"></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.southplattewebdesign.com/2009/01/30/the-death-of-a-monster/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

