`
love~ruby+rails
  • 浏览: 852459 次
  • 性别: Icon_minigender_1
  • 来自: lanzhou
社区版块
存档分类
最新评论

My GMail password scares me with its power

阅读更多

Google’s GMail blog has some “handy” advice on how pick a good password to project your email account.

Don’t use dictionary words, use mixed case, your eldest kid’s name is a bad choice, etc etc. Yeah that’s great.

But the much bigger security issue I fear is that my GMail username & password is also the same username & password for:

  • My calendar (Google Calendar)
  • My confidential documents (Google Docs)
  • My credit card (Google Checkout)
  • My website’s analytics (Google Analytics)
  • My RSS feed admin (Feedburner)
  • My phone number, voicemail, IM’s (Google Voice + GTalk)
  • Some experimental projects (App Engine)
  • My photos and videos (Picassa and YouTube)
  • + more (see your list of Google services you use)

Given the legitimate places you need to put your username and password in order to access your email (ie your email client, which might be sending it  in the clear each time it fetches mail), is it too much to rely on it’s security and integrity for all these other ancillary Google Services?

I am a strong believer that you shouldn’t give your Google username and password to ANYONE for this reason. It pains me to have to give it to RIM but it’s the only way they can push email to my Blackberry.

Security through segregation

It’s really about time Google separated GMail, and perhaps GTalk, authentication from the rest of their properties. At the very least I’d like to see the ability to create a separate password for IMAP/POP access that I can enter into my email client and give to RIM that doesn’t give access to the rest of my Google Account.

However, as Google becomes an ever more vital and relied-upon part of our online workflow (see how many services I use, above), I wonder whether there would be value in offering an optional  RSA-style keyfob to help protect access – perhaps for a $20-$50/year fee. I know I would pay, and that PayPal have been offering a product like this for some time at $5 a fob.

分享到:
评论

相关推荐

    高一上期中考试复习PPT学习教案.pptx

    `, `It scares me!`, `That’s better.`, 和 `Keep trying.` 单元回顾: - **Unit 1** 关键点包括动词短语(如`be fond of`, `care about`)和结构(如`So do I.`,`Such as…`),间接引语的转换(人称、时态和...

    VISTA全版本服务精简和优化指南

    This does not guarantee it will work for you, but if adjusting your services scares you, this configuration would be a good starting point.

    anki:为 Anki 生成导入文件的程序。 输入是一个我比使用 Excel 更舒服的文件

    scares you 这应该足以开始。 只需开始创建 2 行的部分。 第一个ine包含卡片的正面,第二个包含卡片的背面。 有关更高级的选项,请参见下文。 如果有多于两行,则认为第一行包含卡片的正面。 所有其他线将放在背面...

    2020年考研英语一真题1

    20. **公众疲劳**:"Constant health scares just _____ with one listening." 持续的健康警告只会让人厌烦,[A] "tire" 适合此处,表示“使疲劳”。 总结来说,文章讲述了FSA对丙烯酰胺的警告,以及这一警告背后的...

    2006年全国职称英语考试卫生类(C级)试题及答案.pdf

    文档中列举了许多句子和相关问题,涉及到词汇的多重意义,例如:“A frightens B scares C confuses D arouses”(一个使害怕,一个使惊吓,一个使困惑,一个使激动)。这些内容要求考生理解并准确使用单词,以适应...

    HORROR SYSTEM v1.5.3

    开发者可以通过这些内置功能来构建出具有挑战性的谜题、紧张的情节以及各种突然出现的“吓人点”(jump scares)。 为了让任何经验水平的开发者都能够使用HORROR SYSTEM,它的设计必须是直观易用的。它应该包含详尽...

Global site tag (gtag.js) - Google Analytics