Earlier this week, news was breaking about the discovery of the OpenSSL heartbeat bug (nicknamed “Heartbleed”), and people everywhere have been concerned about the security of their online passwords and other sensitive data.
Our SSL provider, Akamai, made the appropriate patches before the issue was publicly disclosed, because the OpenSSL team gave them advanced notice. To the best of our knowledge we, along with Yahoo, Facebook, Google, etc., could have been compromised without us knowing, although it appears very unlikely.
However, out of an abundance of caution, many of us here at SmugMug HQ have already changed our passwords on critical sites like our email providers, and we recommend that you do this, too.
You can change your SmugMug account login password by visiting your Account Settings, under Me > Account.
Here are a few tips for creating good, beefy passwords:
- Don’t duplicate passwords across different sites. Once someone figures out one password, they instantly have access to any other site that uses the same password.
- Don’t create passwords that contain personal information like names, addresses, or your birthday. This makes them easier to guess and more susceptible to social-hacking attempts.
- Change passwords every 4 to 6 months. We all hate doing this, but it’s a great preventative measure.
- Don’t click suspicious links. Not sure the e-mail you received is from your web service? Don’t click! Instead, go directly to the website by typing the main URL into your browser.
- Password length is stronger than password complexity. Stringing together several random words is safer (and simpler for you) than a short password with lots of arcane symbols.
As we blogged several months ago, we’ve recently implemented notification emails that go to you (the account owner) any time someone enters an incorrect gallery password multiple times. We’ll continue improving on and delivering new ways to help keep your photos and personal details out of the wrong hands.
Devoted to keeping your memories safe,
– The SmugMug Family