Rahis Saifi

Engadget Editorial Policies

The unique content on Engadget is a result of skilled collaboration between writers and editors with broad journalistic, academic, and practical expertise.

In pursuit of our mission to provide accurate and ethical coverage, the Engadget editorial team consistently fact-checks and reviews site content to provide readers with an informative, entertaining, and engaging experience. Click here for more information on our editorial process.

Stories By Rahis Saifi

  • How Data Breaches Changed the Internet in 2016

    If you have followed security related happenings in 2016, a few must have caught your attention. You've probably heard about the biggest disruption of the internet services across the globe caused by the DDoS attack on Dyn. While it is easy to analyze the aftermath of such a situation, it can only serve as a good reminder of how truly vulnerable we are, and how we must invest more into security all around. On the other hand, targeted security breaches happened in healthcare as well as government departments, meaning that not only private property is affected. We will examine most of those security breaches in detail later, but for now, let's start with why breaches happen. An interesting question? What do you think, what is the most affected type of data? Judging by the movies and James Bond installments, the most typical guess is financial data. Wrong. The answer is identity theft, meaning that the most commonly targets for hacking are mailing services or social networks, where large amounts of personal info can be scrapped and replicated in order to steal your identity, and later on, your money. The usual targets are big companies, that aggregate large amounts of information about their users (like Yahoo), and while the percentage of targeted individual security breaches is low, it can happen, so smaller businesses should take care of their personal info by implementing business dashboards and other security alerting features. Taking safety precautions is not only necessary, but presents a moral priority, especially if your online bases have personal info about you and your employees. Why is DDoS on Dyn important? The reason is twofold and both sides must be examined in great detail before we can draw good conclusions. 1. The DDoS on Dyn showed the lack of security in IoT (internet of things) devices that are becoming more and more popular and in use every day. The connection to the internet is now a much wider privilege for household appliances than it was only a few years ago, when the only things that had access were phones and tablets with Wi-Fi modules, and laptops and desktop PCs. Nowadays, a connection to the internet can be established even with an ordinary light bulb, not to mention your TV, fridge, or coffee maker. While all of this proves to be quite convenient for users, especially as IoT promises an integrated experience both at home and at work, the security of those devices (mostly produced in China) is, in lack of a better term, poor or completely non-existent. While the DDoS attack on Dyn was indeed done by botnets (computers infected by malware), the interesting fact here is that those computers were all actually IoT devices, ranging from digital cameras to DVR players and even internet routers themselves – which is a shift from the previous standard of infecting personal PCs on a global scale, so that they can execute their attract strategy at a precisely defined moment. This asks an important questions: How safe are the cheap, unnoticeable IoT devices around us? 2. While the DDoS attack is a simple brute force attack, it still is quite difficult of fend off, especially if you do not want to endanger an innocent passerby, i.e. an internet user. In this case, what is interesting is that the target wasn't a particular website, or a database, but an internet service DNS (domain name service). Let's explain it like this; when you want to call your friend John, you need to open a telephone book and find his number – the chances of you remembering his phone number are quite small, especially now that numbers are much longer, and you have much more friends. Now, imagine that your telephone book was suddenly hidden behind a long queue of people trying to do the same thing. Most of those people are bots that we mentioned, but still, you cannot get your turn because of them. Because of this, you cannot call John, and a connection cannot be established. (in our case: your browser converts from the address you type in via the dedicated DNS to the actual IP address of the physical server where that website is located). This attack caused you do lose access to popular (and giant) websites like Twitter, Paypal and Netflix, and it showed a simple, yet genius flaw – you do not need to destroy a house, you can simply destroy the roads leading to it. Because of this, we have another question: How vulnerable is the backbone of the Internet itself? The Lessons of Yahoo! The latest theft that that Yahoo disclosed on December 15, 2016 states that an unauthorized third party stole personal user data from more than 1 billion accounts. They say that not all the information was properly encrypted and that they had access to names, birthdays, emails, passwords and security questions, but not to financial data. The aftermath included the company sending emails notifying users to change passwords, while experts suggested that people who think they might have used the same password on some other service should change them immediately. This is viewed as one of the biggest online security breaches in the history of the Internet, and many suggest that this is due Yahoo's lack of attention to security. While we can say that this breach is done and gone, it leaves potential of something more sinister. The Threat of Social Engineering Hacking Now that someone has your name, birthday, security questions and answers such as your first pet and your favorite teacher (questions that are very similar across different websites), in addition to your phone number and image, someone can easily steal your identity. From now on, someone using that data can present themselves to your friends, and ask for additional info, or even, well, ask your friends for money. Or, they could simply use the same password on another website, and trying to gain access (the chances of an average user having a different, strong password on each website are quite slim). How to Secure Yourself Trying to stay secure should be everyone's priority online, and using different, strong passwords is offered as the best kind of protection. If you are a business owner, and you are scared about your company's security, either hire an expert that can evaluate the risk, or invest into some security solutions or a website business dashboard that will give you all the information you might need. Just keep a clear head, use safe practices, and your online data will be secure.

    By Rahis Saifi Read More
  • 7 Things you need to know Before Purchasing Tech Items from E-Commerce Store

    Gone are the days when people had to visit a physical store to buy a product. We currently have several online stores that stock a broad range of tech gadgets. You can place your order from any of these E-commerce vendors from the comfort of your sitting room. Online shopping comes with several advantages, but you have to trade with care. Here are some of the things you need to know before purchasing tech items from any E-Commerce store. Quality of the Products You will agree with me that quality is the most important factor while buying tech products. The term quality refers to the goodness or badness of the technological product you intend to buy. The technological world is full of counterfeit goods than ever before. It's paramount to identify an E-commerce store that deals with genuine products. You can use the better business bureau to identify the brands that you can trust. Remember E-commerce stores only act as agents by stocking a broad range of products from different manufacturers. The online store should make a clear description of each product to guide your purchase decision. You need to ask yourself how well the product will meet your specific needs. Go through the specifications to ensure that the tech product you are buying has all the functions and features you require. You should also ensure that the product you are purchasing has the logo of the manufacturer. Make sure you understand how well the product is and how long you expect it to last. Never buy a product that doesn't meet your needs from any E-commerce store. It's advisable to go through consumer reports as they provide you with unbiased ratings of the product you wish to purchase. Having a feel of what customers have to say about the tech product you are buying will provide guidance to your decision. Ongoing IT Support Tech products encompass IT, and there are some things that you discover with time. The best online store should always be available to provide the IT support you may require. You need a responsive and dependable vendor who can come in timely in the time of need. You will discover that the bigger the IT purchase, the higher after sale service levels you will require. It's good to note that the cost of poor IT support can outdo the cost of the initial investment. Return Policy You need to ask yourself how much it will cost you if your purchase is not satisfactory. Make sure you confirm whether the E-commerce store charges restocking fees and shipping costs. Understand how long the customer service assistants will spend while dealing with the return. It's wise to deal with an online store that takes a very short time when dealing with returning products. In summary, the E-commerce store should have a clear return policy. You should go through each statement and have a clear understanding before placing your order. It's very frustrating to buy a product and later realize that the return policy does not favor you yet it's not what you want. It can result in a lot of time and money wastage. Shipping Shipping costs vary depending on your location. Some vendors may decide to give free or subsidized shipping subject to certain terms and condition. Make sure you identify an E-commerce website that offers you the best choice. Apart from the cost, you need to check on how the shipping company will handle your product. Tech products are delicate, and the online retailer should subcontract a reputable shipping company to deliver your products. You could also confirm how long it will take for you to receive the product to avoid late deliveries. Level of Customer Service The level of customer service is a critical component when buying tech products. You may need a lot of support while installing or using some of these commodities. Look at the various modes of communication that the E-commerce store offers. It's wise to choose a supplier that has the shortest turnaround time when dealing with customer quarries. Selecting a site that embraces live chat features would be the best option if you are looking for real-time guidance. You should also consider how the customer service attendants treat their customers. Go through the online reviews and choose a store that handles clients with due diligence. Some tech products are complicated, and you need someone who will practice a lot of patience in explaining a few issues here and there. Several online stores exist in the global market, and all of them have varying customer service levels. All you need to do is to identify a listening and caring partner. Warranty Another thing that you need to confirm is the kind of guarantee that the E-commerce store offers to the tech product you wish to purchase. Cross check with other online stores until you get a company that has the best terms and conditions. Make sure the online store you choose has the resources that can enable it to respond quickly. You should access them with a lot of ease whenever you have problems that require warranty interventions. Some online retailers can really make you jump through loops. Price Price comes last on this list because it is not the most important factor while buying tech products. However, you need to compare prices of the same product on different E-commerce stores. Some online stores may charge you highly on certain products when you can get better deals elsewhere. Comparing the prices will assist you to avoid any form of exploitation. However, I discourage tech product users to go for cheap products at the expense of quality. The truth of the matter is that you will get what you pay for in the product. You also need to compare different brands that possess similar product specifications. You may come across better models that go at a lower price. Therefore, you need to do your assignment very well when dealing with pricing issues. Summary You need to put several factors into consideration before buying tech products from any E-commerce store. This article presents a list of seven things you need to know as you buy these products. These include quality of the products, ongoing IT support, return policy, shipping, level customer service, warranty, and price. The primary goal of this article is to shed some light on your purchase decision while dealing with E-commerce stores.

    By Rahis Saifi Read More