<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Paradigm Consulting Co. &#187; Personal Finance</title>
	<atom:link href="http://blog.paradigmcc.com/category/personal-finance/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.paradigmcc.com</link>
	<description>Information technology and security advice for small businesses.</description>
	<lastBuildDate>Wed, 25 Jan 2012 00:10:39 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Bank Sued for Losses Due to Alleged Weak Security</title>
		<link>http://blog.paradigmcc.com/2009/09/29/bank-sued-for-losses-due-to-alleged-weak-security/</link>
		<comments>http://blog.paradigmcc.com/2009/09/29/bank-sued-for-losses-due-to-alleged-weak-security/#comments</comments>
		<pubDate>Tue, 29 Sep 2009 22:41:13 +0000</pubDate>
		<dc:creator>Peter Nikolaidis</dc:creator>
				<category><![CDATA[Accounting & Bookkeeping]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Personal Finance]]></category>
		<category><![CDATA[Policies]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.paradigmcc.com/?p=268</guid>
		<description><![CDATA[In a previous post, I wrote how small businesses are being scammed by European cyber-hackers. In a related story, Computerworld reports how Pacto Construction Co. in Portland, ME is suing Ocean Bank of Delaware because the company lost hundreds of thousands of dollars due to allegedly weak security on the part of Ocean&#8217;s online banking [...]]]></description>
			<content:encoded><![CDATA[<p>In a previous post, I wrote how <a title="Small Businesses being scammed by Euro-gangs" href="http://blog.paradigmcc.com/2009/08/28/small-businesses-losing-millions-to-european-cyber-gangs/" target="_self">small businesses are being scammed by European cyber-hackers</a>. In a related story, <a title="Computerworld report on bank sued for weak security" href="http://www.computerworld.com/s/article/9138467/Construction_firm_sues_after_588_000_online_theft?source=rss_security" target="_blank">Computerworld reports</a> how Pacto Construction Co. in Portland, ME is suing Ocean Bank of Delaware because the company lost hundreds of thousands of dollars due to allegedly weak security on the part of Ocean&#8217;s online banking system.</p>
<p>The main alleged weakness is the lack of two-factor authentication by Ocean Bank. While I am not sure that this places all of the blame in Ocean&#8217;s hands, and I think that Patco should be at least partially responsible for their losses if it is found that their own systems were compromised, a victory by the plaintiff in this case could set an interesting precedent to financial institutions who have not implemented strong authentication mechanisms in their online services. Banks and credit unions &#8211; take note! However, a victory by the defendant will likely send a very different signal, more to the tune of &#8220;If you bank online, you take your chances.&#8221; Small businesses and individuals &#8211; take note!</p>
<p>This week&#8217;s <a title="Data Security Podcast" href="http://datasecurityblog.wordpress.com/2009/03/01/data-security-podcast-episode-42-mar-02-2009/" target="_blank">Data Security Podcast</a> also has an excellent interview with the attorney who filed the suit on behalf of Patco.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.paradigmcc.com/2009/09/29/bank-sued-for-losses-due-to-alleged-weak-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Small Businesses Losing Millions to European Cyber-Gangs</title>
		<link>http://blog.paradigmcc.com/2009/08/28/small-businesses-losing-millions-to-european-cyber-gangs/</link>
		<comments>http://blog.paradigmcc.com/2009/08/28/small-businesses-losing-millions-to-european-cyber-gangs/#comments</comments>
		<pubDate>Fri, 28 Aug 2009 14:15:39 +0000</pubDate>
		<dc:creator>Peter Nikolaidis</dc:creator>
				<category><![CDATA[Accounting & Bookkeeping]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Personal Finance]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.paradigmcc.com/?p=256</guid>
		<description><![CDATA[This week, the Washingon Post reported a fascinating story on how &#8220;organized cyber-gangs in Eastern Europe are increasingly preying on small and mid-size companies in the United States.&#8221; They appear to be targeting small businesses for the simple reason that they are easier nuts to crack than large financial institutions. Think about it for a [...]]]></description>
			<content:encoded><![CDATA[<p>This week, the <a title="Washington Post report on European Cyber Gangs attacking small businesses" href="http://www.washingtonpost.com/wp-dyn/content/article/2009/08/24/AR2009082402272.html?hpid=topnews" target="_blank">Washingon Post reported</a> a fascinating story on how &#8220;organized cyber-gangs in Eastern Europe are increasingly preying on small and mid-size companies in the United States.&#8221; They appear to be targeting small businesses for the simple reason that they are easier nuts to crack than large financial institutions.<span id="more-256"></span></p>
<p>Think about it for a minute and this makes perfect sense. Many of my clients frequently ask &#8220;why would anyone come after me? I don&#8217;t have anything anyone would want.&#8221; If you&#8217;ve ever watched a good heist movie (Ocean&#8217;s 11, the Italian Job, Heat, Heist, etc.) you can get an idea of what a massive &#8220;bank job&#8221; entails (at least, in Hollywood). That having been said, it&#8217;s a lot easier to simply forge an email to someone within a company using a tactic known as &#8220;spear phishing,&#8221; where the sender fools the recipient into divulging information in some way. The Post continues:</p>
<blockquote><p>&#8230; the scammers &#8230; send a targeted e-mail to the company&#8217;s controller or treasurer, a message that contains either a virus-laden attachment or a link that &#8212; when opened &#8212; surreptitiously installs malicious software designed to steal passwords. &#8230; the crooks then initiate a series of wire transfers, usually in increments of less than $10,000 to avoid banks&#8217; anti-money-laundering reporting requirements.</p></blockquote>
<p>While laws protect consumers from fraudulent charges on their credit cards, similar legislation does not protect bank accounts, and generally, once the money&#8217;s gone, it&#8217;s gone, as is illustrated in this paragraph from the article:</p>
<blockquote><p>In February, fraudsters struck JM Test Systems, an electronics calibration company in Baton Rouge. According to &#8230; the company&#8217;s controller&#8230; an unauthorized wire transfer of $45,640 was sent from JM Test&#8217;s account to a bank in Russia. &#8230; [JM Test] was able to recover just $7,200 of the stolen money&#8230;</p></blockquote>
<p>All small businesses should ensure that everyone with access to any sort of financial information on their computers or online has gone through basic &#8220;safe browsing&#8221; and social engineering awareness training to ensure that they do not accidentally give away the keys to the kingdom.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.paradigmcc.com/2009/08/28/small-businesses-losing-millions-to-european-cyber-gangs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Software Review: Moneydance (Including a Rant Against Quicken)</title>
		<link>http://blog.paradigmcc.com/2009/08/14/software-review-moneydance-including-a-rant-against-quicken/</link>
		<comments>http://blog.paradigmcc.com/2009/08/14/software-review-moneydance-including-a-rant-against-quicken/#comments</comments>
		<pubDate>Fri, 14 Aug 2009 13:24:40 +0000</pubDate>
		<dc:creator>Peter Nikolaidis</dc:creator>
				<category><![CDATA[Accounting & Bookkeeping]]></category>
		<category><![CDATA[Desktop Software]]></category>
		<category><![CDATA[Personal Finance]]></category>

		<guid isPermaLink="false">http://blog.paradigmcc.com/?p=235</guid>
		<description><![CDATA[I recently started the process of converting my personal finances from Quicken to Moneydance. I have been using Quicken for at least ten years, not because I like the program, it&#8217;s just that it&#8217;s &#8220;what I&#8217;ve always used.&#8221; I decided it was time to apply some of my own consulting practices and take a look [...]]]></description>
			<content:encoded><![CDATA[<p>I recently started the process of converting my personal finances from <a title="Quicken" href="http://www.quicken.com" target="_blank">Quicken</a> to <a title="Moneydance" href="http://www.moneydance.com" target="_blank">Moneydance</a>. I have been using Quicken for at least ten years, not because I like the program, it&#8217;s just that it&#8217;s &#8220;what I&#8217;ve always used.&#8221; I decided it was time to apply some of my own consulting practices and take a look at my personal finance management situation as if I was a client, and ask myself &#8220;is this the best solution for my problem?&#8221; The answer was a resounding &#8220;no.&#8221;</p>
<p><span id="more-235"></span>I don&#8217;t know about the current Quicken for Macintosh, but last I checked, it did not use the same file format as the Windows version. This means if I create a file in Quicken, and want to use it on a Mac, I need to manually export every account (checkbook, investment, savings, loan, etc.) one at a time, and import it into the Mac version. Then, if I decide to go back to Windows, I need to do the same thing in the other direction. This is obviously not a fun or quick and easy process, so moving back and forth is not an option. If, for instance, you have a Mac and a Windows machine at home, and want to share the finances, you can&#8217;t easily do this with Quicken.</p>
<p>Another consistent annoyance is Quicken is bloated and slow. It frequently will hang and the window will strobe constantly, as if the focus is changing back and forth between two panels in the program. During this time, it is completely useless, and will often hang for several minutes, forcing me to terminate the program and restart it.</p>
<p>Intuit updates the software every year, and takes steps to make you have to upgrade, like disabling support for their older file format downloads from online banking institutions. However, they rarely add any new features that make it worth upgrading.</p>
<p>Finally, Quicken&#8217;s data file is prone to corruption. In the last year, mine got corrupted twice, forcing me to revert to a prior backup, losing a week or so worth of data on one occasion. That was the last straw.</p>
<p>Enter Moneydance. I first heard about Moneydance from <a title="Chess Griffin" href="http://www.chessgriffin.com/" target="_blank">Chess Griffin</a>&#8216;s <a title="Linux Reality" href="http://www.linuxreality.com/" target="_blank">Linux Reality</a> podcast. Moneydance immediately appealed to me because it is available for Mac, PC, and Linux. Furthermore, all three editions share the same file format, so I could use Moneydance on my Mac, my Linux workstation, or my Windows desktop to do my finances, and not be tied to any one.</p>
<p>I was able to download a trial version from the Moneydance website, and install it in a few minutes. Immediately, I noticed that Moneydance loads more quickly than Quicken. Its interface is less flashy, and different from the one I&#8217;m used to with Quicken, but I was able to quickly learn my way around so that I could transfer my finances to it.</p>
<p>Moneydance supports the current QFX (Quicken 2005 or newer) file download type, as well as the older QIF import, which Quicken no longer supports. I exported all of my accounts from my credit union as of July 1, and reconciled them in Moneydance. A (very minor) glitch I saw here was that there was no way to &#8220;accept all&#8221; transactions &#8211; I had to click &#8220;accept&#8221; to each and every transaction as I imported them. Given that I was importing a month&#8217;s worth of transactions from three accounts, this took a while.</p>
<p>Another small quirk is that Moneydance assigns a default category to every transaction. For some reason, it chose &#8220;ATM Withdrawl&#8221; as mine (probably because it was alphabetically first in line), so everything I imported was an &#8220;ATM Withdrawl.&#8221; I had to go through and change categories on them to things like healthcare, groceries, aikido, etc.</p>
<p>Moneydance, with several accounts&#8217; information loaded, uses around 10MB of memory. Quicken, on the other hand, took up nearly 80MB of memory just to load.</p>
<p>Moneydance also allows me to sort my registers by date ascending or descending &#8211; something Quicken never let me do. Amazing. Now I can look at my register side-by-side with my online banking statement in the same order!</p>
<p>One useful feature which Moneydance appears to lack is integration with larger financial institutions for automated downloads. Ameritrade, Bank of America, American Express, etc., all offer services to integrate Quicken with these and other institutions, making updating your accounts online very simple. Unfortunately, with Moneydance, this requires visiting the financial institution&#8217;s website and downloading files, or manually updating investment account balances. Given that I have to visit my local credit union&#8217;s site to download my statements anyway, this is not a huge inconvenience. However, updating my stock portfolios is proving to be a little more work than I had hoped.</p>
<p>In short, Moneydance is well worth the $39.99. It costs about the same as Quicken, runs on multiple platforms, chews up fewer resources, and lacks all of the bloat.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.paradigmcc.com/2009/08/14/software-review-moneydance-including-a-rant-against-quicken/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

