- Web Crossing
- Circus Ponies
- Mark/Space, Inc.
- VMware
- MacSpeech
- Fetch Softworks
- Microsoft
- Bare Bones Software
- CS Odessa
- Readers Like You!
Open URLs Quickly from BBEdit
If you're working on a bit of text (HTML or otherwise) in BBEdit, and you see a URL that you'd like to open, the fastest way is to Command-click it. Most BBEdit users probably already know this tip, but if you don't, it's a huge time-saver. (The same trick works in BBEdit's free little brother, TextWrangler.)
Written by Adam C. Engst
Recent TidBITS Talk Discussions
- Sorting out years worth of files (14 messages)
- 2008 Holiday Gift Ideas: For the Macintosh-minded (22 messages)
- Print Classy Discs with the Dymo DiscPainter (1 message)
- Safari says "host not found" but Firefox works (3 messages)
Published in TidBITS 938. Subscribe today to receive TidBITS in email every Monday.
- Anthropomorphic Fonts in CollegeHumor Video
- Stop the iPod touch's Constant Beeping
- Apple Reports Billion Dollar Profit for Q3 2008
- iTunes 7.7 Corrupts Accented Artist and Track Names
- MobileMe Status Page Promises Updates, But Tone Rings Flat
- Prepping Web Images with iWatermark
- Apple Fails to Patch Critical Exploited DNS Flaw
- TidBITS Watchlist: Notable Software Updates for 28-Jul-08
- Hot Topics in TidBITS Talk/28-Jul-08
Google Gmail Adds Secure Session Option
Google has plugged one of the biggest security risks associated with using its free hosted Gmail mail service, still in beta after four years. You can now select an option in your account preferences to make every session require an encrypted Web connection. I wrote about a number of Gmail vulnerabilities that researchers had found in "Sidejack Attack Jimmies Open Gmail, Other Services," 2007-08-27.
Gmail requires a secure connection for your login details, regardless of whether or not you start with the secure Gmail site address. However, if you start at the non-secure Gmail site, Google redirects you back to an unencrypted Web connection after login. That's always been a mistake on Google's part because your messages would pass in the clear. The sidejacking attack referenced above also proved that someone could intercept your Google session token and have full access to your Gmail account.
Google explained in its Gmail blog that the service has added a Browser Connection option at the bottom of its Settings > General view that lets you select "Always use https," which is the protocol name for a URL that makes your browser start up a SSL/TLS encrypted connection with a Web server.
The Google blog also noted a link that's now at the bottom of the inbox that provides account activity details, as well as a way to sign out sessions initiated from other machines. In my case, for instance, I see several recent sessions: a browser connection last night from home, and IMAP connections from my iPhone for retrieving recent email automatically. (Google is in the process of rolling this feature out, so it may not appear for you quite yet, as it didn't for Adam Engst).
These two changes improve Gmail's security dramatically. I recommend you turn on the https setting immediately.
It's time to speak up with MacSpeech Dictate! Get the all-newMacSpeech Dictate with spelling and phrase training. Speech
Recognition so good, about the only thing it can't do is
speak for you. Find out more at <http://www.macspeech.com/>







