Microsoft Teams for OS X Send Your Audio and Sound to your Audience with Soundflower

By Tony DePrato | Follow Me on LinkedIn

This video explains how to set up your Apple hardware to stream audio from Youtube and other sources to your Teams Meeting.

Get Soundflower: https://github.com/mattingalls/Soundflower/releases/tag/2.0b2

Distance Learning ? – Check out these resources

I am sure many of you are teaching from somewhere other than your classrooms. If that is the case, then flexibility and leveraging other websites for services and content is something you are keenly aware of and possibly in search of. This list of resources has been bouncing around social media and thought I would share it here!

Covid -19 – We’re closed :(

Like many other schools around the world we have closed due to the Coronavirus. In light of these circumstances I thought I would share our school’s Distance Learning Plan. I’ve embeded it below, but if you would like a link to the Google Doc please click here. From there you can make a copy.

Hopefully this plan can help you in this unusual time or even in the future. I’ve gone ahead and changed our schools name in the plan and have removed all names as well so there may be some parts that sound a little odd. Here is what you need to know about our school.

  • We are pre-school to grade 8
  • We are 1:1 devices from grades 5-8
  • We have an LMS and school portal for parents and students
  • We utilize G-Suite for Education

Smithsonian for the win!

The Smithsonian has released nearly 3 million images, 3D models, videos and more into the public domain! What this means is that anyone can search, find, download, use adapt and publish any of these artifacts without asking. So get searching and share this with your kids. Chances are if they are working on a research project, they may find media that can safely be used.

https://www.si.edu/openaccess 

Are Your Files Public? The Edlio Example

one

By Tony DePrato | Follow Me on LinkedIn

I have written before about cloud security and file security. I was doing a simple pentesting job for a school recently and found a service they were using called: Edlio.

I cannot say if Edlio has a security issue, or if what I found was simply based-on clients not following procedures, or if all these schools marked their documents as public.

However, I can say it is generally bad practice for:

  1. Personal information to be public and openly searchable
  2. Budget information to be public and openly searchable (aside from summaries and annual reports)
  3. Versions of documents, that are not the final version, to be public and openly searchable
  4. Calendars and other data about large group events to be enabled without security

Schools using Edlio, or other services, need to audit their public content. Here is what is accessible on Edlio with a compound search:

one

two

I then noticed that the documents seem to be organized by date, and mixed. Meaning, different schools appear to be storing documents in a “common” directory, and then their files are further organized.

three

four

Using a search based on the date, I was able to further sort documents from different schools:

five

six

Again, there is no evidence this is an issue with the Edlio service. These documents could be available due to schools simply not managing their permission options, or because the schools believed these documents needed to be public.

The takeaway here is that school senior leadership should be aware this information is public, how it can be searched, and there should be some minor threat assessment done to determine if these documents (and posting policies) are creating more risk than reward.

If you want more information on how to do this type of testing and analysis, please email me: tony.deprato@gmail.com