Connect with me on LinkedIn

Enterprise Security SolutionsConsultinge-Commerce

TeaLeaf LogsLet’s get our hands dirty. First step in building fraud investigation and security analytics platform with TeaLeaf is making TeaLeaf’s data available for Splunk. Then Splunk will take care of all the deep security queries and specialized investigative dashboarding.

Disclaimer: all data you see on this site was autogenerated for demonstration purposes. It demonstrates concepts and ideas but does not shows any real names, IP addresses and any other information that matches real world events.

TeaLeaf comes with cxConnect for Data Analysis component.

ibm_tealeaf_with_splunk_for_security_and_fraud_01

TeaLeaf cxConnect

Tealeaf cxConnect for Data Analysis is an application that enables the transfer of data from your Tealeaf CX datastore to external reporting environments. Tealeaf cxConnect for Data Analysis can deliver data in real-time to external systems such as event processing systems or enable that data to be retrieved in a batch mode. Extraction of customer interaction data into log files, SAS, Microsoft SQL Server or Oracle databases are supported. Data extraction jobs can be run on a scheduled or ad-hoc basis. Flexible filters and controls can be used to include or exclude any sessions or parts of sessions, according to your business reporting needs“.
Source: IBM TeaLeaf.

ibm_tealeaf_with_splunk_for_security_and_fraud_02_hourly_task

IBM TeaLeaf cxConnect hourly log extraction task

Although from my experience “real-time” claim is a long shot (at least I didn’t find a way to accomplish above in real-time), but I managed to do pretty successful regular, hourly, detailed TeaLeaf log exports.

ibm_tealeaf_with_splunk_for_security_and_fraud_03_daily_task

cxConnect Daily extraction task

If you’d try to use cxConnect right off the bat for log exports and select all default options – you’ll end up with humongous set of files that will contain mountain data you don’t really need wasting your disk space. It took me quite a while to configure cxConnect to export data that i need and to make it not include data that i don’t need.

Within cxConnect “Configured Tasks” menu – you may create any scheduled task. For our purpose I’ve created two tasks – one is hourly and second is daily.

Read More

IBM Tealeaf plus Splunk

IBM Tealeaf plus Splunk

IBM TeaLeaf is one of the leading customer experience management platforms from IBM.

IBM TeaLeaf is set of tools allowing enterprises to record all customer interactions with their Web Application portals with further capabilities of visual session replays. IBM TeaLeaf also offers a set of interfaces to design custom events, alerts, dashboards and visual reports.

TeaLeaf allows to define custom reporting dimensions that could be very specific to the given business needs.
Tracking clicks, conversions, customer struggles, optimizing sales funnels, analyzing mobile experiences, presenting any kind of data in a visually appealing way are only few of many available benefits that TeaLeaf offers.

As a consultant helping large brokerage and financial firm to manage firm-wide TeaLeaf deployment – I see another fast growing application for IBM TeaLeaf – financial fraud investigations, security analytics, forensic analysis and investigation of suspicious activities.

When corporate security departments receive suspicious activity reports and requests to investigate possible ATO (Account TakeOver – case where fraudsters buy on a black market set of valid customer credentials obtained by targeted phishing attacks for example) – they come to TeaLeaf to dig into raw data and do forensics investigations.

After finding necessary visitor hits or customer sessions data within TeaLeaf database, security investigators launch TeaLeaf RTV viewer to visually preview actual sessions that potentially involve fraudulent activity.

TeaLeaf allows searching for pieces of data by predefined metrics – IP address, browser OS, browser version, User Agent, text in request, text in response as well as via raw text data fragments possibly found within hit or session data.

TeaLeaf generally offers two ways to search for pieces of information – via it’s browser interface (“Search” menu option) or using RealiTea Viewer (RTV) – separate desktop application allowing to run raw searches via direct connections to TeaLeaf data repository (data canisters).
The main advantage of RTV is that it allows to run searches on currently active sessions (in other words with almost no delay in obtaining fresh traffic data) as well as it is quite fast.

Read More

Building online membership site business is an exciting step on the road to build our own source of residual income.

We all have talents, we all love and know to do certain things better than anyone else. We all know how to solve certain problems that others would love to learn from us. Taking time to put our skills, experience, passion and knowledge on the web and having a chance to monetize it brings triple excitement:

  1. You do something more about what you love.
  2. You share what you love to do with other people and helping them to solve their problems.
  3. You can make money doing what you love.

One way to monetize your skills and experience is to build a site  and share your skills and experience in form of writings, posts, helpful articles, downloadable ebooks, text, video and audio tutorials or in any other kind of “digital” format. Idea is to share your talents with other people, helping them to solve their problems and making money along the way by charging for information access.
Today on internet people are happily paying for useful practical information.

Once you decide to take a step and start building your online membership business the question is how to proceed?

Read More

Ioncube is a source code protection script that often packaged with commercial PHP scripts.
This include many commercial wordpress plugins including my own MemberWing family of wordpress membership site solutions.
This applies to 1and1 shared hosting only:
When you’ll see Ioncube error do this:

  1. Create php.ini file with the following content:

    zend_optimizer.optimization_level=15
    zend_extension=/homepages/xx/xxxxxxxxxxx/htdocs/ioncube_loader_lin_5.2.so

  2. Copy this php.ini file under root of your website and inside the plugin (or theme) that causing the problems.
  3. Copy ioncube_loader_lin_5.2.so file (freely downloadable from ioncube.com site) into root directory of your hosting space.

Please note that “5.2” in ioncube_loader_lin_5.2.so filename means “version of PHP” – so you may need to change this file as well as entry in your php.ini file accordingly.

Thanks for 1and1 support guy who was pleasingly attentive, knowledgeable and responsive to my request.

Would you like to build membership site for free?

MemberWing plugin for WordPress just filled in the long standing gap between webmasters interested to build a fully featured membership website and amount of dollars that quest was required to fork out.

Traditionally to create membership website you’d have to buy a piece of software that allows you to manage permissions to access premium content as well as payment processing needs.

MemberWing is the first membership software script that helps you to accomplish all that at exactly zero cost.

MemberWing is actually a plugin for the WordPress (free blogging software). By adding and activating MemberWing for your website or blog – it suddenly makes it a membership site.

Up to 4 levels of memberships (Bronze, Silver, Gold, Platinum), SEO optimized functionality allowing major search engines to index predefined parts of the premium areas, automated payment processing with Paypal support – all these features makes it a no brainer for webmasters to try this software as a solution to build fully featured permission based membership site.

MemberWing, as many other free softwares, is supported by the backlinks back to http://www.memberwing.com/ site.

But in case you want to build unbranded version of membership sites for yourself and for your clients – the options are available as well, including flat fee license for unlimited installations.

The cost is zero. The choice is yours. The risk is not.

Here’s my little experience with HostGator service and support.

Well, let me say first that I moved to Hostgator after finding that someone’s e-commerce site was totally flying in terms of speed of contents delivery and she was hosting it all off hostgator’s lower end shared hosting plans. So I decided to move few of my domains to hostgator and even opened a reseller account with them to get a bit of boost in performance.

Yesterday I was working to update my WordPress Membership Plugin (MemberWing allows to build free membership sites) – and it was supposes to send an email when new user is paid and signed up.

Everything was working but that piece – sending email. It was kinda annyoing to me to deliver software that works but no one get notified that it works. In other words sending email part of script didn’t work. So I decided to blame Hostgator and send them email asking it to fix sending email from PHP. My perception was that their security settings was over elevated.

Read More

There is a tendency in high end marketing circles to get inspired about spending about $1000+ /month for email autoresponder services. Usual selling point of these services is higher (albeit unproved) deliverability of emails and better tracking. I personally think that “tracking” is a great marketing trick as it is relatively easy to convince any business owner that his business is not that great (or not as great as could be) because he does not have enough tracking bells and whistles.

Last week I personally been through 3 sales pitches based on this. But that’s another story.

It is a bit of a problem indeed if you have 5,000-10,000 emails list and only half of them reach destination during your next affiliate pimping campaign.

Now here’s what happening. I use gmail and getting pretty much zero spams per day. One of my lists has about 30% of email from gmail. Once in a while during the coffee break I check my spam folder.

And here’s the picture.

Besides exciting viagra, porn, casinos and replica offers – I see oh-so familiar names of internet marketers I subscribed to.

My gmail spam folder pack leaders are Mike Filsaime and second close is David Bass. Why are they in spam folder if I never reported them as spammers and even subscribed to their newsletters?

Read More

If you want to convert your wordpress blog into membership site and shy spending hundreds of dollars upfront – keep reading! :)

The new free wordpress membership plugin – MemberWing allows to convert your existing blog into membership site without any changes or re-designs.

MemberWing was built with Search Engine Optimization and speed in mind.

By inserting small text marker “{+++}” inside any article (old or new) – the content of it will become “protected” and available only to registered premium members. Simply put – anything that was before the marker – is visible for everyone – so put your teasers here. Anything after the “{+++}” marker will only be visible to users who are “Gold” or “Platinum” members. This is great feature that allows search engines to index and rank free text “teasers” part of your blog/website. Other plugins and multi-hundred dollars membership software packages does not have this very useful feature. They just lock site completely leaving you on your own with zero chance for organic rankings.

Once activated, plugin created 4 separate group members – Bronze, Silver, Gold and Platinum. So you may (if wanted to) have 4 classes of contents and charge fees accordingly to access each class of contents. The way you mark contents of your articles for each group is the same simple one – via markers that separate free teasers from premium “juicy” part. {+} – Bronze members, {++} – Bronze and Silver members, {+++} – Bronze, Silver and Gold members, etc..

Membership plugin MemberWing supports latest version of self-hosted WordPress 2.6+ and works on any hosted account that allows wordpress installations.

I’ve installed it here – and protected this article :)

Here’s how your protected article will look like, when viewed by non-premium member:

{+++}

Yes.

I was searching for the best autoresponder to use for business and as many of us do – went to Google to search for unbiased opinions, reviews and experiences. The quest was a bit time consuming – Google still has a work to do eliminating useless spam and zero-value pages from their index. Until they do – we – the searchers has to do it ourselves. So I did it and filtered through the content of all these results to make the final choice.

My research might save you time if you’re after similar task.

I already have basic shopping cart account with 1ShoppingCart and they also offer autoresponder at extra monthly cost. Another contender is AWeber. I also found quite a few people using GetResponse. I wanted to find which one is the best and whether I might be missing other choices in this area.

Choosing the right autoresponder is VERY important as the task of moving away from it later on could mean serious loss of established business (old list members refuse to re-optin).

I decided to search for reasonably fresh pages – dated less than 1 yr old. I wanted to find decent  reviews/comparisons/articles regarding choosing the right autoresponder.

So here I just list the reasonably decent posts I found and at the end summarize my choice.

Read More

I missed this week’s call with Michel Fortin and Daniel Levis about growing your online customer and prospects lists 4 to 7 times faster. Luckily Michel Fortin (my fellow Ottawan) was kind enough to mail me MP3 recording of a call. This call was obviously pre-sale for more complete and detailed system by Daniel Levis but nevertheless it was full of actionable tips that could be utilized by any webmaster in any business immediately.
Just by reading these ideas and acting upon them could really improve the speed of any opt-in prospects gathering process quite a bit.

So here they are.

5R system by Daniel Levis – well defined workflow for improving conversion. It boils down to:

Effective Communication

which in 5R terms could be spelled as:

Right person communicating Right message to the Right audience at the Right time in the Right way

What these principles are (in different order):

Read More


1 2 3
Copyright © 2014 MENSK Technologies Inc.