3 ms·
I use a random pass generator. Avoid all password managers at all costs. I put it down manually. I am going be getting a subscription to a non Google email. N
by doubt_me 10y ago
I use a random pass generator.
Avoid all password managers at all costs. I put it down manually.
I am going be getting a subscription to a non Google email. Not sure which one yet. I think it's called fast mail.
Avoid everything Apple.
Avoid everything social media. I still use them for lurking but every single service has its own email and generated pass.
Avoid posting anything anywhere forever. (As little as I possibly can)
Getting my info and my associates info completely wiped from all data brokers and all links from all search engines purged.
Use a custom ROM and a rootable phone. I'm not a fan of how big Google is. I'm not a fan of how little support they offer for their services (let's be honest it doesn't exist). But at the same time Google really does make great software at the cost of zero actionable support. It works for now. There are open source alternatives in the works to replace the core of Google services I just haven't checked if I can use it as a daily driver just yet (without many bugs).
I use chrome with privacy badger extension by the EFF
Another extension which is called uMatrix (have been using it since Beta, HTTPS-Everywhere). It will break your internet experience if you don't know how to use it.
Simply put the only firewall you will ever need. Doesn't use many resources and is extremely straight forward.
I also use the signal app for communication. As much as I possibly can. (It took me a year or two but I've converted over 50+ people into using it)
Stating the obvious. But I haven't gotten a single virus from torrents since the Napster days. You'll get them from software most of the time anyways (crack generators, old software etc...).
- whitepoplar 10y ago1) Why avoid using a password manager, like 1Password? 2) Why avoid everything Apple? From what I hear from trusted individuals, Apple has some of the most secure data practices in the industry. 3) Avoid posting anything, anywhere? That's not practical for me and most people. Much of the internet's upside centers around posting and sharing content. 4) I agree with purging information from databrokers. What's the best way to do this?
- doubt_me 10y ago1. I'm not honestly sure what 1pass looks like. If it saves local versus cloud and is somewhat open source then I don't have a problem with using these apps (LastPass breach was pretty bad when it happened). For me personally I just don't need them. Every single phone I've owned in the past has required the bare minimum in software for my battery to last as long as possible even with custom Roms. Every app counted. Only recently have I been able to enjoy my phone all day with tons of apps. (LG V20) 2. Of course a company like Apple has some of the most secure practices. What it doesn't give them though is the power to completely ignore zero days and attack white, gray or black hats for disclosure. Plenty of other companies are guilty but not one as big as Apple. I'm all for prosecution when hacks are used to cause damage and or steal company secrets. Beyond that point the closed ecosystems + closed hardware that's built to be hard to repair is a security nightmare waiting to happen. (Oh yea it did. They called it the fappening). They also do everything possible to shut down jailbreaking (Didn't they hire one of them eventually?). And even going further beyond that, they share your info with the government. Under gag order or not it doesn't matter. Yes I know all companies have to in order to operate stateside but the fact is it's not hacker friendly. I also am aware of the fact that the majority of the industry has been working on making this situation better. (Project zero, Netflix just came out with something as well). 3. Yup. I guess I meant in a more practical sense like personally identifiable info. Being completely honest not everybody cares for security, even most of the time they aren't even aware of what it is or how much is actually out there. This point I made will never happen unless somebody is completely devoted to being private and wants to be. 4. I'm actually still working on that. I don't have a 100% sure method yet. I've emailed plenty of them and I got mostly no response but a few did delete some stuff. Something I haven't tried is to simply get Google to remove the listings from their search. Doesn't sound hard but knowing Google will be next to impossible. I have thought about using legal action against the data brokers but I haven't looked into it yet. I'm assuming there are cases out there somewhere that were successful that I can find.