Earlier quoted context omitted.
As soon as you are on the same collision domain as an adversary I think the risk of being attacked and exploited increases drastically. Many do it, but it's not a very safe thing to connect to untrusted Wifi.
Can you explain further? Are you saying SSL doesn’t provide the security a normal person thinks, there is more unencrypted traffic outbound than a normal person thinks, or that the unencrypted headers of the otherwise encrypted traffic are more valuable to a hacker than a person might think?
The Bare Minimum You Should Do to Protect Your Family's Data
81–90 of 119 posts
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#82OK, ... so what would the Hacker News Guide to Online Family Security look like? - ISPs - Routers - Ad Blockers - OS - Data storage / backups - Facebook or not ? - ios v android ...
I also don't use the ISP router / wifi.
I feel like those two things are good steps towards protecting my family. They give me some piece of mind at least.
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#83More than half of that I wouldn't advice or would have serious caveats about the advice given... This is really a strange document... Just a few examples: "Don’t open emails, texts, ]...] from anyone you don’t know, don’t recognize, or weren’t expecting" "Don’t use unsecure Wi-Fi networks" Largely outdated due to HTTPS and completely impractical. Everyone uses the Wifi at starbucks. "Even better, get a VPN (virtual p…
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#84OK, ... so what would the Hacker News Guide to Online Family Security look like? - ISPs - Routers - Ad Blockers - OS - Data storage / backups - Facebook or not ? - ios v android ...
I have PiHole running on our home network blocking ads, phisihing domains, etc. I also don't use the ISP router / wifi. I feel like those two things are good steps towards protecting my family. They give me some piece of mind at least.
I've only had to disconnect once or twice to unsubscribe from spam lists, but I doubt my family would even bother.
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#85Earlier quoted context omitted.
I agree. The section on "Use tough passwords and change them frequently", except for the final suggestion to use a password manager, felt like antiquated password advice.
As long as the password manager is trusted. Some are run by a single person nobody's heard of. I met a woman in Vegas who ran one and who couldn't believe that people trusted it so much.
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#86> Use tough passwords and change them frequently. The best practice for passwords is to use real words or phrases you can remember easily — but spell them incorrectly. They should be at least eight characters and have a combination of letters, numbers, and special characters, such as 5pEAzhawh$ for “five pizzas.” The result of encouraging frequent changes: 5pEAzhawh$, 5pEAzhawh$2, 5pEAzhawh$3, 5pEAzhawh$4, 5pEAzhawh$…
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#87> Use tough passwords and change them frequently. The best practice for passwords is to use real words or phrases you can remember easily — but spell them incorrectly. They should be at least eight characters and have a combination of letters, numbers, and special characters, such as 5pEAzhawh$ for “five pizzas.” The result of encouraging frequent changes: 5pEAzhawh$, 5pEAzhawh$2, 5pEAzhawh$3, 5pEAzhawh$4, 5pEAzhawh$…
When will LastPass stop being recommended? It says right in their TOS they collect all your browser behavior and sell it to 3rd parties. Why should I trust them?
The privacy policy for the firefox extension is also fairly clean.
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#88More than half of that I wouldn't advice or would have serious caveats about the advice given... This is really a strange document... Just a few examples: "Don’t open emails, texts, ]...] from anyone you don’t know, don’t recognize, or weren’t expecting" "Don’t use unsecure Wi-Fi networks" Largely outdated due to HTTPS and completely impractical. Everyone uses the Wifi at starbucks. "Even better, get a VPN (virtual p…
https://medium.com/@perplamps/super-basic-security-advice-f9...
If anyone finds any problems or disagrees with any of my suggestions, let me know and I'll update it!
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#89> Use tough passwords and change them frequently. The best practice for passwords is to use real words or phrases you can remember easily — but spell them incorrectly. They should be at least eight characters and have a combination of letters, numbers, and special characters, such as 5pEAzhawh$ for “five pizzas.” The result of encouraging frequent changes: 5pEAzhawh$, 5pEAzhawh$2, 5pEAzhawh$3, 5pEAzhawh$4, 5pEAzhawh$…
No, the best practice is to use a password manager with randomly generated passwords.
Re: The Bare Minimum You Should Do to Protect Your Family's Data
#90> Use tough passwords and change them frequently. The best practice for passwords is to use real words or phrases you can remember easily — but spell them incorrectly. They should be at least eight characters and have a combination of letters, numbers, and special characters, such as 5pEAzhawh$ for “five pizzas.” The result of encouraging frequent changes: 5pEAzhawh$, 5pEAzhawh$2, 5pEAzhawh$3, 5pEAzhawh$4, 5pEAzhawh$…
When will LastPass stop being recommended? It says right in their TOS they collect all your browser behavior and sell it to 3rd parties. Why should I trust them?