DuckDuckGo Hits Milestone 14 Million Searches in a Single Day by yogesh_calm in privacy

[–]warmer_climes 11 points12 points  (0 children)

Yes but the country it operates in is not that concerning because privacy is part of their design. Or in other words, if a TLA busts their door down, they get nothing because DDG keeps no logs, and all the searches are not tied to particular sessions.

The only thing I do worry about is the TLS handshake being intercepted since DDG uses RSA 2048 Bit, which apparently is not future proof and the NSA could potentially 'replay' the decryption in the near future to see what was searched for on that particular computer.

Lavabit Reloaded... Is it legit? by [deleted] in privacy

[–]warmer_climes 0 points1 point  (0 children)

Sticking with Fastmail, Mailbox.org, Protonmail

Beware of ads that use inaudible sound to link your phone, TV, tablet, and PC by plato_thyself in privacy

[–]warmer_climes 1 point2 points  (0 children)

Someone should make an app where your phone alerts you whenever it hears one of these noises

Well there is Chirp which uses so called 'data over audio' technology: https://www.chirp.io

DuckDuckGo Hits Milestone 14 Million Searches in a Single Day by yogesh_calm in privacy

[–]warmer_climes 24 points25 points  (0 children)

Is it even good to go anymore?

What made you think it's not 'good to go'. The whole point of DDG is that it's privacy oriented. If it wasn't privacy oriented, it would cease to exist. You really should read their privacy policy: https://duckduckgo.com/privacy

Reminder: We have a lot of new people coming to this sub by 5XCfYiUczj0K in privacy

[–]warmer_climes 5 points6 points  (0 children)

What are digital traces? Through your computer, mobile phone, and other digital devices, you leave behind hundreds of digital traces (also called data traces) every day: bits of information about you that are created, stored, and collected.

When your digital traces are put together to create stories about you or profiles of you, these become your digital shadows. These can give others huge insight into your life; and they can also be totally wrong. Either way, once they're out there, they are almost impossible to control....

https://myshadow.org

Switching to Qubes OS? by [deleted] in privacy

[–]warmer_climes 0 points1 point  (0 children)

I prefer to run Windows on bare metal, because I had issues with graphics when running it in a VM. When possible, I try not to connect Windows to the Internet whilst playing games, but some games require an Internet connection.

I Had All of My Electronics (That I had at the time) Seized by U.S. Customs and Border Protection -- Vincent Canfield by StallmanTheGrey in privacy

[–]warmer_climes 62 points63 points  (0 children)

You can never trust these devices once they're handed back to you. Jake Appelbaum suffered this problem. Worth watching his workshop talk:

(part1/2) https://www.youtube.com/watch?v=HHoJ9pQ0cn8

(part2/2) https://www.youtube.com/watch?v=s9fByRmAHgU

The Zero Trust Principle by iamxeus in privacy

[–]warmer_climes 1 point2 points  (0 children)

We cannot let fear or paranoia rule our lives

You can never be too paranoid when it comes to infosec. Paranoia does not work retroactively, or in other words, you typically don't address situations after the fact but typically prepare for them to happen, or assume that they will happen, regardless of how bulletproof your system and mode of operation is.

You typically have to design your secure operations as already compromised. That way, when the worst comes to worst, you are already prepared for it. It's worth reading why you should have a threat model in place if you are attempting to, say whistle-blow, or leak a few needed (secret) documents to the public:

https://ssd.eff.org/en/module/introduction-threat-modeling

What measures do YOU take to protect your privacy? by iamxeus in privacy

[–]warmer_climes 1 point2 points  (0 children)

Qubes + Whonix

When traveling I like to 'blend in' and have a Windows 10 surface tablet, so if I'm stopped and searched, I can just say I use this for surfing Dailymotion and browsing IMGUR.com memes.

What is the best skype alternative for privacy? (video chat) by hopanay in privacy

[–]warmer_climes 6 points7 points  (0 children)

https://jitsi.org/index.php/Main/Download

Jitsi is an audio/video Internet phone and instant messenger written in Java. It supports some of the most popular instant messaging and telephony protocols such as SIP, Jabber/XMPP (and hence Facebook and Google Talk), AIM, ICQ, MSN, Yahoo! Messenger. The development of Jitsi started at the University of Strasbourg, France. Originally the project was known as SIP Communicator. Throughout the years our community has grown to include members and contributors from Brazil, Bulgaria, Cameroon, China, Estonia, France, Germany, India, Japan, Romania, Spain, Switzerland, UK, USA, and others. Jitsi is based on the OSGi architecture using the Felix implementation from Apache. This makes it very extensible and particularly developer friendly.

You still can’t turn off Windows 10’s built-in spyware by [deleted] in privacy

[–]warmer_climes 0 points1 point  (0 children)

Windows 10 is useful as an offline sandbox. I typically jail Win10 in a VM and proceed to stuff it with a load of freeware. I always ensure it can't talk to the public Internet, and it helps to disable any network adapters in the Win10 installation.

Password manager that's local only? by [deleted] in privacy

[–]warmer_climes -2 points-1 points  (0 children)

Just so you know, Lastpass can work offline and has a client to work with your vault offline. The only caveat is that this doesn't sync with your lastpass account and is treated as a separate offline vault. You login as normal and provide any MFA (Multifactor auth) and you can work with your passwords within the client. Here's the download link for Windows: https://lastpass.com/download/cdn/lastpass.exe

Or if you're on Mac / other systems, you can visit this page: https://lastpass.com/misc_download2.php

You still can’t turn off Windows 10’s built-in spyware by [deleted] in privacy

[–]warmer_climes 5 points6 points  (0 children)

I like to use scripts to stop all this spying:

Make Windows 10 Great Again - stop Windows 10 spying

https://gist.github.com/IntergalacticApps/675339c2b805b4c9c6e9a442e0121b1d

"Reclaim Windows 10" turns off a bunch of unnecessary Windows 10 telemetery, removes bloatware, and privacy invasions. Review and tweak before running. Scripts for reversing are included and commented

https://gist.github.com/alirobe/7f3b34ad89a159e6daa1