-
8 votes
-
Into the web multiverse
6 votes -
NSA whistleblower dropped from Australian cyber conference at the last minute
6 votes -
Elevator hacking: From the pit to the penthouse
16 votes -
How a double-free bug in WhatsApp for Android could be turned into a remote code execution vulnerability
6 votes -
New SIM attacks de-mystified, protection tools now available
6 votes -
DoorDash data breach - Affects approximately 4.9 million consumers, Dashers, and merchants who joined before April 6, 2018
12 votes -
Ring says it doesn't use facial recognition, but it has “a head of face recognition research”
16 votes -
New DDoS vector observed in the wild leveraging WS-Discovery for amplification, attacks hitting 35 Gbps
11 votes -
What's your cloud/syncing setup for files, pics, mail, bookmarks, etc?
So I've spent the last few days trying to sync everything up between devices, with the following thoughts in mind: how fucked am I going to be if a device gets corrupted/stolen/lost? how can I...
So I've spent the last few days trying to sync everything up between devices, with the following thoughts in mind:
- how fucked am I going to be if a device gets corrupted/stolen/lost?
- how can I easily access everything I need from a mobile device/device not belonging to me?
- how can I avoid using services from the big tech companies, and keep things open source, as much as possible?
I'm by no means an expert in the field, and I'm hoping in this thread to get a discussion going as to the pros and cons of using different services/setups, to get a general idea as to what others are doing to keep their daily lives simpler and more secure, and to perhaps see what are the future steps for me to take when I feel like playing around again.
Servers & Storage
I span up a 25GB VPS with Vultr for 'active use data', and also took out some 'deep storage'(?) from Wasabi for things which I need to keep, but not really access that much.Mail
Protonmail with custom domain. Using the ProtonMail app for mobile, and Linux ProtonMail bridge with Evolution mail for desktop.Pics/Vids
Nextcloud autoupload feature on mobile automatically uploads my pics to an 'autoupload' folder on Nextcloud server. Here, I categorise pics into folders and share what needs sharing before deleting anything I don't need and wiping the pics on my phone.Passwords
Nothing yet. Looking at getting KeyPass synced across devices.Bookmarks
Again, nothing yet. Had Firefox Sync running to connect Fennec and Firefox, but am looking for a more open approach which involves Nextcloud somehow, and allows me to tag and order things more effectively as opposed to dragging things around in the sidebar.Calendar/Contacts
Evolution calendar on desktop, simple calendar on mobile, hooked up to Nextcloud and all synced using davx5Programs and General Setup
Here, I'd like to somehow take an image/backup of my Ubuntu configs of importance and experiment with getting my setup and customisaitons replicated on another machine quickly and without taking up too much space in storage (i.e. don't need to bakckup all my files as they're already on cloud).Also, I am very curious as to whether anybody is using Syncthing across their devices? And if so, how are they finding the experience?
22 votes -
If you’re not using SSH certificates you’re doing SSH wrong
9 votes -
The stakes are too high for Apple to spin the iPhone exploits
6 votes -
A very deep dive into iOS Exploit chains found in the wild
4 votes -
"Satori" Internet-of-Things botnet operator Kenneth Currin Schuchman pleads guilty
5 votes -
Twitter CEO Jack Dorsey's account was compromised, sent public tweets and retweets including racial slurs
17 votes -
Kernel Panic - The world's first cyber crime: The Morris Worm
5 votes -
Mozilla takes action to protect users in Kazakhstan
26 votes -
Security researchers find several bugs in Nest security cameras
10 votes -
The researcher who published the Steam Windows privilege-escalation exploit two weeks ago has published a second zero-day
13 votes -
Yubico releases the first Lightning security key for iPhones
8 votes -
Absolute scale corrupts absolutely
5 votes -
Wirecutter has selected TunnelBear and Mullvad as the best current VPN services, and written extensively about how they made this decision
26 votes -
Apple files lawsuit against virtualization company Corellium for selling ‘perfect replicas’ of iOS
5 votes -
Report: Data Breach in Biometric Security Platform Affecting Millions of Users
8 votes -
Denmark mulls tighter border checks with Sweden after Copenhagen bombing – Swedish man arrested over the bombing of a government agency
5 votes -
Down the Rabbit Hole: Reverse-engineering the Windows Text Services Framework and discovering major vulnerabilities that have existed for almost 20 years
8 votes -
Recognizing basic security flaws in local password managers
19 votes -
Netflix has discovered multiple vulnerabilities in HTTP/2 implementations that can be used in denial of service attacks
14 votes -
Extended Validation Certificates are (Really, Really) Dead
8 votes -
Consumer Reports' testing finds that many wireless routers lack basic security protections
12 votes -
Say cheese: Ransomware-ing a DSLR camera
11 votes -
Coinbase describes their investigation and response to a sophisticated phishing attack on their employees utilizing two Firefox zero-day vulnerabilities
10 votes -
WhatsApp protocol decryption for chat manipulation and more
7 votes -
The Fully Remote Attack Surface of the iPhone
8 votes -
New ‘warshipping’ technique gives hackers access to enterprise offices
8 votes -
Local Privilege Escalation exploit found in Steam Windows client - Valve rejected the report, and HackerOne tried to forbid disclosure
12 votes -
Sneaker and fashion marketplace StockX was hacked, with almost seven million records stolen
9 votes -
An Introduction to Mobile Networks, SIM Cards, and GSM.
9 votes -
Ottawa city hall has been targeted by cyber attacks more than 8,000 times in the past year
8 votes -
Everything cops say about Amazon's Ring is scripted or approved by Ring
18 votes -
Security researchers at Google Project Zero discovered and responsibly disclosed the recently patched iMessage based Apple iOS vulnerability
7 votes -
What password manager, if any, would you recommend?
After being skeptic of password managers for a long time, I've decided to take the plunge and get one installed. The burden of remembering dozens of passwords is simply getting a bit too much. So,...
After being skeptic of password managers for a long time, I've decided to take the plunge and get one installed. The burden of remembering dozens of passwords is simply getting a bit too much. So, I was wondering if anyone here has any recommendations of password managers? Maybe one you or a trusted friend use? Or maybe you think password managers are rubbish, and want to share you opinion?
Any suggestions are welcome, in the interest of fostering discussion/having the thread be useful to other people too. But in my specific use case, I want to be able to sync between devices. I'd prefer something open source, but it's not a requirement.
25 votes -
Slack Security Incident for Keybase CEO
20 votes -
The PGP Problem
12 votes -
Gotta catch 'em all: Understanding how IMSI-catchers exploit cell networks
4 votes -
Gotta catch 'em all: Understanding how IMSI-catchers exploit cell networks
6 votes -
The sinkhole that saved the internet: Keeping the 'kill switch' alive is the only thing preventing another WannaCry outbreak
20 votes -
Microsoft admitted to private Linux developer security list
13 votes -
The Mac client for Zoom (video-conferencing app) allows any site to enable your camera and connect you to a call, and leaves a web server running on your machine even if you uninstall it
29 votes -
YouTube now bans instructional hacking and phishing
31 votes