Commit Graph

204 Commits

Author SHA1 Message Date
Andy Donzelli
b4afb32e67 Removed: backup codes should be stored in pwd-mgr 2022-04-05 19:27:00 +01:00
Alicia Sykes
ce96a595c5
Updates contributors 2022-04-05 12:31:07 +01:00
Alicia Sykes
6e0987fb27 Adds action to automate contributor table 2022-04-05 12:13:52 +01:00
Aaron Boushley
fc1f194058
Fix link to securityinabox.org that currently 404s 2022-04-04 09:09:29 -07:00
0xnbk
65761e0a21 fix typo 2022-04-04 16:35:14 +05:30
partoneoftwo
1044ac2906
Update README.md
Improved the antivirus section. Clarified what this suggestion means, that the advice is to not use a free antivirus solution from a commercial vendor.
Also fixed a typo, calmAV to ClamAV.
2022-04-04 11:59:05 +02:00
Christian Hemminghaus
ff307bf166
Fix link 2022-02-03 10:19:44 +01:00
Mateusz Konieczny
37dc22d975
fix merge again, something went wron with that online conflict solver 2021-12-01 11:10:43 +01:00
Mateusz Konieczny
eb13683a8f
fix merge 2021-12-01 11:10:04 +01:00
Mateusz Konieczny
840b4dc6f2
Merge branch 'master' into stronger 2021-12-01 11:09:09 +01:00
Alicia Sykes
c410aa9e39
Merge pull request #90 from matkoniecz/patch-7
floating unneded are
2021-11-17 16:43:34 +00:00
Alicia Sykes
ac72021c22
Merge pull request #88 from matkoniecz/patch-5
fix typo
2021-11-17 16:42:23 +00:00
Mateusz Konieczny
c247300c8a
floating unneded are 2021-11-17 11:58:44 +01:00
Mateusz Konieczny
708661ad82
fix typo 2021-11-17 11:54:58 +01:00
Mateusz Konieczny
3f4c51281e
there is no ensurance to be found
using privacy declaring search engine is not ensuring that you are not logged

- they could be lying (see numerous VPN providers claiming no logging and then leaking detailed logs)
- something else can be logging (keylogger, IPS, hacker attacking search engine, shoulder browsing)
2021-11-17 11:54:04 +01:00
Mateusz Konieczny
07caee6df3
Flash died, so it is blocked by default in general 2021-11-05 12:31:05 +01:00
Alicia Sykes
3e5f5362c4
Merge pull request #83 from matkoniecz/patch-5
simplify, clarify emails and sensitive data
2021-11-03 12:12:32 +00:00
Alicia Sykes
4cb24a1c54
Merge pull request #80 from matkoniecz/patch-3
typo fix
2021-11-03 12:10:56 +00:00
Mateusz Konieczny
16c80ab4c4
simplify, clarify emails and sensitive data
using secure email provider and sending unencrypted  email will not help at all

personal info that is not confidential at all is not problematic, so "confidential or personal" is not necessary
2021-11-02 12:37:52 +01:00
Mateusz Konieczny
fb110fcb09
fix typo 2021-11-02 12:34:54 +01:00
Mateusz Konieczny
9b2aaf1ca4
put blocking ads higher
It is very easy (on desktop at least), has powerful effects, doable by anyone.

Also promotes using browser better than Chrome with upcoming defanging adblockers there, has anti-tracking included (in addition to blocking ads with tracking scripts)
2021-11-02 12:12:14 +01:00
Mateusz Konieczny
05af1f6eb0
typo fix 2021-11-02 11:36:37 +01:00
Mateusz Konieczny
7c0f26689a
increase strength of logging in advice 2021-11-02 11:31:07 +01:00
Mateusz Konieczny
903af414b8
remove unrelated link
This was about frequency of attacks on a specific computer in a study, not about data breaches generally (that I suspect to happen more often BTW)
2021-11-02 11:22:52 +01:00
Alicia Sykes
85d2563526
Merge pull request #73 from matkoniecz/patch-2
password hint - you should lie, as usual
2021-11-02 10:10:43 +00:00
Alicia Sykes
1490bf80b5
Merge pull request #67 from matkoniecz/patch-1
do not suggest to rotate all passwords
2021-11-02 10:10:04 +00:00
Mateusz Konieczny
4bc6ad8315
password hint - lie as usual 2021-11-01 17:53:01 +01:00
Mateusz Konieczny
2b97b05200
with 2FA enabled backup codes are critical
Especially if service has true 2FA, with no reset option vulnerable to social engineering 

It will be used rarely or never but given potential for massive damage and "Enable 2-Factor Authentication" at recommended it should be also strongly recommended
2021-11-01 16:10:39 +01:00
Mateusz Konieczny
5460d31d47
do not suggest to rotate all passwords
Text itself limits itself to critical password, and recommending to rotate all passwords is not viable (as a datapoint: my password manager has over 300 passwords for online accounts)
2021-11-01 15:51:15 +01:00
Mateusz Konieczny
e20489844c
rewrite Tor recommedation a bit
- fix typos
- change "optimal security" to "increased security", in many cases it would not be optimal given how many things will break on Tor
- link issues discussing tradeoffs

In general I would make it more clear that it is not always worth doing. Maybe "Advanced" should be "Advanced, has serious tradeoffs" with word tradeoffs linking separate page documenting issues mentioned in #19?
2021-11-01 15:31:28 +01:00
Alicia Sykes
d2c980edf7
Adds Use plaintext email, into email section (#63)
Closes #63
2021-10-31 13:53:03 +00:00
AmadeuszL
1ce7ef4726
Minor typo fixes in README.md 2021-04-03 13:36:45 +02:00
Alicia Sykes
16f5ebfa15
Adds: Image cloaking to help protect against facial recognition in photos 2021-02-07 23:15:44 +00:00
Alicia Sykes
ec4b879fde
Obscure Personal Details from Documents 2021-01-29 22:19:19 +00:00
Andrey Aleksandrov
08e76491ab Minor typo fixes in README.md 2021-01-26 22:46:59 +02:00
notthewave
3f8cce915f
small typing error I found 2021-01-05 10:53:01 +01:00
Alicia Sykes
4243cb97d3
Adds: Prevent Keystroke Injection Attacks 2020-12-06 15:05:13 +00:00
Alicia Sykes
9c08b615c3
Adds: Geo-aware recommendation, for Social Media 2020-12-01 19:37:16 +00:00
Jayson Smith
b91b54ab53
Update Social Media Title
Missed an R on your.
2020-11-11 10:40:58 -07:00
Nick Ali
f67051940e
Update README.md
Transposed words.
2020-09-20 03:16:16 -04:00
Alicia Sykes
81a7546293
Adds additional clarification in finance section 2020-08-19 18:07:47 +01:00
Alicia Sykes
a71a877f25
Spoofing local GPS 2020-08-15 14:20:11 +01:00
Alicia Sykes
69fecec5ae
Adds: Shut down to ensure disk is encrypted 2020-08-13 15:40:40 +01:00
Alicia Sykes
99695e9a04
Adds VM tips in Personal Computer section 2020-08-08 17:56:11 +01:00
Jacob Neplokh
b9987967b1
Replace Copperhead References with GrapheneOS 2020-08-02 23:05:35 -07:00
Alicia Sykes
b5fb6c03fb
Adds Protection from Router CSRF Attack & 5GHz Range 2020-07-29 13:17:30 +01:00
Alicia Sykes
19ff6a4ccb
Adds Protection from Router CSRF Attack 2020-07-29 12:57:21 +01:00
Alicia Sykes
3b1a83a19b
Updates Network Section: Adds lots of WiFi Router Tips 2020-07-29 12:47:20 +01:00
Alicia Sykes
dedae625b3
Email Encryption: Keep Private Key Safe 2020-07-26 17:50:52 +01:00
Alicia Sykes
9bfd7096ef
Mobile Browser V Apps. and Social Media Notes 2020-07-23 18:14:19 +01:00
apraile
87c3d8544a
Fix typo
s/hack/hash
2020-07-12 09:37:16 +00:00
Alicia Sykes
c6e5613892
Adds links to Recommended messaging apps 2020-07-11 18:59:16 +01:00
Alicia Sykes
dfb6fbc114
Updates Icons in Contents List 2020-07-11 18:49:30 +01:00
Alicia Sykes
543dfe1ba5
Adds Secure Messaging Section 💌 2020-07-11 13:31:38 +01:00
Alicia Sykes
d57b4f7d16
Additional Physical Security Measures for PCs 2020-06-20 23:22:17 +01:00
Alicia Sykes
9d3ef4eb2b
Completes Personal Finance & Crypto Section 2020-06-13 15:28:08 +01:00
Alicia Sykes
b9767ed6cc
Adds Physical Security Section 2020-06-13 14:54:33 +01:00
Alicia Sykes
97d345e7d0
Adds additional Operating System security measures 2020-06-09 00:15:41 +01:00
Alicia Sykes
268d8fc84b
Rewrite Personal Computer Section 2020-06-07 21:13:33 +01:00
Alicia Sykes
2d9901e969
Adds Personal Finance section 2020-06-04 15:41:58 +01:00
Alicia Sykes
70cbc3e356
Updates Mobile Section 2020-06-03 20:17:04 +01:00
Alicia Sykes
f410ac3875
Updates mobile intro 2020-06-02 22:13:23 +01:00
Alicia Sykes
a0abc040e2
Shortens Social Media Section, Improves Networking Section 2020-06-01 15:32:18 +01:00
Alicia Sykes
b69f8a8dd1
Shortens Browser Section 2020-06-01 13:20:28 +01:00
Daniel G. Taylor
9bedda5f61
fix: typo 2020-05-26 09:02:51 -07:00
Alicia Sykes
39ad8d6401
Adds WhoIs Protection and Opt-out Notes 2020-05-22 22:59:21 +01:00
Alicia Sykes
b095c33ad5
Updates Networking section 2020-05-21 00:42:17 +01:00
Alicia Sykes
cd90e2b93d
Update README.md 2020-05-18 23:44:27 +01:00
Alicia Sykes
9fde94b36b
A brand new header 2020-05-18 21:47:21 +01:00
Alicia Sykes
8b6021339d
Updates Social Media section 2020-05-18 16:37:10 +01:00
Alicia Sykes
c313e445dc
Adds reference to ZoomInfo email extension 2020-05-18 16:03:19 +01:00
Alicia Sykes
000a9b5377
Re-writes the Email Section 2020-05-17 15:17:05 +01:00
Alicia Sykes
6a2b9b5c75
Updates typos in Browsing section, and shortens 2020-05-17 00:17:21 +01:00
Alicia Sykes
53c7fd0427
Adds additional protection to Browsing section 2020-05-15 23:09:24 +01:00
Alicia Sykes
efa4527e4b
Slightly shortens the new Browser section
... and it's still way too long
2020-05-15 03:38:43 +01:00
Alicia Sykes
52090a730c
Updates levels for new browser section 2020-05-15 03:29:36 +01:00
Alicia Sykes
7ac47de5e1
Rewrote the 'Browser' section 2020-05-15 03:27:41 +01:00
Alicia Sykes
8a5bbe3986
Removes the now replaced 2FA section 2020-05-07 14:20:47 +01:00
Alicia Sykes
58aceb3bfd
Completes authentication section update
Added / Updated the following points withing the Authentication section:
- Shield your Password/ PIN
- Update Passwords Periodically
- Keep Backup Codes Safe
- Sign up for Breach Alerts
- Avoid using SMS for 2FA
- Avoid using your PM to Generate OTPs
- Avoid Face Unlock
- Watch out for Keyloggers
- Consider a Hardware Token
- Consider Offline Password Manager
- Consider Unique Usernames
2020-05-07 14:16:03 +01:00
Alicia Sykes
d41b7cec37
Updates Authentication Section pt1
- Use a strong password
- Don't Reuse Passwords
- Use a Secure Password Manager
- Enable 2-Factor Authentication
2020-05-06 23:07:51 +01:00
Alicia Sykes
8efe8788cd
Adds Forwarding Address 2020-05-04 18:49:27 +01:00
Alicia Sykes
c645f4e4ae
SMS, Opt-Out Caller ID and Public Lists, Restarts 2020-05-03 19:03:41 +01:00
Alicia Sykes
2a96d25f2a
Adds: Sub-addressing and Windows Remote Desktop 2020-05-03 17:25:21 +01:00
Alicia Sykes
13e4705377
Protection from Keyloggers
Adds:
- Avoid 3rd-party sofware keyboards on Android & iOS
- Watch out for keylogging malware
- Recognize hardware keyloggers
2020-05-02 22:14:24 +01:00
Alicia Sykes
34e05e4f99
Adds First Launch Security to Browser Section 2020-04-29 23:38:38 +01:00
Alicia Sykes
2567a0d6a1
Adds IMAP backup and email sharing to Email list 2020-04-28 22:06:47 +01:00
Alicia Sykes
2011a80245
Updates the Email section 2020-04-28 21:26:17 +01:00
Alicia Sykes
3cfbae337e
Adds Virtual Cards 2020-04-26 21:03:18 +01:00
Alicia Sykes
5107f9a80d
Adds Personal Finance Section 2020-04-25 23:42:14 +01:00
Alicia Sykes
b3f34e2b39
Revert "Activating Open Collective" 2020-04-17 18:54:33 +01:00
Jess
d1eb06a395 Added financial contributors to the README 2020-04-17 09:44:34 -07:00
Alicia Sykes
5941b03f9b
Fix broken md syntax 2020-04-06 14:38:59 +01:00
Alicia Sykes
40e75c17d5 Deletes _assets, updates icons 2020-04-06 14:36:02 +01:00
Alicia Sykes
c684964d5a
Fixes links 2020-04-03 01:17:12 +01:00
Alicia Sykes
acc63fbc01
Update README.md 2020-03-31 16:46:55 +01:00
w1nst0n
698f9b2410 Fix a lot of typos, improve some wording & correct some descriptions. 2020-03-30 21:45:22 +02:00
Alicia Sykes
11d1697bab
Adds link to @sbilly/awesome-security 2020-03-24 23:11:59 +00:00
Alicia Sykes
7218abd9ce Adds note about drawbacks of Tor browser #19 2020-03-23 16:21:16 +00:00
Alicia Sykes
a3c2cb1015
Updates Footer 2020-03-22 19:44:53 +00:00
Alicia Sykes
2550b28036
Updates Intro Links (make relative) 2020-03-15 22:50:01 +00:00