Debunking Cybersecurity Myths

Cybersecurity expert Eva Galperin -- @evacide -- helps debunk some common myths about cybersecurity.

☑️​ Is the government watching you through your computer camera?

☑️​ Does Google read all your Gmail?

☑️​ Does a strong password protect you from hackers?

☑️​ Will encryption keep my data safe?

☑️​ Are all hackers bad people?

Eva answers all these questions and much more using clear language that's easy to understand.

Eva Galperin is the Director of Cybersecurity at the Electronic Frontier Foundation -- @eff

Rathedr read than listen? A helpful transcript is available.

wired.com/video/watch/expert-d





#infosec #cybersecurity #BeCyberSmart #moreThanAPassword #infosectraining #diceware #encryption #passwords #passwordmanagers #publicwifi #vpn #eff #electronicfrontierfoundation

Last updated 3 years ago

Which Password Manager Is Better?
Standalone or Built-In?

Tavis Ormandy Sounds Off

Should ordinary folks use a separate, standalone Password Manager, or the Password Manager built into their browser?

Tavis Ormandy is an Information Security Engineer from England currently employed by Google as a member of their Project Zero team.

After discussing various technical problems with password managers, and after downplaying the need for "nuance," Tavis says:

"If you want to use an online password manager, I would recommend using the one already built into your browser. They provide the same functionality, and can sidestep these fundamental problems with extensions.

I use Chrome, but the other major browsers like Edge or Firefox are fine too. They can isolate their trusted UI (user interface) from websites, they don’t break the sandbox security model, they have world-class security teams, and they couldn’t be easier to use."

Tavis also recommends writing down and securely storing passwords.

Thinking about what would work best for most people, where do you think this advice lands?

Good idea, bad idea, or somewhere in between?







lock.cmpxchg8b.com/passmgrs.ht

#infosec #cybersecurity #BeCyberSmart #moreThanAPassword #infosectraining #passwords #passwordmanagers

Last updated 3 years ago

Debunking Cybersecurity Myths

Cybersecurity expert Eva Galperin -- @evacide -- helps debunk (and confirm!) some common myths about cybersecurity.

☑️​ Is the government watching you through your computer camera?

☑️​ Does Google read all your Gmail?

☑️​ Does a strong password protect you from hackers?

☑️​ Will encryption keep my data safe?

☑️​ Are all hackers bad people?

Eva answers all these questions and much more using clear language that's easy to understand.

Eva Galperin is the Director of Cybersecurity at the Electronic Frontier Foundation -- @eff

A helpful transcript is available.

wired.com/video/watch/expert-d





:boost_ok:​ Feel free to share (boost) this post with all those who follow you by clicking the cycled-arrow icon below.

:mastodon: ​Here on Mastodon, boosting doesn’t elevate a post through any algorithmic shenanigans. Everyone who follows you gets to see the post (“toot”) without the platform interfering.

#electronicfrontierfoundation #infosec #cybersecurity #BeCyberSmart #moreThanAPassword #infosectraining #diceware #encryption #passwords #passwordmanagers #publicwifi #vpn #eff

Last updated 3 years ago

DaveKSecure · @davek
91 followers · 14 posts · Server infosec.exchange

RT @CISAJen@twitter.com

🛡️🚨Black Friday reminder—when you are buying a gift, remember that MFA is still the most important way to protect your accounts & reduce your cybersecurity risk: cisa.gov/mfa twitter.com/cisajen/status/149

🐦🔗: twitter.com/CISAJen/status/159

#enablemfa #moreThanAPassword

Last updated 3 years ago

Password Managers, when used correctly, make online life so much simpler.

But if they’re so awesome, why do only 7% of adults use Password Manager apps, and only 6% of adults save passwords in their browser’s built-in Password Manager?

In the before times, when I was still what some of you would call a “normie,” whenever someone suggested I use a Password Manager, my response was . . . “I’m busy here — can’t you see I’m busy? Why are you asking me to do ONE. MORE. THING? Advice delivered this way felt more like an imposition than an invitation.

Eventually . . . waaay too late in the game (sorry to say) I tried a Password Manager. What an eye-opening experience. Now I’m a raving fan.

Password Managers create long, truly complex passwords composed of random characters that look like r8:W3=7uU0VpcS; impossible to remember but — that's the point. Correctly using a Password Manager means ordinary consumers are:

Free from the *chore* of thinking up passwords.
Free from the *burden* of memorizing passwords.
Free from the *worry* of forgetting passwords.
Free from the *bother* of typing passwords.
Free from the *hassle* of frequently resetting passwords.

Using a Password Manager also massively shortens the length of the interruption in the consumer’s “flow” as they do their thing online. Nobody likes to be interrupted.

By locking their devices when they walk away from them, and correctly using a Password Manager, consumers don't even have to know what their passwords *are.* Ordinary users can eliminate 95% of the pain of passwords. Right Now. Today. Not sometime in the future.

This is our current reality.

Password Managers make our online lives easier.

Is there a way to fine-tune the messaging directed at ordinary consumers to help them grasp the benefits?



:boost_ok:​ Feel free to share (boost) this post with all those who follow you by clicking the cycled-arrow icon below.

:mastodon: ​Here on Mastodon, boosting doesn’t elevate a post through any algorithmic shenanigans. Everyone who follows you gets to see the post (“toot”) without the platform interfering.

#passwords #passwordmanager #moreThanAPassword

Last updated 3 years ago

Alaric Aloor🐕🏎⚽️🥃 · @alaric
348 followers · 753 posts · Server ioc.exchange

RT @boblord
Listen to David S Pumpkins…

…before it’s too late!!
🔐

#moreThanAPassword

Last updated 3 years ago