{"id":113509,"date":"2016-12-10T12:00:58","date_gmt":"2016-12-10T10:00:58","guid":{"rendered":"https:\/\/mygaming.co.za\/news\/?p=113509"},"modified":"2016-12-10T09:21:14","modified_gmt":"2016-12-10T07:21:14","slug":"hacker-explains-how-to-protect-your-privacy-online","status":"publish","type":"post","link":"https:\/\/mygaming.co.za\/news\/features\/113509-hacker-explains-how-to-protect-your-privacy-online","title":{"rendered":"Hacker explains how to protect your privacy online"},"content":{"rendered":"<p>Protecting individual privacy from government intrusion is older than American democracy. In 1604, the attorney general of England, Sir Edward Coke, ruled that <a href=\"http:\/\/groups.csail.mit.edu\/mac\/classes\/6.805\/admin\/admin-fall-2005\/weeks\/semayne.html\">a man\u2019s house is his castle<\/a>. This was the official declaration that a homeowner could protect himself and his privacy from the king\u2019s agents.<\/p>\n<p>That lesson carried into today\u2019s America, thanks to our Founding Fathers\u2019 abhorrence for <a href=\"https:\/\/theconversation.com\/feds-we-can-read-all-your-email-and-youll-never-know-65620\">imperialist Great Britain\u2019s unwarranted search and seizure<\/a> of personal documents.<\/p>\n<p>They understood that everyone has something to hide, because human dignity and intimacy don\u2019t exist if we can\u2019t keep our thoughts and actions private. As citizens in the digital age, that is much more difficult. Malicious hackers and governments can monitor the most <a href=\"http:\/\/www.barrons.com\/articles\/no-such-thing-as-privacy-in-the-modern-campaign-1455944517\">private communications, browsing habits and other data breadcrumbs<\/a> of anyone who owns a smartphone, tablet, laptop or personal computer.<\/p>\n<p>President-elect Donald Trump\u2019s <a href=\"http:\/\/townhall.com\/columnists\/timsummers\/2016\/02\/19\/you-have-something-to-hide-n2121644\">criticism of<\/a> <a href=\"http:\/\/www.theverge.com\/2016\/2\/17\/11031910\/donald-trump-apple-encryption-backdoor-statement\">encryption technology<\/a> and <a href=\"http:\/\/fortune.com\/2016\/11\/09\/trump-encryption-surveillance-policy\/\">interest in expanding government surveillance<\/a> have <a href=\"http:\/\/www.forbes.com\/sites\/valleyvoices\/2016\/11\/30\/how-a-trump-presidency-will-erode-cyber-privacy-and-national-security\/\">technologists and civil libertarians deeply concerned<\/a>.<\/p>\n<p>As an ethical hacker, my job is to help protect those who are unable, or lack the knowledge, to help themselves. People who <a href=\"http:\/\/rave.ohiolink.edu\/etdc\/view?acc_num=case1427809862\">think like hackers<\/a> have some really good ideas about how to protect digital privacy during turbulent times.<\/p>\n<p>Here\u2019s what they \u2013 and I \u2013 advise, and why. I have no affiliation or relationship with any of the companies listed below, except in some cases as a regular user.<\/p>\n<h3 class=\"my-4\">Phone calls, text messaging and email<\/h3>\n<p>When you\u2019re communicating with people, you probably want to be sure only you and they can read what\u2019s being said. That means you need what is called \u201cend-to-end encryption,\u201d in which your message is transmitted as encoded text. As it passes through intermediate systems, like an email network or a cellphone company\u2019s computers, all they can see is the encrypted message. When it arrives at its destination, that person\u2019s phone or computer decrypts the message for reading only by its intended recipient.<\/p>\n<p>For phone calls and private text-message-like communication, the best apps on the market are <a href=\"https:\/\/www.whatsapp.com\/\">WhatsApp<\/a> and <a href=\"https:\/\/whispersystems.org\/\">Signal<\/a>. Both use end-to-end encryption, and are free apps available for iOS and Android. In order for the encryption to work, both parties need to use the same app.<\/p>\n<p>For private email, <a href=\"https:\/\/tutanota.com\/\">Tutanota<\/a> and <a href=\"https:\/\/protonmail.com\/\">ProtonMail<\/a> lead the pack in my opinion. Both of these Gmail-style email services use end-to-end encryption, and store only encrypted messages on their servers. Keep in mind that if you send <a href=\"https:\/\/tutanota.com\/blog\/posts\/encryption-percentage\">emails to people not using a secure service<\/a>, the emails may not be encrypted. At present, neither service supports PGP\/GPG encryption, which could allow security to extend to other email services, but they are reportedly <a href=\"https:\/\/protonmail.com\/support\/knowledge-base\/sending-a-message-using-pgppgp\/\">working on it<\/a>. Both services are also free and based in <a href=\"http:\/\/dx.doi.org\/10.1145\/2852233\">countries with strong privacy laws<\/a> (Germany and Switzerland). Both can be used on PCs and mobile devices. My biggest gripe is that neither yet offers two-factor authentication for additional login security.<\/p>\n<h3 class=\"my-4\">Avoiding being tracked<\/h3>\n<p>It is less straightforward to privately browse the internet or use internet-connected apps and programs. Internet sites and services are complicated business, often involving loading information from many different online sources. For example, a news site might serve the text of the article from one computer, photos from another, related video from a third. And it would connect with Facebook and Twitter to allow readers to share articles and comment on them. Advertising and other services also get involved, allowing site owners to track how much time users spend on the site (among other data).<\/p>\n<p>The easiest way to protect your privacy without totally changing your surfing experience is to install a small piece of free software called a \u201cbrowser extension.\u201d These add functionality to your existing web browsing program, such as Chrome, Firefox or Safari. The two privacy browser extensions that I recommend are <a href=\"https:\/\/github.com\/gorhill\/uBlock\">uBlock Origin<\/a> and <a href=\"https:\/\/www.eff.org\/privacybadger\">Privacy Badger<\/a>. Both are free, work with the most common web browsers and block sites from tracking your visits.<\/p>\n<h3 class=\"my-4\">Encrypting all your online activity<\/h3>\n<p>If you want to be more secure, you need to ensure people can\u2019t directly watch the internet traffic from your phone or computer. That\u2019s where a virtual private network (VPN) can help. Simply put, a VPN is a collection of networked computers through which you send your internet traffic.<\/p>\n<p>Instead of the normal online activity of your computer directly contacting a website with open communication, your computer creates an encrypted connection with another computer somewhere else (even in another country). That computer sends out the request on your behalf. When it receives a response \u2013 the webpage you\u2019ve asked to load \u2013 it encrypts the information and sends it back to your computer, where it\u2019s displayed. This all happens in milliseconds, so in most cases it\u2019s not noticeably slower than regular browsing \u2013 and is far more secure.<\/p>\n<p>For the simplest approach to private web browsing, I recommend <a href=\"https:\/\/www.f-secure.com\/en_US\/web\/home_us\/freedome\">Freedome by F-Secure<\/a> because it\u2019s only a few dollars a month, incredibly easy to use and works on computers and mobile devices. There are other VPN services out there, but they are much more complicated and would probably confuse your less technically inclined family members.<\/p>\n<h3 class=\"my-4\">Additional tips and tricks<\/h3>\n<p>If you don\u2019t want anyone to know what information you\u2019re searching for online, use <a href=\"https:\/\/duckduckgo.com\/\">DuckDuckGo<\/a> or <a href=\"https:\/\/search.f-secure.com\/\">F-Secure Safe Search<\/a>. DuckDuckGo is a search engine that doesn\u2019t profile its users or <a href=\"https:\/\/duckduckgo.com\/privacy\">record their search queries<\/a>. F-Secure Safe Search is not as privacy-friendly because it\u2019s a collaborative effort with Google, but it provides a <a href=\"https:\/\/search.f-secure.com\/about\">safety rating for each search result<\/a>, making it a suitable search engine for children.<\/p>\n<p>To add security to your email, social media and other online accounts, enable what is called \u201c<a href=\"https:\/\/www.turnon2fa.com\/\">two-factor authentication<\/a>,\u201d or \u201c2FA.\u201d This requires not only a user name and password, but also another piece of information \u2013 like a numeric code sent to your phone \u2013 before allowing you to log in successfully. Most common services, like <a href=\"https:\/\/www.google.com\/landing\/2step\/\">Google<\/a> and <a href=\"https:\/\/www.facebook.com\/TurnOn2FA\">Facebook<\/a>, now support 2FA. Use it.<\/p>\n<p>Encrypt the data on your phone and your computer to protect your files, pictures and other media. Both <a href=\"https:\/\/ssd.eff.org\/en\/module\/how-encrypt-your-iphone\">Apple iOS<\/a> and <a href=\"http:\/\/www.greenbot.com\/article\/2145380\/why-and-how-to-encrypt-your-android-device.html\">Android<\/a> have settings options to encrypt your mobile device.<\/p>\n<p>And the last line of privacy defense is you. Only give out your personal information if it is necessary. When signing up for accounts online, do not use your primary email address or real phone number. Instead, create a throw-away email address and get a <a href=\"https:\/\/www.google.com\/voice\">Google Voice number<\/a>. That way, when the vendor gets hacked, your real data aren\u2019t breached.<\/p>\n<p><a href=\"https:\/\/theconversation.com\/profiles\/timothy-summers-316817\">Timothy Summers<\/a>, Director of Innovation, Entrepreneurship, and Engagement, <em><a href=\"http:\/\/theconversation.com\/institutions\/university-of-maryland-1347\">University of Maryland<\/a><\/em><\/p>\n<hr \/>\n<p>This article was originally published on <strong><a href=\"http:\/\/theconversation.com\">The Conversation<\/a><\/strong>. Read the <strong><a href=\"https:\/\/theconversation.com\/protect-your-privacy-during-turbulent-times-a-hackers-guide-to-being-cyber-safe-69026\">original article<\/a>.<\/strong><\/p>\n<h4><strong>Now read:\u00a0<a title=\"Permalink to The harsh truth \u2013 South Africa\u2019s multiplayer pings can\u2019t get better\" href=\"https:\/\/mygaming.co.za\/news\/broadband\/112861-the-harsh-truth-south-africas-multiplayer-pings-cant-get-better.html\" rel=\"bookmark\">The harsh truth \u2013 South Africa\u2019s multiplayer pings can\u2019t get better<\/a><\/strong><\/h4>\n","protected":false},"excerpt":{"rendered":"<p>A hacker&#8217;s guide to being cyber-safe.<\/p>\n","protected":false},"author":220,"featured_media":97820,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_sma_x_autopost_enabled":true,"_sma_x_custom_text":"","_sma_x_autopost_status":"idle","_sma_x_autopost_error":"","_sma_x_post_id":"","_sma_x_attempts":0,"footnotes":""},"categories":[20],"tags":[17704,18385,8882],"class_list":["post-113509","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-features","tag-conversation","tag-cybersecurity","tag-hacker"],"_links":{"self":[{"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/posts\/113509","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/users\/220"}],"replies":[{"embeddable":true,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/comments?post=113509"}],"version-history":[{"count":1,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/posts\/113509\/revisions"}],"predecessor-version":[{"id":113511,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/posts\/113509\/revisions\/113511"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/media\/97820"}],"wp:attachment":[{"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/media?parent=113509"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/categories?post=113509"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mygaming.co.za\/news\/wp-json\/wp\/v2\/tags?post=113509"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}