This is the hardest problem. No feasible way to download & open attachments on Microsoft OS and have that machine be safe. Windows has been and is a security nightmare. Forward/open all attachments in: an iPad or iPhone or a Chromebook. On Windows, only open them in Google Drive.
-
-
WhatsApp retains metadata (who talks with whom and when) but Facebook cannot access the content because it's end-to-end encrypted. Great option for people who aren't on Signal—many people are already on WhatsApp and sometimes you can't switch people.https://twitter.com/karmel80/status/943490216668614657 …
Show this thread -
There is no other option on the phone market for ordinary people. If you care about security and privacy, you have to be on an iOs device. Secure enclave plus a whole bunch of other structural and hardware settings compel this choice https://twitter.com/EvansRyan202/status/943490767154307072 …
This Tweet is unavailable.Show this thread -
Protect your phone (iPhone!) like a hawk, just like your personal email. Long, difficult passcode. For TouchID: in the US, you can be *compelled* by law to put your finger on your phone. You cannot be made to cough up your passcode. Consider your risks.https://www.theatlantic.com/technology/archive/2016/05/iphone-fingerprint-search-warrant/480861/ …
Show this thread -
After all of this: remember, any conversation is as secure as the weakest link. Most likely way something gets out is... the other end of the conversation, not some expensive hack. Always ponder the recipient/group (and the size of the group) when typing something online.
Show this thread -
I don't mean to make people paranoid! I make bad jokes on many platforms. :-D But it make sense to have a workable, reasonable security set-up hardware and software wise, and just exercise caution especially if you are a journalist/activist or anyone at risk of being targeted.
Show this thread -
If you like the convenience of TouchID (and your fingerprint is stored locally though I have concerns about normalizing biometrics as ID), at least remember this. You can quickly disable TouchID with five taps depending on your İphone make. Try it out.https://www.imore.com/how-quickly-disable-touch-id-when-you-need-extra-security …
Show this thread -
For truly high-risk work (investigating a powerful nation-state or a corporation), this is great advice. Get a second dedicated device. You can get a Chromebook for under $200. No excuse for newspaper/investigative work. Segmentation is the best security. https://twitter.com/43blah/status/943496408635764736 …
This Tweet is unavailable.Show this thread -
TouchID has it uses, for sure. Guards against shoulder-surfing. But has downsides, too. I don't tell people not to use it, but consider the issue (which is explained more upthread).https://twitter.com/bitmaker_me/status/943640165230166016 …
Show this thread -
People, take note. Phishing attempts to journalists are basically industrialized, best defense is two-factor authentication preferably with security key—if unavailable, code generators. https://twitter.com/josephfcox/status/944119363954765824?s=17 …
This Tweet is unavailable.Show this thread
End of conversation
New conversation -
-
-
Any settings in iPhone to be wary of? Like let’s say, Airdrop?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
) but it will do.