Tag: security

Google’s Revamped Gmail Could Take Encryption Mainstream

Illustration: WIRED Encryption is the best way to protect your online communications from the prying eyes of the National Security Agency. So says NSA whistleblower Edward Snowden. The rub is that email encryption systems like PGP – short for Pretty Good Privacy – are a real pain for people to use, especially if they’re not steeped in the minutiae of computing. That means few people use PGP, and those who do are in danger of using it incorrectly. But it looks like Google is trying to change that. According to Venture Beat, the search giant working to create a new version of Gmail that makes PGP encryption far easier to use. Google didn’t respond to our request for comment on the story, and even if …

See original article taken from here:

Google’s Revamped Gmail Could Take Encryption Mainstream

Try the Super-Secure USB Drive OS That Edward Snowden Insists on Using

We all know that Edward Snowden insists on secure email, but he’s also very picky about his operating systems, too. In fact, he uses a free, super-secure version of Linux called Tails that fits on a USB stick and can be used on any computer without leaving a trace.Linux installs on USB sticks are nothing new, sure. But Tails is an operating system optimized for anonymity – and it’s used by the likes of Edward Snowden and Glenn Greenwald to keep their digital lives as secure as possible. In its developers’ words:Tails is a live system that aims to preserve your privacy and anonymity. It helps you to use the Internet anonymously and circumvent censorship almost anywhere you go and on any computer but leaving …

Read Original Article Here:

Try the Super-Secure USB Drive OS That Edward Snowden Insists on Using

Secunia PSI 1.5 is out…

Download it now: http://secunia.com/vulnerability_scanning/personal/ Secuina PSI is a great Windows application to give you visibility into what security threats are sitting on your computer. There are so many pieces and parts of software that can be easily compromised… how do you keep up with all the updates? Use Secuina PSI. It is free for personal use and I don’t compute without it. Not only does it show you what has an issue but gives direct links on how to fix it. Cool.


Also published on Medium.

Trust, but verify

Trust, but verify

We are at an inflection point in our lifetimes. The Internet is broken, seriously broken. Why is it broken you ask? The root cause is trust, that there is trust built into the fabric of the Internet.

Each part that works in the Internet trusts the other parts, think DNS, BGP and the like. When these were designed they were all designed in a framework where they could trust each other. I co-opted Ronald Reagan’s phrase of “trust but verify” for a previous company I started, which was involved in corporate email forensics, that we should trust our corporate email users but be able to verify what is passing thru that system.

Almost all of the systems currently in use on the Internet are based on implicit trust. This has to change. The problem is that these systems are so embedded in our everyday lives that it would be, sort of like, changing gravity, very difficult. There are many things that can be done and are being done, but the fact is they are almost all band-aids and do not really offer any substantial lurch forward.

Or we could really fix it, how about we start with not allowing spoofed IP packets to be routed by ISPs, this would go a long way toward reducing the risk, of course so would IPv6 and DNSSEC. But until something radical is done we should say “Houston, we have a problem!” So, as I said in a recent TV interview, if you are concerned about privacy, identity theft and the like, simply don’t use the Internet. I am out of time for now; I need to go check my bank balance!

© 2024 Paul Parisi

Theme by Anders NorénUp ↑