privacy

This magazine is from a federated server and may be incomplete. Browse more on the original instance.

Scraft161,
@Scraft161@tsukihi.me avatar

Hardware security key options?

I've been thinking about getting a hardware security key and have heard of yubikey before; but I want to see what my options are and if they are worth it in your opinion.
My current setup is a local KeePassXC database (that I sync between my PC and phone and also acts as TOTP authenticator app), I know that KeePass supports hardware keys for unlocking the database.

I am personally still of the belief that passwords are the safest when done right; but 2FA/MFA can greatly increase security on top of that (again, if done right).
The key work work together with already existing passwords, not replace them.

As I use linux as my primary OS I do expect it to support it and anything that doesn't I will have to pass on.

PS: what are the things I need to know about these hardware keys that's not being talked about too much, I am very much delving into new territory and want to make sure I'm properly educated before I delve in.

@linux @technology @technology @privacy

Sarcasmo220,

When I did some research on hardware keys I was between Yubikey and Nitrokey. I ended up going with Yubikey because KeepassXC supported it.

Something to keep in mind is purchasing a backup key. I bought one for my wife and we use each other’s as a backup.

For KeepassXC it does not support registering multiple keys (at least not that I have figured out), so I have a copy of my database where it uses my wife’s key as a backup.

stark, (edited )

In my research, I’ve found SoloKeys may be a US company. They are headquartered in New Jersey and one Co-founder is in New York City. However, according to their WhoIs data, the domain was registered in Iceland.

From SoloKey’s Solo 2A+ NFC Security Key product page “Made and programmed in Europe.” solokeys.com/products/solo-2a-nfc-security-key?va…

thenexusofprivacy,
@thenexusofprivacy@infosec.exchange avatar

House Judiciary Committee advances FISA Section 702 bill with warrant requirements, 35-2

Sen. Ron Wyden says "This is great news for anyone who cares about protecting their privacy from government overreach."

So far the only coverage is @tonya_riley's paywalled Bloomberg News article

https://news.bloomberglaw.com/ip-law/house-panel-oks-bill-to-renew-rein-in-electronic-surveillance

The bill is H.R. 6570, the Protect Liberty and End Warrantless Surveillance Act, sponsored by Rep. Andy Biggs (R-AZ). It has a lot of similarities to the bipartisan Government Surveillance Reform Act (where Wyden and Sen. Mike Lee are the Senate sponsors). But there are other bills potentially moving forward as well.... (1/3)

@privacy

EveryMuffinIsNowEncrypted,
@EveryMuffinIsNowEncrypted@lemmy.blahaj.zone avatar

grasps pearls around neck

Imagine the scandel!

possiblylinux127,

The worlds on a role at this point

voxel, (edited )
@voxel@infosec.exchange avatar

is making the watching experience worse on and Microsoft Edge.

I didn't believe it the first time I heard abt it, since it sounded more like a conspiracy theory than a actual thing, but it's true. Google does add 5s timeout specifically to Firefox and Edge users when they try to watch a video on YT. If you want to know more about it, Mental Outlaw make a very good video abt it (Link: https://youtu.be/v4gXhmzQztE ). I think Google did this, to get people moving to Chrome since the majority will think this is a browser issue, nobody would expect YouTube to purposely doing this. In the attached Screenshot you can see that YouTube checks the user agent of browsers to see if it's Edge, Firefox or not. You can bypass this by changing your User agent to chrome.

Edit: Due a lot of people saying a lot of different things abt it, I want to say that I'm not 100% sure abt how exactly this works, there is a inbuild delay by Google, but who is actually affected, there are a lot of different opinions abt it. I wasn't able to verify this myself in LibreWolf, but this could be the case due my intensive hardening I did and this is just a result of what I found in the code and what Mental Outlaw and others shared across social media, if you got different or additional infos abt this feel free to comment and I suggest everyone ti also check the comment section.

@privacy

KarnaSubarna,
@KarnaSubarna@lemmy.ml avatar

NUKED the problem in a SINGLE post 😜

pkill,

Not my ss

melroy,
@melroy@kbin.melroy.org avatar

I saw today the infamous pop-up of YouTube again that they will block the video player after 2 more videos if I keep using uBlock Origin. ** Google.

melroy,
@melroy@kbin.melroy.org avatar

@mateomaui This was in Firefox on my desktop machine. I don't have iOS but under Android I installed ReVananced works great! https://revanced.net/youtube-revanced (it also needs microG: https://revanced.net/microg)

whysofurious,
@whysofurious@sopuli.xyz avatar

There’s also yattee for iOS, which works with invidious and Piped too github.com/yattee/yattee

voxel,
@voxel@infosec.exchange avatar

Good news! Brave for Android now let's u use your favorite uBlock Origin Blocklists!

Under Settings > Brave Shields & privacy

Can you now add custom filterlists and edit Brave's default selection of the already avaible filterlists. Some of you now that this was possible before too (via brave://adblock) but at this time it had no UI and wasn't a official feature, now you can easily add, remove and customize fiterlists via the the settings.

@privacy

notsofunnycomment,
@notsofunnycomment@mander.xyz avatar

Don’t use Brave.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • privacy@lemmy.ml
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #