Encrypt Everything
encrypteverything.ca
encrypteverything.ca
Ubuntu allows you to set up an encrypted LVM on a whole drive with a single setting in the installer. Just grab the ISO with the alternate installer[1] and choose "use the whole disk for encrypted LVM" (or compatible) in the partitioning tool. The installer also allows for advanced configuration, like setting up swap and /tmp on partitions encrypted with one-time keys, while still making it fairly difficult to screw up.
Tails comes with preinstalled and preconfigured Tor and I2P and, what's important, with almost all other connectivity blocked. Just download it[2], verify the signatures, and put on a USB key. Right now, it's difficult to add persistent storage[3] but they're working on it. Also, as an additional precaution, physically removing the USB key will make Tails shut down and wipe memory.
[1] http://www.ubuntu.com/download/ubuntu/alternative-download#a... [2] https://tails.boum.org/index.en.html [3] https://tails.boum.org/forum/How_do_I_do_what_unetbootin_doe...
Privacy doesn't work like that. It isn't set-it-and-forget-it. If you aren't constantly policing yourself, all the full-disk encryption and Tor networks in the world can't keep you anonymous.
Most people in the USA have locks that can be picked in 10 seconds with an auto jiggler and windows that can be broken with a large rock. Most people don't have walls, interior locks and bars that will start making thieves to carry power tools. Yet that is enough to stop a lot of casual theft.
It's even more important to start encrypting everything when agencies like the NSA are building datacenters of never-before-seen size to store everyone's communications forever. Without getting too tin-foil-hat about things, it's not a big stretch for me to imagine--given what NSA is publicly doing today--a world where the government can pull up things you said in an offhand email two decades ago as evidence against you.
Encryption everywhere is so important now and will only get more important as governments wise up to technology. Someone needs to make it easy for people to do.
[1] https://www.torproject.org/download/download-easy.html.en
Most people would never imagine online banking and shopping without encryption. Neither would the financial institutions or the stores.
However, widespread use of encryption seems to come to an end there.
I thought differently about this in the past, but today I wonder if widespread encryption for the mass market would weaken their own security. Sending someone an encrypted message does not protect that message if the receiver passes it along on unencrypted channels.
The rumor of Wikileaks collecting a good deal of secret documents through Tor nodes makes one wonder if even few of the "elite" really understand security and encryption.
I would like encryption to be mandatory. I would like to not have to avoid public Wifi for concern of being hacked. I want to be able to send my employees server credentials via email.
I think we will move in that direction, and the big companies will be responsible.
So I guess SSL man in the middle will be coming soon? If it isn't here already, of course.
Doesn't anyone else feel that the answer to over-surveillance from the government isn't a technological arms race but a political debate about the virtues of freedom?
I work in the financial industry where there are some strict regulatory requirements about information flow (you know, things like like insider trading and maintaining firewalls between different parts of big banks and stuff like that) and all the large banks that I know of are performing an SSL man-in-the-middle on their gateways and have been for quite a while.
Within a corporate setting it's very easy to do - you issue your own certs which are set to be trusted by internal computers and reencrypt with those at the gateways.
The recent Mozilla/Trustwave (and DigiCert before) debacles make it very clear that a nation-state level adversary is almost certainly capable of SSL mitm-ing just about any internet traffic they want. Unless you're getting your data in and out of your country via encrypted packets over ham radio (and into a country you trust), there's just too few businesses a government agency would have to "lean on" to ensure your SSL encrypted packets are reliably secure.
If the apparently-not-april-fools-gag reports out of the UK [1] over the weekend are to be believed, police agencies are deciding amongst themselves that the time/date/length/frequency/endpoints of any internet communication are things that they don't need warrants or oversight for.
Encrypting the _contents_ of your email/texts/phonecalls/websitevisits still gives them access to the social graph in which you're communicating.
Suppose one of your "brogrammer" colleaues sends out email to a group of recipients every Friday afternoon, one to you with some regular work-related business, and a dozen to his 'bros'. You send your usual response, and so do his bros, then he texts a particular number, gets a call back from that number. When that number becomes part of an investigation and turns out ,say, to be a cocaine dealers "burner phone" - guess what _you_ just started to look like part of? And if you've got some hacktivist-motivated software in place to strongly encrypt the mail between you and your coworker, how do you think _that's_ going to look to the investigators? (feel free to invent your own bad scenario about the "war on terror" or the "saving children from pedophiles" or the "occupy movement" or "overzealous corporate IP enforcement" instead of the "war on drugs")
I don't know how to solve that - but some TOR-like multi-juristiction-distributed email/text/IM routing mechanism, where the source/destination information is part of the encrypted payload so "they" only get to see the hop between you and your nearest node, along with (crypographically) randomised message forwarding delays, payload padding, and "bogus messages" to mitigate traffic analysis (the first to stop someone noticing "Alice sent a message into node 1 and Bob simultaneously received a message from node 2", the second prevents leaks like "Alice sent a 13.2k message into node 1, and Bob received a 13.2k message from node 2", and the third to solve "Alice sent 8 messages into node 1 and Bob received 8 messages from node 2")
[1] http://www.examiner.com/technology-in-national/u-k-gov-t-set...
Do you know if it's gaining much traction?
We should strive for technical solutions which make mass surveillance either impossible, or more realistically so expensive it becomes infeasible. Money talks.
>>> - Encypting your Entire Hard Drive with Truecrypt (Mac and Windows)
Do people recommend this method, or is Apple's built-in full disk encryption sufficient?
"Many eyes make bugs shallow".
And of course someone has read the source, someone wrote it. But the number of eyes on the code would be more than closed source.
There may be other ways...
'Unlocking FileVault': http://www.youtube.com/watch?v=doGzuOYCNJE
I knocked Apple a bit for security issues 2006-2009, but they've made a serious effort to fix things starting sometime in 2010 or 2011. I mean, iOS and the iPhone platform is probably one of the most secure mobile OSes now (RIM edges it out, but RIM sucks). OS X has added other security features as well, starting with 10.6.
You mean, like every device with PCI slot or FireWire port? It's hardly just Apple that provides DMA.
Rooting Windows doesn't take too long either, and to get data (the real reason to root a device) it's not like it's necessary. Just pull the HD and plug it into another machine - you already have physical access. Physical access == game over, unless you have good encryption, and the kind of machine or OS makes no difference.
The FileVault issues are a good point, though I don't know what changes have occurred since full-disk encryption came out with 10.7. VileFault's attack vector readme lists DMA (true on any DMA device, though easier on some) and reading unencrypted data to look for passwords - only DMA seems viable with full disk encryption.
pmset -a destroyfvkeyonstandby 1 hibernatemode 25
That command will disable light suspend mode. When the lid is closed, the laptop will hibernate, writing its memory to disk (encrypted) and power off, clearing the encryption key from memory.Obviously you need to make sure you have a good backup scheme in place, and escrow the decryption key somewhere (ideally, printed).
There are some functionality advantages to Truecrypt (deniable volumes, etc.), but Filevault is pretty good. I'd feel equally comfortable with either one. (I'd prefer OPEL, the drive encryption on-controller, for performance reasons, but Mac OS X doesn't support that.)
Once you do that, you have a lot of other things to worry about before "which widely accepted disk crypto package should I use for FDE" becomes the biggest question.
When available, OSX makes use of the hardware AES-NI capabilities of the CPU though.
Any experiences to share? Anything positive/negative /etc? Would appreciate comments, esp on compatibility with non-Mac devices.
Thanks!
It's not bad to collect these things, but it's not really well done, and one could have linked better resources, such as Markus Gattol's site about dm-crypt for linux[1], or at least the original resources...
I consider myself rather paranoid, but I think this might be a litte exaggerated. However, this is all definitely possible, and if the governments haven't already begun mass surveillance, they probably will.
http://www.bbc.co.uk/news/uk-politics-17576745
I think you are deluding yourself though if you believe that most major govts are not doing wholesale digital trawling to the best of their (advanced) abilitites already, regardless of whatever legislation is currently in place.