Backup your stuff

  • 5 Posts
  • 67 Comments
Joined 1Y ago
cake
Cake day: Aug 14, 2023

help-circle
rss

i mean alias emails have been a thing for a while now so i don’t really see a problem with your approach


Are you asking whether you should use grapheneos, your fitbit or a second phone for banking?


Mull on mobile, mullvad and Firefox on desktop


Yup Veracrypt is great even has a portable version that can be kept on the drive (might still need admin privileges though) so you won’t have to install it on the system iirc . Would also go with cryptomator if you plan on using it with mobile systems but it has a one time payment for mobile.


Dang I’m interested too. I opted to just stick on a highly reflective sticker which works for me but interested to see what others have in mind


Its really a preference thing for convenience. You’ll still have both your password manager and 2fa on the same device either way. Aegis on another device or user profile is my preferred way if security is a must


Just a tad bit confused are you trying to back them up or keep your bookmarks synced across different browsers/devices? I’m a bit slow today, haha


Just to add on what you want is the 3,2,1 method of backing up. You’re asking for trouble if you just rely on cloud storage for anything that important. Export your TOTP seeds or copy your 8-10 generated OTPs. If shit hits the fan you’ll be able to use a TOTP generator or a password manager that has one built in to get your codes.


The first major step is a tracker and ad blocker (DNS based, software or even both) a VPN could help with this since some do offer to block trackers and ads. Everything else is pretty secondary imo and depends on your threat model


Its been a while since I last checked the forums but iirc no. Best you can do is set up automatic reboot in order for it to be in it’s most encrypted state after a specified time period again this info might be dated. My personal method is setting up a going out profile with the bare necessities with a weaker passcode and relying on a passphrase on my main user profile if it is found by a good person both the profiles have my burner email as a note on the lockscreen if they want to contact me.


Besides ublock origin like the other posted stated your biggest scam threats would be coming from social media websites, Facebook or meta whatever its called and email being the biggest. Since I assume you can’t monitor her 24/7 and she’s an active user, setting up some kind of DNS solution and firewall on your network, you managing her passwords and 2fa via hardware, setting up a non admin local account for windows and maybe some kind of easy reference material like pictures with text in a booklet should be used also. Assuming she’s still sound of mind

Edit: as for the phone portion of the question it really depends on how much media do you want her exposed to? You can make a pretty dumb phone via grapheneos and install the games she plays normally (network access restricted of course) with automatic updates. But if she uses social media, messaging apps and other apps like that maybe an iPhone would be easier and simpler for her. At that point you will have to rely on your network solutions, you managing her account credentials, bank included, and the reference material to protect her from scams


That’s a solid point I also know some people that use those services so this will help me too


Honestly didn’t even think about that. I usually use my work phone number for that purpose and if I get close to them then my personal/signal. You’re so right though a very good addition


Whats the purpose for usernames on signal?
Been using signal for years and love it and got the majority of my contacts on to it. My question is how are usernames useful now? You still need to register with a phone number with signal to limit spam and bots afaik and I'm assuming you should protect your username just like you do your phone number anyways because spam, malicious files/messages, etc... What scenario is this addressing where an average person gives up their username to a stranger? The only one I can think of is online dating or other online interactions like on forums. Just seems this is just more tailored to the people who need to be pseudo-anonymous for whatever reason than an actual privacy feature. Even then for the anonymous people does that mean usernames will be able to be changed? Tldr: Questioning what scenario does signal's new usernames address for the average Joe? Edit: Just realized can be very useful for work relationships
fedilink

No worries honest mistake their names are really similar, haha. Check it out its on android its like a hardened Firefox


Yeah you can select multiple bookmarks on mull and “copy to clipboard” then paste them into whatever spreadsheet editor you want if that’s what you meant? You can then format the links correctly on something like Calc or excel. I never personally tried extensions but that might be another route you can take. Sorry for all of the downvotes the privacy community isn’t always this hostile to a simple question. Hope you have a good one


Yeahh its not a feature on Mull. Think OP got confused with Mullvad browser or something


Unless you want to add in your firefox login info to mull best option would be adding each bookmark to a spreadsheet and ~ manually adding each bookmark to your new browser ~

Edit: got a case of 2am brain over here and forgot an easier way. After saving the spreadsheet make sure its formatted correctly as hyperlinks that way you can export the spreadsheet as an HTML file. Depending on what desktop browser you can then import the HTML file in your bookmark manager


Used to say liftoff but now Voyager is easily my favorite. Took some time getting used to but not bad at all.


Wiki for android packages
Another post made me wonder if there is some kind of wiki or website for android packages with descriptions that can/should be removed via adb. Back when I had a bloated phone, about 3 years back, I remember how much of a pain in the ass this was and had to go through XDA developers and reddit posts just to get the info on which to not remove. Has this process changed since?
fedilink

By PC do you mean a desktop? Guess any desktop you build yourself. Are there features you want like the best Linux support or something?



I’d go the mini PC/sff route, on eBay for instance you can get like a HP EliteDesk 800 G3 for around 50-80$ depending if you want a drive and adapter included think that’s the best bang for the buck. I would’ve recommended buying a 20-30$ onn android TV box but seeing how restricted android tv is from another post kinda made me rethink that.

Edit: also if you can wait like a year more I bet the market will be flooded with cheap mini/sff desktops.


Always heard blurring was ineffective and that solid colored boxes should be used instead




Really appreciate it, I didnt even realize they had an official forum


Honestly just great to hear i’m not alone was really debating reinstalling


Signal’s new version notification keeps popping up
Hey just wondering if its a problem on my end but a self update notification indicating a newer version of signal keeps popping up. I already have the latest version of the apk, 6.40.4, installed from their website, but the notification does not go away. I click it and then it states the application has been updated but after a few minutes later it pops up again. Not sure where to ask this but I would assume this place is one of the best places to interact with people that also use signal's non-playstore apk. Is this a bug on my end or are you experiencing it too? Edit: forgot to mention I'm on grapheneos if thats a factor Edit 2: apparently it was already reported on github and I missed it
fedilink

I mean yeah everybody has their own threat models so go for it just understand what you will be giving up. Assuming no recreating accounts, if you want to further isolate it I would recommend using everything meta related through a privacy friendly browser that has ad/tracking protection, aswell as an always on vpn or DNS solution that has an option to block ads and trackers.

Edit: If you want a simple addition using something like trackercontrol might be another useful tool to help you


If in the states, fake info plus a prepaid carrier should work, right? Havent brought a sim in a bit but you should be able to just buy one in a drugstore with cash or has that changed

Edit: should go without saying but I would also opt for a carrier that offers totp as a 2fa method


Havent personally created an account with piped since I like to limit accounts where ever possible but I believe you create an account with the piped instance that you choose so you dont login to your google account at all. You’ll have to do a google takeout iirc inorder to get a copy of your youtube subscription which you can then import.


Piped for desktop would be a better option for youtube imo, but really depends on which “Big tech company” you’re trying to hide from and what information do you want to share with them. For example, Google probably has your ip tied to your gmail account, which has whatever information you used, since you didn’t use a vpn when first creating it. Also unless you disabled the bloatware via adb that came with your xiaomi device some other third party company may also have your ip and whatever info you inputted into those apps, if at all. Again just depends on what you want so your setup might be fine.

Edit: if wanting to protect from google then your mobile device is the biggest issue. Getting an always on vpn is a must (look at proton or mullvad), remove your personal account and create a burner with fake info and use something like aurora store with that burner account should help a lot. Would be really inconvenient if you still use your personal gmail account so maybe before doing anything start migrating to a different email provider

Edit 2: if protecting from meta then facebook messenger is the biggest issue. Getting an always on vpn that comes bundled with protection from trackers/ads (mullvad and proton i think does this) maybe your best choice unless you want to recreate your account and lose all of your contacts/messages which would be really inconvenient. So just treat facebook messenger like a public forum and dont give up too much info. If its possible maybe use a hardened browser, like mull +ublock, instead to use facebook messenger again if thats possible


I agree and thats why threat models are important. Of course the more extreme models will lead to less interactions with strangers in this digital age. In hindsight, using a dating site should’ve been your first indication that maybe you should re-think your’s. As for the friends argument, It should be stated that changing the contact method shouldn’t be the deciding factor for a friendship to continue that just screams a red flag imo.


I’ll throw in using a privacy respecting browser to access those websites


Yeah the drives of each of my machines are fully encrypted


Oh by disaster plan I mean incase of drive failure/my death. Its the 3,2,1 backup rule basically. 1 original backup drive and a copy of it are local in a fire resistant box within a bolted down safe, then an offsite cold copy of my backup drive is at a loved one’s home where backups are manually updated monthly. The more important data is also stored in the cloud with cryptomator just as more insurance for myself. A laminated paper with credentials needed to access the data is stored in 2 places, another loved one’s home in their safe (cloud provider account credentials opted out) with instruction in case I die, and hidden local in case I forget anything.


Should I rethink the encryption method of my backup drives?
I've been using veracrypt for the past 4 years to create container files in everything from thumb drives to external hard drives. After upgrading one of my backup drives, I decided that I will switch to a different filesystem altogether going on, from ntfs to ext4, since I havent really used windows in those 4 years. With the reasoning behind using veracrypt and ntfs in the first place being for compatibility, should I switch to LUKS? Veracrypt is dramatically more feature rich but I dont really take advantage of those. I just encrypt my drives in case of burglars and other unwanted eyes. I do already have a disaster plan in place so I would have to do a total overhaul of things, but I'm not sure if this is a wise decision. My gut says no but what do you think? What would I gain? Edit: shouldve added that these drives are for warm storage for my weekly manual backups of files. Edit 2: the general opinion is to use a tool that supports encryption but I dont really feel comfortable with that but do appreciate it. It's just I've been manually updating my backup drives for a while now and like how simple my routine is. Think my decision is to just stick with veracrypt but format every future drive (including a new one I ordered) as ext4. My current drives wont be reformatted in order to reduce unnecessary wear on them. Thank you all for your help
fedilink

Using grapheneos, it was a good gateway to other privacy & security enhancing habits


Afaik out of luck so sell it and save for a non carrier pixel


If in the US, Prepaid sim with fake info. Mint’s trial sim gives you 7 days iirc for 2$ Edit: thought it was obvious but just to be clear, setup another form of 2fa after, like totp


They’re all pretty much the same privacy wise so fake info plus any prepaid carrier that has what you’re looking for would be your option. I suggest mint since they’re one of the few that offer totp as a 2fa method. I believe tello and possibly usmobile does too but I’ll have to doublecheck that. Best bang for your buck if you want truly unlimited data (I’m looking at you mint) would be visible but no totp sadly and heard customer support sucks.


“Thoughtcrime” shouldnt be plural at least its not on my version and for other posters on this thread



[SOLVED] Grapheneos: VLC using thumbnails of videos from the “main” user profile for audio tracks on
Trying my luck here since I really couldn't get an answer on the grapheneos forum. I see thumbnails from videos not available to the currently used profile for the audio tracks that are playing, only on the notification popup though. Not sure if this is a bug or whatnot but I'm kinda concerned if this indicates that data is being leaked between profiles. I already checked the metadata/tags for the audio tracks and confirmed that they are correct also storage scopes are enabled. Should I be concerned? Any help will be appreciated. Edit for some more information: vlc (permissions removed and not setup) is installed on the default "main" profile, where the video files are at, since I use it to install updates downstream to other profiles where vlc is also installed. Edit #2: whatever bug was causing this seems to be taken care of after the latest update.
fedilink