OpenBSD Disk Encryption Options – softraid and svnd

It is unfortunate, but the OpenBSD disk encryption tool-sets are no where near as mature as those found in FreeBSD or Linux. You would think with such a security focused operating system that disk encryption would be a no brainer. You would be wrong. On OpenBSD -misc mailing list you often get this impression with them: XKCD - Security ...

January 9, 2011 · 2 min · Nick

Herodotus and your Digital Tattoo – A comparison of the many anonymous email providers

Letter Written in Cipher on Mourning Paper by Rose Greenhow If you have been following my posts as of late, you will have seen that I am on a anonymous bend. Some of my friends have wondered why I was seeking to disappear digitally and if that is the takeaway from my work it should not be. By the very act of posting this information I am by nature not anonymous. I think its important as our society becomes more open that we are able to close and keep private what we want. The option should always be yours. In that vein this post will cover email storage and usage. ...

January 7, 2011 · 5 min · Nick

What happens when you use TOR and Facebook

Facebook for all the lack of privacy controls and bad press, does in fact keep an eye on users. A few times since I started connecting to their jabber chat service through Tor I have been greeted to the following screen. I enjoy seeing what all nodes exist for exiting the Tor network, but wonder about the correlation possible. All the same I thought it was interesting for geek fodder: ...

January 6, 2011 · 1 min · Nick

Y U NO ENCRYPT?!

There is a skit on SNL Weekend Update where Seth and Amy read the headline to a news story with one of them following the other with “Really?!” That is my reaction every time I begin to think about mobile phone security. The darlings of our open-source world, the ones us geeks carry around on our belts, well…they fall short. In light of the police now being able to search your phone without a warrant, I decided to do a blog post on how-to protect yourself. Now I find myself asking the giants of Tech, REALLY!? Lets run through the major mobile phone platforms and see which ones encrypt data: ...

January 4, 2011 · 2 min · Nick

Placebos and Security

There was recently a study that found when people knew that they were taking a placebo, it still helped. The common idea in the past was that you could utilize placebos for controlled studies only if the patient didn’t know. The mere act of going to the doctor, taking a pill, etc. meant that the mind was tricked! Being a security geek this struck a cord with me. Listening to vendors and ISSO/ISSM about their secure implementations it occurred to me that the medical world was playing catchup to infosec: ...

January 4, 2011 · 2 min · Nick