protonmail,
@protonmail@mastodon.social avatar

What’s the cybersecurity practice you find the hardest to follow?

mrmatten,

@protonmail not going to tell you ;)

protonmail,
@protonmail@mastodon.social avatar

@mrmatten 😀

sbourne,
@sbourne@mastodon.social avatar

@protonmail For my father-in-law, answering the phone.

irenes,
@irenes@mastodon.social avatar

@protonmail not bragging about our information security practices in public

xgranade,
@xgranade@wandering.shop avatar

@irenes @protonmail There's Platinum games that are easier...

irenes,
@irenes@mastodon.social avatar

@xgranade @protonmail right??? like it's a flippant answer but it's also the only truthful answer we could possibly give. so much temptation. including the post we responded to.

xgranade,
@xgranade@wandering.shop avatar

@irenes I want to brag about all the personal infosec stuff I've been up to lately in reply to this thread, knowing how daft that is. Gah.

patthecat,

@protonmail new alias email for every site you sign up.

protonmail,
@protonmail@mastodon.social avatar

@patthecat Exactly! You can do it with @simplelogin or Proton Pass: https://proton.me/pass

CerebralHawks,
@CerebralHawks@geekdom.social avatar

@protonmail Dropping Google. Been wanting to do it for years and have dropped everything but Gmail. I still use it for garbage. I also use Proton as well as Apple iCloud, for work/business stuff I don’t want Google’s nose in

protonmail,
@protonmail@mastodon.social avatar

@CerebralHawks Happy to hear that you are relying on our privacy-first ecosystem! If you have any questions, don't hesitate to reach out to us here.

inkfern,

@protonmail Not giving out my phone number. You can use all the individual emails you want, but soo many sides "need" your number, making you easily trackable.

johnmaher,

@protonmail Using unique username (not just unique password).

johnmaher,

@protonmail Browsing in such a way to eliminate tracking and risk of compromising security (such as always using privacy mode or something like disposable virtual machines).

ralph18,

@protonmail Use Linux. Not that I don't want to learn, but I need Windows for most of my stuff at the moment

s1fly,

@protonmail Probably navigating the ever-changing definition of “privacy” It seems like many big-tech talk about security and genuinely offer secure services, but when they talk about privacy, it seems like the word has different meanings and mileage varies!

protonmail,
@protonmail@mastodon.social avatar

@s1fly Indeed, it's called privacy-washing, and we have recently written about it: https://proton.me/blog/google-lobbying.

WideEyes,

@protonmail telling people my password. I come up with very very very funny passwords and most of my normal day to day jokes are very bad. So I keep wanting to save my street cred by sharing my passwords.

protonmail,
@protonmail@mastodon.social avatar

@WideEyes OK, that is tempting! 😂

excess,
@excess@mastodon.social avatar

@protonmail Resisting the urge to publicly acknowledge the weakest point in my current security routine so I can be doxxed and targeted, I guess?
😋

protonmail,
@protonmail@mastodon.social avatar

@excess 👍

excess,
@excess@mastodon.social avatar

@protonmail

Now seriously, I get what you dudes are trying to do and I applaud you for your continued efforts.

What hinders me greatly are websites that don't immediately remind you of their particular passwords requirements when I mistype my password. They only show them when creating a new account (which I already have) or when resetting the password (which I don't wanna). All I need is what their stupid requirements were to figure out what password I designed exclusively for that service.

dedbol7,

@protonmail not doing anything about a security hole because my peers said it was okay;

shellsharks,

@protonmail Appsec Eng here, I do code reviews but tend to not write secure code 😭

santiagopim,

@protonmail Not participating in surveys about my security weaknesses. Sorry.

protonmail,
@protonmail@mastodon.social avatar

@santiagopim Fair enough!

adingbatponder,
@adingbatponder@fosstodon.org avatar

@protonmail not accidentally typing, at logon, my password into the username field where it then gets suggested automatically the next time one types in the username field and being too lazy to delete all cookies immediately because then I have to sign in again to everything.....

protonmail,
@protonmail@mastodon.social avatar

@adingbatponder Ah yes, that happened to everyone at least once, we're sure!

b9AcE,
@b9AcE@todon.eu avatar

@protonmail Some services still have archaic level limitations on password/passphrase lengths, some even requiring as low as "12 characters or less" still but more often 32, often then in combination with exceptionally strict restrictions on which characters are allowed in those.
That makes following good authentication management not just hard, but impossible.

kurisu,
@kurisu@mastodon.scot avatar

@b9AcE The fun ones are the ones with a hard upper limit that they don’t tell you about, and isn’t caught by their validator.

Then I come along, with a long password generated by my password manager, and strange things start to happen.

b9AcE,
@b9AcE@todon.eu avatar

@kurisu Yep.
I can't know for sure but I think that may be what happened when I after a couple of months after launch decided I should test that OpenAI-thing, so I registered with a complex password auto-generated and entered by my password manager, including successful e-mail verification, but when I immediately after tried to log in, it claimed the password was wrong and clicking on the reset-password link didn't result in a reset-mail, even when trying again a week later or a third time, so the account was just immediately broken.

Wellp, I'd say their thing failed my test before my test started. :-D

reverendstanley,
@reverendstanley@kolektiva.social avatar

@protonmail continuing to use a VPN as more and more companies blacklist VPN company IP addresses.

AudraTran,
@AudraTran@fosstodon.org avatar

@reverendstanley It would be nice if the @protonvpn split-tunneling actually worked...

protonvpn,
@protonvpn@mastodon.social avatar

@AudraTran Can you give us more details? On which platform are you having issues with the Split Tunneling? Is this for excluding or including apps/IPs?

f13rf3k,

@protonmail "never tell your password to anyone"

because sometimes it's just convenient, y'know

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • kavyap
  • thenastyranch
  • Durango
  • DreamBathrooms
  • ngwrru68w68
  • magazineikmin
  • cubers
  • Youngstown
  • mdbf
  • slotface
  • osvaldo12
  • GTA5RPClips
  • rosin
  • InstantRegret
  • provamag3
  • everett
  • tacticalgear
  • vwfavf
  • tester
  • normalnudes
  • modclub
  • ethstaker
  • khanakhh
  • cisconetworking
  • anitta
  • Leos
  • megavids
  • JUstTest
  • All magazines