EFF-Austin Surveillance Self-Defense Workshop Intro

38
ssd.eff.org

Transcript of EFF-Austin Surveillance Self-Defense Workshop Intro

ssd.eff.org

Announcements

ssd.eff.org

Introduction

ssd.eff.org

ssd.eff.org

“Privacy is dead”

ssd.eff.org

“I think privacy isn't a matter of taste, but rather a fundamental human right.”

-Laura Poitras

(Image Credit: Kris Krüg / Wikipedia)

ssd.eff.org

“We’re not really talking about privacy actually. We’re talking about autonomy, about dignity, and about our liberty.

[So] when we say ‘privacy is dead’, what we’re hearing is our modern generation saying ‘liberty is dead’ … and I think it is important that we reject that notion.”

-Jacob Appelbaum(Image Credit: Wikipedia / Tobias Klenze)

ssd.eff.org

How ?

ssd.eff.org

“Encryption works. Properly implemented strong crypto systems are one of the few things that you can rely on.”

-Edward Snowden

(Image Credit: AP)

ssd.eff.org

OTR PGPS/MIME

SSLTLS

VPN

OTR PGPSSL

VPN

SSLS/MIME

GPG

PGPVPN

SHA256

ssd.eff.org

“Some privacy measures do require extraordinary technical competence; if you’re Edward Snowden, with the entire NSA bearing down on your communications, you will need to be a real expert to keep your information secure.

But the kind of privacy that makes you immune to mass surveillance and attacks-of-opportunity from voyeurs, identity thieves and other bad guys is attainable by anyone.”

-Cory Doctorow(Image Credit: Paul Mariel)

ssd.eff.org

We can do this, y’all

ssd.eff.org

Coming Up:

• Introduce Methods / Tools

• Group into Peer-to-Peer Workshops

• Share Take-aways, Next Steps

Introduction to Threat Modeling

ssd.eff.org

Threat Modeling

ssd.eff.org

Ask Yourself…• What do you want to protect?

• Who do you want to protect it from?

• How bad are the consequences if you fail?

• How likely is it that you will need to protect it?

• What methods exist that can help you avoid

these consequences?

0100 1010

º_º

!!!%

ssd.eff.org

What do you want to protect?

0100 1010

ssd.eff.org

What do you want to protect?

• Body • House • Possessions • Vehicle • Devices

• Identity Info • Emails, Messages,

Documents • Transactions • Browser History

0100 1010

Assets

Physical Digital

ssd.eff.org

Who do you want to protect it from?

º_º

ssd.eff.org

Who do you want to protect it from?

• Government • Malicious Hacker • Corporation • Employer • Other Individual

º_º

Potential Adversaries

ssd.eff.org

What are their capabilities?º_º

• Government • Malicious Hacker • Corporation • Employer • Other Individual

Potential Adversaries

ssd.eff.org

How likely is it that you will need to protect it?

%

ssd.eff.org

How bad are the consequences if you fail?

!!!

ssd.eff.org

What methods exist that can help you avoid these consequences?

ssd.eff.org

ssd.eff.org

Case Studies

Case Study: Journalist Covering Protest

ssd.eff.org

Case Study: Corporate Accountant

ssd.eff.org

Case Study: Political Campaign Staffer

ssd.eff.org

Software for (More) Secure Communication

ssd.eff.org

ssd.eff.org

OTR

“Off-The-Record” Messaging

ssd.eff.org

Android

ChatSecureOTR chat with

Google and XMPP users.

(Credit: Reset the Net.org)

TextSecureStrong, easy-to-use protection for your

text messages.

RedPhoneStrong privacy for

phone calls (Compatible with

Signal)

ssd.eff.org

iPhone

ChatSecureOTR chat with

Google and XMPP users.

(Credit: Reset the Net.org)

CryptoCatEasy, fun, and

secure group chats

SignalStrong privacy for

phone calls (Compatible with

RedPhone)

ssd.eff.org

Desktop(Credit: Reset the Net.org)

AdiumOTR chats for

Facebook, Google, XMPP and more.

Mac

PidginOTR chats for

Facebook, Google, XMPP and more.

Windows

CryptoCat

Easy, fun, and secure group chats

Mac / Windows / Linux

Tor

Highly obfuscated Web browsing

*

ssd.eff.org

Deep Dives(Credit: Reset the Net.org)

TailsLive Linux OS that

leaves no trace

PGPEmail and file

encryption

CyanogenModCustomized, aftermarket

firmware for Android

ssd.eff.org

Sources

• pack.ResetTheNet.org

• eff.org/secure-messaging-scorecard

• freedom.press/encryption-works

Workshop Topics Selection

ssd.eff.org

Workshop Groups!

ssd.eff.org

Learns & Take-Aways

ssd.eff.org

Thank You!

ssd.eff.org