Slide 1

Slide 1 text

Digital Security for Everyone Jennifer Helsby @redshiftzero Chicago Hack Night November 10, 2015 @CryptopartyChi

Slide 2

Slide 2 text

But I have nothing to hide.

Slide 3

Slide 3 text

But I have nothing to hide. Yes, you do.

Slide 4

Slide 4 text

But I have nothing to hide. Yes, you do. Your medical information, your financial information, your political beliefs, your sexual identity, nudity, …

Slide 5

Slide 5 text

No content

Slide 6

Slide 6 text

No content

Slide 7

Slide 7 text

No content

Slide 8

Slide 8 text

No content

Slide 9

Slide 9 text

People have been defending their own privacy for centuries with whispers, darkness, envelopes, closed doors, secret handshakes, and couriers. - Eric Hughes

Slide 10

Slide 10 text

There is nothing illegal or subversive about using a tool to protect your privacy online.

Slide 11

Slide 11 text

What is Cryptoparty? • A grassroots international movement to provide spaces for people of all types to get training in digital security • Non-commercial and free • Significant interest among activism, law, journalism, LGBT communities

Slide 12

Slide 12 text

No content

Slide 13

Slide 13 text

Threat Modeling • What information am I trying to protect? • Who am I trying to protect it from (my adversary)? • What is my adversary able and willing to do to find out? • What happens if I fail?

Slide 14

Slide 14 text

• Goal is NOT: Perfect security • Goal is: Make surveillance significantly more difficult and costly • Win: Exert slightly more effort than your adversary is willing to commit

Slide 15

Slide 15 text

HTTP

Slide 16

Slide 16 text

https://www.eff.org/https-everywhere HTTPS

Slide 17

Slide 17 text

End-to-End (e2e) Encryption • Off-the-Record (OTR) messaging: IM encryption • Clients: Pidgin/Adium • PGP “Pretty Good Privacy”: Email encryption • Clients: Enigmail, Mailvelope

Slide 18

Slide 18 text

Signal Private Messenger • End-to-end encrypted calls and messages • Encrypted content, not metadata • Support on Android and Apple IOS • Free and open- source

Slide 19

Slide 19 text

Anonymity • Anonymity means you can’t tell who did what • Tor anonymizes your identity from the destination website, your ISP, employer, government, etc. • Browse the web anonymously with the Tor Browser Bundle https://www.torproject.org

Slide 20

Slide 20 text

No content

Slide 21

Slide 21 text

Entry node or “guard” relay Middle relay Exit node Encrypted Unencrypted

Slide 22

Slide 22 text

protect your privacy help teach support these tools and the orgs that make them HTTPS Everywhere Signal Tor

Slide 23

Slide 23 text

protect your privacy help teach support these tools and the orgs that make them

Slide 24

Slide 24 text

Thanks! Next Cryptoparty: 2pm Saturday December 5th, 2015 at South Side Hackerspace HTTPS Everywhere Signal Tor