YOUR FRIENDS' ACTIVITY

    The Week

    How not to get hacked by China

    Four things you MUST do

    So you might not be a newspaper who plans to run an expose on the finances of the Chinese central committee.  But if you're a journalist, an academic, or a national security professional, there's a startlingly decent chance that the Chinese intelligence apparatus wants to get inside your brain.

    There's an information asymmetry, though. Us regular folks know only as much as our government tells us about the tactics, techniques and procedures used by foreign governments to spy on us. Investigative journalism helps fill in part of the picture, but huge gaps remain. Our spies don't want THEIR spies to know how much WE know about them.  

    Still, I wondered: those who might have access to that information still live most of their lives in an unclassified world. How do they protect themselves? 

    What follows are tips from the pros. From people who KNOW. All of it is unclassified, but it's straight up knowledge from those whose job it is to protect the servers and domains of the United States from sophisticated cyber criminals and spies. 

    1. MAKE YOURSELF A HARD TARGET 

    * Use a VPN service as an intermediary (eg: anonymizer.com). In terms of remote exploitation, this can make things harder (sometimes impossible) for a nation state actor unless they've got a lot of data on your online presence already.  At the very minimum, you're removing the easy options from the table and making them decided if they really want to work for it.

    * Use Chrome. It's not perfect, but it's less likely to get you successfully remotely exploited by orders of magnitude. You also benefit from a smaller and typically personal (in other words, non-corporate) and more savvy user base.

    In aggregate, these make it hard to justify development resources against vs. Internet Explorer/FireFox, which are likely being used in the corporate networks that nation states want access to ,and 50-year-old or older that  users financial scammers and spammers are hoping for.

    Or -- use  Linux (eg: Ubuntu, for day-to-day desktop use). Again, it's not perfect, but much of the same logic behind Chrome applies (especially for web-based remote exploitation). The small installed base of desktop users really helps here. This is still true for Macs, but not to the same degree due to increasing market share (the sole driver of increased development interest). Perhaps you could say, then, 'don't use Windows.'

     

    2. DON'T JAILBREAK

     * Seriously, don't jailbreak your smartphone. If you do, you're pretty much asking for any random drive-by remote exploit if you do it, and this is quadruply true for Android platforms. If you don't jailbreak phones, stick with an iPhone. Unless you're logging into a service and providing personal data, it's nearly impossible to tell one iPhone user from another over cellular or common-use WiFi networks.

    3. USE YOUR SMARTPHONE AS OFTEN AS YOU CAN

     * When a smartphone or tablet app equivalent exists for a website, particularly a common one (eg: gmail), use it instead.  Remote exploits that get people in trouble are all targeting PC web browsers because of their ubiquity in day-to-day use and the limited target set to develop to (IE, FireFox, Safari, Chrome). It is extremely resource intensive to target apps one-by-one, and they're improved so frequently that the return on interest doesn't exist to keep up. If you're surfing the web, use your smartphone or tablet then too. These systems are substantially more locked down than PCs, so any access that a remote exploit may attain is likely to be more limited. Also, these devices are rarely given full access to valuable network services or data the same way PCs are in Windows Domains. So, it's not that there aren't actual risks here, but the value proposition typically results in efforts being focused on lower hanging fruit that can bear out more access growth opportunities.

    4. ASSUME THAT EVERY NON-SECURE COMPUTER IS ALREADY COMPROMISED

    *  Change the default password on your ISP's cable/fiber box and turn off the remote access features. They're all still there for the ISP, but at least you've made it harder. At the minimum, put a firewall (another access point like an Airport Extreme, for example) between you and that box and do not use any of its services (eg: DHCP). You will *never* be able to secure it.

    * Things that protect you only from newbies and script kiddies but, for this reason, you should still do: anti-virus, long passwords, firewalls.

    Finally, NEVER check your email or Facebook or something from a public computer - it is worth waiting. Assume that computer is compromised.

    View this article on TheWeek.com Get 4 Free Issues of The Week

    Other stories from this section:

    Like on Facebook - Follow on Twitter - Sign-up for Daily Newsletter
    Loading...

    More Politics News

    • Boyfriend espaces out window as husband confronts cheating wife [VIDEO]

      As part of perhaps the most spectacular walk-of-shame ever, an underwear-clad lover escaped from a third floor bedroom as the returning husband confronted his cheating wife on a balcony.

    • Indian guest workers sue company in Miss., Texas

      Dozens of Indian guest workers are suing an Alabama-based marine and fabrication company, claiming it financially exploited them and forced them to live in squalid conditions after bringing them to work ...

    • Why We Can't Forget That Oklahoma's Senators Voted Against Sandy Relief

      Nearly four months ago, Oklahoma Senators Tom Coburn and James Inhofe both voted against H.R.152, the Disaster Relief Appropriations Act that eventually sent $50.5 billion in relief to victims of Hurricane Sandy. And in the flurry of last night's devastation in Moore, Oklahoma. it was impossible not to forget that fact, knowing the federal government would soon rally to the cause.

    • Cycling-Road-Giro d'Italia classification after stage 16

      May 21 (Infostrada Sports) - Classification from Giro d'Italia after Stage 16 on Tuesday 1. Vincenzo Nibali (Italy / Astana) 67:55:36" 2. Cadel Evans (Australia / BMC Racing) +1:26" 3. Rigoberto Uran (Colombia / Team Sky) +2:46" 4. Michele Scarponi (Italy / Lampre) +3:53" 5. Przemyslaw Niemiec (Poland / Lampre) +4:13" 6. Mauro Santambrogio (Italy / Vini Fantini) +4:57" 7. Carlos Betancur (Colombia / AG2R) +5:15" 8. Rafal Majka (Poland / Saxo - Tinkoff) +5:20" 9. Benat Intxausti (Spain / Movistar) +5:47" 10. Domenico Pozzovivo (Italy / AG2R) +7:34" 11. Tanel Kangert (Estonia / Astana) +7:43" ...

    • Teens Are Turning Away from Facebook Because Tumblr Is Real, and Parent-Free

      Teenagers really are over Facebook. In February the social network warned investors that "our younger users ... are aware of and actively engaging with other products and services similar to, or as a substitute for, Facebook." And in April the investment bank Piper Jaffray reported that products and services like Tumblr and Twitter were further eroding Facebook's dominance among the Justin Bieber set. But why? In a deep report published on Tuesday, Pew Research explains that teenagers departing the social network's blue confines are looking for something more... real. ...

    • 18-year-old’s invention can recharge a cell phone in 30 seconds

      A teenager from Saratoga, California took home one of the top prizes at the Intel International Science and Engineering Fair late last week after showing off her invention, which can fully charge a cell phone in 30 seconds or less. Eesha Khare was given the Intel Foundation Young Scientist Award and a $50,000 prize for being runner-up in the competition, which was won by a 19-year-old who unveiled a new spin on self-driving car technology. Khare’s battery technology requires a new component to be installed inside the phone battery itself, and Intel notes that it also has potential applications for car batteries.

    • BREAKING: Subway Just as Unhealthy as McDonald’s!

      If you watched the London Olympics last summer, you saw a parade of top athletes touting the nutritional qualities of their favorite eatery: Subway. Watching Apolo Ohno or Robert Griffin III bite into a veggie footlong with avocado or hearing that Subway is “the official training restaurant of athletes everywhere,” you might get the idea that the food served at the chain isn’t that bad for you—that it’s even healthy.

    Loading...

    Follow Yahoo! News