-
-
Notifications
You must be signed in to change notification settings - Fork 209
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Add hardware guide to knowledge base #2268
Conversation
✅ Deploy Preview for privacyguides ready!
To edit notification comments on pull requests, go to your Netlify site configuration. |
Regarding hardware switches for laptops, should we put a notice that some switches in laptop are purely a software based switch which technically give you a false sense of security, since malware can turn it on? Other then that, this seems all very comprehensive and correct, great job guys. |
Unfortunately, I tried doing this recently and found that no stores sold high-quality (business-grade) laptops. They only sold shitty cheap consumer-grade hardware in-store. All the stores I went to said that their business-class laptops were only available on their website. I think this is something that was exacerbated during the pandemic, when purchases online shot through the roof. Maybe it's a good idea to mention "Proxy Shops" here as a means to buy hardware online anonymously. Amazon has lockers that technically would allow you to ship hardware to yourself anonymously, but if you create a new account and load it with an anonymously-purchased giftcard, they'll close your account before your order goes-through (citing "fraud"). But there is a proxy shop in the US that accepts Monero and will order hardware on your behalf (they originally were created to buy cryptocurrency hardware wallets) and ship it to an amazon locker. There's also another great proxy shop in Germany that will accept crypto- or fiat-currency and either forward the item to you via post or let you pick it up at their location Leipzig. I think it would be worthwhile to mention Proxy Shops for users who live in a country where they cannot buy the security hardware that they need at a physical brick-and-mortar, yet they need to purchase it anonymously to avoid a targeted interdiction attack. |
The I think we should add a third paragraph mentioning Linux machines, with specific focus on distros that are designed for security. I think it would be wise to mention QubesOS in this section, and to include a link to the PrivacyGuides.org article on Qubes As this is a section on hardware, I think it would be good to also link to Qubes' Hardware Compatibility List |
One more thought, should we mention the possibility of using speakers as a microphone, there is research out there showing its possible, but I would guess its a very unlikely thing to happen even to niche very high threatmodels. |
@blacklight447 can you link any such research? While electrically microphones and speakers are the same, as soon as you plug them into a chip that only does one of ADC or DAC that feature is completely lost. |
This pull request has been mentioned on Privacy Guides. There might be relevant details there: https://discuss.privacyguides.net/t/separate-decisions-and-reactions/15021/1 |
@habibm1361 I removed your comment for spam. The link you posted looks like an affiliate link too. Nothing privacy friendly about a notebook that is bundled with ChatGPT. ChatGPT literally works on the premise of sending data away to a remote server. |
Why there is no info about coreboot and open hardware? |
Anyway I think its still improvment, why it isnt merged? |
@inson1 see It looks like the first PR was merged. That PR and this PR are both are called "Add hardware section" I know there was some hesitation to recommend devices with coreboot (due to it mostly being old devices), but the vendors putting it on newer devices were OK'd for listing. And imho it would benefit this guide to recommend those vendors specifically and why coreboot is important (though not sufficient) for privacy hardware. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
maybe add an anti-theft recommendation
I think "Dead man switches" (like BusKill) are the anti-theft recommendation. Or did you have something else in mind? |
7b2841c
to
19d9058
Compare
0f1127a
to
a8738c2
Compare
88ddfbd
to
5a8f3cc
Compare
0c4ce03
to
995b907
Compare
ba41353
to
5d708fb
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I pushed a commit to move this to the KB instead, and renamed the page. Otherwise just a few small changes I'd still make here.
Co-authored-by: Redoomed <[email protected]> Signed-off-by: Jonah Aragon <[email protected]>
43bb889
to
b2a7f31
Compare
Co-authored-by: Redoomed <[email protected]> Signed-off-by: Jonah Aragon <[email protected]>
b2a7f31
to
8868129
Compare
Co-authored-by: Redoomed <[email protected]> Signed-off-by: Jonah Aragon <[email protected]>
8868129
to
265998f
Compare
This pull request has been mentioned on Privacy Guides. There might be relevant details there: |
At https://www.privacyguides.org/en/basics/hardware/#routers could you emphasis how bad ISP provided routers are? Here's a good resource https://www.routersecurity.org/ISProuters.php. The same author written another article about consumer routers https://routersecurity.org/consumerrouters.php. |
Resolves #1899, resolves #1989, resolves #1864
See previous discussion: #1939