Hoppa till innehållet
PoddsändningarSamhälle och kulturThe Lockdown - Practical Privacy & Security

The Lockdown - Practical Privacy & Security

Ray Heffer
The Lockdown - Practical Privacy & Security
Senaste avsnittet

38 avsnitt

  • The Lockdown - Practical Privacy & Security

    S02E02 - You Are The Proxy - Hackers, Experts, and Bad Advice

    2026-07-31 | 53 min.
    In this episode, we continue with a closer look at what cybersecurity competence actually means, and why qualifications, compliance frameworks, and public reputation are poor substitutes for understanding how real attacks work. We explore the cryptography behind Proton Mail, public and private keys, fingerprints, and what you can do with PGP word lists. We’ll also discuss passkeys, account recovery, SIM swaps, ClickFix malware, infostealers, VPN blocking, and the residential proxies that allow malicious traffic to hide behind ordinary household IP addresses.
    In this week’s episode:
    Hackers, threat actors, security influencers, and the risks created by confident but inaccurate advice
    Kerckhoffs’s principle: designing security under the assumption that the enemy knows the system
    How public and private keys work, including Proton Mail encryption, digital signatures, fingerprints, and independent key verification
    Using the PsySecure Workbench and PGP word lists to make cryptographic fingerprints easier to exchange and verify
    The problem with passkeys, and why weak account recovery can undermine their security
    ClickFix attacks that imitate Cloudflare verification pages and trick users into running malicious terminal commands
    How infostealers target browser data, authenticated sessions, cookies, passwords, and other valuable information
    Why VPN traffic is increasingly blocked or challenged while attackers move toward residential proxies that resemble legitimate users
    You are the proxy: How cheap smart home devices, streaming boxes, thermostats, and cameras, can become hidden residential proxies
    The normalization of identity verification, digital ID checks, and other invasive systems
    Show Links:
    The Hidden Backdoors Inside Millions of Smart Devices (WSJ): https://www.youtube.com/watch?v=apEPPKYgLL0
    keys.openpgp.org: keys.openpgp.org
    PsySecure Workbench: https://psysecure.com/workbench
    An Investigative Framework for Auditing the Security & Privacy of Mobile VPNs: https://www.ndss-symposium.org/wp-content/uploads/2026-s1573-paper.pdf
    Matrix Community Rooms:
    Matrix Community Space: https://matrix.to/#/#psysecure:matrix.org
    Individual Room Links:
    https://matrix.to/#/#lockdown-intro:matrix.org
    https://matrix.to/#/#lockdown-podcast:matrix.org
    https://matrix.to/#/#lockdown-general:matrix.org
    How to check public key fingerprint from the command line:
    gpg --show-keys --with-fingerprint public_key_file.asc
    ★ Support the show on Patreon ★

    ★ Support this podcast on Patreon ★
  • The Lockdown - Practical Privacy & Security

    S02E01 - Think Like A CISO

    2026-07-10 | 39 min.
    Season 2 of The Lockdown is here, with a renewed focus on the overlap between privacy, security, and open-source intelligence. In this episode, Ray explains why reconnaissance should be treated as the first line of defense, not as the attacker’s free move. This episode lays out a practical way to think like a CISO in both your personal life and inside an organization. The core idea is simple: Minimize What Can Be Known, understand what you are protecting, and close the gap between having security controls and actually being protected by them.
    Why privacy and security should be treated as two sides of the same coin
    Reconnaissance, OSINT, and how attackers build a picture from public information
    Thinking like a CISO: threat modeling, risk, residual risk, and compensating controls
    Practical privacy choices, including GrapheneOS, browsers, VPNs, prepaid SIMs, and data brokers
    The control confidence gap, including SIM swaps, help desk attacks, security questions, and deepfakes
    Real-world examples of reconnaissance-driven attacks, including MGM, Caesars, Marks & Spencer, and ransomware extortion
    The updated OSINT Defense and Security Framework, plus practical homework for individuals and organizations
    Show Links
    OSINT Defense & Security Framework PDF
    Weekday executive security briefing email
    Matrix Community Rooms:
    • Matrix Community Space - https://matrix.to/#/#psysecure:matrix.org
    Individual Room Links:
    • https://matrix.to/#/#lockdown-intro:matrix.org
    • https://matrix.to/#/#lockdown-podcast:matrix.org
    • https://matrix.to/#/#lockdown-general:matrix.org
    Support the show on Patreon ★ https://www.patreon.com/TheLockdown

    ★ Support this podcast on Patreon ★
  • The Lockdown - Practical Privacy & Security

    034 - Final Episode

    2025-10-03 | 42 min.
    In this final episode of The Lockdown, I reflect on the journey of the podcast, and explaining why I’m redirecting my energy to other projects. I discuss the importance of practical privacy measures, measures over an ‘all-or-nothing’ approach, as well as sharing my thoughts on threat modeling, and address several listener questions about privacy tools and self-hosting. I also introduce a new concept from my recent blog post about the “space between” in cybersecurity, examining how compartmentalization of identities can serve as an early warning system against social engineering attacks.
    In this week’s episode:
    Why this is the final episode
    The all-or-nothing fallacy
    Airport facial recognition and the Clearview AI threat
    Threat modeling for different life situations
    The CIA triad and why 100% security doesn’t exist
    UK and Swiss digital ID systems and their privacy implications
    NPM breach case study and the psychology of social engineering
    Why organizations should compartmentalize communication channels
    Listener Q&A: MySudo virtual cards, self-hosting setup, and mobile hotspots
    The new Privacy Tools page on PsySecure.com
    Matrix Community Rooms
    Matrix Community Space - https://matrix.to/#/#psysecure:matrix.org
    Individual Room Links:
    https://matrix.to/#/#lockdown-intro:matrix.org
    https://matrix.to/#/#lockdown-podcast:matrix.org
    https://matrix.to/#/#lockdown-general:matrix.org
    Show Links:
    Privacy Tools Page - https://psysecure.com/privacytools/
    PsySecure ODSF Framework - https://odsf.psysecure.com
    "The Space Between" Blog Post - https://psysecure.com/ma-the-space-between-breaches
    Swiss E-ID System Information - https://www.bk.admin.ch
    Cyber Kill Chain (Lockheed Martin) - https://www.lockheedmartin.com/en-us/capabilities/cyber/cyber-kill-chain.html
    Robert Cialdini's Principles of Persuasion - https://www.influenceatwork.com
    Daniel Kahneman's Thinking, Fast and Slow - https://www.amazon.com/Thinking-Fast-Slow-Daniel-Kahneman/dp/0374533555
    “Nothing in life is as important as you think it is when you are thinking about it.”- Daniel Kahneman, Thinking, Fast and Slow 

    ★ Support this podcast on Patreon ★
  • The Lockdown - Practical Privacy & Security

    033 - Black Mirror - Is the UK's Surveillance State Coming to America?

    2025-09-08 | 38 min.
    In this episode, I share news from my recent trip to the UK, noticing how it seems to have reached the epic proportions of a Black Mirror episode; from the absurd TV licensing program to the new Digital ID Brit cards that will track your behavior. I also explore how the UK may be serving as a testing ground for new levels of behavioral surveillance that could eventually spread globally. I dive into California’s $900 “smart” license plates that track your every move, centralized government digital currencies, and my predictions for the next 20 years of Orwellian surveillance.
    Support the show on Patreon!

    In this week’s episode:
    The UK’s TV licensing system: Legal extortion through private contractors
    The Reviver R-plate: $900 to track yourself in California and Arizona
    Brit Cards: UK’s new “voluntary” Digital ID system
    The Bank of England’s digital pound and programmable money
    Historical patterns of control: From land ownership to neural interfaces
    Why the UK is the blueprint for global surveillance rollout
    Predictions for the next 20-50 years of biosurveillance
    Matrix Community Rooms
    Matrix Community Space - https://matrix.to/#/#psysecure:matrix.org
    Individual Room Links:
    https://matrix.to/#/#lockdown-intro:matrix.org
    https://matrix.to/#/#lockdown-podcast:matrix.org
    https://matrix.to/#/#lockdown-general:matrix.org
    Show Links:
    PsySecure ODSF Framework - https://odsf.psysecure.com
    LCD License Plate (not privacy friendly!) - https://reviver.com/rplate/
    Black Mirror S03E01 "Nosedive" - https://www.imdb.com/title/tt5497778/
    Bank of England's Digital Pound - https://www.bankofengland.co.uk/the-digital-pound
    Brit Card Digital ID System - https://www.labourtogether.uk/all-reports/britcard
    TV Licensing Detector Ads (1980s-90s): The Detector Van - https://www.youtube.com/watch?v=8NmdUcmLFkw
    "We know exactly where he is" - https://www.youtube.com/watch?v=qF3-S2sCnb8
    Keep One Eye Open - https://www.youtube.com/watch?v=mVfOmR7gAek
    More Powerful Dector Vans! - https://www.youtube.com/watch?v=1Q9CsRRhWQI

    “One believes things because one has been conditioned to believe them.”- Mustapha Mond (Brave New World

    ★ Support this podcast on Patreon ★
  • The Lockdown - Practical Privacy & Security

    032 - No Salt Required: Listener Questions Before the Break

    2025-08-11 | 21 min.
    In this episode I address listener feedback and questions, from clarifying my stance on the “Tea” controversy to sharing practical tips from the community about Privacy.com workarounds. This episode covers some loose ends before I take a brief hiatus. I also discuss why I won’t be at Black Hat this year, share thoughts on minimalism versus practicality in privacy, and reveal my favorite Indian restaurant in Vegas for those attending Black Hat!
    In this week’s episode:
    Addressing the “Tea” controversy and clarifying my positions on doxing
    Community solution for Privacy.com and Plaid privacy concerns
    Contact information protection strategies when family uses social media
    Future of capture-the-flag challenges and OSINT considerations
    Conference attendance updates and travel
    Matrix Community Rooms
    Matrix Community Space - https://matrix.to/#/#psysecure:matrix.org
    Individual Room Links:
    https://matrix.to/#/#lockdown-general:matrix.org
    https://matrix.to/#/#lockdown-podcast:matrix.org
    https://matrix.to/#/#lockdown-intro:matrix.org
    Show Links:
    Tea app leak article - https://www.bleepingcomputer.com/news/security/tea-app-leak-worsens-with-second-database-exposing-user-chats/
    OSMOSIS Institute - https://osmosisinstitute.org/events/
    Privacy.com - https://privacy.com
    “There are no facts, only interpretations.”- Friedrich Nietzsche

    ★ Support this podcast on Patreon ★
Fler podcasts i Samhälle och kultur
Om The Lockdown - Practical Privacy & Security
Welcome to The Lockdown. Privacy doesn’t have to be all-or-nothing. The inability to attain extreme levels of privacy shouldn’t deter one from taking any protective measures at all. The show is hosted by Ray Heffer, an expert in the field of privacy and cybersecurity, with each episode touching on a range of topics such as data privacy, password management, and secure browsing habits. Tin-foil hats are optional!
Podcast-webbplats

Lyssna på The Lockdown - Practical Privacy & Security, Somna med Henrik och många andra poddar från världens alla hörn med radio.se-appen

Hämta den kostnadsfria radio.se-appen

  • Bokmärk stationer och podcasts
  • Strömma via Wi-Fi eller Bluetooth
  • Stödjer Carplay & Android Auto
  • Många andra appfunktioner
Sociala nätverk
v8.12.4 | © 2007-2026 radio.de GmbH
Generated: 8/9/2026 - 5:36:55 PM