secure-os.org
All guidesQubes OSTailsWhonixHardened LinuxDisk encryptionThreat model

Category

Guides

91 guides

secure-os wrote

How to Stop Robocalls: What Works, What Only Feels Like It Works

Sep 6, 2026 in phone, scams, privacy - Blocking numbers one by one cannot keep up with software that changes number every call. What actually reduces the volume is carrier filtering, a setting already on your phone, and one habit that costs nothing. Also: why answering at all makes it worse.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Your Phone Has Been Stolen: the First Hour, in Order

Sep 6, 2026 in phone, theft, accounts - Locating it is not the first thing to do, and it is rarely the useful one. What matters in the first hour is the accounts the phone was signed into and the SIM that receives your codes. The order that limits the damage, and the two steps to take before it ever happens.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

How to Remove EXIF Data From Photos (iPhone, Android, Windows, Mac)

Sep 6, 2026 in privacy, photos, metadata - Every photo your phone takes carries a hidden block of data, and on a photo taken at home that block can include the coordinates of your front door. Here is how to see what is in yours, strip it on each platform, and which sharing apps remove it for you already.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

How to Tell if an AirTag Is Tracking You (iPhone and Android)

Sep 6, 2026 in tracking, phone, privacy - An AirTag that is not with its owner will try to alert you, but only once several conditions line up. Here is what the alert actually says, why Android detection works differently, how to make a tracker reveal itself on purpose, and what to do once you have found one.

Read more…
📅 6 min read🛡️ Threat-model-first

secure-os wrote

Linux Audit Log Commands: the Six That Answer Real Questions

Sep 5, 2026 in linux, logging, auditd - journalctl, ausearch, aureport, last, lastb and auditctl cover almost everything you will ever need to ask a Linux system about its own past. What each one sees, what none of them see, and why a log on the machine is evidence of a different quality than a log shipped off it.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Is a Double VPN Worth It? What the Second Hop Actually Buys

Sep 4, 2026 in vpn, anonymity, threat-model - A double VPN sends your traffic through two servers instead of one. What that genuinely protects against, what it costs in speed and latency, and the common cases where it changes nothing at all because the weak link is somewhere else entirely.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

How to Find Hidden Cameras in a Rental or Hotel Room (2026)

Sep 4, 2026 in surveillance, privacy, travel - A hidden camera is found by systematic inspection, not by a gadget. Which objects actually host them, why the lens reflection trick works and when it does not, what a network scan can and cannot tell you, and what to do if you find one.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

Signal vs Session: The Phone Number Is the Whole Argument

Sep 4, 2026 in messaging, anonymity, metadata - Session drops phone numbers and central servers, Signal keeps both and encrypts everything else. What each one hides from whom, what Session gives up to get anonymity, and the single question that decides which of the two you actually need.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Adversary in the Middle Phishing: Why 2FA Does Not Stop It (2026)

Sep 3, 2026 in phishing, 2fa, mfa - Adversary in the middle phishing proxies the real login page in real time, so the code from your authenticator app lands in the attacker's hands and the stolen session cookie keeps working after you close the tab. How AiTM works, why one factor type survives it, and what to check.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

License Plate Reader Surveillance: What ALPR Records (2026)

Sep 3, 2026 in surveillance, privacy, alpr - Automatic license plate readers photograph every car that passes, not only wanted ones, and keep the plate, the time, the place and often the image. What ALPR collects, how long networks retain it, why a retention period is the real privacy setting, and what you can and cannot do about it.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

How to Encrypt Your Email 2026 (3 Practical Ways)

Jul 18, 2026 in email, encryption, pgp - How to encrypt your email in 2026, step by step: the easy way with an end-to-end provider like Proton Mail, PGP/GPG for full control, and S/MIME. Honest limits on metadata, subject lines and what encryption really covers.

Read more…
📅 6 min read🛡️ Threat-model-first

secure-os wrote

Wayland vs X11: Which Is More Secure? (2026)

Jul 9, 2026 in linux, wayland, x11 - X11 lets any running app read your keystrokes and capture other windows. Wayland was designed to close that gap. What each does, the honest caveats (XWayland, portals), and why a security desktop should prefer Wayland.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Do You Need Antivirus on Linux? An Honest 2026 Guide

Jun 26, 2026 in linux, antivirus, malware - Does Linux need antivirus? The honest answer, when it actually matters (servers, mail gateways, mixed Windows networks), the real tools - ClamAV, rkhunter, chkrootkit - and the layered defenses that protect a desktop better than a virus scanner.

Read more…
📅 8 min read🛡️ Threat-model-first

secure-os wrote

Firejail: How to Sandbox Linux Applications (2026 Guide)

Jun 25, 2026 in linux, sandboxing, firejail - A practical guide to Firejail, the SUID sandbox that confines Linux applications using namespaces and seccomp. Covers installation, profiles, common commands, real limitations, and how it compares to Flatpak and Bubblewrap.

Read more…
📅 9 min read🛡️ Threat-model-first

secure-os wrote

What Is a Threat Model? A Plain-English Guide (2026)

Jun 22, 2026 in threat-model, opsec, privacy - A threat model is a simple plan that answers four questions: what you protect, who you protect it from, how likely the risk is, and what it costs to defend. Build one in minutes, without paranoia, so your security effort matches your real risks.

Read more…
📅 6 min read🛡️ Threat-model-first

secure-os wrote

What Is a Firewall? How It Protects You (2026)

Jun 19, 2026 in firewall, security, network - A firewall decides which network traffic is allowed in or out of your device or network. What a firewall is, how it works, the main types (hardware, software, stateful), what it can and can't protect against, and how it fits into real security.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

What Is Phishing? How to Spot and Stop It (2026)

Jun 19, 2026 in phishing, security, email - Phishing tricks you into handing over passwords or money by impersonating someone you trust. What phishing is, the main types (email, spear, smishing, vishing), the red flags, and the defenses that actually work - 2FA and a password manager.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

GPG vs PGP: What's the Difference? (2026)

Jun 18, 2026 in encryption, gpg, pgp - GPG vs PGP confuses everyone - because they're not really competitors. PGP is the original encryption program, OpenPGP is the open standard, and GPG (GnuPG) is the free implementation most people actually use. What each one is, and which to choose.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

Is Tor Safe? Tor vs a VPN, Honestly (2026)

Jun 18, 2026 in tor, vpn, anonymity - Is Tor safe? Mostly yes - Tor is a respected free anonymity network, but it has real limits: slow speeds, exit-node risks, and it doesn't make you invincible. What Tor protects, what it doesn't, and how it compares to a VPN.

Read more…
📅 7 min read🛡️ Threat-model-first

secure-os wrote

US Data Privacy Laws in 2026: The State Patchwork Explained

Jun 18, 2026 in privacy, data-protection, ccpa - The US still has no single federal data privacy law - instead a growing patchwork of state laws like California's CCPA/CPRA, with more states joining in 2026. What rights you actually get, what it changes, and how to protect yourself without waiting for the law.

Read more…
📅 7 min read🛡️ Threat-model-first

secure-os wrote

What Is OPSEC? Operational Security for Normal People (2026)

Jun 18, 2026 in opsec, privacy, operational-security - OPSEC (operational security) is the practice of protecting the small pieces of information that, combined, expose you. What OPSEC means, where it came from, the 5-step process, and how to apply it to your everyday digital life - without paranoia.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

Is Linux More Secure Than Windows? An Honest Comparison (2026)

Jun 17, 2026 in linux, windows, security - Is Linux more secure than Windows in 2026? Linux has real structural advantages - permissions, smaller desktop attack surface, open-source auditability - but Windows has closed much of the gap. What actually makes the difference, honestly.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

How to Encrypt a USB Drive 2026 (Windows, macOS, Linux)

Jun 15, 2026 in encryption, usb, veracrypt - How to encrypt a USB drive in 2026, step by step, on Windows, macOS and Linux - with free, cross-platform VeraCrypt, plus built-in BitLocker To Go, macOS encrypted volumes and LUKS. What encryption protects, and the honest pitfalls.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Signal vs Telegram 2026: Which Is Actually Private?

Jun 15, 2026 in signal, telegram, messaging - Signal vs Telegram, honestly compared in 2026. Signal is end-to-end encrypted by default; Telegram's default chats are not. What that really means, where Telegram still shines, and the honest limits of each.

Read more…
📅 5 min read🛡️ Threat-model-first

secure-os wrote

Signal vs WhatsApp 2026: Which Is Actually More Private?

Jun 14, 2026 in signal, whatsapp, messaging - Signal vs WhatsApp, honestly compared in 2026. Both encrypt message content end-to-end - the real difference is metadata and ownership. Why Signal wins on privacy, where WhatsApp is fine, and the honest limits of each.

Read more…
📅 4 min read🛡️ Threat-model-first

secure-os wrote

Linux Hardening in 2026: The Threat-Model-First Guide

Jun 12, 2026 in linux, hardening, sysctl - A practical Linux hardening guide built around threat models, not checklists. Covers sysctl, AppArmor, SELinux, kernel parameters, and verified boot - with clear explanations of what each measure actually protects against.

Read more…
📅 9 min read🛡️ Threat-model-first