SlideShare a Scribd company logo
The Trump Era
Who am I?
● Chief System Architect of
● I teach Network Security and Linux System
Administration
● Slashdot 08.Feb.2017
US Visitors May Have to Hand
Over Social Media
Passwords: DHS
● Slashdot 12.Feb.2017
US-Born NASA Scientist
Detained At The Border Until
He Unlocked His Phone
● Slashdot 18.May.2017
US and EU Reject Expanding
Laptop Ban To Flights From
Europe
● Slashdot 18.May.2017
US and EU Reject Expanding
Laptop Ban To Flights From
Europe
● What does this actually
mean?
● Now a simple trip to the US becomes threat to
your personal life and company data
● You do not have rights under the US law,
because technically you haven't entered the US
● The DHS agents may decide to copy all your
data, without notifying you.
● By giving away your passwords to the DHS you
may violate the contract with your company and
immediately become liable under the laws of
your own country
● EU privacy laws state that customer data, such
as names, addresses, IDs and so on, should be
stored only on EU soil. If for whatever strange
reason you had left any such data on machine
that is searched by the DHS, you and your
company are liable under EU privacy laws
– EU GDPR
● Why would you unlock your laptop/phone
– you may be detained until you provide your
passwords
– you will miss all your appointments
– you will lose the money for this whole trip
– you will lose potential customers
– miss conference or training
● So what can YOU do?
– encrypt the data on your computer
● cripple on purpose your encrypted storage
● leave the beginning of your encrypted
storage at home or at any other third party,
that you can relay on
● make sure there is NO WAY for YOU to
recover the encrypted data, without that
part, that is NOT with you
● Why would you leave most of your data on the
laptop and only cripple the encrypted storage?
– Internet in the US is actually BAD... VERY BAD
– Downloading 10-15GB of data may not even finish
for one night :(
– leaving most of your data on your PC means faster
restore time
● What to encrypt
– all private data
– browser profile
– emails and email profiles
– all downloads
– all instant messaging logs
– settings of your applications
● If you have a VPN, keep its keys in the
encrypted storage, so DHS would not have
access to them
● It is also a good idea to disable your VPN
keys/accounts while you are traveling to/from
the US.
– setup a simple and effective way to enable your
VPN once you have passed the border control
● Keep all your passwords and keys encrypted
– make sure you can not retrieve them without a third
person that is NOT in the US right now
– this way you will NOT lie to a polygraph test and
you may hope for faster entry in the US
Phone
● Wipe your phone before boarding the flight to
the US
● Remove all facebook/google/slack/twitter and
etc. accounts
● Move all your private data to encrypted SD card
and remove it from your phone before boarding
the flight
– I'm sorry iPhone users... for you, you can backup
everything to the iCloud
● Once you are at the hotel, recover your phone
from your PC
What am I doing
● eCryptfs
● LUKS over a loop device
● Keep all passwords, including the one for the
eCryptfs on the LUKS
● Cripple the LUKS
● My wife has the important 5MB from the image
and she will tell me where she uploaded them
once I enter the US
Thank you!

More Related Content

Viewers also liked (14)

ODP
Home assistant
Marian Marinov
 
PPTX
LUG-BG - Kostadin Slavkov - PostgreSQL 10
Marian Marinov
 
PDF
Make your internship "worth it"
Marian Marinov
 
ODP
How to setup your linux server
Marian Marinov
 
PDF
Lxd the proper way of runing containers
Marian Marinov
 
PDF
Introduction to python
Marian Marinov
 
PDF
Practical my sql performance optimization
Marian Marinov
 
PDF
Why we are migrating to Slackware
Marian Marinov
 
PDF
Moving your router inside container
Marian Marinov
 
PDF
LUG-BG 2017 - Rangel Ivanov - Spread some butter - BTRFS
Marian Marinov
 
ODP
Computer vision for your projects
Marian Marinov
 
ODP
Securing the network for VMs or Containers
Marian Marinov
 
PDF
Performance comparison of Distributed File Systems on 1Gbit networks
Marian Marinov
 
ODP
nftables - the evolution of Linux Firewall
Marian Marinov
 
Home assistant
Marian Marinov
 
LUG-BG - Kostadin Slavkov - PostgreSQL 10
Marian Marinov
 
Make your internship "worth it"
Marian Marinov
 
How to setup your linux server
Marian Marinov
 
Lxd the proper way of runing containers
Marian Marinov
 
Introduction to python
Marian Marinov
 
Practical my sql performance optimization
Marian Marinov
 
Why we are migrating to Slackware
Marian Marinov
 
Moving your router inside container
Marian Marinov
 
LUG-BG 2017 - Rangel Ivanov - Spread some butter - BTRFS
Marian Marinov
 
Computer vision for your projects
Marian Marinov
 
Securing the network for VMs or Containers
Marian Marinov
 
Performance comparison of Distributed File Systems on 1Gbit networks
Marian Marinov
 
nftables - the evolution of Linux Firewall
Marian Marinov
 

Similar to Protecting your data when entering the US (20)

PPTX
Securing your digital life - Jason Addie
DataFest Tbilisi
 
PPTX
Computer Security For Activists & Everyone (Oct 2018)
Kit O'Connell
 
PPT
Basic Digital Security
Ujjwal Acharya
 
PDF
Internet Privacy
Girindro Pringgo Digdo
 
PDF
Don't Diligence Information Security for Lawyers
darrentthurston
 
ODP
Hit by a Cyberattack: lesson learned
B.A.
 
PDF
Secure Communication
Koen Van Impe
 
ODP
Your cell phone is covered in spiders
cooperq
 
PDF
Mc physics colloquium2018-03-30.-handouts
Kevin Wall
 
PPTX
chapter 5 securhbvhjhy8hhihghhity (3).pptx
mkurdi133
 
PPT
Securitytips
Santosh Khadsare
 
PDF
Simple Computer Tips - Screen Shots, Passwords, etc
Holly Akers
 
PPTX
Freezing Android Bypass
Matthew Kwong
 
PDF
DSRY_Cybersecurity Awareness Presentation
MohammedFarouk38
 
PPT
Seizing Electronic Evidence & Best Practices – Secret Service
Gol D Roger
 
PPT
How you can become a hacker with no security experience
Avădănei Andrei
 
PPTX
Online Privacy & Computer Security Basics (September 2017)
Kit O'Connell
 
PDF
Digital Security Tips for Hong Kongers
CHRDnet
 
PPT
Understanding Computers: Today and Tomorrow, 13th Edition Chapter 15 - Comput...
yaminohime
 
PDF
Everyday computer tips
Holly Akers
 
Securing your digital life - Jason Addie
DataFest Tbilisi
 
Computer Security For Activists & Everyone (Oct 2018)
Kit O'Connell
 
Basic Digital Security
Ujjwal Acharya
 
Internet Privacy
Girindro Pringgo Digdo
 
Don't Diligence Information Security for Lawyers
darrentthurston
 
Hit by a Cyberattack: lesson learned
B.A.
 
Secure Communication
Koen Van Impe
 
Your cell phone is covered in spiders
cooperq
 
Mc physics colloquium2018-03-30.-handouts
Kevin Wall
 
chapter 5 securhbvhjhy8hhihghhity (3).pptx
mkurdi133
 
Securitytips
Santosh Khadsare
 
Simple Computer Tips - Screen Shots, Passwords, etc
Holly Akers
 
Freezing Android Bypass
Matthew Kwong
 
DSRY_Cybersecurity Awareness Presentation
MohammedFarouk38
 
Seizing Electronic Evidence & Best Practices – Secret Service
Gol D Roger
 
How you can become a hacker with no security experience
Avădănei Andrei
 
Online Privacy & Computer Security Basics (September 2017)
Kit O'Connell
 
Digital Security Tips for Hong Kongers
CHRDnet
 
Understanding Computers: Today and Tomorrow, 13th Edition Chapter 15 - Comput...
yaminohime
 
Everyday computer tips
Holly Akers
 
Ad

More from Marian Marinov (20)

PDF
How to start and then move forward in IT
Marian Marinov
 
PDF
Thinking about highly-available systems and their setup
Marian Marinov
 
PDF
Understanding your memory usage under Linux
Marian Marinov
 
PDF
How to implement PassKeys in your application
Marian Marinov
 
PDF
Dev.bg DevOps March 2024 Monitoring & Logging
Marian Marinov
 
PDF
Basic presentation of cryptography mechanisms
Marian Marinov
 
PDF
Microservices: Benefits, drawbacks and are they for me?
Marian Marinov
 
PDF
Introduction and replication to DragonflyDB
Marian Marinov
 
PDF
Message Queuing - Gearman, Mosquitto, Kafka and RabbitMQ
Marian Marinov
 
PDF
How to successfully migrate to DevOps .pdf
Marian Marinov
 
PDF
How to survive in the work from home era
Marian Marinov
 
PDF
Managing sysadmins
Marian Marinov
 
PDF
Improve your storage with bcachefs
Marian Marinov
 
PDF
Control your service resources with systemd
Marian Marinov
 
PDF
Comparison of-foss-distributed-storage
Marian Marinov
 
PDF
Защо и как да обогатяваме знанията си?
Marian Marinov
 
PDF
Securing your MySQL server
Marian Marinov
 
PDF
Sysadmin vs. dev ops
Marian Marinov
 
PDF
DoS and DDoS mitigations with eBPF, XDP and DPDK
Marian Marinov
 
PDF
Challenges with high density networks
Marian Marinov
 
How to start and then move forward in IT
Marian Marinov
 
Thinking about highly-available systems and their setup
Marian Marinov
 
Understanding your memory usage under Linux
Marian Marinov
 
How to implement PassKeys in your application
Marian Marinov
 
Dev.bg DevOps March 2024 Monitoring & Logging
Marian Marinov
 
Basic presentation of cryptography mechanisms
Marian Marinov
 
Microservices: Benefits, drawbacks and are they for me?
Marian Marinov
 
Introduction and replication to DragonflyDB
Marian Marinov
 
Message Queuing - Gearman, Mosquitto, Kafka and RabbitMQ
Marian Marinov
 
How to successfully migrate to DevOps .pdf
Marian Marinov
 
How to survive in the work from home era
Marian Marinov
 
Managing sysadmins
Marian Marinov
 
Improve your storage with bcachefs
Marian Marinov
 
Control your service resources with systemd
Marian Marinov
 
Comparison of-foss-distributed-storage
Marian Marinov
 
Защо и как да обогатяваме знанията си?
Marian Marinov
 
Securing your MySQL server
Marian Marinov
 
Sysadmin vs. dev ops
Marian Marinov
 
DoS and DDoS mitigations with eBPF, XDP and DPDK
Marian Marinov
 
Challenges with high density networks
Marian Marinov
 
Ad

Recently uploaded (20)

PDF
EVS+PRESENTATIONS EVS+PRESENTATIONS like
saiyedaqib429
 
PDF
67243-Cooling and Heating & Calculation.pdf
DHAKA POLYTECHNIC
 
PDF
SG1-ALM-MS-EL-30-0008 (00) MS - Isolators and disconnecting switches.pdf
djiceramil
 
PPTX
sunil mishra pptmmmmmmmmmmmmmmmmmmmmmmmmm
singhamit111
 
PDF
2010_Book_EnvironmentalBioengineering (1).pdf
EmilianoRodriguezTll
 
PDF
Natural_Language_processing_Unit_I_notes.pdf
sanguleumeshit
 
PPTX
cybersecurityandthe importance of the that
JayachanduHNJc
 
PPTX
Introduction to Fluid and Thermal Engineering
Avesahemad Husainy
 
PPTX
Precedence and Associativity in C prog. language
Mahendra Dheer
 
PDF
67243-Cooling and Heating & Calculation.pdf
DHAKA POLYTECHNIC
 
PPTX
ENSA_Module_7.pptx_wide_area_network_concepts
RanaMukherjee24
 
PPTX
FUNDAMENTALS OF ELECTRIC VEHICLES UNIT-1
MikkiliSuresh
 
PDF
Zero carbon Building Design Guidelines V4
BassemOsman1
 
PPTX
filteration _ pre.pptx 11111110001.pptx
awasthivaibhav825
 
PPTX
Online Cab Booking and Management System.pptx
diptipaneri80
 
PPTX
Module2 Data Base Design- ER and NF.pptx
gomathisankariv2
 
PDF
STUDY OF NOVEL CHANNEL MATERIALS USING III-V COMPOUNDS WITH VARIOUS GATE DIEL...
ijoejnl
 
PDF
Packaging Tips for Stainless Steel Tubes and Pipes
heavymetalsandtubes
 
PDF
Construction of a Thermal Vacuum Chamber for Environment Test of Triple CubeS...
2208441
 
PPTX
business incubation centre aaaaaaaaaaaaaa
hodeeesite4
 
EVS+PRESENTATIONS EVS+PRESENTATIONS like
saiyedaqib429
 
67243-Cooling and Heating & Calculation.pdf
DHAKA POLYTECHNIC
 
SG1-ALM-MS-EL-30-0008 (00) MS - Isolators and disconnecting switches.pdf
djiceramil
 
sunil mishra pptmmmmmmmmmmmmmmmmmmmmmmmmm
singhamit111
 
2010_Book_EnvironmentalBioengineering (1).pdf
EmilianoRodriguezTll
 
Natural_Language_processing_Unit_I_notes.pdf
sanguleumeshit
 
cybersecurityandthe importance of the that
JayachanduHNJc
 
Introduction to Fluid and Thermal Engineering
Avesahemad Husainy
 
Precedence and Associativity in C prog. language
Mahendra Dheer
 
67243-Cooling and Heating & Calculation.pdf
DHAKA POLYTECHNIC
 
ENSA_Module_7.pptx_wide_area_network_concepts
RanaMukherjee24
 
FUNDAMENTALS OF ELECTRIC VEHICLES UNIT-1
MikkiliSuresh
 
Zero carbon Building Design Guidelines V4
BassemOsman1
 
filteration _ pre.pptx 11111110001.pptx
awasthivaibhav825
 
Online Cab Booking and Management System.pptx
diptipaneri80
 
Module2 Data Base Design- ER and NF.pptx
gomathisankariv2
 
STUDY OF NOVEL CHANNEL MATERIALS USING III-V COMPOUNDS WITH VARIOUS GATE DIEL...
ijoejnl
 
Packaging Tips for Stainless Steel Tubes and Pipes
heavymetalsandtubes
 
Construction of a Thermal Vacuum Chamber for Environment Test of Triple CubeS...
2208441
 
business incubation centre aaaaaaaaaaaaaa
hodeeesite4
 

Protecting your data when entering the US

  • 2. Who am I? ● Chief System Architect of ● I teach Network Security and Linux System Administration
  • 3. ● Slashdot 08.Feb.2017 US Visitors May Have to Hand Over Social Media Passwords: DHS ● Slashdot 12.Feb.2017 US-Born NASA Scientist Detained At The Border Until He Unlocked His Phone
  • 4. ● Slashdot 18.May.2017 US and EU Reject Expanding Laptop Ban To Flights From Europe
  • 5. ● Slashdot 18.May.2017 US and EU Reject Expanding Laptop Ban To Flights From Europe ● What does this actually mean?
  • 6. ● Now a simple trip to the US becomes threat to your personal life and company data ● You do not have rights under the US law, because technically you haven't entered the US ● The DHS agents may decide to copy all your data, without notifying you.
  • 7. ● By giving away your passwords to the DHS you may violate the contract with your company and immediately become liable under the laws of your own country ● EU privacy laws state that customer data, such as names, addresses, IDs and so on, should be stored only on EU soil. If for whatever strange reason you had left any such data on machine that is searched by the DHS, you and your company are liable under EU privacy laws – EU GDPR
  • 8. ● Why would you unlock your laptop/phone – you may be detained until you provide your passwords – you will miss all your appointments – you will lose the money for this whole trip – you will lose potential customers – miss conference or training
  • 9. ● So what can YOU do? – encrypt the data on your computer ● cripple on purpose your encrypted storage ● leave the beginning of your encrypted storage at home or at any other third party, that you can relay on ● make sure there is NO WAY for YOU to recover the encrypted data, without that part, that is NOT with you
  • 10. ● Why would you leave most of your data on the laptop and only cripple the encrypted storage? – Internet in the US is actually BAD... VERY BAD – Downloading 10-15GB of data may not even finish for one night :( – leaving most of your data on your PC means faster restore time
  • 11. ● What to encrypt – all private data – browser profile – emails and email profiles – all downloads – all instant messaging logs – settings of your applications
  • 12. ● If you have a VPN, keep its keys in the encrypted storage, so DHS would not have access to them ● It is also a good idea to disable your VPN keys/accounts while you are traveling to/from the US. – setup a simple and effective way to enable your VPN once you have passed the border control
  • 13. ● Keep all your passwords and keys encrypted – make sure you can not retrieve them without a third person that is NOT in the US right now – this way you will NOT lie to a polygraph test and you may hope for faster entry in the US
  • 14. Phone ● Wipe your phone before boarding the flight to the US ● Remove all facebook/google/slack/twitter and etc. accounts ● Move all your private data to encrypted SD card and remove it from your phone before boarding the flight – I'm sorry iPhone users... for you, you can backup everything to the iCloud ● Once you are at the hotel, recover your phone from your PC
  • 15. What am I doing ● eCryptfs ● LUKS over a loop device ● Keep all passwords, including the one for the eCryptfs on the LUKS ● Cripple the LUKS ● My wife has the important 5MB from the image and she will tell me where she uploaded them once I enter the US