Recommended Posts

Hi y'all, need help.

All of us have some documents they need protecting. I had a solution that worked great for me for years - a Keepass file for passwords, and a Truecrypt container for bank and credit statements. Both were saved in Dropbox and so were accessible from any computer I owned.

I recently bought an iPad to replace Nexus 7 that was driving me nuts with slowdowns and crashes. I ended up liking that iPad a lot more than I thought I would, despite lack of customization and control over OS the thing just works. I spend much more time actually _doing_ things on it. I barely touch the desktop anymore, unless I need to process some photos or do my bills. I have to do my bills from the desktop because that's the only way I can save the statements to my Truecrypt container.

So, here's the question.. What do you use for a protected file storage that can be shared between several different computers and an iPad ?

Is there a way on iOS to access a Truecrypt container from cloud storage ? Does it require caching the entire container locally ?

Is there an online solution that is proven safe ? I understand that nothing is 100% safe online, but a bank level security combined with some sort of file encryption would do.

Right now I am thinking of using AES encrypted 7zip archives with Box.com, but there's got to be a better way.

You do know your ipad data is already encrypted right?  Did you turn on passcode? And if you loose it you an just remotely wipe it

 

http://help.apple.com/icloud/#/mmfc0ef36f

Erase your device

Are you storing your account numbers, and SS# on these statements? Most statements no longer have this sort of info on them - and pretty much other than some numbers don't really contain all that much info that all that private.

You can turn off simple passcode and use a better password and even enable wipe on 10 failed.. I would think its secure enough to have some old bank statements on to be honest.

Yes I know iPad is encrypted, however I want to share data across devices. I need a central storage solution that works with all of my computers, not just one of them.

 

I have no control over what information is being put on statements. Can't rely on each provider making sure they don't put anything sensitive on them. This kind of data simply does not belong in the open.

 

It looks like Boxcrypt could work, I need to figure what it does on iPad.

Yes I know iPad is encrypted, however I want to share data across devices. I need a central storage solution that works with all of my computers, not just one of them.

 

I have no control over what information is being put on statements. Can't rely on each provider making sure they don't put anything sensitive on them. This kind of data simply does not belong in the open.

 

It looks like Boxcrypt could work, I need to figure what it does on iPad.

 

Boxcryptor doesn't do anything to or on the ipad itself.  It is an encryption wrapper on a computer that encrypts a file before sending it off to a cloud provider.  The iOS app just allows files from the cloud provider to download to the app itself and be viewed. 

Well, Boxcryptor could be it, but it's major limitation is that free version only links 2 devices and you need to unlink one of them to add another one. In a household with 4 tablets, 2 smartphones and a few computers, this won't suffice, and I am not paying $50 each year for a Pro subscription.

I decided to keep my Truecrypt container for archiving past data, and use encrypted zip files for current year's statements. Hopefully eventually someone would come up with a reasonable iOS encrypted container solution.

Who exactly are you protecting your files from?  They are encrypted on your ipad as we stated, they are encrypted in the cloud and they use an encrypted transfer method.

 

post-14624-0-51595900-1394623747.jpg

 

So your protecting your bank statements from the company your storing your files with?  Or the government?  Both of which prob have easier ways to access that information ;)

https://www.dropbox.com/help/27/en

https://sugarsync.custhelp.com/app/answers/detail/a_id/201/kw/security

 

Look up pretty much every cloud provider - they are very security aware.  I find it unlikely someone at dropbox is looking into your files and thinking - hey I can sell this info for identity theft, etc.  The first case of this would completely shutdown not only dropbox but pretty much every company like them.  So I think they take it pretty serious - prob more so than your CC company or online store you shop with that stores your CC numbers, etc.

 

Its more likely that say your CC company or a store you shop with employee's would sell of this data for profit where this data is just easy search in a database and prob 1000's of peoples info in a nice spreadsheet vs and employee of say dropbox weeding through users files looking for info that might be useful to sell for profit or use themselves..

 

While I agree everyone should be concerned with loss of your personal data..  Curious who guards your mailbox when statements come there? Keep in mind these companies are storing your data like where your original bank/company is storing the information they give you in the statement.  What your doing is hiding the information from the company you trust to store the data for you.. 

 

If your worried that online storage company has access to your encrypted data - I would look to spideroak, I believe their claim to fame is even they do not have access.

 

https://spideroak.com/whyspideroak

Complete Privacy Guaranteed

  • SpiderOak never stores or knows a user's password or the plaintext encryption keys which means not even SpiderOak employees can access the data
  • Our zero-knowledge privacy approach means we can never betray the trust of our users

 

But to me, this is a bit over the top for some bank statements ;)

Bank statements, credit card statements, tax documents, medical bills... a lot of them have date of birth, full address, full or part social security number - this info needs to be stored somewhere somehow. And most of it nowadays comes in electronic format. This is ID thief's heaven - the whole system of using SSN's is broken, but that's beyond the point.

 

You can leave this information unencrypted in Dropbox, but after several publicized accidents - one when Dropbox opened user accounts for hours to anyone to browse through - I don't trust them much. Or OneDrive, or Google. I have no choice but to trust banks but at least the banks are supposed to have a system in place to vet their employees, and have decades if not centuries of security obsessed corporate culture (not that it prevents any issues), and there are laws that make them responsible for at least some monetary losses of their customers due to internal breeches. I have no idea how cloud services vet their employees, and as far as I know they can read anything in anybody's account and have zero oversight and zero responsibility.

 

You can leave the statements on bank site of course, but good luck getting them if you switch banks, or if your bank is bought out. And many only let you go back 1-2 years.

 

Also, banks and medical offices simply don't have all of your info - just (important) bits related to your business with them.

 

Short of printing every record and locking it up in a safe somewhere - which is really not a good solution anyway - the only sensible approach, in my view, is to assume that some of your data may become compromised sooner or later, and prepare for this by encrypting access. A thief sophisticated enough and equipped well enough to break an AES encrypted file with 12-15 character password likely isn't after your individual data anyway.

Bank statements, credit card statements, tax documents, medical bills... a lot of them have date of birth, full address, full or part social security number - this info needs to be stored somewhere somehow. And most of it nowadays comes in electronic format. This is ID thief's heaven - the whole system of using SSN's is broken, but that's beyond the point.

 

You can leave this information unencrypted in Dropbox, but after several publicized accidents - one when Dropbox opened user accounts for hours to anyone to browse through - I don't trust them much. Or OneDrive, or Google. I have no choice but to trust banks but at least the banks are supposed to have a system in place to vet their employees, and have decades if not centuries of security obsessed corporate culture (not that it prevents any issues), and there are laws that make them responsible for at least some monetary losses of their customers due to internal breeches. I have no idea how cloud services vet their employees, and as far as I know they can read anything in anybody's account and have zero oversight and zero responsibility.

 

You can leave the statements on bank site of course, but good luck getting them if you switch banks, or if your bank is bought out. And many only let you go back 1-2 years.

 

Also, banks and medical offices simply don't have all of your info - just (important) bits related to your business with them.

 

Short of printing every record and locking it up in a safe somewhere - which is really not a good solution anyway - the only sensible approach, in my view, is to assume that some of your data may become compromised sooner or later, and prepare for this by encrypting access. A thief sophisticated enough and equipped well enough to break an AES encrypted file with 12-15 character password likely isn't after your individual data anyway.

 

And I thought I was paranoid.  The answer is simple: Don't store any of that information in the cloud.  You cannot prevent the individual companies from storing the information electronically and making it available to you over the internet but that doesn't mean you have to store it anywhere else and make it available.  Do this: Get a NAS and store those documents on the nas.  Then make sure that the storage device is not accessible to the outside world.  You could then use truecrypt to encrypt that storage if you are still paranoid.  Bing, bang, boom...all done.

 

Also...for redundancy and backups..backup the nas to an additional physical hard drive and place that hard drive in a safety deposit box.

  • 2 weeks later...

And I thought I was paranoid.  The answer is simple: Don't store any of that information in the cloud.  You cannot prevent the individual companies from storing the information electronically and making it available to you over the internet but that doesn't mean you have to store it anywhere else and make it available.  Do this: Get a NAS and store those documents on the nas.  Then make sure that the storage device is not accessible to the outside world.  You could then use truecrypt to encrypt that storage if you are still paranoid.  Bing, bang, boom...all done.

 

Also...for redundancy and backups..backup the nas to an additional physical hard drive and place that hard drive in a safety deposit box.

 

 

This is not an answer, it's a limitation.

 

I looked at SpiderOak and Wuala, but I don't think I am ready to trust them just yet.

 

Winzip AES256 solution works good for protecting statements, but is a royal PITA for editable documents... as they have to be re-zipped and re-uploaded afer each edit on iPad.

 

For now, I'm afraid that's the only safe, if cumbersome, method. Although CloudOn seem to support password protected Excel files... will check that one, too. None of my spreadsheets have any account #s in them, anyway.

There's an app called Disk Decipher that reads Truecrypt (and FreeOTFE and LUKS) volumes, even on Dropbox without having to cache the entire container locally.

 

Once I RTFM'd, I was able to open the container in Dropbox and read files. For now it's read only, but I can use Winzip for individual files & transfer them to TC container in bulk later.

 

Highly recommended.

There's an app called Disk Decipher that reads Truecrypt (and FreeOTFE and LUKS) volumes, even on Dropbox without having to cache the entire container locally.

 

Once I RTFM'd, I was able to open the container in Dropbox and read files. For now it's read only, but I can use Winzip for individual files & transfer them to TC container in bulk later.

 

Highly recommended.

 

That has to be the worst idea I have seen in a long time.  Talk about a convoluted and wrong implementation.  The moment I saw view only is the moment I said no.  Boxcryptor is what you are looking.  Stop being cheap and buy a subscription for it.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • I'm reading the reports as EU rejecting Apple's proposal because Trusted System Agent would be an intermediary offered to third party AI's (this article is also worded as such) but Siri AI itself would not pass this intermediary. This would cause a situation where Siri AI would have more direct system access and offer it an unfair advantage. (speaking from EU regulator perspective here) Apple is citing security issues with doing what EU asked for, and I think this also supports this theory, because truly direct system access like Siri AI would make it impossible to control third party AI's running on the devices and e.g. reign them in via adjustments to Trusted System Agent. So, I _think_ this is the sticking point right now: EU saying they need to be on equal footing as Siri AI, Apple saying they can't be because Apple only trusts their own AI. Apple could of course be leaning a bit extra hard towards this because they're biased. One method to find an agreement would be to have Siri AI also run through Trusted System Agent and treat it as untrusted. This kind of defensive architecture design (especially when involving an AI) would honestly not be a very bad idea from a sheer engineering standpoint. But then Apple would need to swallow their pride and adapt worldwide due to EU, and make perhaps major updates delaying Siri AI once more.
    • I have not even heard of that game. will take a look
    • Chasys Photo 5.41.01 by Razvan Serea Chasys Photo is a suite of image editing applications including a layer-based image editor with adjustment layers, linked layers, timeline and frame-based animation, icon editing, image stacking and comprehensive plug-in support (Chasys Photo Editor), a fast image viewer (Chasys Photo Viewer) and a fast multi-threaded image file converter (Chasys Photo Converter) , with RAW image support in all components. It supports the native file formats of several competitors including Adobe Photoshop, Affinity Photo, ArtWeaver, Corel PhotoPaint, FireAlpaca, GIMP, Krita, Paint.NET, PaintShop Pro and Pixlr, and the whole suite is designed to make effective use of multi-core processors, touch-screens and pen-input devices. Designed under the mantra of “unique, flexible and powerful”, Chasys Photo takes a radically different approach to image editing with the aim of opening up new possibilities for those who dare to be different. Chasys Photo key features: Free-style layering with blending modes Adjustment layers with multiple adjustments per layer Linked layers (a.k.a Linked Smart Objects) Composite, Image List, Frame Animation and Object Animation image modes Animation, both frame-based and object-based (timeline animation) Animation Composer engine Image Stacking for noise reduction, super-resolution, etc. Tablet/Pen-input/Stylus support with pressure control Touch-screen support with gestures including pitch-to-zoom and multi-finger panning Support for the native formats of Adobe Photoshop, Affinity Photo, ArtWeaver, Corel PhotoPaint, FireAlpaca, GIMP, Krita, Paint.NET, PaintShop Pro and Pixlr Support for common formats such as JPEG, animated PNG, animated GIF, TIFF, PICT, WebP, HEIF, DDS, JPEG-2000, JPEG-XR, JPEG-XL, AVI video, etc. Support for the OpenRaster interchange file format and rare formats such as QOI, MNG/JNG and DPX Support for older formats such as PPM/PGM/PBM, PCX/DCX, PCD, TGA, COKE, etc. Comprehensive Camera RAW file support with live adjustment Extensive plug-in support with streamlined SDKs Support for Photoshop Filter Plug-ins (.8BF) Advanced printing and scanning engines PDF document generation Icon and cursor editing, import and export, including Vista-style and Mac-OS icons Screen Capture, including Video Screen Capture with multiple triggering modes Video capture from devices (e.g. TV/Video) Supports multi-core processors, High-DPI displays and Multiple Display setups Integrated File Browser, Bluetooth OBEX and in-built utilities (Calculator, Notepad) Shell integration with thumbnails and conflict detection Unlimited Undo/Redo and Asynchronous Auto-Save, with Just-in-time memory compression to save space Fully re-editable text with advanced styling and effects (TextArt) Full alpha channel through out the workflow with Alpha protection (a.k.a. transparency protection) Multiple language support with user-editable language files and translation assistant (Chasys Photo Language Studio) Anti-aliasing and super-sampling support in tools and paths* Smart-resizing (similar to seam-carving) Best-in-class post-edit heuristics anti-aliasing engine Physical measurement specification with display size detection via EDID Uses the latest CD5 specification with animation and multi-resolution Super-fast internal graphics engine (JpDRAW2) Full UNICODE support in all components Metadata save, restore and scale to imitate vector art Configurable Guides and Grids with Snap-to-Grid Smart-dither to custom palette Asynchronous preview rendering engine Pantone equivalent palettes for PMS 100 to 814-2x Automatic color naming ... and many more! Chasys Photo 5.41.01 changelog: New Features Layered images with multiple pages (Composite/Multi-page) Additional templates to support template-centric workflow New Layer Blend Mode: Inverse Luma Mask Horizon detection in Rotate Transform Cropping option when importing video Orientation options in QR Code Generator plug-in Solved angle ambiguities (CCW versus CW) Internal Improvements Improved graphics engine (JpDRAW2™ v26.05) Improved CD5 codec (v4.10, improved ACSC compression) Improved interpolation when downsizing images Improved motion detection in Video Capture Slightly lower memory usage (RAM is getting expensive!) File Support and Bug Fixes Improved PXZ file support (placeholders, blanks) [bug-fix] Memory leak in flt_JPEG.dll Download: Chasys Photo 5.41.01 | 46.1 MB (Freeware) View: Chasys Photo Home Page | Wikipedia Page | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
    • We don't need stars for the word, just use the word "CSAM"
  • Recent Achievements

    • Very Popular
      Captain_Eric earned a badge
      Very Popular
    • One Month Later
      amusc earned a badge
      One Month Later
    • One Month Later
      DJC50PLUS earned a badge
      One Month Later
    • Week One Done
      DJC50PLUS earned a badge
      Week One Done
    • Proficient
      Eric Biran went up a rank
      Proficient
  • Popular Contributors

    1. 1
      +primortal
      508
    2. 2
      PsYcHoKiLLa
      220
    3. 3
      ATLien_0
      92
    4. 4
      +Edouard
      90
    5. 5
      Steven P.
      83
  • Tell a friend

    Love Neowin? Tell a friend!