Your TOTP is Not a Second Factor :: If You Store It Wrong

By DeadSwitch You think you have 2FA? You think you’re safe because your logins need a second factor? Then you go and store your TOTP codes in the same password manager that holds your passwords. You’ve built a fortress. Then you handed the keys and the spare keys to the same person.

Continue reading →

The Android Phone: Three OPSEC Levels to Disappear Into the Shadows

In a world where our every move is tracked and our data is a commodity, the device in your pocket—your Android phone—becomes both a tool and a potential liability. Whether you’re a casual user or a privacy-conscious individual, understanding the levels of operational security (OPSEC) you can apply to your phone is critical. In this…

Continue reading →

⛈️ Ditching the Cloud: Running Syncthing Like a Ghost

By DeadSwitch You love your cloud storage. Convenient. Always synced. Always backed up. Always watched. Google Drive, Dropbox, OneDrive—they aren’t your storage. They are surveillance-as-a-service. A dead man owns nothing. A dead switch leaks nothing. You want true control? Kill the cloud. Run your own. Enter Syncthing—silent, encrypted, peer-to-peer. A shadow network, whispering between your…

Continue reading →