The Lockdown - Practical Privacy & Security - podcast cover

The Lockdown - Practical Privacy & Security

Ray Hefferpsysecure.com
Welcome to The Lockdown. Privacy doesn’t have to be all-or-nothing. The inability to attain extreme levels of privacy shouldn’t deter one from taking any protective measures at all. The show is hosted by Ray Heffer, an expert in the field of privacy and cybersecurity, with each episode touching on a range of topics such as data privacy, password management, and secure browsing habits. Tin-foil hats are optional!
Download Metacast podcast app
Podcasts are better in Metacast mobile app
Don't just listen to podcasts. Learn from them with transcripts, summaries, and chapters for every episode. Skim, search, and bookmark insights. Learn more

Episodes

028 - Silence & Stealth - Mailbox, Email & Anti-KYC Phone Strategies

In this episode, I discuss three key strategies for maintaining privacy and security across your physical mailbox, email, and phone. I discuss the growing Matrix community, explore alternative mailing solutions using co-working spaces, detail a four-tier email strategy, and examine the concerning spread of Flock ALPR cameras. I also share insights on anonymous eSIM options and answer listener questions about dealing with Know-Your-Customer requirements. In this week’s episode: Joining the Matrix...

Jun 20, 202545 minEp. 28

027 - Stop Playing the Game, Join The New Matrix Privacy Community

In this episode, I discuss breaking free from the Apple ecosystem, the dangers of social media oversharing, and introduce our new Matrix community. I also cover the upcoming capture the flag challenge, share thoughts on the OSINT Defense & Security Framework progress, and rant about security theater at airports and online services that block VPNs. In this week’s episode: Apple’s $95 million lawsuit and the ecosystem lock-in problem Why people overshare on social media and how OSINT can explo...

Jun 13, 202544 minEp. 27

026 - Ghost in the Source (Announcement)

In this brief episode between travels, I announce the “Ghost in the Source” capture the flag challenge, a cryptographic hunt on my website starting June 21st, 2025. At the end of June I will pick 3 lucky winners which will receive a 6-month TryHackMe subscription voucher. I also provide an update on our new Matrix community. In this week’s episode: Announcing the “Ghost in the Source” CTF challenge Challenge details and rules Prize information: 3 x 6-month TryHackMe vouchers! Matrix community up...

May 31, 20258 minEp. 26

025 - AI Privacy Concerns with ChatGPT and Claude

In this episode, I explore the privacy implications of using AI apps like ChatGPT and Claude on mobile devices. I discuss why ChatGPT’s requirement for Google Play Store login and audio recording storage led me to Claude on my GrapheneOS device. I also cover my daily app setup, Windows telemetry blocking with SimpleWall, macOS privacy with Little Snitch, and the potential of System76 Linux laptops. In this week’s episode: Privacy comparison between ChatGPT and Claude AI apps ChatGPT’s audio reco...

May 26, 202539 minEp. 25

024 - Minimize What Can Be Known with the OSINT Defense & Security Framework (OSDF)

In this episode, I discuss what has been keeping me away from the mic, the Open Source Intelligence Defense and Security Framework (ODSF), and share updates on privacy topics including browser security, autonomous taxis, airport security cameras, and managing cryptocurrency. I also address listener questions about anonymous SIM cards and creating separate online identities. Official Website : https://psysecure.com In this week’s episode: Introducing the Open Source Intelligence Defense and Secur...

May 13, 202542 minEp. 24

023 - Apple Removes ADP in the UK, the Privacy Implications and Listener Q&A

In this episode, we dive into Apple’s latest privacy retreat with the removal of Advanced Data Protection (ADP) for iCloud in the UK. We break down why Apple made this move, how ADP works, and what it means for users who care about encryption and data security. If you’re in the UK and using Apple’s ecosystem, this episode is a must-listen as I cover strategies to keep your data secure despite Apple’s decision. In this week’s episode: The UK’s Investigatory Powers Act A technical breakdown of how...

Feb 24, 202531 minEp. 23

022 - Deep Dive into Session Private Messenger with Co-Founder Kee Jefferys

In this week’s episode, we take a deep dive into Session, a private messaging app, with its co-founder Kee Jefferys. We discuss the philosophy behind Session, its technical architecture, and the broader implications of privacy in a world increasingly hostile to anonymous communication. Kee shares insights on the importance of decentralized networks, the risks of phone number-based messaging, and the role of cryptocurrency in supporting private infrastructure. We also touch on operational securit...

Feb 03, 20251 hr 10 minEp. 22

021 - Digital Minimalism and Why Your Messages Aren't Really Private

In this week's episode we dive deep into both the psychological and privacy implications of social media apps. I reflect on my observations during recent travels, and explore how social media platforms are distorting human connections while simultaneously collecting vast amounts of personal data. The episode also tackles the technical aspects of email systems to the limitations of encrypted messaging apps, providing practical advice for maintaining privacy. In this week's episode: Listener Quest...

Jan 20, 202541 minEp. 21

020 - The State of Privacy in 2025

This week on The Lockdown, The Practical Privacy & Security Podcast, we’re kicking off the new year with reflections, updates, and a deep dive into key privacy issues that are shaping 2025. From privacy settings on iOS and GrapheneOS, to AI assistants and their potential privacy pitfalls, this episode covers practical advice, insights, and solutions for everyday users. Additionally, I explore new state-level privacy laws across the U.S. and what they mean for both businesses and individuals....

Jan 06, 202558 minEp. 20

019 - A Conversation with Luke Mulks from Brave Software

In this episode I speak with Luke Mulks, who is the VP of Business Operations at Brave Software. We discuss the privacy concerns over traditional web-based ads, and why Brave is offering a privacy-first alternative. Show Links: Brave Software: https://brave.com/podcast/ The Brave Technologist Podcast: https://brave.com/podcast/ "Well who's gonna monitor the monitors of the monitors?" - Carla Dean (Enemy of the State) Podcast music: Recluse by Ray Heffer Official Website : https://psysecure.com P...

Dec 13, 20241 hr 2 minEp. 19

018 - Back to the Basics and not Overthinking Privacy

In this episode, we go back to the basics as I discuss what I would do today if I were starting from scratch. It begins with deleting social media accounts, especially Facebook. Additionally, we have an update from Optery in response to listener feedback. We discuss tools like LibreWolf, Brave, and GrapheneOS, and compare privacy approaches for mobile devices, including Pixel and iPhone. A segment is dedicated to starting a privacy-first journey, from deleting social media accounts to adopting s...

Nov 29, 202449 minEp. 18

017 - Privacy During a Natural Disaster, Self-Hosting Nextcloud, Backblaze B2 & Restic, and Farewell Firefox

In this episode, recorded on October 10, 2024, I dive into privacy and security during natural disasters, highlighting essential tools like iOS 18’s satellite messaging and Starlink for maintaining communication when traditional systems fail. Next I dive into self-hosting in depth, particularly focusing on Nextcloud for privacy-conscious file sync. The episode concludes with a detailed analysis of a critical vulnerability in Firefox and the merits of switching to LibreWolf for enhanced privacy a...

Oct 11, 202456 minEp. 17

016 - Privacy Discussion with Tyler from EasyOptOuts

In this episode, we have a special guest, Tyler Murphy, co-founder of EasyOptOuts, a data removal service focused on helping people remove their personal information from publicly accessible people search sites. Tyler discusses the inspiration behind EasyOptOuts, the challenges of maintaining privacy in a world of constant data breaches, and offers insights into data removal from various brokers. This conversation is packed with advice for anyone looking to regain control over their online priva...

Sep 06, 20241 hr 7 minEp. 16

015 - NPD202401 (National Public Data Breach) and Windows 11

In today’s show, I discuss the National Public Data (NPD) breach, which contains 2.7 billion records, including the social security numbers of US residents. I cover how to check if your SSN is part of the breach and emphasize the importance of setting up a credit freeze for yourself and your kids. I also explore some useful tools for searching large datasets and share my thoughts on a Reddit post. In this week's episode: On the brink of giving up! Using OnlyOffice as a Google Docs alternative Na...

Aug 30, 202427 minEp. 15

014 - Social Media, OPSEC for OSINT, and AI Security

This week I respond to a few listener questions, primarily around the use of social media as a privacy enthusiast. Love it or hate it, you can guess which camp I'm in, social media like LinkedIn has almost become a requirement for job searches, employers, and connecting with other professionals. I also touch on OPSEC for OSINT, a new talk track I am planning to present in the future. It's important for all of us to maintain better Operational Security (OPSEC). Finally, I share my latest blog pos...

Aug 09, 202421 minEp. 14

013: iCloud Private Relay, Complete pfSense Guide, and Privacy for Kids

In this week’s show, I take a deeper dive into Apple’s iCloud Private Relay, discussing who should and who shouldn’t use it. I then discuss my latest article, “The Complete Setup Guide to pfSense for Privacy and Security,” and the benefits of an always-on VPN. Lastly, for those who are parents, I offer a discussion on privacy for kids and some non-invasive techniques for protecting them online. In this week's episode: Intro iCloud Private Relay Complete Guide to pfSense Privacy for Kids Listener...

Jul 27, 202451 minEp. 13

012: Back to the Basics, Back to the iPhone, Authy API Abuse

This week we go back to the basics of privacy and security for the average Joe or Jane, and discuss the latest iPhone settings for privacy. I also discuss the Twilio Authy API abuse that resulted in 33 million phone numbers for Authy accounts being exposed. Huge thank you to the Patreon supporters! In this week's episode: Back to the basics Advice for the 'average Joe' The Twilio Authy API breach iPhone privacy settings Listener question on doorbell cameras Show Links: 1Password Security Audits:...

Jul 19, 202433 minEp. 12

011 - Living Like a Recluse, Living Trusts, GrapheneOS, and Listener Questions

After escaping to the mountains and living like a recluse for the past few months, I am back. In this week's show, I discuss my latest experiences in purchasing a home and titling in a living trust, along with the potential obstacles with title deeds and mortgage lenders, and avoiding data breaches with utility companies. I also revisit GrapheneOS after using it daily for the past year, and answer listener questions. In this week's episode: Living in the mountains Buying a house with a living tr...

May 24, 202453 minEp. 11

010 - Alternatives to Authy, SANS OSINT Summit, and Selling your Soul to CLEAR

In this week's show, I discuss CLEAR's intrusive privacy policy and highlight alternatives to Authy using KeePass, with a privacy friendly solution for scanning QR codes. I also address the common mistakes people make when backing up their MFA codes. Additionally, I share some of the highlights from attending the SANS OSINT Summit in Washington, D.C., and explore various uses for custom domain names. Finally, I touch on the Starbucks app and the benefits of using Tello for pre-paid SIM cards. Fo...

Mar 15, 202437 minEp. 10

009 - Data Broker Sites and a Conversation with Lawrence Gentilello from Optery

In today's show, I have a conversation with Lawrence Gentilello, the CEO and Founder of Optery, a personal data removal service. Lawrence shares his own experiences with identity theft and what motivated him to start Optery. We also discuss the future of privacy in the United States, Utah's new privacy law, the Utah Consumer Privacy Act (UCPA), and the bare minimum you should be doing to protect and secure your private data. Follow on Twitter (X) : @privacypod Support the show : https://www.patr...

Mar 08, 202454 minEp. 9

008 - Anonymity with TOR, Data Removals, and Mozilla Monitor

In this weeks show I discuss some of the concerns of using TOR over a VPN, and take another look at data removal from people search sites, including a look at Mozilla Monitor, a new service for data removal from the makers of Firefox. I'll also discuss the importance of freezing your credit and putting the title of your home into a revocable living trust, prior to removing your records from people search sites. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLoc...

Feb 16, 202423 minEp. 8

IMPOSTER SYNDROME | FRIDAY FIELD NOTES

In this Friday Field Notes episode of The Lockdown, I share my experience with imposter syndrome, and compare practical privacy approaches with extreme measures, inspired by my move to the USA. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on January 31, 2024 In this week's episode: Using alias names with food apps More on practical privacy vs the extreme My motivations for privacy after my move to the USA Simplewall for Wind...

Feb 01, 202421 minEp. 1

007 - Defensive OSINT, Privacy on the Road, More Aliases, and Face Morphing

This week, I introduce Defensive OSINT, address privacy concerns while on the road, and examine the intricacies of alias usage and AI-based face morphing for photo alteration. Sharing insights from my recent travels, I highlight the need for vigilance and innovative strategies for maintaining privacy on the go. The episode explores the pros and cons of using alias names for hotel bookings, including the challenges of identity verification during check-in, while I discuss smart, alternative solut...

Jan 29, 202452 minEp. 7

006 - When you Lose your Phone, Nextcloud, and Backups with Restic and Backblaze B2

In this week's episode, it's time to wrap up 2023 with another look at Privacy.com, and my strategies for avoiding bank account lockout. I delve into the CIA Triad, breaking down its relevance to everyday privacy concerns. The episode also takes a practical turn with a guide on using FindMyDevice on GrapheneOS, and the FindMyDevice feature on the Garmin Instinct 2 watch for tracking lost phones. I also tackle the debate between biometric authentication and passcodes, taking our threat model into...

Jan 05, 202442 minEp. 6

005 - Brave vs Firefox, and When Privacy Goes Wrong

In this week’s show, Ray Heffer gives a farewell to Michael Bazzell's Privacy, Security, and OSINT show. Also, speculation about living in a faraday cage continues, and the reasons Firefox is still better than Brave for privacy and security. Ray also talks about when privacy techniques go wrong, with his lockout from Privacy.com. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on November 22nd, 2023 This week's episode: Introdu...

Nov 24, 202330 minEp. 5

ZERO TRUST | FRIDAY FIELD NOTES

In this week’s FRIDAY FIELD NOTES, Ray Heffer discusses the Zero Trust security model, a framework that's revolutionizing how organizations protect their critical systems and data. Diving into the depths of cybersecurity, we clear up common myths and misinterpretations surrounding Zero Trust, illuminating its role as not just a defensive strategy but a comprehensive approach to modern threats. Zero Trust operates on the principle of "never trust, always verify," but what does this mean in practi...

Nov 10, 202314 minEp. 1

004 - The Psychology of Social Engineering

Welcome to episode four of The Lockdown - The Practical Privacy and Security podcast. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on November 06, 2023 This week's episode: 1. I'm back! 2. Traveling to London and Los Angeles 3. A major privacy invasion for Jennifer Lawrence 4. The Psychology of social engineering Intro music: The Lockdown "To be yourself in a world that is constantly trying to make you something else is the ...

Nov 06, 202320 minEp. 4

003 - The Invisible Net, and Why I use GrapheneOS

Welcome to episode three of The Lockdown - The Practical Privacy and Security podcast. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on April 09, 2023 This week's episode: 1. The case of Zachary McCoy 2. Why do all this? 3. The Apple Ecosystem 4. My experience with GrapheneOS Get GrapheneOS: https://grapheneos.org/ The case of Zachary McCoy: https://www.theguardian.com/us-news/2021/sep/16/geofence-warrants-reverse-search-warr...

Apr 10, 202326 minEp. 3

002 - The Lastpass Breach and Recommended Password Managers

Welcome to episode two of The Lockdown - Practical Privacy and Security podcast. In this episode I share the saga of the LastPass breach, and my thoughts on password managers and authenticator apps. Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on March 19, 2023 This week's episode: 1. The LastPass Breach 2. Password Managers: Dashlane, 1Password, BitWarden, and KeePassXC 3. Authenticator Apps: Google Authenticator, Aegis, an...

Mar 20, 202343 minEp. 2

001 - Stalkerware and the Data Collector

Follow on Twitter (X) : @privacypod Support the show : https://www.patreon.com/TheLockdown This episode was recorded on March 10, 2023 Show Links: Stalkerware: https://www.theregister.com/2023/02/07/stalkerware_developer_fined/ IntelTechniques (List of People Search Sites): https://inteltechniques.com/workbook.html This week's privacy tips: 1. Privacy check-up / opt-out from people search sites 2. Establish a Revocable Living Trust. Be sure to hire an estate planning attorney. 3. Custom domains ...

Mar 13, 202328 minEp. 1
For the best experience, listen in Metacast app for iOS or Android
Open in Metacast