For me it would be the following:

  1. Don’t reuse usernames/names
  2. Avoid using social media
  3. Use Tor/VPN when you can
  • cooopsspace@infosec.pub
    link
    fedilink
    English
    arrow-up
    28
    arrow-down
    1
    ·
    edit-2
    1 year ago
    1. Password manager such as Bitwarden, generate long strong passwords for everything.
      1a. Corpo SSO (By which I mean “log in with Google/Microsoft/Apple/Whatever”) nothing.
    2. Hardware keys, MFA on anything that doesn’t support one.
    3. Degoogle, de-megacorp.
    4. Use Linux, stop the Stockholm syndrome that is Windows.

    VPN shouldn’t even be in the top 10. The benefits are dubious at best and the jury is still out on whether it makes you more of a target or if you can trust ANY provider meaningfully.