{"id":62837,"date":"2019-02-14T00:00:00","date_gmt":"2019-02-14T00:00:00","guid":{"rendered":"http:\/\/blog.mozilla.org\/foxtail\/2019\/02\/14\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/"},"modified":"2021-02-09T02:10:05","modified_gmt":"2021-02-09T02:10:05","slug":"how-to-build-a-nest-of-privacy-and-security-using-better-passwords","status":"publish","type":"post","link":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/","title":{"rendered":"How to build a nest of privacy and security using better passwords"},"content":{"rendered":"<p>Imagine you\u2019re tucked safely into bed for the night when you hear a stranger\u2019s voice in another room. This happened to a Texas family when a <a href=\"https:\/\/wgno.com\/2019\/02\/07\/hacker-takes-over-nest-camera-asks-alexa-to-play-despacito\/amp\/\">hacker learned their password and took over their Nest camera<\/a>. They asked Amazon\u2019s Alexa to play<a href=\"https:\/\/www.youtube.com\/watch?v=zrJtFy51fRo\"> Luis Fonsi\u2019s \u201cDespacito<\/a>.\u201d<\/p>\n<p>This is not an isolated incident. There have been so many <a href=\"https:\/\/www.engadget.com\/2019\/02\/06\/nest-security-reminder-email\/\">hacked Nest accounts<\/a> that the company was compelled to email people. Nest asked them to take proactive measures to protect their home and family.<\/p>\n<p>The Nest incidents remind us of a stark and continuing reality.\u00a0 Hackers can access many of your private accounts if they know your email and frequently-used passwords. Password insecurity and password reuse can also lead to more serious consequences, such as identity theft or breached bank accounts.<\/p>\n<h3><b>Practical advice for passwords<br \/>\n<\/b><\/h3>\n<p>Nest, as far as we know, has not been breached, but that is sort of besides the point. So many services have been hacked that there is a robust <a href=\"http:\/\/fortune.com\/2018\/03\/07\/apple-id-dark-web-cost\/\">black market for email addresses and passwords<\/a>. Bad actors can find them and unleash chaos.<\/p>\n<p>We like this <a href=\"https:\/\/slate.com\/technology\/2016\/06\/hackers-are-selling-stolen-passwords-in-the-online-black-market.html\">deep dive from Slate<\/a> if you\u2019re interested in how these markets operate.<\/p>\n<p>Firefox security experts <a href=\"https:\/\/blog.mozilla.org\/internetcitizen\/2018\/10\/01\/worried-about-data-breach-protect-passwords\/\">recommend a few steps<\/a> to prevent unauthorized access to your accounts:<\/p>\n<ul>\n<li>Use random passwords, and use a different password for every site<\/li>\n<li>Use a password manager to make creating and remembering passwords easier<\/li>\n<li>Make your answers to security questions just as strong as your passwords.<\/li>\n<li>We recommend using an answer that is NOT the actual answer to the question. It is very easy to find out the mascot at your alma mater, your dog&#8217;s name, etc. via publicly available information on social media.<\/li>\n<li>Use \u201c<a href=\"https:\/\/ssd.eff.org\/en\/module\/how-enable-two-factor-authentication\">two-factor authentication<\/a>\u201d wherever you can<\/li>\n<li>Pay attention to the <a href=\"https:\/\/support.mozilla.org\/en-US\/kb\/how-do-i-tell-if-my-connection-is-secure\">browser\u2019s security signals<\/a>, such as the \u201csecure connection\u201d symbol in your search bar.<\/li>\n<\/ul>\n<h3><b>Protect your security with Firefox Monitor<\/b><\/h3>\n<p><img decoding=\"async\" loading=\"lazy\" class=\"alignright size-full wp-image-1186\" src=\"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/01\/mstile-150x150.png\" alt=\"\" width=\"150\" height=\"150\" \/>You can sign up for <a href=\"https:\/\/monitor.firefox.com\/\">Firefox Monitor<\/a> along with the practical steps above.<b> <\/b><\/p>\n<p>Firefox Monitor works by checking your email against a database of email addresses known to have been compromised in data breaches. The database is maintained by<a href=\"https:\/\/haveibeenpwned.com\/\"> HaveIBeenPwned.com<\/a> (HIBP). It&#8217;s operated by Troy Hunt, one of the most<a href=\"https:\/\/www.bankinfosecurity.com\/blogs\/visual-journal-infosecurity-europe-2018-p-2636\"> renowned<\/a> and<a href=\"https:\/\/www.cso.com.au\/article\/641857\/auscert-2018-awards\/\"> respected<\/a> security experts and bloggers in the world.<\/p>\n<p>We\u2019ve worked closely with HIBP and<a href=\"https:\/\/blog.cloudflare.com\/validating-leaked-passwords-with-k-anonymity\/\"> Cloudflare<\/a> to create a method of anonymized data sharing for Firefox Monitor, which never sends your full email address to HIBP.<\/p>\n<p>Firefox Monitor also offers recommendations on what to do in the case of a data breach and how to help secure your accounts.<\/p>\n<p>We live in an increasingly connected world and the number and variety of issues associated with insecure passwords and accounts will only increase. Take steps to protect yourself and your family today.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Imagine you\u2019re tucked safely into bed for the night when you hear a stranger\u2019s voice in another room. This happened to a Texas family when a hacker learned their password and took over their Nest camera. They asked Amazon\u2019s Alexa to play Luis Fonsi\u2019s \u201cDespacito.\u201d This is not an isolated incident. There have been so [&hellip;]<\/p>\n","protected":false},"author":1439,"featured_media":21220,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[30,289374],"tags":[322062],"coauthors":[],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v22.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>How to build a nest of privacy and security using better passwords<\/title>\n<meta name=\"description\" content=\"Hacked Nest systems are a scary reminder that password security is vital for a healthy and private online life. Learn how to use great passwords.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/\",\"url\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/\",\"name\":\"How to build a nest of privacy and security using better passwords\",\"isPartOf\":{\"@id\":\"https:\/\/blog.mozilla.org\/en\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png\",\"datePublished\":\"2019-02-14T00:00:00+00:00\",\"dateModified\":\"2021-02-09T02:10:05+00:00\",\"author\":{\"@id\":\"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/be8d34eed82bf072fe35051cf6989b3b\"},\"description\":\"Hacked Nest systems are a scary reminder that password security is vital for a healthy and private online life. Learn how to use great passwords.\",\"breadcrumb\":{\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage\",\"url\":\"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png\",\"contentUrl\":\"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png\",\"width\":1200,\"height\":660},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/blog.mozilla.org\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How to build a nest of privacy and security using better passwords\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/#website\",\"url\":\"https:\/\/blog.mozilla.org\/en\/\",\"name\":\"The Mozilla Blog\",\"description\":\"News and Updates about Mozilla\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/blog.mozilla.org\/en\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/be8d34eed82bf072fe35051cf6989b3b\",\"name\":\"Daniel Kessler\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/image\/f07f52b679b5df6f44d5e4153445ec1d\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/8e11e5955e958d6022bccd3561d33041?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/8e11e5955e958d6022bccd3561d33041?s=96&d=mm&r=g\",\"caption\":\"Daniel Kessler\"},\"url\":\"https:\/\/blog.mozilla.org\/en\/author\/dkesslermozilla-com\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"How to build a nest of privacy and security using better passwords","description":"Hacked Nest systems are a scary reminder that password security is vital for a healthy and private online life. Learn how to use great passwords.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/","url":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/","name":"How to build a nest of privacy and security using better passwords","isPartOf":{"@id":"https:\/\/blog.mozilla.org\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage"},"image":{"@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage"},"thumbnailUrl":"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png","datePublished":"2019-02-14T00:00:00+00:00","dateModified":"2021-02-09T02:10:05+00:00","author":{"@id":"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/be8d34eed82bf072fe35051cf6989b3b"},"description":"Hacked Nest systems are a scary reminder that password security is vital for a healthy and private online life. Learn how to use great passwords.","breadcrumb":{"@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#primaryimage","url":"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png","contentUrl":"https:\/\/blog.mozilla.org\/wp-content\/blogs.dir\/278\/files\/2019\/02\/Fx_Blog_Nest-of-Privacy.png","width":1200,"height":660},{"@type":"BreadcrumbList","@id":"https:\/\/blog.mozilla.org\/en\/firefox\/how-to-build-a-nest-of-privacy-and-security-using-better-passwords\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/blog.mozilla.org\/en\/"},{"@type":"ListItem","position":2,"name":"How to build a nest of privacy and security using better passwords"}]},{"@type":"WebSite","@id":"https:\/\/blog.mozilla.org\/en\/#website","url":"https:\/\/blog.mozilla.org\/en\/","name":"The Mozilla Blog","description":"News and Updates about Mozilla","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/blog.mozilla.org\/en\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/be8d34eed82bf072fe35051cf6989b3b","name":"Daniel Kessler","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.mozilla.org\/en\/#\/schema\/person\/image\/f07f52b679b5df6f44d5e4153445ec1d","url":"https:\/\/secure.gravatar.com\/avatar\/8e11e5955e958d6022bccd3561d33041?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/8e11e5955e958d6022bccd3561d33041?s=96&d=mm&r=g","caption":"Daniel Kessler"},"url":"https:\/\/blog.mozilla.org\/en\/author\/dkesslermozilla-com\/"}]}},"_links":{"self":[{"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/posts\/62837"}],"collection":[{"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/users\/1439"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/comments?post=62837"}],"version-history":[{"count":0,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/posts\/62837\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/media\/21220"}],"wp:attachment":[{"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/media?parent=62837"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/categories?post=62837"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/tags?post=62837"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/blog.mozilla.org\/en\/wp-json\/wp\/v2\/coauthors?post=62837"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}