{"id":12106,"date":"2018-04-24T02:30:18","date_gmt":"2018-04-24T10:30:18","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2018\/04\/24\/news-5875\/"},"modified":"2018-04-24T02:30:18","modified_gmt":"2018-04-24T10:30:18","slug":"news-5875","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2018\/04\/24\/news-5875\/","title":{"rendered":"The best privacy and security apps for Android"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/images.idgesg.net\/images\/article\/2017\/10\/mobile_phone_privacy_security_thinkstock_614113984_3x2-100740687-large.3x2.jpg\"\/><\/p>\n<p><strong>Credit to Author: JR Raphael| Date: Tue, 24 Apr 2018 03:00:00 -0700<\/strong><\/p>\n<p>Let&#8217;s get one thing out of the way right off the bat: If you&#8217;re looking for recommendations about Android security suites or other malware-scanning software, you&#8217;ve come to the wrong place.<\/p>\n<p>Why? Because, like most people who closely study Android, I <a href=\"https:\/\/www.csoonline.com\/article\/3235521\/android\/best-android-security-app-why-youre-asking-the-wrong-question.html\" rel=\"noopener\" target=\"_blank\">don&#8217;t recommend<\/a> using those types of apps at all. Android malware isn&#8217;t the massive real-world threat it&#8217;s frequently made out to be, and <a href=\"https:\/\/www.computerworld.com\/article\/3210587\/android\/google-play-protect-android.html\">Google Play Protect<\/a> and <a href=\"https:\/\/www.computerworld.com\/article\/3268079\/android\/android-security-settings.html\">other native Android features<\/a> are <a href=\"https:\/\/www.computerworld.com\/article\/3027231\/android\/android-malware-monster.html\">more than enough<\/a> to keep most devices safe.<\/p>\n<p>There are, however, some areas where third-party apps can add valuable layers onto your <a href=\"https:\/\/www.computerworld.com\/article\/3012630\/android\/android-security.html\">Android security picture<\/a>. They&#8217;re less about fighting off <a href=\"https:\/\/www.computerworld.com\/article\/3105569\/android\/android-quadrooter.html\">theoretical boogeymen<\/a> and more about proactively protecting your accounts and data.<\/p>\n<p>These are the actions that will actually boost privacy and security on your Android device, and the apps I&#8217;d suggest installing for each:<\/p>\n<p>Your passwords are the gatekeepers to your digital life \u2014 <a href=\"https:\/\/www.computerworld.com\/article\/2692402\/security0\/8-cutting-edge-technologies-aimed-at-eliminating-passwords.html\">for the foreseeable future<\/a>, at least \u2014 and it&#8217;s up to you to make sure they&#8217;re properly armed. The secret? Let a password manager serve as your muscle. A good password manager makes it easy to create and maintain strong, unique passwords for however many apps, sites, and services you use.<\/p>\n<p>And on Android, LastPass is the cream of the crop. I recently deemed it to be the <a href=\"https:\/\/www.computerworld.com\/article\/3267964\/android\/best-password-managers-android.html\">best all-around password manager for Android<\/a> \u2014 and for good reason: It&#8217;s thoughtfully designed, simple to use, and effective as can be at securely storing your credentials and allowing you to sign in anywhere a password is required.<\/p>\n<p>Once LastPass learns (or creates) your various sign-ins, it&#8217;ll pop up a box with autofill info anytime you&#8217;re prompted to sign into a service \u2014 be it through an app or on a website within your favorite Android browser. All you have to do is touch your finger to your phone&#8217;s fingerprint sensor, confirm the credentials you want to use, and that&#8217;s it: LastPass handles the rest.<\/p>\n<p>LastPass takes the pain out of creating and then using complex passwords all across Android.<\/p>\n<p>LastPass works equally well on the desktop and seamlessly syncs your info across multiple devices and platforms (using its own secure cloud storage and device-level encryption). Its core features are completely free, while a $24-a-year premium subscription will get you expanded storage space for notes and documents, the ability to use <a href=\"https:\/\/lastpass.com\/support.php?cmd=showfaq&amp;id=1316\" rel=\"noopener nofollow\" target=\"_blank\">YubiKey<\/a> and <a href=\"https:\/\/helpdesk.lastpass.com\/multifactor-authentication-options\/sesame-multifactor-authentication-with-a-usb-thumb-drive\/\" rel=\"noopener nofollow\" target=\"_blank\">Sesame<\/a> as two-factor authentication methods, and the ability to create an emergency access plan that&#8217;d give someone else access to your account after an extended period of inactivity.<\/p>\n<p>Family plans, team plans, and enterprise plans are <a href=\"https:\/\/www.lastpass.com\/pricing\" rel=\"noopener nofollow\" target=\"_blank\">also available<\/a> for $48 a year, $29 per user per year, and $48 per user per year, respectively.<\/p>\n<p>Aside from using strong passwords, the smartest thing you can do to keep your online accounts safe is to use <a href=\"https:\/\/www.csoonline.com\/article\/3239144\/password-security\/what-is-two-factor-authentication-2fa-how-to-enable-it-and-why-you-should.html\" rel=\"noopener\" target=\"_blank\">two-factor authentication<\/a> everywhere it&#8217;s offered. Two-factor authentication requires you to have a second form of identifying information \u2014 like a code generated by an app on your phone \u2014 in addition to your primary password, thus making it substantially more difficult for a modern-day ruffian to get into your account.<\/p>\n<p>The best app for managing two-factor authentication on Android is Authy. The Twilio-owned program outshines Google&#8217;s own Authenticator offering with a modern, intuitive design that makes it a cinch to find and copy codes for any number of 2FA-enabled accounts. It has handy advanced features like support for app-level fingerprint protection, too, and you can even set Authy up to function on multiple devices \u2014 including, if you&#8217;re so inclined, <a href=\"https:\/\/authy.com\/download\/\" rel=\"noopener nofollow\" target=\"_blank\">your desktop computer<\/a>.<\/p>\n<p>Authy is free.<\/p>\n<p>Virtual private networks, or VPNs, can be an effective way of keeping your phone-based data transmissions private and secure \u2014 particularly when you&#8217;re using public Wi-Fi networks, which are notorious for letting outsiders &#8220;snoop&#8221; and see <a href=\"https:\/\/www.pcworld.com\/article\/2043095\/heres-what-an-eavesdropper-sees-when-you-use-an-unsecured-wi-fi-hotspot.html\" rel=\"noopener\" target=\"_blank\">all sorts of sensitive info<\/a> from your sessions.<\/p>\n<p>Your best bet for work is to use your company&#8217;s own VPN service, assuming an app for it is available. If not, NordVPN is one of the most widely recommended third-party options, earning strong praise from privacy guru (and frequent Computerworld contributor) <a href=\"http:\/\/www.zdnet.com\/article\/what-you-must-know-about-mobile-vpns-to-protect-your-privacy\" rel=\"noopener nofollow\" target=\"_blank\">Steven J. Vaughan-Nichols<\/a> and landing within the top Android VPN picks of <a href=\"https:\/\/www.androidcentral.com\/best-vpn-apps-android\" rel=\"noopener nofollow\" target=\"_blank\">Android Central<\/a>, <a href=\"https:\/\/www.pcmag.com\/roundup\/348411\/the-best-android-vpn-apps\" rel=\"noopener nofollow\" target=\"_blank\">PCMag<\/a>, <a href=\"https:\/\/www.techradar.com\/news\/best-vpn-for-android-our-5-top-choices\" rel=\"noopener nofollow\" target=\"_blank\">TechRadar<\/a>, <a href=\"https:\/\/www.tomsguide.com\/us\/best-vpn,review-4292.html\" rel=\"noopener nofollow\" target=\"_blank\">Tom&#8217;s Guide<\/a>, and numerous other prominent outlets.<\/p>\n<p>The service taps into 3,000 servers across five dozen countries and promises &#8220;military-grade&#8221; encryption for all your mobile traffic. It&#8217;ll set you back <a href=\"https:\/\/join.nordvpn.com\/order\/\" rel=\"noopener nofollow\" target=\"_blank\">12 bucks a month<\/a>, $6 a month if you pay for a year in advance, or just over $3 a month if you&#8217;re willing to pay a lump sum of $79 up front for two years of service.<\/p>\n<p>NordVPN allows you to create secure connections from a variety of servers around the world.<\/p>\n<p>Now, all of this isn&#8217;t to say that other Android VPN providers won&#8217;t be effective. Evaluating a VPN app is incredibly complex and difficult to do definitively \u2014 and the number of variables involved makes it virtually impossible to offer an unconditional recommendation. (The good folks at Ars Technica <a href=\"https:\/\/arstechnica.com\/information-technology\/2016\/06\/aiming-for-anonymity-ars-assesses-the-state-of-vpns-in-2016\/\" rel=\"noopener nofollow\" target=\"_blank\">sum up the challenge<\/a> well.) Heck, one look at <a href=\"https:\/\/thatoneprivacysite.net\/vpn-comparison-chart\/\" rel=\"noopener nofollow\" target=\"_blank\">this comparison chart<\/a> by That One Privacy Site \u2014 a highly regarded independent VPN reviewer cited by the <a href=\"https:\/\/ssd.eff.org\/en\/module\/choosing-vpn-thats-right-you\" rel=\"noopener nofollow\" target=\"_blank\">Electronic Frontier Foundation<\/a>, among other noteworthy organizations \u2014 is enough to make you want to crawl into a bunker and live a life free from all networked technology.<\/p>\n<p>Until we have a standardized system for effectively auditing VPNs and their many layers, most privacy experts suggest going with a well-reviewed and widely evaluated service from a reputable provider. NordVPN fits that description to a T \u2014 more so than any other contender at the moment \u2014 hence its inclusion in this collection.<\/p>\n<p>When you need to know your emails won&#8217;t be intercepted, ProtonMail is the app you want to use. Founded by scientists at CERN (the European Organization for Nuclear Research), ProtonMail uses an open-source method of end-to-end encryption to keep your messages safe from prying eyes. You don&#8217;t have to provide any personal information, and the company says it keeps no records of IP addresses or anything else that could link you to your account. In fact, the company says even its own employees couldn&#8217;t read or access your messages if they wanted to.<\/p>\n<p>(You might have heard of ProtonMail on the TV show <em>Mr. Robot<\/em>, by the way \u2014 where master hacker Elliot Alderson <a href=\"https:\/\/protonmail.com\/blog\/protonmail-mr-robot-secure-email\/\" rel=\"noopener nofollow\" target=\"_blank\">uses the app<\/a> to secure transmissions \u2014 as well as in the news by way of Cambridge Analytica, the &#8220;data analytics&#8221; firm at the center of the Facebook data debacle, which apparently <a href=\"https:\/\/mashable.com\/2018\/03\/21\/what-is-protonmail\/#gVVyaoaXniqM\" rel=\"noopener nofollow\" target=\"_blank\">used ProtonMail<\/a> to create secure and self-destructing messages.)<\/p>\n<p>The best part about all of ProtonMail&#8217;s security is that it requires next to no effort on your behalf: You simply create an account with the service and then email away. If you&#8217;re emailing someone else with a ProtonMail address, encryption is automatic. If you need to contact someone with a non-ProtonMail address, you can tap an icon in the app&#8217;s compose tool to create a password and a hint; the recipient will then be sent only that information and will have to use the password to decrypt your message.<\/p>\n<p>ProtonMail&#8217;s encryption is both effective and easy to use \u2014 even with recipients who aren&#8217;t using ProtonMail themselves.<\/p>\n<p>Security aside, ProtonMail&#8217;s Android app is cleanly designed and pleasant to use. The app has customizable labels and folders and even allows you to define custom swipe gestures for your inbox (swiping left on a message to mark it as read, for instance, and swiping right to archive or delete). And, yes, it has an option for creating self-destructing messages, should the need ever arise.<\/p>\n<p>ProtonMail is free at its most basic level, which includes one address, 500MB of storage, and up to 150 messages a day. You can get more storage, more messages per day, and additional features \u2014 including email filters, an auto-responder system, and support for custom domains \u2014 <a href=\"https:\/\/protonmail.com\/pricing\" rel=\"noopener nofollow\" target=\"_blank\">starting at $59 a year<\/a>.<\/p>\n<p>Signal does for texting what ProtonMail does for email: The open-source service allows you to communicate securely with contacts, using end-to-end encryption and without any of your data ever being accessed or stored on a remote server. The app also now allows you to conduct encrypted voice and video calls with other Signal users.<\/p>\n<p>On the surface, Signal looks and feels just like any other texting app: You can find people from your regular contacts database or simply enter a phone number to start a conversation. If the other person also uses Signal, the conversation will be secure \u2014 and you&#8217;ll see the option to launch a secure voice or video chat as well. If your recipient isn&#8217;t using Signal, you&#8217;ll still be able to text normally and will see a prominent &#8220;Unsecured SMS&#8221; warning in the message field.<\/p>\n<p>Signal feels like any other texting app, but when you communicate with another Signal user, all of your transmissions are automatically encrypted.<\/p>\n<p>Signal is free, and no accounts are required; you just open the app, input and then verify your phone number, and you&#8217;re ready to roll.<\/p>\n<p>Firefox Focus provides the simplest and most effortless private browsing experience on Android. Quite literally, all you do is open the app and go: No history, cookies, or passwords are ever saved, and the app automatically blocks trackers and ads across the web. When you&#8217;re done with a page, you tap a floating trash can icon in the corner of the screen, and poof: It&#8217;s gone forever, with no trail left behind.<\/p>\n<p>Firefox Focus makes privacy-first browsing as simple as can be.<\/p>\n<p>Firefox Focus has a handful of settings for controlling the nuances of its blocking features, but there&#8217;s really not much more to it. If you want to browse the web without leaving a trace (at least, as far as the browser itself is concerned), this is by far the easiest way to do it.<\/p>\n<p>Firefox Focus is free.<\/p>\n<p>For private browsing power in a more traditional browser environment, Brave Browser is the way to go. The free app \u2014 created by <a href=\"https:\/\/arstechnica.com\/information-technology\/2016\/01\/mozilla-co-founder-unveils-brave-a-web-browser-that-blocks-ads-by-default\/\" rel=\"noopener nofollow\" target=\"_blank\">a co-founder of Mozilla<\/a>, the company behind Firefox \u2014 looks and acts an awful lot like Google&#8217;s Chrome Android browser. (Perhaps not surprisingly, the program uses Google&#8217;s open source Chromium code as its base.)<\/p>\n<p>Brave&#8217;s main interface and menus are almost undistinguishable from Chrome&#8217;s, in fact, and the app even has Chrome-reminiscent History, Downloads, and Bookmarks sections along with features for auto-filling information and saving passwords (though the data from those areas won&#8217;t sync with your Google account or be available on other devices, as it would in Chrome).<\/p>\n<p>On top of that foundation, however, Brave includes a variety of built-in tools for blocking ads, pop-ups, scripts, and different types of website-based tracking systems. Unlike Firefox Focus, it doesn&#8217;t operate in a permanent incognito mode \u2014 so if you want to avoid having your history, cookies, site data, and cache saved, you&#8217;ll have to either manually open incognito windows (just like you would in Chrome) or dig through the app&#8217;s settings to clear that data whenever needed.<\/p>\n<p>Brave is basically like Chrome \u2014 only with a bunch of extra privacy-oriented options added in.<\/p>\n<p>It&#8217;s less of a no-frills, purely private browser and more of a standard browser with additional privacy features baked in \u2014 which could be an asset or a liability, depending on your preferences.<\/p>\n<p>Most current Android phones come with encryption enabled out of the box (you can check by looking for the &#8220;Encryption&#8221; option within the Security section of your device&#8217;s system settings) \u2014 but if you want an extra layer of protection for certain files or folders, Solid Explorer will get the job done.<\/p>\n<p>As an <a href=\"http:\/\/www.computerworld.com\/article\/3268115\/best-android-file-manager-apps.html\">Android file manager<\/a>, Solid Explorer lets you browse and manipulate the files on your device&#8217;s local storage as well as on a variety of third-party cloud storage services \u2014 including Dropbox, Google Drive, and Microsoft OneDrive \u2014 if you choose to connect them. When you have a file or folder you want to protect, you just find and highlight it within the app and then select &#8220;Encrypt&#8221; from the main menu.<\/p>\n<p>After that, all you have to do is type in a password and optionally activate fingerprint authentication, and the file will then be viewable only after your credentials have been entered. Even system-level services like the Android Downloads app won&#8217;t be able to open the file unless you first decrypt it in Solid Explorer.<\/p>\n<p>Solid Explorer lets you add an extra layer of encryption to specific files and folders.<\/p>\n<p>Solid Explorer costs $2 after a free two-week trial.<\/p>\n<p><a href=\"https:\/\/www.computerworld.com\/article\/3269019\/android\/the-best-privacy-and-security-apps-for-android.html#tk.rss_security\" target=\"bwo\" >http:\/\/www.computerworld.com\/category\/security\/index.rss<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/images.idgesg.net\/images\/article\/2017\/10\/mobile_phone_privacy_security_thinkstock_614113984_3x2-100740687-large.3x2.jpg\"\/><\/p>\n<p><strong>Credit to Author: JR Raphael| Date: Tue, 24 Apr 2018 03:00:00 -0700<\/strong><\/p>\n<article>\n<section class=\"page\">\n<p>Let&#8217;s get one thing out of the way right off the bat: If you&#8217;re looking for recommendations about Android security suites or other malware-scanning software, you&#8217;ve come to the wrong place.<\/p>\n<p>Why? Because, like most people who closely study Android, I <a href=\"https:\/\/www.csoonline.com\/article\/3235521\/android\/best-android-security-app-why-youre-asking-the-wrong-question.html\" rel=\"noopener\" target=\"_blank\">don&#8217;t recommend<\/a> using those types of apps at all. Android malware isn&#8217;t the massive real-world threat it&#8217;s frequently made out to be, and <a href=\"https:\/\/www.computerworld.com\/article\/3210587\/android\/google-play-protect-android.html\">Google Play Protect<\/a> and <a href=\"https:\/\/www.computerworld.com\/article\/3268079\/android\/android-security-settings.html\">other native Android features<\/a> are <a href=\"https:\/\/www.computerworld.com\/article\/3027231\/android\/android-malware-monster.html\">more than enough<\/a> to keep most devices safe.<\/p>\n<p class=\"jumpTag\"><a href=\"\/article\/3269019\/android\/the-best-privacy-and-security-apps-for-android.html#jump\">To read this article in full, please click here<\/a><\/p>\n<\/section>\n<\/article>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[11062,10643],"tags":[10462,10554,10463,5897,714],"class_list":["post-12106","post","type-post","status-publish","format-standard","hentry","category-computerworld","category-independent","tag-android","tag-mobile","tag-mobile-security","tag-privacy","tag-security"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12106","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=12106"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/12106\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=12106"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=12106"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=12106"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}