{"id":8858,"date":"2018-10-17T09:00:04","date_gmt":"2018-10-17T16:00:04","guid":{"rendered":"https:\/\/www.privateinternetaccess.com\/blog\/?p=8858"},"modified":"2021-07-30T09:44:39","modified_gmt":"2021-07-30T16:44:39","slug":"the-security-usability-challenge","status":"publish","type":"post","link":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/","title":{"rendered":"The Security Usability Challenge"},"content":{"rendered":"<p>Everyone wants to be more secure. They want their browsing, their money, their utilities, and their lives to be as safe as possible. When you ask users of any service about security in a vacuum, they always want the best.<\/p>\n<p>Reality sets in when users see how complicated and tedious secure systems are, and this often leads to compromise, where some security is given up to make the service \u201csecure enough\u201d while allowing the user to utilize the service without much annoyance.<\/p>\n<p>This problem spans every discipline of computing. Computers, mobile phones, programming environments, operating systems, even the regular old mail has security considerations that are waived away as inconveniences.<\/p>\n<p>Developers of secure apps are starting to take notice. You can create apps with fantastic security that are useless to most of the world because they are hard to manage and hard to use on a daily basis.<\/p>\n<h2>Difficult to Use Apps Face Resistance<\/h2>\n<p>A great example of a hard to use system is PGP. Short for <a href=\"https:\/\/en.wikipedia.org\/wiki\/Pretty_Good_Privacy\">Pretty Good Privacy<\/a>, it is a tried and true message encryption system that has had very little change in core mechanics since it was invented in 1991. PGP is reliable, and there\u2019s evidence that if your PGP keys don\u2019t get pilfered, even the NSA can\u2019t break it.<\/p>\n<p>The problem is that in order for PGP to work, you have to manage public and private RSA keys. You have to generate these keys yourself, store them securely, and keep a secure backup of those keys because if you lose them your messages are destroyed. You also don\u2019t have the ability to search through your messages for keywords or to easily manage organizing your messages. This is further complicated in that if you want to send and receive messages through an email provider that you don\u2019t trust, you have to do all of these things in a 3rd party app. Composing an email, signing it, encrypting it, and sending it is a 4-step process where users are used to just writing their messages and sending them. Scale these extra steps up to every single message that you send and receive, and then add the complications with no searching, and it is easy to see how usability suffers. Let\u2019s not even get into attachments\u2026<\/p>\n<h2>Easy to Use Apps Enjoy Rapid Adoption<\/h2>\n<p>A great example of an easy to use system is <a href=\"https:\/\/signal.org\/\">Signal Messenger<\/a> ( <a href=\"https:\/\/apps.apple.com\/us\/app\/signal-private-messenger\/id874139669\">iOS <\/a>| <a href=\"https:\/\/play.google.com\/store\/apps\/details?id=org.thoughtcrime.securesms&amp;hl=en_US\">Android<\/a> ). Signal allows a user to send and receive messages with attachments, and verify the identity of the sender, but it doesn\u2019t interfere with the user experience. This means that using the messenger is largely no different than regular texting. It requires the same number of steps to message someone, and adds the functionality of security, privacy, and integrity for \u201cfree\u201d from a user experience standpoint.<\/p>\n<p>This is crucial because it doesn\u2019t create any technical nor annoyance hurdles that the user must overcome to use the app every day. I can convince my friends to install and use Signal. I feel like i\u2019m annoying cryptographers and security researchers when I email them using PGP.<\/p>\n<h2>Secure App Development is Changing for the Better Under the Hood As Well As On the Surface<\/h2>\n<p>What is interesting is that this philosophy is also finding its way over into the development process for secure applications. There is a push for elegant, and easy to understand code that can be easily reviewed and understood by developers. The aim is to reduce configuration errors, and to reduce the complexity of the app to minimize the number of bugs.<\/p>\n<p>One example of this is <a href=\"https:\/\/www.wireguard.com\/\">WireGuard<\/a>, a VPN protocol that is in development. It is designed from the ground-up to be as simple as possible, with only 4000 lines of well documented code that is heavily researched and understood. ( Before you ask me about when Private Internet Access will have WireGuard servers, <a href=\"https:\/\/www.privateinternetaccess.com\/blog\/the-current-status-of-wireguard-vpns-are-we-there-yet\/\">see this<\/a>.)<\/p>\n<p><a href=\"https:\/\/openvpn.net\/community-downloads\/\">OpenVPN<\/a>, the current de-facto standard of VPN protocols, weighs in at over a hundred times the size of WireGuard. Now, to be fair, OpenVPN also provides a lot more functionality and uses a full crypto library, but the room for error is enormous. Even with auditing and fuzzing there\u2019s likely errors lurking in the code, and the gnarled web of functions can have all sorts of unintended consequences for edge case configurations that are not regularly tested. This complicated code base allows a lot of room for error for admins and developers looking to use OpenVPN code for their projects as well, with the how-to documentation weighing in with as many lines as the entirety of the WireGuard app.<\/p>\n<p><strong>Usability is the key to getting worldwide adoption for security and privacy apps, and the world is waiting for them.<\/strong><\/p>\n<p>Private Internet Access is a proud sponsor of many open source initiatives that are solving real-world problems like these. We are working hard to make our own services easier to use and to push the boundaries of VPNs to new heights!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Everyone wants to be more secure. They want their browsing, their money, their utilities, and their lives to be as safe as possible. When you ask users of any service about security in a vacuum, they always want the best. Reality sets in when users see how complicated and tedious secure systems are, and this &hellip; <a href=\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;The Security Usability Challenge&#8221;<\/span><\/a><\/p>\n","protected":false},"author":32,"featured_media":8861,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_stopmodifiedupdate":false,"_modified_date":"","footnotes":""},"categories":[12,1],"tags":[834,313,926,85,734],"class_list":["post-8858","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","category-news","tag-open-source","tag-openvpn","tag-pgp","tag-security-2","tag-wireguard"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.9 (Yoast SEO v26.9) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>The Security Usability Challenge<\/title>\n<meta name=\"description\" content=\"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The Security Usability Challenge\" \/>\n<meta property=\"og:description\" content=\"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\" \/>\n<meta property=\"og:site_name\" content=\"PIA\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/privateinternetaccess\/\" \/>\n<meta property=\"article:published_time\" content=\"2018-10-17T16:00:04+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-07-30T16:44:39+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Derek Zimmer\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@http:\/\/www.twitter.com\/ostifofficial\" \/>\n<meta name=\"twitter:site\" content=\"@buyvpnservice\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Derek Zimmer\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\"},\"author\":{\"name\":\"Derek Zimmer\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/e9f24badc1559621e721d94ecb18d6e1\"},\"headline\":\"The Security Usability Challenge\",\"datePublished\":\"2018-10-17T16:00:04+00:00\",\"dateModified\":\"2021-07-30T16:44:39+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\"},\"wordCount\":826,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png\",\"keywords\":[\"open source\",\"openvpn\",\"pgp\",\"security\",\"wireguard\"],\"articleSection\":[\"Cybersecurity\",\"General Privacy News\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\",\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\",\"name\":\"The Security Usability Challenge\",\"isPartOf\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png\",\"datePublished\":\"2018-10-17T16:00:04+00:00\",\"dateModified\":\"2021-07-30T16:44:39+00:00\",\"description\":\"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage\",\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png\",\"contentUrl\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png\",\"width\":1600,\"height\":900},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.privateinternetaccess.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Security Usability Challenge\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#website\",\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/\",\"name\":\"PIA\",\"description\":\"Online privacy news from around the world.\",\"publisher\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.privateinternetaccess.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#organization\",\"name\":\"Private Internet Access\",\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/07\/pialogowhitekglogo.png\",\"contentUrl\":\"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/07\/pialogowhitekglogo.png\",\"width\":1200,\"height\":1200,\"caption\":\"Private Internet Access\"},\"image\":{\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/privateinternetaccess\/\",\"https:\/\/x.com\/buyvpnservice\",\"https:\/\/www.instagram.com\/piavpn\/\",\"https:\/\/www.youtube.com\/channel\/UClyJZ47Rizb1xnwuKXDI0_w\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/e9f24badc1559621e721d94ecb18d6e1\",\"name\":\"Derek Zimmer\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/399c45f76a929cfe8ed46349f8166d975f7fa088108970562cf67fa46ab0176d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/399c45f76a929cfe8ed46349f8166d975f7fa088108970562cf67fa46ab0176d?s=96&d=mm&r=g\",\"caption\":\"Derek Zimmer\"},\"description\":\"Derek is a cryptographer, security expert and privacy activist. He has twelve years of security experience and six years of experience designing and implementing privacy systems. He founded the Open Source Technology Improvement Fund (OSTIF) which focuses on creating and improving open-source security solutions through auditing, bug bounties, and resource gathering and management.\",\"sameAs\":[\"https:\/\/ostif.org\/\",\"https:\/\/www.linkedin.com\/in\/derek-zimmer-2164a441\/\",\"https:\/\/x.com\/http:\/\/www.twitter.com\/ostifofficial\"],\"url\":\"https:\/\/www.privateinternetaccess.com\/blog\/author\/derek-zimmer\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"The Security Usability Challenge","description":"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/","og_locale":"en_US","og_type":"article","og_title":"The Security Usability Challenge","og_description":"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.","og_url":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/","og_site_name":"PIA","article_publisher":"https:\/\/www.facebook.com\/privateinternetaccess\/","article_published_time":"2018-10-17T16:00:04+00:00","article_modified_time":"2021-07-30T16:44:39+00:00","og_image":[{"width":1600,"height":900,"url":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png","type":"image\/png"}],"author":"Derek Zimmer","twitter_card":"summary_large_image","twitter_creator":"@http:\/\/www.twitter.com\/ostifofficial","twitter_site":"@buyvpnservice","twitter_misc":{"Written by":"Derek Zimmer","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#article","isPartOf":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/"},"author":{"name":"Derek Zimmer","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/e9f24badc1559621e721d94ecb18d6e1"},"headline":"The Security Usability Challenge","datePublished":"2018-10-17T16:00:04+00:00","dateModified":"2021-07-30T16:44:39+00:00","mainEntityOfPage":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/"},"wordCount":826,"commentCount":0,"publisher":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage"},"thumbnailUrl":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png","keywords":["open source","openvpn","pgp","security","wireguard"],"articleSection":["Cybersecurity","General Privacy News"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/","url":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/","name":"The Security Usability Challenge","isPartOf":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage"},"image":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage"},"thumbnailUrl":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png","datePublished":"2018-10-17T16:00:04+00:00","dateModified":"2021-07-30T16:44:39+00:00","description":"Here we showcase the benefits of usability to improve not only adoption of secure and private apps, but also improvements to the security of the app itself.","breadcrumb":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#primaryimage","url":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png","contentUrl":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/10\/megalock.png","width":1600,"height":900},{"@type":"BreadcrumbList","@id":"https:\/\/www.privateinternetaccess.com\/blog\/the-security-usability-challenge\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.privateinternetaccess.com\/blog\/"},{"@type":"ListItem","position":2,"name":"The Security Usability Challenge"}]},{"@type":"WebSite","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#website","url":"https:\/\/www.privateinternetaccess.com\/blog\/","name":"PIA","description":"Online privacy news from around the world.","publisher":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.privateinternetaccess.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#organization","name":"Private Internet Access","url":"https:\/\/www.privateinternetaccess.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/07\/pialogowhitekglogo.png","contentUrl":"https:\/\/www.privateinternetaccess.com\/blog\/wp-content\/uploads\/2018\/07\/pialogowhitekglogo.png","width":1200,"height":1200,"caption":"Private Internet Access"},"image":{"@id":"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/privateinternetaccess\/","https:\/\/x.com\/buyvpnservice","https:\/\/www.instagram.com\/piavpn\/","https:\/\/www.youtube.com\/channel\/UClyJZ47Rizb1xnwuKXDI0_w"]},{"@type":"Person","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/e9f24badc1559621e721d94ecb18d6e1","name":"Derek Zimmer","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.privateinternetaccess.com\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/399c45f76a929cfe8ed46349f8166d975f7fa088108970562cf67fa46ab0176d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/399c45f76a929cfe8ed46349f8166d975f7fa088108970562cf67fa46ab0176d?s=96&d=mm&r=g","caption":"Derek Zimmer"},"description":"Derek is a cryptographer, security expert and privacy activist. He has twelve years of security experience and six years of experience designing and implementing privacy systems. He founded the Open Source Technology Improvement Fund (OSTIF) which focuses on creating and improving open-source security solutions through auditing, bug bounties, and resource gathering and management.","sameAs":["https:\/\/ostif.org\/","https:\/\/www.linkedin.com\/in\/derek-zimmer-2164a441\/","https:\/\/x.com\/http:\/\/www.twitter.com\/ostifofficial"],"url":"https:\/\/www.privateinternetaccess.com\/blog\/author\/derek-zimmer\/"}]}},"_links":{"self":[{"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/posts\/8858","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/users\/32"}],"replies":[{"embeddable":true,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/comments?post=8858"}],"version-history":[{"count":5,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/posts\/8858\/revisions"}],"predecessor-version":[{"id":17249,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/posts\/8858\/revisions\/17249"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/media\/8861"}],"wp:attachment":[{"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/media?parent=8858"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/categories?post=8858"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.privateinternetaccess.com\/blog\/wp-json\/wp\/v2\/tags?post=8858"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}