Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Messages - Naer

Pages: [1]
1
Anonymity and Privacy / Re: Tracking back HTTP
« on: July 15, 2013, 06:00:05 pm »
If you dont wanna be tracked dont use chrome, ive watched wireshark for a while and interestingly enough it constanly connects with google.com doing god knows what.
Have firefox bloated with plugins and next to that I use midori ,surf and opera for other purposes.

I meant chromium (edited and fixed the mistake) which is open-source and reviewed, not sure about chrome. Opera is closed source - I wouldn't recommend it. For security it's better to have everything open source or private/written by you, maybe by a very good close friend.

2
Anonymity and Privacy / Re: Tracking back HTTP
« on: July 15, 2013, 05:09:53 pm »
No cookies(or after x minutes), no browser history , spoofed useragent, noscript, no http referrer.
I rarely ever use google or any of its services.

Using no referrer is not a good idea, better to send the root of the website you are visiting.

Not using google is a good point. As you recommended startpage, I can recommend privatelee also. Both are great.

LSO cookies are very trendy.
How about that fucked up facebook plugin on all those websites.
Not that I have facebook but I can imagine that really exposes you big time.
When you logged in and you visit any website that has such a fantastic awesome plugin ; facebook will know your browsing porn and whatnot.
Same goes( and probably worse) for google.
In fact >8X% or so has a google something on their website.
Which would mean that in combination with your cookie or logged in account google Owns you browsing history.
I believe there is a xcon talk about this somewhere.

A good idea is to use more then one browser - besides firefox and chromium there are many open src alternatives (konqueror, conkeror, xombrero/xxxterm..etc). That helps a bit.

Separation is important - if you are really paranoid use more than one device eg. laptop for hackin' and phone or tablet for retardbook, ebay, paypal and other sh1t.

If possible use online currency, eg bit/lite/feather/....coins - these are accepted in many vpn, proxy provider and you can also buy some ebayish things too.

Man I love this.
Im gonna go into gardening or something.

kuul, what do you grow?

3
Anonymity and Privacy / Tracking back HTTP
« on: July 15, 2013, 10:36:35 am »
The first question is not how to stay anonymous, but how you can be tracked.

Even if you tunnel tor in a vpn and use proxy chains, there are information that can reveal you. You are just hiding where you come from, not who/what your computer sw/hw are.

HTTP. That can definietly pwn your anonimity. Your browser / programs /etc has signitures that can be tracked back. Let's say someone thinks user agent in a browser 'haha pwn yo don't know my usheragent' is a good choice because it hides your real agent. Not really. It may hide what is your default agent, but that information will be logged on the servers you are visiting with many other settings that can be fished. It's not so hard for higher level agencies to find to servers where a stupid user agent appears (eg FinFisher which provide penetration for government - http://www.finfisher.com)

So how to set up a safe browser?
Check ip-check.info to see what can be read from your browser and fix the issues.
Check panopticlick.eff.org to see how unique your bro is.
Lear more. Use add-ons if needed. These are just basic sites.

Summing the question:
What do you send through a network? How can that be tracked back? What routes/encryption/NAT to use?

After this I would like to get some ideas from your side too. What do you use to keep your information safe. Don't post something like "use vpn".. we all know that and alone it's really not a big protection. Detailed posts please.

4
Scripting Languages / Re: [Bash] Log wiping script
« on: July 14, 2013, 10:47:13 am »
Why don't you use ramfs? So you don't even need to worry about recovery things.

5
Anonymity and Privacy / Re: Idea for "Super secure" P2P chat.
« on: June 04, 2013, 01:47:48 pm »
Guys, it's time to learn about pgp/gpg.

With pgp you can have end2end encryption and don't need to allow anyone to your server.

6
If you don't block google and ads you are working for free for companies (also making yourself more vulnerable). That simple.

If you are interested in safe browsing (here comes the difference between people - the ones who care and the coward) you need to learn about it. Check JonDonym page, learn about tor, vpn, proxies, learn how and what information your browser sends - what does an http header conatin, how browsers unique ID works... and so on.

Secure browsers are really the basics for hackers.

7
Hacking and Security / Re: BitCoins
« on: May 29, 2013, 07:10:29 pm »
So the current situation is that mining only worth the time/money with hardware.

Choosing between LTC/BTC is still a question for me, but seeing that the BTC ATM are coming also, I think LTC will grow with BTC since it's a similar system.



8
Hacking and Security / Re: BitCoins
« on: May 28, 2013, 05:22:21 pm »
The ASIC miners that are currently present will quickly go futile once they become used en masse. The difficulty will jump significantly.

How quickly? My idea was to start with a 270$ miner and after 1 month or 2 buy one again, and some months later guy the bigger one and so on.

If I don't need to pay for electricity, how big difference does it make in your opinion? Because I bet it makes a huge one.

9
Hacking and Security / Re: BitCoins
« on: May 28, 2013, 04:56:21 pm »
I had bad experiences with BitCoins. That stuff is unstable man, wouldn't waste my time on it. Not yet anyway.
I used to do bt mining with some of the most powerful GPU in the world and still it was a waste of time.

If someone is still intrested in mining, look for mining hardware like the ones from butterflylabs.com

I have started to think about buying these some weeks ago and there are really good feedbacks.

Pages: [1]