[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

OPSec Lifestyle

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 56
Thread images: 5

File: Black_Lock.svg.png (14KB, 1000x1000px) Image search: [Google]
Black_Lock.svg.png
14KB, 1000x1000px
Do you live it? Share your methods and/or reasons.

Here some of mine:

>Encryption and proxy over everything
>Pay with cash
>Tails/Wifislax/Kali always on my pocket
>Personal devices and servers autisticaly riced to security
>One eye on OSINT tools to keep track of good AP's and the people on my city

Reasons:
Dictatoralship
>mfw I'd love to be fighting crime with latex and shit
>>
ladies and gentlemen, i present autism in its final form
>>
>>56971899
>Pay with cash
I do this too. I despise paying w/ my credit card.
>Tails/Wifislax/Kali always on my pocket
Once I can find a good wifi cafe, I'd like to acquire 2 of those.

The NSA can fuck off.

You ain't gonna find many people on /g/ who do this. It's all gamers & normals here.
>>
>>56971899
Pro-police state shillcucks incoming
>>
>VPN
>Encryption
>Pay with cash or Paypal online (fake name)
>Give fake names/e-mails/phone numbers when a company wants to mine my data (e.g. for your free gym session, fill out this form. Oh, you can get that burger deal, but you have to fill out this form. Oh, you want a quote on some trivial service, fill out this form!
>Literally no evidence of my identity on my phone (e.g. don't use real names for any account)
>Never use loyalty cards (except Waitrose because they give out free coffee - but it's under a fake name)
>lost communication with 80% of my friends since I deleted my Facebook
>Of the remaining 20% - lost about half since I started refusing to use Skype
>Have a shitty Xperia burner phone for apps that love to use High Accuracy Location GPS like Tinder (obviously with a fake facebook and fake name/age)

Autistic shit like that. I'll quote a friend:

>YOU ARE LITERALLY THE ONLY GUY I KNOW THAT USES A FUCKING PASSWORD ON HIS PHONE AND NOT FINGERPRINT/PIN! IT'S MEANT TO BE EASY TO ACCESS, YOU KNOW?!?!

Reasons:
UK is a IRL botnet.
>>
>>56971988
You guys get here quick. >>56972042

>Pro-police state shillcucks incoming
>>
>>56971988
You've seen nothing. Check out my post >>56972055
>>
>>56972024
>It's all shills & cucks here.

Fixed it for you.
>>
>>56972055
all botnet are very much IRL
>>
>>56972055
Okay, this is some next level.

For me it's simply:
TAILS in my pocket
Normal linux distro on my X60
All phone contacts on paper, but with real names
No Google Play services
Phone is encrypted
All passwords encrypted in plaintext
IRC over other means of communication

Sadly I use:
Credit Card
Debit Card
Simply impossible for me to get rid of those :(
Paypal with real name :(
No VPN
>>
>used to be massive anti-surveillance autist
>have everything protected
>refuse to let anybody track me
>get a job at Google
>be actually part of the botnet
>I can make sure my shit doesn't actually get tracked while getting paid for it
>track other people

Why fight them when you can join them and get paid for it?
>>
>>56972155
Because my morals are not plastic?
>>
>>56972147
>All phone contacts on paper, but with real names
Irrelevant. If you use phone calls and not some service using 4g (like Signal/Antox/Wire/Telegram etc), your service provider knows who you're calling. Might as well store them on your phone.

>No Google Play services
Rooting your phone is a security issue. I use Note 4 and it's been downhill since 4.4.4 (I rooted it, but that's not the point. I don't want to lose my fucking warranty just to remove a persistent Facebook app; I gave up on Samsung/Android).

>All passwords encrypted in plaintext
Keepass. I don't even know my own passwords and I use it regularly. Ofc I regularly update back ups of my database on a reserve HDD and USB in case I lose it and stuff like Protonmail and Tutanota mail would have been lost forever.

As for the Credit/Debit Card issue - it's unavoidable for some things. In fact, I have a business idea - selling Pre-Paid cash cards from vending machines with no name on it. Like gift vouchers - but Visa/Maestro/Master instead... Ofc, it won't work for obvious reasons... I wonder why Bitcoin is so hated?
>>
>>56972155
>thinking Google doesn't have special monitoring systems for their employees

You haven't thought that Google would be snooping on their employees too?
>>
>>56972155
If I apply, will they use all the data they have collected on me at some stage in the interview process? It's normal for companies to check social media.
>>
OP here

The issue is always how one balance social life and security measures.

My personal opinion:

You can live on the botnet, control your fingerprint, be that one always pays with cash and don't like to be tagged on social media. People respect that.

Then if you have the time open your computer and do whatever you want. Freely.

>>>>56972155
If true, just die.
>>
>>56972155
>not acting like a virus and destroying google from the inside
faggot
>>
>>56972308
>You haven't thought that Google would be snooping on their employees too?

Only on corporate machines, which makes sense and is standard practice because you are doing your job and getting paid for it. For everything else we have full access to the entire codebase so if we're worried something shady is going on we can always check. So far I checked and it's all good :)

>>56972316
>If I apply, will they use all the data they have collected on me at some stage in the interview process? It's normal for companies to check social media.

As far as I know we don't use any data collected prior to your interviews. We might use data from old interviews or temporary works you've done for us (read: internships or temp contractors) to be evaluated by the hiring committee.

>>56972325
>If true, just die.

It's true.

>>56972335
I ain't saying anything more ;)
>>
>>56972147
isnt IRC JUST as bad as any form of communication?
>>
>>56972147
About the sad part, keep it all, just stop using it. Don't just vanish. Make and use replacements.
>>
>>56971899
whats OPsec, i've heard it a lot but don't understand it?
>>
>>56972353
It is, if you're an idiot like me & join channels w/ a clear IP (yes, it shows up in your host name).
>>
I guess i'm above average, but i'm still in the botnet.

Linux for regular internet usage (still use w10 for school stuff though).
(sandboxed) Firefox with noscript, self destructing cookies, ublock, https everywhere, and privacy settings.
All hard drives encrypted.
Strong and unique (unfortunately not random atm) passwords + 2FA on all accounts.
For sensitive browsing I cary a USB-stick with TAILS on my keychain. Sensitive communications go over Signal.

I rely on social media too much for a regular social life to get rid of facebook and other social media though.
I'm also too poor to afford a proper VPN.
>>
What browsers are you guys using?
Almost none of you mentioned it.
>>
>>56972557

So are you doing this to hide CP or other illegal content or just purely for privacy?
>>
>vpns
They are pretty useless anyway, just use a vps/dedi
You can stay off the grid as teenager and with grid i mean signing up for services, but once you get older you'll have to register for certain things and yes most of it is online.
>>
>>56972821
Not him. Privacy for privacy shouldn't be good enough? There are several reasons to avoid the botnet.
>>
>>56971899
Heres mine:
>Pay with cash, Have debit cards and credit cards
>Encrypt nothing because it's slow and i don't have anything to hide
>windows 10 because linux is a turd
>personal devices left alone on factory default settings as not to brick the device making unessiary modifications
>one eye on /g/ /pol/ /x/ and xvideos.com
>>
>>56971899
>Do you live it?
No. I don't use Windows, but I do use lubuntu which isn't much better.
I care about privacy rights, but unfortunately convenience is king with me. I use gmail/drive, debit card, etc.
>>
>>56973401

Im not disagreeing with privacy for the sake of privacy. The unfortunate realty however is that most people who are heavily into encryption and data security are doing it for illegal purposes.

They are to blame for the diminished liberties and heavy policing of the digital world.
>>
>>56971899
>no KVM with Whonix inside
>no proof of severely hardened browser
>no proof of proper alternatives to bluepill services

>>56972024
you don't have to have a credit score if you don't want to, anon

>>56972042
>implying this thread is full of """tech wizzes""" worth shittalking

Daily reminder that cyberpunk is purely roleplay and none of you can hack it in the real world
>>
File: 2016-10-03_14-23-36.png (76KB, 179x207px) Image search: [Google]
2016-10-03_14-23-36.png
76KB, 179x207px
>>56973439
>one eye on /g/ /pol/ /x/ and xvideos.com
a couple months ago, you would've been mah nigga, but all of those are shit now except the porn

kys winTcuck
>>
>>56973590
>you don't have to have a credit score if you don't want to, anon
I don't understand well. I'm concerned about the NSA seeing the metadata on that apple juice I bought yesterday. What business have they? And I should've said debit, it's a debit card.
>>
>>56973590
>proof

Also yes, cyberpunk is sci-fi. The botnet isn't and we all know.
>>
>>56973590
>you don't have to have a credit score if you don't want to, anon
Yes you do. It's not your choice to make whether people track your bill paying etc.

It's your choice whether you care about it.
>>
File: aptinstallgentoo.jpg (35KB, 497x373px) Image search: [Google]
aptinstallgentoo.jpg
35KB, 497x373px
Might as well tell NSA what they're up against

> Linux with full disk encryption, boot partition on a USB drive that's always on me
> Keepassx with generated passwords
> Firefox+noscript+request policy+tor and chromium incognito for clearnet
> All backup drives encrypted too
> Phone has full disk encryption too, but it doesn't have much personal information and no lockscreen security
> Also phone is cyanogen without gapps, everything is from fdroid
> Disconnect from cell towers when not in use (most of the time)
> Multiple email accounts, two of which are paid and outside the 5 eyes coverage
> Most chat is OTR'd and via tor
> Try to use cash when possible but not as hardcore as some others here

Bring it, faggots
>>
>>56972300
>I wonder why bitcoin is so hated.
It's because the majority of $ to BTC services request a ton of personal information to the point where BTC isn't anonymous at all.
>>
>>56975001
> Linux with full disk encryption, boot partition on a USB drive that's always on me
If you lost your usb drive?

> All backup drives encrypted too
How-where is it?
>>
>>56975001
Nice.
But what's the point of having no lockscreen security?
I have a shitty pattern lock and using an app from fdroid I can have my phone shutdown on the third wrong attempt and boot up to the (long AF) encryption password.
>>
>>56972300

you could do those cash cards, but you'd have to charge 15-20% (maybe more) overhead to cover your fraud costs. russell simmons has something like that.
>>
>>56972821

some of us are targeted by non-nation state actors and we'd like to remain semi-private
>>
>>56976576

if you steal identities then bitcoin remains anonymous. the bitcoin ledger is relatively trackable to a point and some common sense inferences can be made about the transactions in order to reduce the identity search space.
>>
File: 1471828863662.jpg (141KB, 923x865px) Image search: [Google]
1471828863662.jpg
141KB, 923x865px
Let's see
>Linux installed along side of Windows 10. Home folder encrypted.
>A couple encrypted file containers

that's about it. I have 2 Gmails. One of which incorporates my name into the name of the email itself. I use Windows 10 for games just as much as I do Linux for work/banking. My Android phone has personal data on it, but is encrypted so it requires a password just to boot, then a secondary password to unlock the screen.

I honestly am more worried about my phone being stolen and my personal info (email, email passwords, bank info, etc) being taken than being data mined by corporations. I'm far from an advocate of "nothing to hide, nothing to fear", but I'm not high profile at all. Just a filthy normie with some autistic tendencies.

>My most embarrassing is Amazon keeps ordering history for some time. My one account has several anal toys along side phone cases and lube scattered throughout.

Whoops.
>>
For no particular reason, I like to play with security/hardening on my cell. First of all, non-stock ROM, of course. Then I run my own caching DNS server on the phone, that uses Tor DNS through Orbot as external DNS. Very fast, BTW. I use F-Droid and Guardian Project repos for most of my core apps. No Google apps at all. Riseup and Autistici e-mail. I run IRC, XMPP, and HTTP servers on the phone as Tor hidden services. Riseup VPN sometimes, obviously not for 4chan. Orfox and Lightning web browsers. ChatSecure, CSipSimple through Ortel for VOIP. AFWall+ firewall, Disable Manager to freeze any unwanted apps. Just a game, though. Not particularly paranoid.
>>
>>56975001
>believing this will be secure against NSA

Nigguh stuxnet rekt airgapped machines. NSA has encryption backdoors AND super computers if they need to brute shit.

DNS requests will get hijacked
They can waterhole attack you, i.e, plant a malware for anyone that logs in to x email accnt (watch hacking teams software in action for that one)

And sooo much more. Like, I am not kidding. Its alright that you guys go through all this, and you should do it. Heck I do most of this and other stuff too. But you gotta know that if you are up against NSA, you are naked.

These things make more sense when you have an advanced adversary, but they dont do much against state level agencies.
>>
>>56977057
As I said in >>56976841 I encrypt my stuff and am decently paranoid more so out of fear of theft than I am fear of NSA. NSA wants you gone or found? They're going to. No matter how careful or how good you are, they'll find something about you.
>>
File: cognitive_dissonance.jpg (223KB, 500x720px) Image search: [Google]
cognitive_dissonance.jpg
223KB, 500x720px
>>56971899
> Discussing OPSEC
>> DISCUSSING OPSEC
>>> DISCUSSING
>>>> DISCUSS
>>>>> OPSEC
>>
>>56977057
NSA are human, and have to obey the same laws of physics as everyone else. They have tremendous resources and talent, but they are not superhuman or supernatural. They have their successes and they have their failures, are by no means infallible. The Snowden leaks clearly showed that they don't have the god-like powers people seem to credit them with. They're good, but not *that* good.
>>
>>56977178
Thats where you are wrong kiddo.

Ever read Sun Tzu? I am pretty sure they have more things up their sleeves. Did you read all the snowden files?

In any case, they will get you if they want to. Whether it may be by backdoor, exploit, social eng, hijacking your requests, hijacking computer parts you order, etc. List is endless.

Their level of effort depends on how wanted you are.

As for snowden, yeah he did slip ''''away'''''. Maybe it was meant to happen, maybe they DID mess up, maybe its all disinformation (let em have our outdated shit, snowden gets a trust relationship with the community, etc.). We do not know, all we DO know is that they CAN get through airgapped shit and what not.

The art of war my friend.
>>
4chan is a honeypot

It's been that way for ages

Everything ive read in this threads has been pathetic
>>
>tfw Libreboot & no cell devices
Honestly I don't care much about le ebin opsec, I just am frugal and my family never got into the consumerism thing. My wife and kids have dumbphones for emergency but hardly use them. Living on a farm does help though.
>>
>>56977580
>yeah this'll show them for threatening to fire me!
>>
>>56975001
>Firefox+noscript+request policy+tor and chromium incognito for clearnet
uMatrix is superior to both requestpolicy and noscript.
>>
>>56971899
And all this on backdoored hardware and unaudited lines of code

Well meme'd muchacho
>>
>>56976587
It's just the boot partition, doesn't have to be backed up (although it is). The goal is to avoid the types of attacks where a malicious 3rd party adds a keyloggers to the unencrypted boot partition when you're away, later you log in, and next time they have access they get the logged password.
The backups are the same as the laptop - luks.

>>56976609
Phone never leaves my pocket. Sometimes I turn it on when going out. But damn is the lockscreen security annoying. Easier to just turn off when going through customs and such, and more secure.

>>56977915
Maybe. I've had the setup for years. I'll look into umatrix later.
>>
>>56977580
>all we DO know is that they CAN get through airgapped shit and what not.
Swell duh some retarded nuclear scientist got his shit infected with stuxnet when he attended some conference in europe and picked up a random usb and then the idiot took his fucking infected laptop inside Natanz from where it spread to the uranium centrifuges, they didn't bypass no air gapped shit, they depended on social engineering and failed human security.
Like the other anon said, they're good but they're not God.
Thread posts: 56
Thread images: 5


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.