diff --git a/opsec/index.html b/opsec/index.html
index 6fd8a8e..ab4596f 100644
--- a/opsec/index.html
+++ b/opsec/index.html
@@ -49,7 +49,7 @@
⭐: Personal Favorite
✅: Completed
🟠: Work in progress
- ❌: Not started yet
+ ❌: Not started yet (can be brainstormed on their assigned gitea issues here)
⚠️ This Blog is open to contributions:
@@ -83,7 +83,7 @@
✅ Audit your OPSEC and determine the appropriate internet use
✅ Internet usage segmentation (QEMU VMs + Identity Management)
✅ OPSEC: Using the right Technology and Behavior
- ❌ How to maintain multiple Identities Online
+ ❌ How to maintain multiple Identities Online
@@ -112,14 +112,14 @@
✅ How to install Linux from a Windows PC ⭐
✅ How to install and update programs on Linux
✅ How to install GrapheneOS on a Pixel Phone
- ❌ Easy Private Chats - Simplex
+ ❌ Easy Private Chats - Simplex
💻 File Sharing
- - ❌ One on One large file sharing (Syncthing over VPN)
- - ❌ P2P large file sharing (Torrents over VPN)
+ - ❌ One on One large file sharing (Syncthing over VPN)
+ - ❌ P2P large file sharing (Torrents over VPN)
@@ -132,7 +132,7 @@
✅ Password Management 101 (How to use Keepass)
✅ Serverside: Should I trust serverside encryption? Should I use PGP?
✅ Private Messaging (PGP encryption)
-
❌ How to use GPG SmartCards to secure your PGP keys
+
❌ How to use GPG SmartCards to secure your PGP keys
⚠️ Miscellaneous - In real life
@@ -163,13 +163,13 @@
✅ The main source of Anonymity: The Tor Network
✅ Using Tor Safely: Tor through VPN or VPN through Tor ?
🟠 Phone Numbers are incompatible with Anonymity
-
❌ How to protect against fingerprinting (persona, text, files)
-
❌ How to run a local LLM to change your writing style (and it's use in whonix VM)
+
❌ How to protect against fingerprinting (persona, text, files)
+
❌ Stylography protection (Running a Local LLM and copy pasting messages)
💻 Clientside - Getting Started (⚠️ Check if your ISP allows Tor or Not!)
- - ❌ How to setup and navigate Qubes OS
+ - ❌ How to setup and navigate Qubes OS
- ✅ Tor Web Browser setup
- ✅ How to use the Tor Browser on Mobile
- ✅ Tails OS QEMU VM for Temporary Anonymity
@@ -180,18 +180,18 @@
💻 Clientside - Censorship Evasion
- ✅ How to access Tor when it is being blocked, using VPNs
- - ❌ How to temporarily access Tor when VPNs are blocked, using Tor bridges
- - ❌ How to access Tor when VPNs are blocked, using VPSes (SSH port forwarding / OpenVPN port sharing)
- - ❌ How to access Tor when you are in Russia or China using v2ray (vmess / vless)
+ - ❌ How to temporarily access Tor when VPNs are blocked, using Tor bridges
+ - ❌ How to access Tor when VPNs are blocked, using VPSes (SSH port forwarding / OpenVPN port sharing)
+ - ❌ How to access Tor when you are in Russia or China using v2ray (vmess / vless)
💻 File Sharing
- - ❌ How to send small files Anonymously (Onionshare)
- - ❌ One on One large file sharing (Syncthing over Tor)
- - ❌ P2P large file sharing (Torrents over i2p or Tor)
+ - ❌ How to send small files Anonymously (Onionshare)
+ - ❌ One on One large file sharing (Syncthing over Tor)
+ - ❌ P2P large file sharing (Torrents over Tor)
@@ -200,21 +200,21 @@
- ✅ Why Financial decentralisation ? (Cryptocurrencies, Exchanges and KYC) ⭐
- 🟠 How to setup your Monero Wallet
- ✅ Why can't I trust Centralised Exchanges, and random Monero nodes ?
- - ❌ How to get your first Monero ? (xmrbazaar.com, crypto swaps, p2p chats)
+ - ❌ How to get your first Monero ? (xmrbazaar.com, crypto swaps, p2p chats)
- 🟠 Haveno Decentralised Exchange direct Fiat -> XMR transaction ⭐
- ✅ Haveno DEX Dispute resolution (Fiat -> XMR)
- ✅ Haveno DEX Bank Transfer (ex: SEPA) -> XMR transaction
- ✅ Haveno DEX Cash By Mail -> XMR transaction ⭐
- - ❌ Convert Monero into other Cryptos Anonymously (XMR -> BTC Atomic Swaps DEX)
- - ❌ Monero Inheritence Management (Threshold encryption (2of3)+ PGP)
+ - ❌ Convert Monero into other Cryptos Anonymously (XMR -> BTC)
+ - ❌ Monero Inheritence Management (Threshold encryption (2of3)+ PGP)
💻 Clientside - Making use of Anonymity (Non-KYC Providers)
- - ❌ How to get a mail account anonymously (Mails as a service)
- - ❌ How to get a phone number anonymously (Remote SMSes as a service)
- - ❌ How to get a credit card anonymously (Credit cards as a service)
- - ❌ How to get a residential proxies anonymously
+ - ❌ How to get a mail account anonymously (Mails as a service)
+ - ❌ How to get a phone number anonymously (Remote SMSes as a service)
+ - ❌ How to get a credit card anonymously (Credit cards as a service)
+ - ❌ How to get residential proxies anonymously
@@ -229,8 +229,8 @@
✅ Tor Exit Node
✅ Monero Node
✅ Monero Mining with p2pool (help validate the network)
- ❌ Haveno Seed Node
- ❌ Haveno DEX Network
+ ❌ Haveno Seed Node
+ ❌ Haveno DEX Network
🧅 Serverside - Anonymous Hidden Services
@@ -238,14 +238,14 @@
✅ Where to host Anonymous Hidden Services ?
✅ Hidden Service with custom .onion Vanity V3 address
- ❌ Basic Webserver setup (NGINX / PHP / MYSQL)
- ❌ Minimalistic MoneroSSO .onion setup
+ ❌ Basic Webserver setup (NGINX / PHP / MYSQL)
+ ❌ Minimalistic MoneroSSO .onion setup
✅ XMPP Chat Server Setup (Clearnet + Onion + OMEMO E2EE)
- ❌ Gitea .onion setup (Code repositories)
- ❌ Nextcloud .onion setup (cloud storage)
- ❌ Mastodon .onion setup (Microblogging)
- ❌ Discourse .onion setup (Forums)
- ❌ How to setup Nerostr (Nostr blogging)
+ ❌ Gitea .onion setup (Code repositories)
+ ❌ Nextcloud .onion setup (cloud storage)
+ ❌ Mastodon .onion setup (Microblogging)
+ ❌ Discourse .onion setup (Forums)
+ ❌ How to setup Nerostr (Nostr blogging)
🧅 Serverside - Anonymous Clearnet Services
@@ -261,9 +261,9 @@
⚠️ Miscellaneous - In real life
- - ❌ How to send a mail package anonymously
- - ❌ How to recieve a mail package anonymously
- - ❌ How to remain Anonymous during a protest
+ - ❌ How to send a mail package anonymously
+ - ❌ How to recieve a mail package anonymously
+ - ❌ How to remain Anonymous during a protest
@@ -320,21 +320,21 @@
✅ Internet Failover (Dual WAN pfsense setup)
❌ Deniable Encryption Protection (emergency shutdown script, shortcut, + systemd service)
✅ Automating Deniable Encryption Protection (USB Changes, detecting movements, and SSH bruteforce attempts)
- ✅ Endgame V3 (.onion service Anti DDOS / Load Balancer / WAF + Captcha) ⭐
+ ✅ Endgame V3 (.onion service Anti DDOS / Load Balancer / WAF + Captcha) ⭐
🧅 Serverside - Remote Plausible Deniability (⚠️ Remote Hosting = Safer!)
- - ❌ When the Adversary is the cloud provider himself
- - ❌ Protecting against cold boot attacks, with RAM encryption (no hardware access!)
- - ❌ System Intrusion / Integrity monitoring (kernel modules, binary files, unwanted processes, hardwre changes)
- - ❌ Custom Linux OS making (debian-based)
- - ❌ Obtaining a non-KYC dedicated server, with a custom OS
- - ❌ Intrusion detection on remote servers
+ - ❌ When the Adversary is the cloud provider himself
+ - ❌ Protecting against cold boot attacks, with RAM encryption (no hardware access!)
+ - ❌ System Intrusion / Integrity monitoring (kernel modules, binary files, unwanted processes, hardwre changes)
+ - ❌ Custom Linux OS making (debian-based)
+ - ❌ Obtaining a non-KYC dedicated server, with a custom OS
+ - ❌ Intrusion detection on remote servers
⚠️ Miscellaneous - In real life
- - ❌ When protests go wrong - SimpleX Disappearing Messages
+ - ❌ When protests go wrong - SimpleX Disappearing Messages