This commit is contained in:
nihilist 2024-11-15 08:55:54 +01:00
parent 59d6945d31
commit d1bc9cefbe
2 changed files with 14 additions and 5 deletions

View File

@ -102,19 +102,20 @@
<img src="3.png" class="imgRz"> <img src="3.png" class="imgRz">
<p>Now let's say the adversary knows that you live in France what are the odds now ?</p> <p>Now let's say the adversary knows that you live in France what are the odds now ?</p>
<img src="4.png" class="imgRz"> <img src="4.png" class="imgRz">
<p><b>Now let's say that the adversary knows you live in France</b>, the odds have been significantly reduced from 1 out of 8 billion to <b>1 out of 65 million</b>, but still that's not enough to accurately pinpoint you, the probability of the adversary figuring out who you are is still very low.</p> <p><b>If the adversary knows you live in France</b>, the odds have been significantly reduced from 1 out of 8 billion to <b>1 out of 65 million</b>, but still that's not enough to accurately pinpoint you, the probability of the adversary figuring out who you are is still very low.</p>
<p><img src="../logos/on1.png"> - Pseudonymity</p> <p><img src="../logos/on1.png"> - Pseudonymity</p>
<p>But now let's say that the adversary knows more than that, let's suppose that <b>the adversary knows that you have a masters in cybersecurity, and that you work a general IT job in France, for a software company.</b> Now the odds have shrinked further, especially if the adversary is able to combine multiple sources of data to try and profile you.</p> <p>But now let's say that the adversary knows more than that, let's suppose that <b>the adversary knows that you have a masters in cybersecurity, and that you work a general IT job in France, for a software company.</b> Now the odds have shrinked further, especially if the adversary is able to combine multiple sources of data to try and profile you.</p>
<img src="5.png" class="imgRz"> <img src="5.png" class="imgRz">
<p>Let's say you are trying to chat on <a href="../anonsimplex/index.html">SimpleX</a> while the adversary is in the chat with you, and he sees that you have a <a href="https://www.youtube.com/watch?v=S03T47hapAc">gorillaz profile picture</a>, call yourself Nihilist, and talk about Opsec all the time. If the adversary is good at profiling you over time, he could have already shrinked down the odds to <b>1 out of 10 thousand</b> people. Here we're talking about a drastically reduced anonymity, <b>which we can consider to be pseudonymity.</b> but that is still not enough to know who you are IRL.</p> <p>Let's say you are trying to chat on <a href="../anonsimplex/index.html">SimpleX</a> while the adversary is in the chat with you, and he sees that you have a <a href="https://www.youtube.com/watch?v=S03T47hapAc">gorillaz profile picture</a>, call yourself Nihilist, and talk about Opsec all the time. If the adversary is good at profiling you over time, he could have already shrinked down the odds to <b>1 out of 10 thousand</b> people. Here we're talking about a drastically reduced anonymity, <b>which we can consider to be pseudonymity.</b> but that is still not enough to know who you are IRL.</p>
<p><img src="../logos/on2.png"> - Onymity</p> <p><img src="../logos/on2.png"> - Onymity</p>
<p>But you need to be aware that even the tiniest opsec mistake thing can reduce the odds of your anonymity to <b>1 out of 1</b>, where you are effectively deanonymized. For instance let's say you are in this <a href="https://simplex.chat/contact#/?v=2-7&smp=smp%3A%2F%2FL5jrGV2L_Bb20Oj0aE4Gn-m5AHet9XdpYDotiqpcpGc%3D%40nowhere.moe%2FWdXMbz3Yq9baXgQVKy2EppUm0NCcYluM%23%2F%3Fv%3D1-3%26dh%3DMCowBQYDK2VuAyEAtVlfehjn5VhPIhDI_ses2kw3itcjMpLMvLlUFejMNlU%253D&data=%7B%22type%22%3A%22group%22%2C%22groupLinkId%22%3A%22gUgzlCwi97y1rHaezDZcLg%3D%3D%22%7D">SimpleX chatroom </a>, and let's say you are sending a picture of your own <a href="https://monerosupplies.com/product/monerochan-plush/">limited edition monerochan</a>:</p> <p>But you need to be aware that even the tiniest opsec mistake can reduce the odds of your anonymity to <b>1 out of 1</b>, where you are effectively deanonymized. For instance let's say you are in this <a href="https://simplex.chat/contact#/?v=2-7&smp=smp%3A%2F%2FL5jrGV2L_Bb20Oj0aE4Gn-m5AHet9XdpYDotiqpcpGc%3D%40nowhere.moe%2FWdXMbz3Yq9baXgQVKy2EppUm0NCcYluM%23%2F%3Fv%3D1-3%26dh%3DMCowBQYDK2VuAyEAtVlfehjn5VhPIhDI_ses2kw3itcjMpLMvLlUFejMNlU%253D&data=%7B%22type%22%3A%22group%22%2C%22groupLinkId%22%3A%22gUgzlCwi97y1rHaezDZcLg%3D%3D%22%7D">SimpleX chatroom </a>, and let's say you are sending a picture of your own <a href="https://monerosupplies.com/product/monerochan-plush/">limited edition MoneroChan fumo plushie</a>:</p>
<img src="6.png" class="imgRz"> <img src="6.png" class="imgRz">
<p>Now the thing is, <b>there are only 100 monerochan plushies</b> out there, if the adversary is the seller of those monerochan plushies, he knows where he sent all of the 100 plushies, therefore your anonymity has been reduced to <b>1 out of 100</b> But thing is, upon closer exception it is worse than you may think:</p> <p>Now the thing is, <b>there are only 100 of those plushies</b> out there, if the adversary is the seller of those monerochan plushies, your anonymity odds has been reduced to <b>1 out of 100</b>, that's because he knows to whom he sent those 100 plushies, meaning he now only has a group of 100 people to guess who you are from. But upon closer exception it is worse than you may think:</p>
<img src="7.png" class="imgRz"> <img src="7.png" class="imgRz">
<p>If you look closer at the image the "Certificate of authenticity" says that it is the 41th monerochan out of the 100 plushies that exist. Therefore <b>if the adversary is the plushie seller, your anonymity odds have been reduced 1 out of 1 As he now knows to whom he sent the 41th plushie.</b> Meaning that you just deanonymized yourself for that particular adversary. </p> <p>If you look closer at the image the "Certificate of authenticity" says that <b>it is the 41st plushie amongst the 100 that exist</b>. Therefore if the adversary is the plushie seller, <b>your anonymity odds have been reduced 1 out of 1 as he knows to whom he sent the 41st plushie.</b> Meaning that you just deanonymized yourself for that particular adversary. </p>
<p>You get the idea, if you want to remain Anonymous, you need to always ask yourself <b>"how many people could send that?"</b>, <u>if you were to send that picture i sent above, you'd realize that this is a bad idea</u>, same as in saying your real IRL name, your phone number, your home address, your home public IP address, etc.</p> <p>You get the idea, if you want to remain Anonymous, you need to always ask yourself <b>"how many people could send that?"</b>, <u>if you were to send that picture i sent above, you'd realize that this is a bad idea</u>. The same concept applies as if you were to say what is your real IRL name, your phone number, your home address, your home public IP address, etc. <b>Do not give bullets to an adversary, as he will use everything you give him to shoot you.</b></p>
<p>The least info you send about yourself, what you like, what you dislike, where you live, where you work, what's your past, the better, as otherwise it will be exponentially easier for an adversary to narrow down the possibilities of who you could be, amongst a given group of people.</p>
</div> </div>
</div><!-- /row --> </div><!-- /row -->
</div> <!-- /container --> </div> <!-- /container -->

View File

@ -366,10 +366,14 @@ server {
<h2><b>Setting up the collaboration</b></h2> </br> </br> <h2><b>Setting up the collaboration</b></h2> </br> </br>
<p>Now in order to make sure you can welcome external contributions, you need at least to be able to have a gitea instance:</p> <p>Now in order to make sure you can welcome external contributions, you need at least to be able to have a gitea instance:</p>
<img src="" class="imgRz">
<p>Once setup, you can clone the blog-contributions repository in your gitea instance:</p> <p>Once setup, you can clone the blog-contributions repository in your gitea instance:</p>
<img src="" class="imgRz">
<p>And then, you can recreate the kanban board like so:</p> <p>And then, you can recreate the kanban board like so:</p>
<img src="" class="imgRz">
<p>And then adding issues into it like so:</p> <p>And then adding issues into it like so:</p>
<img src="" class="imgRz">
</div> </div>
</div><!-- /row --> </div><!-- /row -->
@ -384,9 +388,13 @@ server {
<div class="col-lg-8 col-lg-offset-2"> <div class="col-lg-8 col-lg-offset-2">
<h2><b>Setting up a Mirror List</b></h2> </br> </br> <h2><b>Setting up a Mirror List</b></h2> </br> </br>
<p>Now in order to give people a list of all the backup blog mirrors in one go, i list them manually on an uptimekuma instance:</p> <p>Now in order to give people a list of all the backup blog mirrors in one go, i list them manually on an uptimekuma instance:</p>
<img src="" class="imgRz">
<p>First, the mirror (clearnet and .onion) gets added into the "testing" category:</p> <p>First, the mirror (clearnet and .onion) gets added into the "testing" category:</p>
<img src="" class="imgRz">
<p>Then, if the mirror is still reachable after 1 month, i move it into the "stable" category:</p> <p>Then, if the mirror is still reachable after 1 month, i move it into the "stable" category:</p>
<img src="" class="imgRz">
<p>And there the mirror stays until i see it is no longer reachable.</p> <p>And there the mirror stays until i see it is no longer reachable.</p>
<img src="" class="imgRz">
</div> </div>
</div><!-- /row --> </div><!-- /row -->
</div> <!-- /container --> </div> <!-- /container -->