Kevin Karhan :verified:

Having chatted with @adisonverlice for quite some time I can really see a lot of #pain and #frustration when it comes to #accessibility of @torproject / #Tor as well as @guardianproject / #Orbot.

I.e. #Captchas with no alternatives for #blind users.

This seems like something #TorProject and #GuardianProject need to really work on, cuz #privacy should not be limited to people being able-bodied...

Kevin Karhan :verified:

@BrodieOnLinux I am pretty shure @torproject / #TorBrowser and any #App that does #Proxy through @guardianproject / #Orbot for #Tor access is not affected but I do encourage both #Tor and Orbot devs to test against #LocalhostTracking!

#Spyware #InfoSec #ComSec #ITsec #OpSec #Malware #LocalhostTracking #Govware #StasiBook #Facebook #Meta

Jun 23, 2025, 16:26 · · · 0 · 0
Kevin Karhan :verified:

@derekmorr

Let it go, already. No one uses MobileCoin. You can’t even find an exchange to buy it.

Then why does @signalapp still have that shit in it? @Mer__edith could've pulled that #Shitcoin yet refuses to do do!

The Cloud Act is a non-issue. Signal doesn’t have data on users, so they can’t be forced to disclose it.

That's literally wrong!

#Signal not only collects #PII in the form of a #PhoneNumher but explicitly is able and willing to use that to dsicriminate against users and restrict app functionality based off their presumed juristiction. There is no "legitimate interest" for.doing so nor any legal mandate to do so (unless we excuse the ehole #MobileCoin-#Scam!)

It’s been 30 years, and no one uses xmpp. Let it go.

Wrong again. Otherwise there wouldn't be thriving ecosystems and Apps to this day. It's just that corporate shills refuse to acknowledge that Signal - like all centralized, proprietary, #SingleVendor and/or #SingleProvider kessengers before and after - will inevitably die as their business model is not sustainable. Sake with #ICQ really. The only exceptions are those that abolish #privacy for #profit, integrate actually working payments or sellout to a #cyberfacist #government (all those apply to #WeChat!)

It’s shocking that people who claim to care about security and privacy push niche apps with terrible UX and no PFS like Delta or XMPP instead of the only private messenger with any real market share, Signal.

You know what's shocking to me: People who are unable or rather unwilling.to acknowledge that Signal is garbage and it's requirement for a #PhoneNumber kills any #privacy benefits it may have on paper by virtue of being at best pseudonymous (assuming the userd don't live in a juristiction that demands "#KYC" for even prepaid #SIM cards (ime. #Germany) or god forbid even #IMEI|s (i.e. #Turkey has a literal allowlist that'll kick any device off it's MNOs after 90 days within 365 days.

The #UScentric approach to #privacy and #threats makes Signal absolutely useless in many cases, and I do speak here from experience.

I'd rather help people onboard #XMPP+#OMEMO like @monocles and/or @gajim or #PGP/MIME like @delta & @thunderbird (incl. setting them up with #Orbot / #TorBrowserBundle / @tails_live so their traffic gets through @torproject and doesn't provide any useable IP addresses.

I've literally been there and done that!

As for #Sustainability, providers like monocles.eu finance themselves by subscriptions (starting at €2 p.m.) which people can pay fully anonymous using #CashByMail and #Monero on top of common payment methods (i.e. SEPA wire transfer)...

So even if you think "#monocles is a #honeypot" that is mitigateable ciz unlike with Signal you can choose your own client, choose a different provider & exervise self-custody of all tue keys!

monocles search

monocles search, powered by searx

monocles.eu
Jun 17, 2025, 00:39 · · · 2 · 0
nemo™ 🇺🇦

Make ANY #Messaging Service #E2E #Encrypted With #PGP by Mental Outlaw

youtube.com/watch?v=mu2TVYJE5G

Signal bro signal :D a PGP is also fine tho
Signal on steroids => #Molly-FOSS with #Orbot via #tor 💡#metadatamatters #privacymatters #sidechannelsmatter
One could also send PGP messages via Signal/Molly 🤣 💡

- YouTube

Enjoy the videos and music you love, upload original…

www.youtube.com
Jun 14, 2025, 06:04 · · · 2 · 0
رضا ☫ Reza

Why should #orbot be more than 100 MiB?

#tor #android

May 12, 2025, 12:52 · · · 0 · 0
Kevin Karhan :verified:

@froge @fj I'm not replacing @signalapp with "random tools" but good options.

Like @delta & @thunderbird as well as @monocles / #monoclesChat & @gajim which work flawlessly over @torproject / #Tor using @tails / @tails_live / #Tails and @guardianproject / #Orbot respectably.

Also these allow not only #SelfHosting but just work and I'd highly recommend #monocles as a hoster which finances iself by users paying and allows #anonymous accoubts & payments including not just #Monero but also #CashByMail!

Considering the costs of even acquiring and upkeeping an #anonymous #SIM, I'd rather pay €2 p.m. for #XMPP+#OMEMO and #PGP/MIME-supported #eMail with the option of self-custody than $2,50+ p.m. just to keep a phone number.

Plus I don't run around with a #tracking device that could be used to #deanonymize me any second...

Or is anyone here expecting @Mer__edith to risk jail for life amd not comply with #CloudAct?

If #Signal was as secure as advertised, it would've been shutdown like #EncroChat and #SkyECC!

It stenches like #ANØM, because NOTHING IS FOR FREE and running a #VCmoneyBurningParty is expensive...

Kevin Karhan :verified: (@kkarhan@infosec.space)

@osman@hachyderm.io If your #OpSec, #InfoSec, #ComSec…

Infosec.Space
Mar 25, 2025, 13:18 · · · 0 · 0
Kevin Karhan :verified:

@CppGuy yeah, @torproject really got better since I started using @guardianproject / #Orbot 15 years ago because in #EDGEland, #Tor is a #PerformanceProxy!

Da lazy beardude

Snowflake proxy update 7

Uptime: 7d 14:41
Total download bandwidth donated: ~1.20 TB
Total upload bandwidth donated: ~1.26 TB

Last screenshot before I put the Snowflake proxy down for a bit to do some changes in the BIOS (more below)

#torproject #snowflake #tor #onion #snowflakeproxy #proxmox #gnu #freesoftware #opensource #foss #tails #tailsos #linux #torbrowser #orbot #censorship #anticensor #privacy #security #anonymity #deepweb #darkweb #debian #fedora #fedoralinux #golang #javascript

Da lazy beardude

Our internet got cut off for about 6 hours or so (for some reason) so yeah it tanked down to 8.53 TiB, but that's still big honestly. A decent HDD has that amount of space.

#torproject #snowflake #tor #onion #snowflakeproxy #proxmox #gnu #freesoftware #opensource #foss #tails #tailsos #linux #torbrowser #orbot #censorship #anticensor #privacy #security #anonymity #deepweb #darkweb #debian #fedora #fedoralinux #golang #javascript

Kevin Karhan :verified:

#WhatsMissing: A tool to check if #TorBridges are still available/online/reachable that one can use either #standalone (with #TorBrowser and/or #Tor Expert Bundle) or on @tails_live / @tails / #Tails.

Cuz I do run into issues and kinda want to sort #Bridges by availability so I don't waste time on a #TorBridge that is down and also thin-out the list of bridges that ain't online anymore.

Whilst I do acknowledge that @torproject do disrecommend having a huge list of Tor Bridges on hand, I do regularly need them for contacts who are behind a #GreatFirewall and can't #SSH-Tunnel out of it.

Sadly #BridgeDB doesn't offer good #filtering options so one can't just query types effectively like "I need #webtunnel on #IPv4" or "I can only use Ports 80 & 443 on #IPv6" which may work.

Espechally being able to filter for #IPv4only and not just #IPv6only is something I miss, alongside the filter for #PluggableTransports type as @guardianproject #Orbot seems to only handle #obfs4 and not webtunnel or #meek at all...

I'm pretty certain that merely pinging a bridge at it's port isn't working as a shure-fire way to check for it's availability.

Da lazy beardude

These past few days I've been noticing the increased network usage of my standalone Snowflake proxy vm at night times (UTC timezone). Idk, just an observation.

Graph's from my Proxmox server WebGUI, btw.

#torproject #snowflake #tor #onion #snowflakeproxy #proxmox #gnu #freesoftware #opensource #foss #tails #linux #torbrowser #orbot #censorship #anticensor #privacy #security #anonymity #deepweb #darkweb #debian #fedora #fedoralinux #golang #javascript

Delas

Me gustaría tener dos perfiles en el móvil.

1️⃣Uno para la VPN
2️⃣Otro para torificar el dispositivo (vía Orbot).

¿Cuál usarían para chatear con la gente? VPN o Tor?

#dudas #moviles #orbot #vpn #privacidad

Da lazy beardude

These are the connections that have been made over 6 hours of packet capturing. I'm assuming these are the estimated locations of the clients' ISP that have connected to my snowflake-proxy.

Well then, hello world!

#torproject #snowflake #tor #onion #snowflakeproxy #gnu #freesoftware #opensource #foss #tails #tailsos #linux #torbrowser #orbot #censorship #anticensor #privacy #security #anonymity #deepweb #darkweb #fedora #fedoralinux #golang #javascript