From 8c42af9eea7b40cc885a79f8080398e90a2c30cb Mon Sep 17 00:00:00 2001 From: TwoSixtyThreeFiftyFour <108928957+TwoSixtyThreeFiftyFour@users.noreply.github.com> Date: Mon, 29 Aug 2022 12:35:58 +0000 Subject: [PATCH 01/15] Updates to the links page - Adding PTIO website - Adding general disclaimer about sponsors/affiliates/merchandising/premium content - Adding Seirdy's website --- links.md | 23 +++++++++++------------ 1 file changed, 11 insertions(+), 12 deletions(-) diff --git a/links.md b/links.md index c075e30..685b6f1 100644 --- a/links.md +++ b/links.md @@ -7,34 +7,33 @@ Some of those resources may, in order to sustain their project, contain or propo - Monetized content through third party platforms (such as YouTube) - Affiliate links to commercial services - Paid Services such as consultancy -- Premium content such as ad-free content +- Premium content such as ad-free content or updated content - Merchandising -**anonymousplanet.org does not participate in any sponsoring or affiliate program for any entity. anonymousplanet.org relies only on anonymous donations.** +**Anonymous Planet does not participate in any sponsoring, adveristing, or affiliate programs for any entity. We only rely on anonymous donations in a closed transparent loop system. Anonymous Planet does not endorse any sponsored/affiliate/premium content that may be present in the links below.** -All the links below are listed in alphabetical order. +All the links below are listed in alphabetical order: -#### General privacy related projects: +#### General privacy related projects worth checking out: - EFF Surveillance Self-Defense: - Prism-Break: -- Privacy Guides: -- Techlore: -- The New Oil: +- Privacy Guides: +- Techlore: (May contain clearly marked sponsored products/services, premium content, and affiliate links) +- The New Oil: (May contain clearly marked sponsored products/services and affiliate links) +- PrivacyTools.io: (May contain clearky marked sponsored product/services and affiliate links) #### Blogs and personal websites: - CIA Officer's Blog: - Continuing Ed: - Madaidan's Insecurities: +- Seirdy's Home: #### Useful resources: - KYC? Not me: -- Library Genesis: [[Wikiless]][1] (see their latest known URL in the Wikipedia article) +- Library Genesis: [[Wikiless]](https://wikiless.org/wiki/Library_Genesis) (see their latest known URL in the Wikipedia article) - Real World Onion Sites: -- Sci-Hub [[Wikiless]][2] (see their latest known URL in the Wikipedia article) +- Sci-Hub [[Wikiless]](https://wikiless.org/wiki/Sci-Hub) (see their latest known URL in the main Wikipedia article) - Terms of Service, Didn't Read: - Whonix Documentation: - -[1]: https://wikiless.org/wiki/Library_Genesis -[2]: https://wikiless.org/wiki/Sci-Hub From cf66b33fbbd50da0b8c0acafb98537860b980e69 Mon Sep 17 00:00:00 2001 From: TwoSixtyThreeFiftyFour <108928957+TwoSixtyThreeFiftyFour@users.noreply.github.com> Date: Mon, 29 Aug 2022 12:41:25 +0000 Subject: [PATCH 02/15] Small updates to donations - Added SimpleLogin as donator + disclaimer - Changed location of the last donation, newer are at the bottom and the latest one was put on top --- donations.md | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/donations.md b/donations.md index 830365d..5cde093 100644 --- a/donations.md +++ b/donations.md @@ -32,7 +32,6 @@ Here are the addresses for the main project: Donations log (UTC date/time): -- 2022-07-30 03:51: 0.0222 XMR - 2021-02-06 16:48: 0.1 XMR - 2021-03-15 00:09: 1.24869 mBTC - 2021-03-15 08:41: 0.07896 mBTC @@ -69,6 +68,8 @@ Donations log (UTC date/time): - 2022-02-03 19:59: 0.013013984 XMR - 2022-02-18 17:27: 0.019 XMR - 2022-03-14 10:25: 0.0139887 XMR +- 2022-07-30 03:51: 0.0222 XMR +- 2022-08-19 : SimpleLogin.io Premium Account for life (**This is not sponsoring/advertising**) Total Monero donations received: **4.756292580358 XMR** Total Bitcoin donations received: **1.89353 mBTC** From 04544127f8cf80edab936621c088f9f898847252 Mon Sep 17 00:00:00 2001 From: TwoSixtyThreeFiftyFour <108928957+TwoSixtyThreeFiftyFour@users.noreply.github.com> Date: Mon, 29 Aug 2022 17:14:14 +0000 Subject: [PATCH 03/15] Update guide.md --- guide.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/guide.md b/guide.md index d29b24e..2471c33 100644 --- a/guide.md +++ b/guide.md @@ -12389,6 +12389,9 @@ Here are various threat modeling resources if you want to go deeper in threat mo - It is focused on privacy but is clearly perfectly suitable for anonymity. - It is accessible to all skill levels including beginners (providing many tutorials) but also suitable for highly skilled readers. - It is used in the making of the Threat Modeling Manifesto: [[Archive.org]](https://web.archive.org/web/https://www.threatmodelingmanifesto.org/) + - Here are two videos explaining LINDDUN from the designers themselves: + - Privacy & prejudice: on privacy threat modeling misconceptions by Kim Wuyts: [[Invidious]](https://yewtu.be/watch?v=zI4SFyq_Xjw) + - Privacy Threat Model Using LINDDUN by Kim Wuyts: [[Invidious]](https://yewtu.be/watch?v=C9F8X1j9Zpg>) ![][1389] (Illustration from [LINDDUN2015](https://lirias.kuleuven.be/retrieve/295669) From a4df4ac38b6bb15f2f285de2eb92aacb2e6556cb Mon Sep 17 00:00:00 2001 From: pterocles Date: Mon, 29 Aug 2022 16:20:51 -0400 Subject: [PATCH 04/15] Suggested updates to 04544127f8cf Signed-off-by: pterocles --- guide.md | 31 ++++++++++++++----------------- 1 file changed, 14 insertions(+), 17 deletions(-) diff --git a/guide.md b/guide.md index 2471c33..9e95787 100644 --- a/guide.md +++ b/guide.md @@ -12373,7 +12373,7 @@ The anonymity of Monero depends on its crypto algorithms. If you do use Monero f You may want to watch this insightful video for more details: [[Invidious]](https://yewtu.be/watch?v=j02QoI4ZlnU) -Also please consider reading: **** [[Archive.org]](https://web.archive.org/web/https://github.com/monero-project/monero/blob/master/docs/ANONYMITY_NETWORKS.md#privacy-limitations) +Also please consider reading: [Privacy Limitations in Anonymity Networks with Monero](https://github.com/monero-project/monero/blob/master/docs/ANONYMITY_NETWORKS.md#privacy-limitations) [[Archive.org]](https://web.archive.org/web/https://github.com/monero-project/monero/blob/master/docs/ANONYMITY_NETWORKS.md#privacy-limitations) **If you feel extra paranoid and want the highest safety level possible,** see the [Extra-Paranoid anonymous option][Extra-Paranoid anonymous option:]. @@ -12383,30 +12383,27 @@ Also please consider reading: ** [[Archive.org]](https://web.archive.org/web/https://www.linddun.org/). - - Researchers created an online tool to help make your threat model at [[Archive.org]](https://web.archive.org/web/https://www.linddun.org/go). +- The one we recommend: LINDDUN [[Archive.org]](https://web.archive.org/web/https://www.linddun.org/) + - Researchers created an online tool to help make your threat model at [[Archive.org]](https://web.archive.org/web/https://www.linddun.org/go). - It is synergistic with STRIDE below. - It is focused on privacy but is clearly perfectly suitable for anonymity. - It is accessible to all skill levels including beginners (providing many tutorials) but also suitable for highly skilled readers. - It is used in the making of the Threat Modeling Manifesto: [[Archive.org]](https://web.archive.org/web/https://www.threatmodelingmanifesto.org/) - - Here are two videos explaining LINDDUN from the designers themselves: - - Privacy & prejudice: on privacy threat modeling misconceptions by Kim Wuyts: [[Invidious]](https://yewtu.be/watch?v=zI4SFyq_Xjw) - - Privacy Threat Model Using LINDDUN by Kim Wuyts: [[Invidious]](https://yewtu.be/watch?v=C9F8X1j9Zpg>) + - You can read more here: [A Lightweight Approach to Privacy Threat Modeling](https://sion.info/assets/pdf/publications/WuytsIWPE2020.pdf) + - Here are two videos from K. Wuyts (imec-DistriNet, KU Leuven) explaining the process: + - [Privacy & prejudice: on privacy threat modeling misconceptions](https://www.youtube.com/watch?v=zI4SFyq_Xjw) [[Invidious]](https://yewtu.be/watch?v=zI4SFyq_Xjw) + - [Privacy Threat Model Using LINDDUN](https://www.youtube.com/watch?v=C9F8X1j9Zpg) [[Invidious]](https://yewtu.be/watch?v=C9F8X1j9Zpg>) ![][1389] -(Illustration from [LINDDUN2015](https://lirias.kuleuven.be/retrieve/295669) +(Illustration from [LINDDUN2015](https://lirias.kuleuven.be/retrieve/295669)) -Here are alternative resources and models if LINDDUN doesn't suit you: +Here are alternative resources and methodologies if LINDDUN doesn't suit you: -- Online Operations Security: [https://web.archive.org/web/20210711215728/https://github.com/devbret/online-OPSEC] - -- STRIDE [[Wikiless]](https://wikiless.org/wiki/STRIDE_%28security%29) [[Archive.org]](https://web.archive.org/web/https://en.wikipedia.org/wiki/STRIDE_%28security%29) - -- PASTA [[Archive.org]](https://web.archive.org/web/https://versprite.com/tag/pasta-threat-modeling/) - -- [[Archive.org]](https://web.archive.org/web/https://insights.sei.cmu.edu/blog/threat-modeling-12-available-methods/) - -- [[Archive.org]](https://web.archive.org/web/https://www.geeksforgeeks.org/threat-modelling/) +- Online Operations Security: [https://github.com/devbret/online-OPSEC](https://web.archive.org/web/20210711215728/https://github.com/devbret/online-OPSEC) +- Microsoft's STRIDE: [[Wikiless]](https://wikiless.org/wiki/STRIDE_%28security%29) [[Archive.org]](https://web.archive.org/web/https://en.wikipedia.org/wiki/STRIDE_%28security%29) +- PASTA: [[Archive.org]](https://web.archive.org/web/https://versprite.com/tag/pasta-threat-modeling/) +- Threat Modeling: 12 Available Methods: [[Archive.org]](https://web.archive.org/web/https://insights.sei.cmu.edu/blog/threat-modeling-12-available-methods/) +- Threat Modelling: [[Archive.org]](https://web.archive.org/web/https://www.geeksforgeeks.org/threat-modelling/) # Appendix B4: Important notes about evil-maid and tampering From ceb1966148dfd5212f97748c9e40692507ea7855 Mon Sep 17 00:00:00 2001 From: pterocles Date: Mon, 29 Aug 2022 16:24:57 -0400 Subject: [PATCH 05/15] Can't forget the Dr. Signed-off-by: pterocles --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 9e95787..573dd03 100644 --- a/guide.md +++ b/guide.md @@ -12390,7 +12390,7 @@ Here are various threat modeling resources if you want to go deeper in threat mo - It is accessible to all skill levels including beginners (providing many tutorials) but also suitable for highly skilled readers. - It is used in the making of the Threat Modeling Manifesto: [[Archive.org]](https://web.archive.org/web/https://www.threatmodelingmanifesto.org/) - You can read more here: [A Lightweight Approach to Privacy Threat Modeling](https://sion.info/assets/pdf/publications/WuytsIWPE2020.pdf) - - Here are two videos from K. Wuyts (imec-DistriNet, KU Leuven) explaining the process: + - Here are two videos from [Dr. K. Wuyts](https://www.semanticscholar.org/author/K.-Wuyts/6439662) (imec-DistriNet, KU Leuven) explaining the process: - [Privacy & prejudice: on privacy threat modeling misconceptions](https://www.youtube.com/watch?v=zI4SFyq_Xjw) [[Invidious]](https://yewtu.be/watch?v=zI4SFyq_Xjw) - [Privacy Threat Model Using LINDDUN](https://www.youtube.com/watch?v=C9F8X1j9Zpg) [[Invidious]](https://yewtu.be/watch?v=C9F8X1j9Zpg>) From b9ace550c996a5b7bfd2b842d6a8b63f4be0ef8c Mon Sep 17 00:00:00 2001 From: pterocles Date: Mon, 29 Aug 2022 16:27:01 -0400 Subject: [PATCH 06/15] Fix link Signed-off-by: pterocles --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 573dd03..641e8d8 100644 --- a/guide.md +++ b/guide.md @@ -12390,7 +12390,7 @@ Here are various threat modeling resources if you want to go deeper in threat mo - It is accessible to all skill levels including beginners (providing many tutorials) but also suitable for highly skilled readers. - It is used in the making of the Threat Modeling Manifesto: [[Archive.org]](https://web.archive.org/web/https://www.threatmodelingmanifesto.org/) - You can read more here: [A Lightweight Approach to Privacy Threat Modeling](https://sion.info/assets/pdf/publications/WuytsIWPE2020.pdf) - - Here are two videos from [Dr. K. Wuyts](https://www.semanticscholar.org/author/K.-Wuyts/6439662) (imec-DistriNet, KU Leuven) explaining the process: + - Here are two videos from [Dr. K. Wuyts](https://www.semanticscholar.org/author/Kim-Wuyts/3190241) (imec-DistriNet, KU Leuven) explaining the process: - [Privacy & prejudice: on privacy threat modeling misconceptions](https://www.youtube.com/watch?v=zI4SFyq_Xjw) [[Invidious]](https://yewtu.be/watch?v=zI4SFyq_Xjw) - [Privacy Threat Model Using LINDDUN](https://www.youtube.com/watch?v=C9F8X1j9Zpg) [[Invidious]](https://yewtu.be/watch?v=C9F8X1j9Zpg>) From dfc7bde955c91666d722686a17bfc887d1ed8e2b Mon Sep 17 00:00:00 2001 From: Than Harrison Date: Mon, 29 Aug 2022 23:31:38 +0000 Subject: [PATCH 07/15] Update links.md Typo or spelling error. --- links.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/links.md b/links.md index 685b6f1..ee14447 100644 --- a/links.md +++ b/links.md @@ -10,7 +10,7 @@ Some of those resources may, in order to sustain their project, contain or propo - Premium content such as ad-free content or updated content - Merchandising -**Anonymous Planet does not participate in any sponsoring, adveristing, or affiliate programs for any entity. We only rely on anonymous donations in a closed transparent loop system. Anonymous Planet does not endorse any sponsored/affiliate/premium content that may be present in the links below.** +**Anonymous Planet does not participate in any sponsoring, endorsement, advertising, or other affiliate programs for any entity. We only rely on anonymous donations in a closed, transparent loop system.** All the links below are listed in alphabetical order: From 16d50deaadb02d75901df4a2f16f91b195631ac9 Mon Sep 17 00:00:00 2001 From: Than Harrison Date: Mon, 29 Aug 2022 23:31:54 +0000 Subject: [PATCH 08/15] Update links.md Another typo or spelling error. --- links.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/links.md b/links.md index ee14447..1e8efe7 100644 --- a/links.md +++ b/links.md @@ -20,7 +20,7 @@ All the links below are listed in alphabetical order: - Privacy Guides: - Techlore: (May contain clearly marked sponsored products/services, premium content, and affiliate links) - The New Oil: (May contain clearly marked sponsored products/services and affiliate links) -- PrivacyTools.io: (May contain clearky marked sponsored product/services and affiliate links) +- PrivacyTools.io: (May contain clearly marked sponsored products/services and affiliate links) #### Blogs and personal websites: From d8e9c2fb38700cc3dff6a186d996b2027b6403c1 Mon Sep 17 00:00:00 2001 From: TwoSixtyThreeFiftyFour <108928957+TwoSixtyThreeFiftyFour@users.noreply.github.com> Date: Tue, 30 Aug 2022 21:53:41 +0000 Subject: [PATCH 09/15] Adding reco to install Portmaster on Linux Adding reco to install Portmaster on Linux --- guide.md | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/guide.md b/guide.md index d29b24e..a65eb43 100644 --- a/guide.md +++ b/guide.md @@ -2829,9 +2829,7 @@ These settings should mitigate cold boot attacks if you can hibernate fast enoug #### Enable MAC address randomization: -- Ubuntu, follow these steps [[Archive.org]](https://web.archive.org/web/https://help.ubuntu.com/community/AnonymizingNetworkMACAddresses). - -- Any other distro: you will have to find the documentation yourself, but it should be quite similar to the Ubuntu tutorial. +- For Ubuntu, follow these steps [[Archive.org]](https://web.archive.org/web/https://help.ubuntu.com/community/AnonymizingNetworkMACAddresses). - Consider this tutorial which should still work: [[Archive.org]](https://web.archive.org/web/https://josh.works/shell-script-basics-change-mac-address) @@ -2853,6 +2851,8 @@ For more in-depth and advanced options, refer to: - Kconfig-hardened-check: +- Consider installing Safing Portmaster from [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/) **(Warning there might be some issues with some VPN clients. See:** [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/https://docs.safing.io/portmaster/install/status/vpn-compatibility + - Consider the use of KickSecure when using Debian: [[Archive.org]](https://web.archive.org/web/https://www.whonix.org/wiki/Kicksecure) - This interesting article: [[Archive.org]](https://web.archive.org/web/http://0pointer.net/blog/authenticated-boot-and-disk-encryption-on-linux.html) @@ -9965,7 +9965,7 @@ Here are the steps in detail: - Enable at least all the recommended settings -- Finally, again for users with moderate skils, consider installing Safing portmaster from [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/) (Warning there might be some issues with VPNs (see [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/https://docs.safing.io/portmaster/install/status/vpn-compatibility) +- Finally, again for users with moderate skils, consider installing Safing Portmaster from [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/) **(Warning there might be some issues with some VPN clients. See:** [[Archive.org]](https://web.archive.org/web/https://safing.io/portmaster/https://docs.safing.io/portmaster/install/status/vpn-compatibility - Go back one last time to the settings to delete Diagnostic and Delete all Data. From 34682a2cf15b8bb84f293af35baccf47dc42a9b7 Mon Sep 17 00:00:00 2001 From: pterocles Date: Tue, 30 Aug 2022 19:02:39 -0400 Subject: [PATCH 10/15] Minimize .gitignore file Signed-off-by: pterocles --- .gitignore | 30 ++---------------------------- 1 file changed, 2 insertions(+), 28 deletions(-) diff --git a/.gitignore b/.gitignore index 3514123..275687e 100644 --- a/.gitignore +++ b/.gitignore @@ -1,30 +1,4 @@ -*.gem -*.rbc -/.config -/coverage/ -/InstalledFiles -/pkg/ -/spec/reports/ -/spec/examples.txt -/test/tmp/ -/test/version_tmp/ -/tmp/ -/_site/ +# Minimize global Ruby .gitignore Gemfile - -## Environment normalization: -/.bundle/ -/vendor/bundle -/lib/bundler/man/ - -# for a library or gem, you might want to ignore these files since the code is -# intended to run in multiple environments; otherwise, check them in: Gemfile.lock -.ruby-version -.ruby-gemset - -# unless supporting rvm < 1.11.0 or doing something fancy, ignore this: -.rvmrc - -# Used by RuboCop. Remote config files pulled in from inherit_from directive. -.rubocop-https?--* \ No newline at end of file +_site/ \ No newline at end of file From 13a25432c94b51ee42a0fbcb6aef3eaea0b4c16d Mon Sep 17 00:00:00 2001 From: pterocles Date: Tue, 30 Aug 2022 19:17:42 -0400 Subject: [PATCH 11/15] Fix typo in issue template Signed-off-by: pterocles --- .github/ISSUE_TEMPLATE/documentation.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/ISSUE_TEMPLATE/documentation.md b/.github/ISSUE_TEMPLATE/documentation.md index db50e7d..719ffc8 100644 --- a/.github/ISSUE_TEMPLATE/documentation.md +++ b/.github/ISSUE_TEMPLATE/documentation.md @@ -25,7 +25,7 @@ or features you've considered. e.g. "This could instead be replaced by or ." Make sure it's in scope. --> -**Give any additional relevent context.** +**Give any additional relevant context.**