OPSEC CODEX: The Complete Hardware Security & Digital Hygiene Manual

Professor

Professional
Messages
1,654
Reaction score
1,696
Points
113

The Ultimate Guide to Amnesia Systems, Physical Security, and Leaving No Trace​

Software security means nothing if your hardware leaks like a sieve. This guide expands everything into a complete technical manual covering amnesia systems, hardware OPSEC, physical security, and the real-world cautionary tales that should keep you up at night.

📖 CHAPTER 1: THE FUNDAMENTALS OF OPSEC​

1.1. What Is OPSEC?​

OPSEC (Operational Security) is the process of identifying critical information, analyzing threats, finding vulnerabilities, and implementing countermeasures to protect your operation.

It's not military jargon. It's not paranoia. It's survival.

1.2. The Five-Step OPSEC Process​

StepActionWhy It Matters
1Identify critical informationWhat can catch you?
2Know your threatsWho is trying to catch you?
3Find your weak pointsWhere can you be exposed?
4Calculate riskHow much can be exploited?
5Set up protectionHow do you close the gaps?

1.3. The Three Core Concepts​

ConceptMeaningWhy It Matters
Adversarial ThinkingThink like the enemyAnticipate their moves
Threat ModelingKnow who's after youPrepare for the right threat
Risk ScalingMatch security to riskDon't overkill or underkill

1.4. The Golden Rule​

There is no such thing as perfect security. The goal is to make yourself a hard enough target that it's not worth the effort to go after you.

🧠 CHAPTER 2: ADVERSARIAL THINKING (THINKING LIKE THE ENEMY)​

2.1. What Is Adversarial Thinking?​

Adversarial thinking is the ability to see your every move through the eyes of those trying to catch you. It's not paranoia — it's preparation.

Questions to ask yourself:
QuestionWhy It Matters
How will they try to track me?Anticipate investigation methods
What patterns are they looking for?Avoid predictable behavior
What mistakes do they expect?Don't make them
What digital landmarks do I leave?Minimize the trail
How can my activities be linked to my real identity?Break the chain

2.2. Practical Examples​

Example 1: Drop Address Selection
Bad ApproachGood Approach
Pick an abandoned houseMix it up — residential, package services, random addresses
Use low-traffic areasSubvert the pattern
Same type of locationDifferent types

Example 2: Online Activity
Bad ApproachGood Approach
Use one VPNRotate proxies like a DJ
Hide your IP onlyCreate a believable digital identity
Use same patternsMatch your footprint to your identity

Example 3: Card Selection
Bad ApproachGood Approach
Random cardsThink like a bank's fraud AI
Ignore patternsWhat patterns scream "fraud"?
Impulse purchasesControlled, believable spending

Example 4: Communication
Bad ApproachGood Approach
Ignore how you typeWatch your verbal patterns
Same writing styleDifferent personas, different styles
Ignore linguisticsSomeone is analyzing your words

2.3. The Chess Analogy​

The best chess players don't just plan their own moves — they anticipate their opponent's. The best carders don't just hide their tracks — they anticipate the investigation.

The second you stop thinking like the enemy, you become their bitch.

🎯 CHAPTER 3: THREAT MODELING (KNOWING YOUR THREATS)​

3.1. The Threat Hierarchy​

LevelThreatDescription
Level 1Lone WolfYou work alone, no weak links
Level 2Inner CircleYour closest collaborators — biggest liability
Level 3Secondary PlayersMiddlemen, forum admins, peripheral players
Level 4Operational BullseyeEvery card swipe, every drop — pattern recognition
Level 5Digital BreadcrumbsEverything you do online leaves a trace
Level 6Real World BleedDigital life leaks into real life

3.2. Detailed Breakdown​

Level 1: The Lone Wolf Dream​

In a perfect world, you work alone. No strings, no weak links.

Reality: Unless you're a prodigy, you'll have to work with others.

Level 2: Inner Circle Liability​

Your closest collaborators are your biggest liability.
RiskDescription
SuppliersKnow your operations
CustomersKnow your methods
PartnersKnow your identity

Solution: Compartmentalization. No one knows more than they need to.

Level 3: Secondary Players​

One step back: middlemen, forum admins, peripheral players.
RiskDescription
MiddlemenCan connect dots
Forum adminsHave logs
Peripheral playersSee patterns

Level 4: Operational Bullseye​

Every card swipe, every drop, every transaction.
RiskDescription
Pattern recognitionFeds see patterns
RepetitionSame mistakes
TimingPredictable behavior

Level 5: Digital Breadcrumbs​

Everything online leaves a permanent trace.
TraceHow It's Used
ProxiesConnection tracking
VPNsServer logs
Forum postsWriting style analysis
Typing patternsLinguistic fingerprinting

Level 6: Real World Bleed​

When digital leaks into real life.
Warning SignWhat It Means
Sudden wealthSuspicious
Packages piling upPattern detected
New car, new lifestyleFlag raised

3.3. Dynamic Threat Modeling​

Your threat model is not static. It changes with every move.
ChangeNew Threat Level
Working alone → teaming upIncreased risk
Scaling back → still on watch listNew level of surveillance
New partner → partner under investigationYour risk increases
Routine change → unexpected patternPotential unraveling

Rule: Keep your finger on the pulse. Update your threat model constantly.

⚖️ CHAPTER 4: SCALING YOUR SECURITY (RISK ASSESSMENT)​

4.1. What Is Risk Assessment?​

Risk assessment is the art of not using a sledgehammer to kill a fly.
OverkillUnderkill
Full hazmat suit for a coldNo protection at all
Tank at grocery storeBicycle on highway
Tails OS for $5 gift cardsNo VPN for $10k operation

4.2. How to Assess Your Operation​

FactorQuestionImpact
ScaleSmall-time or multi-million?Bigger = more attention
LocationUS or lax jurisdiction?US = more agencies
ToolsVPN + Tor or just Tor?More tools = more failure points
EfficiencySecurity vs convenienceBalance needed

4.3. Practical Examples​

Operation SizeRecommended Security
Small (Netflix accounts)VPN + common sense
Medium (gift cards, small orders)Dedicated VM + residential proxies
Large (multi-million)Dedicated laptop + secure OS + mobile proxies
Cryptocurrency (small)Basic precautions
Cryptocurrency (large)New addresses per transaction, mixing
Communication (low-level)Telegram
Communication (sensitive)PGP-encrypted email or OTR chat

4.4. When Security Becomes Counterproductive​

OverkillWhy It's Bad
Tails OS for small opsLooks suspicious, wastes time
VPN + Tor for everythingVPN is a single point of failure
Full encryption for casual chatDraws attention
Dedicated laptop for $5 cardsWastes resources

If you're so slow on security that you can't act effectively, you're doing it wrong.

💾 CHAPTER 5: WHY PERSISTENCE IS A LIABILITY​

5.1. The Core Problem​

Every device you use leaves a digital footprint. Every file you store, every cache your system maintains, every log entry — it's all evidence waiting to be discovered.

The difference between a slap on the wrist and decades in prison often comes down to what's on your hard drive.

5.2. How Traditional Hard Drives Fail You​

Drive TypeHow "Delete" WorksForensic Recovery
HDD (Magnetic)File is marked as "writable space" — data remainsEasy — data sits until overwritten
SSDMore complex, but data remnants remainPossible with specialized tools
Encrypted DriveData encrypted, but key in RAMPossible if device is seized while running

5.3. The RAM Problem​

When you use an encrypted drive, the decryption key is stored in RAM (Random Access Memory).
RAM CharacteristicImplication
Fast, short-term memoryKey exists only while powered
Wiped on shutdownSafe if you power off
Kept alive during raidsFeds keep machine running to preserve RAM

Real Case: Ross Ulbricht (Dread Pirate Roberts) — feds seized his laptop while it was still on, capturing decryption keys from RAM.

5.4. The Lesson​

Persistence is a responsibility because it's a treasure map of your dirty laundry. Every file you store, every cache your system maintains, is another way to hang yourself if things go south.

🧠 CHAPTER 6: THE AMNESIA ADVANTAGE​

6.1. What Are Amnesia Systems?​

Amnesia systems are operating systems that forget everything on shutdown. Every boot is like using a brand new computer.
FeatureBenefit
No historyNo forensic trail
No saved passwordsNo credential leaks
No cacheNo digital fingerprints
Tor routing by defaultAnonymity built-in
Tested dailyNo leaks

6.2. Who Uses Amnesia Systems?​

User TypeWhy
JournalistsWar zones, whistleblowers
WhistleblowersExposing corruption
CardersAvoiding forensic recovery
HackersCovering tracks
Privacy advocatesGeneral anonymity

6.3. The Three Big Guns​

SystemTypeSecurity LevelBest For
WhonixVM-basedHighTor lovers, long-term ops
TailsUSB-basedVery HighGhost mode operations
QubesCompartmentalized OSExtremeParanoid power users

🖥️ CHAPTER 7: WHONIX — THE USER-FRIENDLY AMNESIA SYSTEM​

7.1. What Is Whonix?​

Whonix runs as a virtual machine — like a separate computer inside your main one. All traffic is routed through Tor.
FeatureDetails
TypeVM-based
AmnesiaOptional (can be enabled)
Tor RoutingDefault
Host DependencyYes — if host is compromised, you're toast
Beginner-FriendlyYes — easiest of the three

7.2. Pros and Cons​

ProsCons
Easy to set upRelies on host OS
Tor by defaultNot amnesic by default
Good for long-term opsHost compromise = game over
Beginner-friendlyRequires VM knowledge

7.3. When to Use Whonix​

  • Long-term operations
  • When you need to preserve some data
  • When you're comfortable with VMs
  • When your host OS is secure

7.4. Step-by-Step Setup Guide​

Step 1: Prepare Your Host System
  • Ensure host OS is clean and updated
  • Install VirtualBox or VMware
  • Allocate sufficient RAM (8GB+ recommended)
  • Ensure sufficient disk space (50GB+)

Step 2: Download Whonix

Step 3: Import VMs
  • Open VirtualBox/VMware
  • Import Gateway OVA
  • Import Workstation OVA
  • Configure network settings

Step 4: Configure Network
  • Set Gateway network adapter to NAT
  • Set Workstation network adapter to Internal Network
  • Ensure Workstation routes through Gateway

Step 5: Start Systems
  • Start Gateway first
  • Wait for Tor connection
  • Start Workstation
  • Verify Tor routing

Step 6: Test for Leaks

Step 7: Enable Amnesia (Optional)
  • Configure non-persistent mode
  • Set up encrypted persistence if needed
  • Test shutdown/reboot

7.5. Common Errors and Solutions​

ErrorCauseSolution
Tor won't connectGateway not started firstStart Gateway before Workstation
No internet in WorkstationNetwork misconfiguredCheck Internal Network settings
Slow performanceInsufficient RAMAllocate more RAM
Leaks detectedMisconfigurationRecheck network settings

💾 CHAPTER 8: TAILS — THE USB NINJA​

8.1. What Is Tails?​

Tails is a USB-based amnesia system that runs entirely from RAM.
FeatureDetails
TypeUSB-based
AmnesiaDefault — leaves no trace
Tor RoutingDefault
PersistenceOptional (encrypted)
Beginner-FriendlyModerate

8.2. Pros and Cons​

ProsCons
Leaves no traceSlow as molasses
Runs from RAMLong-term storage is a pain
Preloaded privacy toolsUSB can be lost/seized
Boot from any computerLimited hardware support

8.3. When to Use Tails​

  • True ghost mode operations
  • When you need to use a public computer
  • When you want zero local trace
  • When you don't need long-term storage

8.4. Step-by-Step Setup Guide​

Step 1: Download Tails

Step 2: Prepare USB
  • Get a USB drive (8GB+ recommended)
  • Download Etcher or Rufus
  • Write Tails ISO to USB

Step 3: Boot from USB
  • Insert USB into target computer
  • Enter BIOS/UEFI
  • Set USB as boot device
  • Save and exit

Step 4: Initial Configuration
  • Select language and region
  • Configure keyboard layout
  • Set up persistent storage (optional)

Step 5: Configure Persistence (Optional)
  • Create encrypted persistent volume
  • Set strong passphrase
  • Select what to persist (PGP keys, documents, etc.)

Step 6: Use Tails
  • Tor Browser is preloaded
  • Use PGP for encryption
  • Use Electrum for Bitcoin
  • Use KeePassXC for passwords

Step 7: Shutdown
  • Remove USB
  • All data wiped from RAM
  • No trace left on host computer

8.5. Common Errors and Solutions​

ErrorCauseSolution
USB won't bootBIOS settingsEnable USB boot, disable Secure Boot
Slow performanceUSB 2.0Use USB 3.0+
Persistence failsWrong passphraseRecreate persistent volume
No networkHardware incompatibilityTry different computer

🛡️ CHAPTER 9: QUBES — THE PARANOID POWER USER'S CHOICE​

9.1. What Is Qubes?​

Qubes is a compartmentalized OS that isolates everything into separate VMs.
FeatureDetails
TypeCompartmentalized OS
AmnesiaNot default, but possible
Tor RoutingVia Whonix VM
Hardware RequirementsHigh
ComplexityExtreme

9.2. Pros and Cons​

ProsCons
Extreme isolationVery complex
Compromise one VM = others safeRequires serious hardware
Can run Whonix insideRuns hot
Best security availableNot for beginners

9.3. When to Use Qubes​

  • Darknet market operations
  • Hiding from INTERPOL/CIA
  • When you need maximum compartmentalization
  • When you have serious hardware and skills

9.4. Step-by-Step Setup Guide​

Step 1: Check Hardware Compatibility

Step 2: Download Qubes

Step 3: Install Qubes
  • Write ISO to USB
  • Boot from USB
  • Follow installation wizard
  • Set strong disk encryption passphrase

Step 4: Initial Configuration
  • Create default VMs (personal, work, untrusted)
  • Configure networking
  • Set up USB qube

Step 5: Install Whonix VMs
  • Use Qubes Template Manager
  • Install Whonix Gateway
  • Install Whonix Workstation
  • Configure routing

Step 6: Configure Isolation
  • Set up AppVMs for different tasks
  • Configure firewall rules
  • Set up split-GPG

Step 7: Test Security
  • Verify VM isolation
  • Check network routing
  • Test for leaks

9.5. Common Errors and Solutions​

ErrorCauseSolution
Installation failsHardware incompatibleCheck HCL
Slow performanceInsufficient RAMAdd more RAM
Whonix won't routeMisconfigurationRecheck network settings
USB not workingUSB qube issueReconfigure sys-usb

⚖️ CHAPTER 10: COMPARISON — WHONIX VS TAILS VS QUBES​

FeatureWhonixTailsQubes
TypeVMUSBOS
AmnesiaOptionalDefaultOptional
TorDefaultDefaultVia Whonix
PersistenceYesOptionalYes
ComplexityLowMediumExtreme
HardwareAnyAnyHigh-end
SpeedFastSlowVariable
Best ForLong-term opsGhost modeParanoid pros
Beginner-FriendlyYesModerateNo

10.1. Choosing Your Poison​

Your SituationRecommended
Beginner, long-term opsWhonix
Need true ghost modeTails
Paranoid, skilled, hardwareQubes
Public computerTails
Darknet marketQubes + Whonix

🚨 CHAPTER 11: CAUTIONARY TALES — WHEN PERSISTENCE BITES​

11.1. Roman Seleznev ("Track2")​

DetailInformation
CrimeCarding — millions from stolen cards
DownfallLaptop with 1.7 million stolen card numbers
CaptureMaldives
Sentence27 years
LessonPersistent data = signed confession

11.2. Alexey Belan​

DetailInformation
CrimeHacking Yahoo
DownfallStored evidence on devices
Sentence15-count indictment
LessonDigital fingerprints are everywhere

11.3. Albert Gonzalez​

DetailInformation
CrimeTJX hack — 170 million cards
DownfallPersistent chat logs and stored data
Sentence20 years
LessonStored data = years of evidence

11.4. Carbanak Gang​

DetailInformation
Crime$1 billion from banks
DownfallMalware samples, victim data, internal communications
LessonResilient systems became a roadmap for prosecutors

11.5. The Common Thread​

Every single one of them thought they were too smart to get caught. They all learned the hard way that in the digital world, what's done rarely comes back.

🔧 CHAPTER 12: HARDWARE SECURITY — THE PHYSICAL SIDE​

12.1. Choosing the Right Devices​

Device TypeSecurity LevelUse Case
Dedicated laptopHighLarge operations
Burner laptopHighOne-time operations
VM on main PCMediumMedium operations
Tails USBVery HighGhost mode
Qubes laptopExtremeParanoid operations

12.2. Device Hygiene​

PracticeWhy
Dedicated deviceNo personal data
Full disk encryptionProtects if seized
BIOS passwordPrevents tampering
Secure bootPrevents malware
No webcam/micPrevents surveillance
Physical locksPrevents theft

12.3. Physical Security​

ThreatMitigation
Device seizureEncryption, amnesia systems
Physical theftLocks, hidden storage
TamperingBIOS password, secure boot
SurveillanceNo webcam/mic, Faraday bags

12.4. Travel Security​

PracticeWhy
Clean deviceNo sensitive data
Tails USBBoot from any computer
Faraday bagBlocks signals
No personal devicesPrevents tracking

12.5. Emergency Procedures​

ScenarioAction
Device seizedRemote wipe, change passwords
Compromise suspectedBurn everything, start fresh
TravelClean device, Tails USB, Faraday bag

🔐 CHAPTER 13: PRACTICAL OPSEC MEASURES​

13.1. Digital Footprint Management​

AreaDoDon't
ProxiesRotate frequentlyUse one proxy for all
VPNsUse as part of chainRely on VPN alone
EmailsUse encrypted (ProtonMail, Tutanota)Use Gmail for ops
MessagingUse Signal, Session, Telegram (secret chats)Use SMS
PasswordsUse password manager (KeePassXC, Bitwarden)Reuse passwords
2FAUse hardware keys (YubiKey)Use SMS 2FA

13.2. Communication Security​

MethodSecurity LevelUse Case
Telegram (regular)LowCasual chat
Telegram (secret chat)MediumSensitive chat
SignalHighSensitive chat
SessionHighAnonymous chat
PGP emailVery HighSensitive operations
OTR chatVery HighReal-time sensitive
BriarVery HighOffline/peer-to-peer

13.3. Financial Security​

MethodSecurity LevelUse Case
Monero (XMR)Very HighAnonymous transactions
Bitcoin (BTC)MediumMainstream
Bitcoin + mixingHighEnhanced privacy
Cash (in-person)Very HighLocal transactions
Prepaid cardsMediumSmall purchases

13.4. Identity Management​

PracticeDescription
CompartmentalizationSeparate identities for separate operations
Burner identitiesNever reuse
Consistent personasEach identity has a backstory
No cross-contaminationDifferent ops = different everything

🚨 CHAPTER 14: COMMON OPSEC MISTAKES​

14.1. Digital Mistakes​

MistakeWhy It's BadSolution
Using one VPNSingle point of failureRotate proxies
Reusing passwordsOne breach = all compromisedPassword manager
Using Gmail for opsGoogle logs everythingProtonMail, Tutanota
SMS 2FASIM swap vulnerableHardware keys
Ignoring metadataMetadata reveals everythingStrip metadata
Same writing styleLinguistic fingerprintingVary style per persona

14.2. Operational Mistakes​

MistakeWhy It's BadSolution
Same drop patternPattern recognitionVary drop types
Same timingPredictableRandomize timing
Same card patternsFraud AI detectionVary amounts, merchants
Same communication styleLinguistic analysisCompartmentalize
Trusting too muchInner circle liabilityNeed-to-know only

14.3. Real-Life Mistakes​

MistakeWhy It's BadSolution
Sudden wealthSuspiciousMaintain normal lifestyle
Packages piling upPattern detectedUse multiple addresses
New car, new lifestyleFlag raisedKeep low profile
BraggingFeds read forumsNever brag
Same routinePredictableVary everything

📋 CHAPTER 15: COMPLETE OPSEC CHECKLIST​

15.1. Digital Hygiene​

  • □ Dedicated device or VM for operations
  • □ Secure OS (Tails, Whonix, Qubes)
  • □ Password manager with strong master password
  • □ Hardware 2FA keys (YubiKey)
  • □ Encrypted email (ProtonMail, Tutanota)
  • □ Encrypted messaging (Signal, Session)
  • □ PGP keys for sensitive communication
  • □ VPN + proxy chain
  • □ Regular IP/DNS leak checks

15.2. Operational Hygiene​

  • □ Compartmentalized identities
  • □ Separate everything per operation
  • □ No cross-contamination
  • □ Need-to-know information sharing
  • □ Regular threat model updates
  • □ No bragging, no sharing
  • □ Vary patterns (timing, drops, cards)

15.3. Financial Hygiene​

  • □ Cryptocurrency wallets per operation
  • □ Mixing/tumbling when needed
  • □ New addresses per transaction
  • □ No links between identities
  • □ Cash for local transactions

15.4. Hardware Hygiene​

  • □ Dedicated device for operations
  • □ No personal data on device
  • □ Full disk encryption enabled
  • □ BIOS password set
  • □ Secure boot enabled
  • □ Webcam/mic disabled or removed
  • □ Device stored securely
  • □ Faraday bag for transport

15.5. Real-Life Hygiene​

  • □ Maintain normal lifestyle
  • □ No sudden wealth displays
  • □ Multiple drop addresses
  • □ No patterns in daily routine
  • □ No connections to real identity

🎯 CHAPTER 16: ADVANCED OPSEC TECHNIQUES​

16.1. Compartmentalization​

LevelDescriptionExample
IdentitySeparate personasDifferent names, backstories
DeviceSeparate hardwareDifferent laptops/VMs
NetworkSeparate connectionsDifferent proxies/VPNs
FinancialSeparate walletsDifferent crypto addresses
CommunicationSeparate channelsDifferent apps/emails

16.2. Counter-Surveillance​

TechniqueDescription
Pattern disruptionVary everything
False flagsPlant misleading info
DecoysCreate fake operations
NoiseGenerate irrelevant data

16.3. Emergency Procedures​

ScenarioAction
Compromise suspectedBurn everything, start fresh
Device seizedRemote wipe, change all passwords
Identity exposedAbandon persona, create new one
Network breachedSwitch to backup infrastructure

💎 CHAPTER 17: KEY TAKEAWAYS​

  1. OPSEC is survival. Without it, you're a target.
  2. Think like the enemy. Anticipate their moves.
  3. Know your threats. Different threats require different defenses.
  4. Scale your security. Match protection to risk.
  5. Question everything. For every measure, try to destroy it.
  6. Persistence is a liability. Every file is evidence.
  7. Amnesia systems are your get-out-of-jail-free card. Every boot is a clean slate.
  8. Whonix is beginner-friendly. Good for long-term ops.
  9. Tails is true ghost mode. Leaves no trace.
  10. Qubes is for paranoid power users. Extreme compartmentalization.
  11. No system is bulletproof. A tool used incorrectly is more dangerous than no tool.
  12. Hardware matters. All the software in the world won't help if your physical setup is compromised.
  13. Compartmentalize everything. No one knows more than they need to.
  14. Vary patterns. Predictability is death.
  15. Maintain normal life. Sudden changes raise flags.
  16. Never brag. Feds read forums.
  17. There is no perfect security. Make yourself a hard target.
  18. Always be paranoid. Always be free.

🔚 FINAL WORDS​

Bro, this is the complete OPSEC Codex. You've learned:
  • Adversarial thinking: Think like the enemy
  • Threat modeling: Know who's after you
  • Risk scaling: Match security to risk
  • Persistence liability: Every file is evidence
  • Amnesia systems: Whonix, Tails, Qubes
  • Hardware security: Physical protection
  • Cautionary tales: Real cases of failure
  • Practical measures: Digital, operational, financial, hardware
  • Common mistakes: And how to fix them
  • Advanced techniques: Compartmentalization, counter-surveillance

The golden rules:
  1. Never leave a trace
  2. Use amnesia systems
  3. Encrypt everything
  4. Know your threat level
  5. Compartmentalize everything
  6. Vary your patterns
  7. Maintain normal life
  8. Never brag
  9. Stay paranoid
  10. Always be free

Remember: The feds are always snooping, waiting for their opportunity. Don't give them one.

📚 APPENDIX: QUICK REFERENCE​

Amnesia Systems​

SystemTypeBest For
WhonixVMLong-term ops
TailsUSBGhost mode
QubesOSParanoid pros

Secure Operating Systems​

OSSecurity LevelUse Case
TailsVery HighAmnesic, USB-based
WhonixVery HighTor-based, VM
Qubes OSVery HighCompartmentalized
KodachiHighPrivacy-focused
Subgraph OSHighHardened Linux

Secure Communication​

ToolTypeSecurity
SignalMessagingHigh
SessionMessagingHigh
BriarMessagingVery High
ProtonMailEmailHigh
TutanotaEmailHigh
PGPEncryptionVery High

Privacy Tools​

ToolPurpose
TorAnonymity network
VPNIP masking
ProxychainsChain proxies
MacchangerMAC address spoofing
BleachBitFile shredding
VeraCryptDisk encryption

Financial Privacy​

ToolPurpose
MoneroAnonymous cryptocurrency
Wasabi WalletBitcoin mixing
Samourai WalletBitcoin privacy
LocalMoneroP2P Monero exchange

Hardware Recommendations​

DeviceSecurity Level
Dedicated laptopHigh
Burner laptopHigh
Tails USBVery High
Qubes laptopExtreme

Emergency Procedures​

ScenarioAction
Device seizedRemote wipe, change passwords
Compromise suspectedBurn everything, start fresh
TravelClean device, Tails USB, Faraday bag

Good luck, brother. Stay invisible, stay paranoid, stay free.
 
Top