Please Scroll Down to See Forums Below
napsgear
genezapharmateuticals
domestic-supply
puritysourcelabs
UGL OZ
UGFREAK
napsgeargenezapharmateuticals domestic-supplypuritysourcelabsUGL OZUGFREAK

hushmail safety??

jh1 said:
If you are trying to avoid your computer's IP being logged then you have to use a proxy and that holds true for hush or if you use your own standalone implementation of PGP. That's not specific or unique to PGP. .

re IP anonymity, the web browser use of java by Hush is the prob, not PGP (assumming no backdoor) . even if you use proxy software Hushs Java applet ignores the settings and passses your actual IP to hush -

so either use a non-java web version or other non java implementation like you described
 
Mavafanculo said:
128? 256? blowfish? pgp?


128 bit AES, but it's not really important. The reason it's encrypted is to keeps snoops from analysising the traffic and using statiscal anaylsis to determine users of the network.

Remeber that at the exit node the communications go unencrypted - we provide anonymitity - we aren't there to protect the data, just it's source. Any encryption is simply to provide a very difficult to trace communication channel - for anonimity.

If you use T.OR and go post on EF under the name 'James Hulton' and that's ur name - ur fucked. We can't save you from that.
 
Mavafanculo said:
re IP anonymity, the web browser use of java by Hush is the prob, not PGP (assumming no backdoor) . even if you use proxy software Hushs Java applet ignores the settings and passses your actual IP to hush -

so either use a non-java web version or other non java implementation like you described


I don't know if that's the case or not, but regardless - most peoples local machine IP's don't reveal much as they are private IPs that are NAT'd at a gateway somewhere.

For example, my IP right now is 10.0.0.100. Come find me.

As far Java Applets and anonimity - there are ways to address that as well - through sandboxing java / entire browser environments - or even entire OS virtual machines.
 
jh1 said:
I don't know if that's the case or not, but regardless - most peoples local machine IP's don't reveal much as they are private IPs that are NAT'd at a gateway somewhere.

For example, my IP right now is 10.0.0.100. Come find me.

As far Java Applets and anonimity - there are ways to address that as well - through sandboxing java / entire browser environments - or even entire OS virtual machines.

i misspoke - the local machines IP if not behind a router, or the router IP assuming a simple home network - thats enough to go to your isp and get subscriber info.

I dont know what would be the case in a complex corporate net gateway setup
 
Mavafanculo said:
i misspoke - the local machines IP if not behind a router, or the router IP assuming a simple home network - thats enough to go to your isp and get subscriber info.

I dont know what would be the case in a complex corporate net gateway setup


Like already stated there is no secure email. If persay you were looking to do this stuff an have minimal chance to get caught this is what you do. (This guy at the gym told me about his routine when he was trying to get me to order stuff, but I won't take steroids illegally, I will do HRT next year though)

1. Get a cheap laptop from someone in the paper or whatever. They won't know ur name or anything.

2. Make sure it has a wireless card, then be sure to drive around until you can find a connection.

3. Place your order and only use that computer and different connections in different locations when you want to check those emails lol.

4. Do not leave the computer at your house obviously, if you can leave it with a trusted person that you don't call with your landline or cell phone. This makes it almost impossible to tie orders to you because they can't find the computer you did stuff with. Even if they use the dealer's how are they going to prove it actually is you if its not your ip address and there is no hard evidence tying you to it.

5. Western union money with fake names and addresses and stuff obviously

The only trace to you is obviously the substance but if you dont' have it at your place either theres really nothing tying you to anything. It really isn't that easy to get a warrant and borrowing other peoples internet with a computer that you don't have at your residence will make it impossible to tie stuff to you. It sounds pretty secure, any other ideas? His idea seems very good, and anyone that is too lazy to go the extra 100 miles should also remember the consequences that can happen. All I know is if I was doing this stuff. I would make sure I had every i dotted and t crossed lol.
 
Trendsetter21 said:
Like already stated there is no secure email. If persay you were looking to do this stuff an have minimal chance to get caught this is what you do. (This guy at the gym told me about his routine when he was trying to get me to order stuff, but I won't take steroids illegally, I will do HRT next year though)

1. Get a cheap laptop from someone in the paper or whatever. They won't know ur name or anything.

2. Make sure it has a wireless card, then be sure to drive around until you can find a connection.

3. Place your order and only use that computer and different connections in different locations when you want to check those emails lol.

4. Do not leave the computer at your house obviously, if you can leave it with a trusted person that you don't call with your landline or cell phone. This makes it almost impossible to tie orders to you because they can't find the computer you did stuff with. Even if they use the dealer's how are they going to prove it actually is you if its not your ip address and there is no hard evidence tying you to it.

5. Western union money with fake names and addresses and stuff obviously

The only trace to you is obviously the substance but if you dont' have it at your place either theres really nothing tying you to anything. It really isn't that easy to get a warrant and borrowing other peoples internet with a computer that you don't have at your residence will make it impossible to tie stuff to you. It sounds pretty secure, any other ideas? His idea seems very good, and anyone that is too lazy to go the extra 100 miles should also remember the consequences that can happen. All I know is if I was doing this stuff. I would make sure I had every i dotted and t crossed lol.


:rolleyes:

LOL @ Fake Addresses......

Yeah I see a huge fatal error in your plan.
 
Trendsetter21 said:
Like already stated there is no secure email. If persay you were looking to do this stuff an have minimal chance to get caught this is what you do. (This guy at the gym told me about his routine when he was trying to get me to order stuff, but I won't take steroids illegally, I will do HRT next year though)

1. Get a cheap laptop from someone in the paper or whatever. They won't know ur name or anything.

2. Make sure it has a wireless card, then be sure to drive around until you can find a connection.

3. Place your order and only use that computer and different connections in different locations when you want to check those emails lol.

4. Do not leave the computer at your house obviously, if you can leave it with a trusted person that you don't call with your landline or cell phone. This makes it almost impossible to tie orders to you because they can't find the computer you did stuff with. Even if they use the dealer's how are they going to prove it actually is you if its not your ip address and there is no hard evidence tying you to it.

5. Western union money with fake names and addresses and stuff obviously

The only trace to you is obviously the substance but if you dont' have it at your place either theres really nothing tying you to anything. It really isn't that easy to get a warrant and borrowing other peoples internet with a computer that you don't have at your residence will make it impossible to tie stuff to you. It sounds pretty secure, any other ideas? His idea seems very good, and anyone that is too lazy to go the extra 100 miles should also remember the consequences that can happen. All I know is if I was doing this stuff. I would make sure I had every i dotted and t crossed lol.


And friends ask me why I secured my wireless network with a 17 character non-dictionary WPA2 AES passphrase w/ remote and http administration on the router disabled. Not like a residential area would be a target for juicers trying to find a network, but still, illegal activity under the cloak of a different network is a tempting reason for a person to steal wifi.

addition: One thing to note about encryption. If your traffic is sniffed/logged, then you better hope the encryption key is strong b/c they have simple tools (Cain and Abel comes to mind) that are made for cracking encrypted data. The longer and more complex the password (non-dictionary is a must), the longer it would take an algorithm to crack it. Sign up for a hotmail account and they will rate your password for you using their arbitrary criteria for password strength.
 
jh1 said:
:rolleyes:

LOL @ Fake Addresses......

Yeah I see a huge fatal error in your plan.


I'm pretty sure from what I've seen posted you never put your real address on western union forms, when you send the western union number thats when you are supposed to give shipping addresses. At least that would make sense, like I stated I've never done this.
 
Trendsetter21 said:
I'm pretty sure from what I've seen posted you never put your real address on western union forms, when you send the western union number thats when you are supposed to give shipping addresses. At least that would make sense, like I stated I've never done this.


This kind of stuff does not need to be discussed in the open. Not trying to be that guy, but in these days while let anything sensitive out in the open.
 
Trendsetter21 said:
I'm pretty sure from what I've seen posted you never put your real address on western union forms, when you send the western union number thats when you are supposed to give shipping addresses. At least that would make sense, like I stated I've never done this.

Honestly, there's alot of uncessary paranoia in your plan. The way these labs were busted and the fact that they got their emails blows your entire plan apart as a consumer.

As far as fake addreses. How do you plan to receive your ster.oids?
 
Top Bottom