Rate my opsec setup

neilarmstrong1

Junior Member
Joined
Aug 28, 2021
Messages
118
Reaction score
113
Hey, i wanted to ask you all what you thought of my opsec setup. Any tips/tops are welcome

Laptop => Logless VPN => VM with Windows => RDP paid with crypto => antidetect browser with socks5 proxy

Thanks
 
You need to specify each step to understand how good your opsec setup is.

For example, on your laptop you should remove (hardware remove) cam, bluetooth, wireless wifi (anything that can screw you over distance) and this list goes on & on.
In terms of OS, you should use one for opsec like tails for multiple reasons obviously.

Not a opsec master here, however if you wanna be good and have a good setup you need to go deep on it.

My reccommendation is for you to visit proper opsec blogs & forums and not that surface web bs full with crappy tips.
 
You need to specify each step to understand how good your opsec setup is.

For example, on your laptop you should remove (hardware remove) cam, bluetooth, wireless wifi (anything that can screw you over distance) and this list goes on & on.
In terms of OS, you should use one for opsec like tails for multiple reasons obviously.

Not a opsec master here, however if you wanna be good and have a good setup you need to go deep on it.

My reccommendation is for you to visit proper opsec blogs & forums and not that surface web bs full with crappy tips.
Would you say installing Tails OS on the laptop is enough? Or do you think the hardware removal of peripherals might be a bit overkill? Is that even possible? Assuming I'm not on like a watchlist or anything
 
Firstly it completely depends on your threat model. IF it's extreme then there are things like Intel ME / hardware level backdoors which can be of concern to you, then there's the matter of your router, and all other hardware that you'll have to get which is usually unnecessary effort and a waste of time (Laptops like Purism fit this though). Then, know that you can even be tracked by how often you type (typing speed, break time, common words used, etc. Look up what Keystroke Deanonymization is if you don't believe it).

My point being, you need to assess what you are doing that you need your opsec setup for and elaborate on your threat model. If you know what the threats are you will know how to better avoid them. Read the Whonix wiki to start.
 
Hey, i wanted to ask you all what you thought of my opsec setup. Any tips/tops are welcome

Laptop => Logless VPN => VM with Windows => RDP paid with crypto => antidetect browser with socks5 proxy

Thanks
and why you want to hide?
 
Hey, i wanted to ask you all what you thought of my opsec setup. Any tips/tops are welcome

Laptop => Logless VPN => VM with Windows => RDP paid with crypto => antidetect browser with socks5 proxy

Thanks
and then you come to bhw talking about it haha :p

ps, How do you know the vpn is logless? Do you have access to their server, or are you self hosting it?
 
and then you come to bhw talking about it haha :p

ps, How do you know the vpn is logless? Do you have access to their server, or are you self hosting it?
also not telling on a public forum how exactly you hide would be a start :D
nono its for a school project and i know there are some poeple very good with that here
 
Firstly it completely depends on your threat model. IF it's extreme then there are things like Intel ME / hardware level backdoors which can be of concern to you, then there's the matter of your router, and all other hardware that you'll have to get which is usually unnecessary effort and a waste of time (Laptops like Purism fit this though). Then, know that you can even be tracked by how often you type (typing speed, break time, common words used, etc. Look up what Keystroke Deanonymization is if you don't believe it).

My point being, you need to assess what you are doing that you need your opsec setup for and elaborate on your threat model. If you know what the threats are you will know how to better avoid them. Read the Whonix wiki to start.
Ahh yeah I see. What about medium threat then? Not near NSA level or anything
 
nice set up. you should run it on tails os or qubes or something. its all void if youre running windows.
watch a few old snowden interviews. he goes over interesting scenarios for opsec. @CreativeDaddy touched on some of the physical modifications you should do. and where to go for better advice
 
Since this is a school paper, does this mean your setup is theoretical? i.e. you can make it alot more intense than you might want to if it were a tangible project? Or are you making a tangible setup and then writing the paper?
 
Since this is a school paper, does this mean your setup is theoretical? i.e. you can make it alot more intense than you might want to if it were a tangible project? Or are you making a tangible setup and then writing the paper?
Going to that level of opsec would give me too much to write about, 3000 word limit
 
Going to that level of opsec would give me too much to write about, 3000 word limit
This is the first time I've heard of the term, but I wonder if you might want to include a mechanism that would cause physical destruction upon being activated. Another portion that might be interesting is the physical security protocols involved with accessing the location of the setup. I do not know of good suggestions but in my imagination I think of under-the-table cash apartments and rooms built to block signals with faraday cages.
 
Back
Top