How the FBI (fr) node tried to FUCK ME over yesterday (REPOST BC OF BOTS) : OpSec | Torhoo darknet markets
Story time : FBI has been surveilling me and harassing me for about a year, their file probably goes back further, but this is when the overt surveillance/harassment started. I am not discussing much info about circumstances, but some karens eventually submitted tips/reports on my ass. Anyways, I have seen what the FBI resources in combination with sheriff/local police can do in terms of surveillance and it is horrifyingly dystopian.
From my experience, using bridgedb to get tor bridges to add to tails, most of the bridges are garbage. The tails website says obsf4/meek should work with tails, but it fucking doesn't and they are lying. Just yesterday, I would enter 3 bridge lines, connect to tor, and would you look at that....FBI (fr) exit nodes appears! LOL hence the name. I shutdown, reboot, enter in another 3 bridge lines, and same exit node appears, despite the bridges being different. I repeated this process several times, and even with fresh bridges, FBI exit node appears in onion circuits. There were a couple other nodes that kept appearing and gained my suspicion also. So I decide to fuck with the FBI, because whatever if they want to watch then lets play a game. I decide to log into dread and proceed to delete all my comment history. While using the dread onion, I saw that the circuits were not using the FBI exit node. Also, if you ever noticed, tor uses a cloudflare onion to make dns queries. Now, I browsed around dread, then logged off, the circuits with the FBI exitnode laying stagnant, but still there...fucking waiting for a potential circuit to exploit. Now get this, I enter in the clearnet address for a crypto exchange and boom, traffic suddenly starts going through the FBI exit node circuit. OH? SO NOW YOU WANT TO LISTEN FBI? I didn't login bc I did not even have an account on that exchange, it was a fucking test and they fell for it. Who knows, they could have served me a spoofed copy of the login page and could of stolen my credentials, if I even had an account there lol. I keep the tab open and open up a separate tab, for an onion address, which gets routed through a different circuit. There are only a couple ways they could be selectively routing traffic to specific malicious nodes of their choosing. For one, if cloudflare is assisting the feds with dns queries, cloudflare transparency reports says they got
5 Pen Register/Tap and Trace Orders in 2019 - 7 accounts affected - 10 domains affected
217 Court Orders in 2019 - 679 accounts affected - 1675 domains affected
29 Criminal Subpoenas - 21 accounts affected - 214 domains affected
Another potential option is they are controlling a good portion of the bridge operators and I must have been the victim of several bad guard nodes that allow them to route my traffic to their malicious exit nodes. Weird thing is, that this happened with almost every bridge I tried, even the obsf3 bridge on bridgedb, but as soon as I connected to tor regularly, I was able to cut the sybil attack off. I actually am staying away from bridges for a while, because tails seems to have a bad implementation of them, who knows maybe this is intentional from the developers? They seem to want journalists/dissidents outside the USA to have anonymity, to aid the US empire, but still allow the FBI/determined adversaries to conduct sybil attacks/sophisticated tor deanon exploits. Anyways, fuck the FBI. The FBI BTC wallet is huge and the government sells of massive amounts of seized crypto every year, I bet a good portion of this is literally stolen via xss attacks and spoofed login pages served via tor/other browsers (use 2fa folks). All those reports from users having their btc stolen with bad market onion pages? I bet thats the FBI lol, it takes a sophisticated adversary to spoof pages that well.
I say dn users start anonymously xmr crowdfunding our own secure linux distro separate from the US defense industry that developed tails. separate developer team based in a country that has zero intelligence agency interest. Ik is a stretch, but eventually they will back us into a corner if it continues this way.