News Feed
  • DrugHub has agreed to fully refund all users who lost money in the SuperMarket exit scam.  
  • Retro Market has gone offline. Circumstances of the closure unknown.  
  • SuperMarket has closed following an exit scam by one of the admins.  
  • The admin of Incognito Market, Pharoah, has been arrested by the FBI several months after exit scamming.  
  • Silk RoadTorhoo mini logo
  • darknet markets list
  • Popular P2P exchange LocalMonero has announced it is closing.  

STOP BEING LAZY WITH YOUR OPSEC! : CafeDread | Torhoo darknet markets

I have read at least three noob posts today doing noobish shit. They all had one word in common in their posts. "Lazy"

Stop being lazy about OpSec. Two were using the auto encrypt option on a site. PLEASE, STOP DOING THIS. I mean put your address in a KeePassXC entry in all Caps and ZIP+4 and just copy and paste it into Kleopatra. How's that for lazy?

One who sent their XMR from an exchange to Arche because they didn't want to wait for the daemon to sync. FUCKING STOP IT.

These are all very easily, avoidable mistakes.

You'll have plenty of time to be "Lazy" in the pokey, and you'll be like "Damn, I should've listened to those OpSec preachers on Dread."

https://torhoo.cc/go.php?u=TDJRdlQzQlRaV009#
https://torhoo.cc/go.php?u=TDJRdmNHZHdjSEpoWTNScFkyVT0=#
https://torhoo.cc/go.php?u=TDJRdlpHNXRZbWxpYkdVPQ==#

I know this won't be the last time I see noob shit either.
/u/pgpfreak P Biker Babe 🏍️
2 points
1 month ago
Shameless upvote for https://torhoo.cc/go.php?u=TDJRdmNHZHdjSEpoWTNScFkyVT0=#. Keep preaching man. This gospel I can't get enough of.
/u/CTI
2 points
1 month ago
30 minutes for the blockchain to sync or 3 years in prison? Hrm. Tough call.
/u/ringct
1 points
1 month ago
We can be mad about them being lazy, but we can't do much for them if they don't listen.
I am only a guide. LE can mess with the low hanging fruit instead. But I still want to inform, teach and educate.
If I change one persons mindset, was it worth it? I say yes.
/u/mburns P
3 points
1 month ago
The less fruit they get, the less funding they receive. I fully support improving everyone's opsec.

It would be fantastic if people stopped using TG and SC, but that's a far cry
/u/ringct
1 points
1 month ago
Somebody has to do it, eventually many will understand and make that "hard" change.
/u/MetAFoe
1 points
1 month ago
Fuck yea, let's catch em' 🪝
"It's said that a wise person learns from his mistakes. A wiser one learns from others' mistakes. But the wisest person of all learns from others' successes."
/u/xXTrustMeBroXx
1 points
4 weeks ago
TG & SC?
/u/ringct
2 points
1 month ago
Absolutely yes. I didn't say you should stop, just that there will always be somebody neglecting their OPsec and get caught.
It is what it is. I am being pessimistic I guess.
I see rays of hope. Like /u/whiteyb . Comes in with a good base and asks questions. People like this make me be more optimistic. Reminds me of myself a year ago.

I can deal with a hundred noobs for every one whiteyb.
/u/ringct
2 points
1 month ago
Keep doing what you are doing!
You have now a score of 800. Congrats!
Woohoo! What should I do to celebrate?
/u/ringct
1 points
1 month ago
Cocaine and hookers for all the sub.
I probably could do it for everyone who posts in this thread. But for 47,941 subscribers? That would be a stretch.
/u/ringct
1 points
1 month ago
Fair enough, lol.
/u/[deleted]
1 points
1 month ago
gimme your nastiest ho or GTFO
/u/[deleted]
1 points
1 month ago
Less noob question, what steps can an average buyer take to avoid BGP attacks? paranoia going around about BGP attacks, and for good reason regarding vendors and markets, but what about the paranoid low life buyers who usually stick to personal amounts? what about those who buy a little more than personal?
"No matter how paranoid you are, what they're actually doing is worse than you can possibly imagine."

For example, a user sees a duck on the river and thinks the police have placed a camera in the duck to watch him.

This comment was posted automatically by a bot. All AutoModerator settings are configured by individual communities. Contact this community's Moderators to have your post approved if you believe this was in error.
Agreed. funny you mention KeePassXC because that's exactly what i use.

I'll never understand why people use the auto-encrypt feature. maybe they just don't know how to use Kleopatra or GPG suite yet? but if that's the case its really not hard to learn at all.

if they know how to use Kleopatra or GPG suite (for mac users) then i don't know why they would use the auto encrypt. it doesn't make sense

you can use KeePassXC for your shipping info or even just put it in notes and encrypt it with your PGP. that way. and then just decrypt it everytime you need to get your shipping info. my setup requires a password EVERTIME i decrypt or encrypt something, so its just as safe.
/u/bleak 🍼
1 points
4 weeks ago
How do you encrypt text in KeePassXC? Or are you just storing the encrypted text in KeePass?

Also, OP said

I mean put your address in a KeePassXC entry in all Caps and ZIP+4 and just copy and paste it into Kleopatra.


I don't understand what he meant here.
KeePassXC already encrypts all of the passwords or info you store in it, you just need to enter a password every time you enter KeePassXC. under "database setting" you can change the encryption Algorithm, Decryption time, and more.

and for shipping info, you could just just put the title as shipping info, and leave username and password blank, and put the shipping info into the "notes" section

KeePassXC also has a very good Password Generator that you can choose the strenght of the password/Passphrase, from 1-128 characters/words.

its free to download, i highly recommend it.
Thank you.
👍🏻👍🏻👍🏻👍🏻👍🏻👍🏻
/u/bleak 🍼
1 points
4 weeks ago
Got it. Thanks!
yeah man, no problem :)
/u/wallnut553
1 points
1 month ago
It’s unbelievible to me how people do this retarded shit. Using PGP isn’t that fucking hard. It comes naturally for me, and I’m as retarded as it gets.
/u/miner21 P
1 points
1 month ago
It's true. It saves you time to do this shit. It could cost you your freedom. Just do it right
/u/valex
1 points
1 month ago
i used auto encrypt a week ago for myaddress beucase i thought its there for a reason?? why would it be there if its not safe? damn i used dark matter am i cooked? Lol
It's there for business reasons. /post/5db0f0bba862e4c9a5fd goes over this in detail.
Never trust someone else for your own security.
exactly.
/u/drd0jn
1 points
3 weeks ago
The thing is, it COULD be safe but you can't know it.
Yes, ideally it will work and your unencrypted data will only be in the server's memory during encryption.

BUT, two things can happen:

1. The market effs up and things get written to a cache file, or due to a bug encryption stops encrypting.
2. The market gets seized and LE gladly logs everything you entered, including your unencrypted data.

So it's always better to encrypt sensitive data yourself, even if the market offers to do it for you.
/u/trlandrace34
1 points
3 weeks ago
we saw what happened to lazy archetyp market.
I wouldn't call that lazy. I would call it "Stayed too long into the game".
/u/lonelyparasite69
0 points
4 weeks ago
You have to make mistakes to learn... But pretty good reminder.
You really don't. You can make small ones, but all of this is covered in the https://torhoo.cc/go.php?u=TDJRdlpHNXRZbWxpYkdVPQ==# which I read at least twice before doing anything. I suggest all new people to do the same.
/u/lonelyparasite69
1 points
4 weeks ago
Yeah ofc, I learned by making mistakes because I did not have all this information. Really good advice you guys have in this sub.
Always be learning and improving.
/u/antidarknet 🤡
-4 points
1 month ago
Better idea: Don't do crime and you won't need opsec.
Thats like saying "I got nothing to hide" when people talk about privacy, yet whenever I lurk into those peoples bedrooms they are still visibly and audibly upset. Its kind of hypocritical, almost oxymoronical in some ways. Operational Security has its roots not in crime, but in War mind you. A little exert:

The term operations security was coined by the United States military during the Vietnam War, as a result of military operations led by a team dubbed Purple Dragon

But you should know all this, after all it was your own government coming up with it. So unless you consider your government criminals (you certainly are one, RE: 2015), your argument makes no sense. Regardless, next time you think about not needing opsec, think again, my dearest.

Cheers!