PDA

View Full Version : how to set up fairly secure SecSys for hiding away in cyber space !!!



smokeface
06-29-2017, 07:26 AM
Ok heres the deal

Ive actually been meaning to write this post for a while as i get asked constantly on jabber/icq about this matter and it seems not a lot of people take their security that seriously and as we ALL should know that security is a must from the minute you power on your machine in this game !!!!
Big Brother is Watching 1million percent no doubt about it

So lets start...........
we need to make sure that the PC we are using is encrypted to prevent unauthorized access of the physical PC..... veracrypt https://veracrypt.co...title=Downloads is good tool for this

STEP 1.........Start with a freshly formatted HDD and a clean install of ya favourite OS lets say WIN7
(use DBAN for nuking ya drives) Data Removal: Darik's Boot and Nuke - DBAN (http://www.dban.org/download)

STEP 2........We need to create a virtual desktop environment as this where we will ALL our work
theres a few different programmes you can use for this but i use VMWARE http://www.vmware.co...products/player
this is a paid programme so if ya gunna use a torrent to download this make sure ya scan it before installing @virustotal to check for nasties and the like https://www.virustotal.com/

STEP 3........We now need to use this to create a virtual machine do this by installing WIN7 inside this again as a clean install......Now we got 2 desktops running WIN7 at the same time (this is our 1st layer of defense)

STEP4.........Time to layer up that SECURITY download and install on your own machine (not the VM) DEEPFREEZE http://ccm.net/downl...000-deep-freeze and run it in frozen state as this freezes the HDD so data data at ALL can be written the drives within your machine until you DEFROST it ;)

VERY VERY IMPORTANT NOTE >>>>>>>

Do this on a different PC and install from usb media all the programmes explained here to keep our PC super clean from the get go


STEP 5........As we will be needing to use the internet as anon as possible we need to start adding more layers of defense first thing we need to do is spoof our router's MAC address so it looks as if it is different router your traffic is running thru do this by downloading and installing TMAC https://technitium.com/tmac/ onto our our desktop and running it to change ya MAC address

STEP 6........now download and install OPENVPN https://openvpn.net/.../downloads.html so we can use a VPN to another layer of security....... This tells ya all about it and how it works here https://en.wikipedia...private_network

You also need to install it inside the VM ..........................along side this you will need to find a decent VPN service as OPENVPN is just the client to run the traffic through (more on VPN services later)

STEP 7.......now we need to install CCleaner https://www.piriform...leaner/download inside our VM for cleaning cookies from the browser making sure we configure it to do a full clean especially flash cookies As these can be nasty little things if not removed properly especially with VBV 3DSEC !!!
Another programme good for this is Bleachbit http://www.bleachbit.org/download

This link https://www.macromed..._manager07.html can also be a god send if the above have failed to remove subborn flash cookies

STEP 8.......We need a socks provider to add yet another layer of security and also for geo ip accuratecy so your end point traffic is matching the state/city you are wanting to Achieve .................................................. ........personally i use VIP72 http://www.vip72.com/ as there package comes with a programme called proxifer already configured to run there socks thru and this saves time. This again is installed in the VM not the desktop !! There are many other socks services out there and ways they are run but most will run either thru proxifer or a purpose coded GUI for changing them

Another option here is to use a RDP https://en.wikipedia...esktop_Protocol for this as these typically tend to last a longer lengh of time than socks proxies

NOTE >>>>>>>>

Make you check that you are Achieving your desired IP location as some socks can be way off point
There many ways to do this but https://www.whatismyip.com/
Is usefull as there are many other handy toolz on there also


STEP 9....... Nearly there now just need to install any other softwares like browsers and other stuff you may need like IM clients and the like. Again with these other layers of security need to be added like encryption and OTR for ya ICQ/JABBERS also make sure that they are configured to be running thru your proxies.
PIDGIN https://www.pidgin.im/ with the OTR plugin installed works fine https://otr.cypherpunks.ca/ you can also use PGP https://en.wikipedia...ty_Good_Privacy for this
Run these inside ya VM also and not on the desktop !!!

So now we are good to go and have a pretty secure set up for our work to be done on .............This is no way as complex as things can be but shud work out ok for most of you if you follow the guide below on how to run the system in a way that it makes it secure as this system can be

>Power on your PC and enter the encryption key
>>Run DEEPFREEZE and FREEZE ya HDD
>>>Run TMAC and change ya MAC address
>>>>Start your VPN client on your desktop and choose your desired IP
>>>>>Open up your Virtual Machine

Run CCleaner and or Bleachbit to remove cookies and traces of recent web usage
Then https://www.macromed..._manager07.html just to make sure every thing is gone

>Start your VPN client inside your Virtual Machine making sure to used a different country IP
>>Start ya Socks client and chose the state city required
>>.Open ya browser and check your geo IP



Heres a little run down of the Topology of what is happening to your traffic as it travels thru the network

You connect to your AP (access point) on the network

Lets say the IP ya connected to is 192.168.1.1
This goes into the VPN on your Desktop and comes out 123.78.10
As your network connection of your virtual machine is Bridged from your Desktop this effectively chains the 2 VPNS together
As your traffic goes into the VPN in your VM as 123.78.10 the same as your desktop IP and then is changed to as it goes thru the vpn changing again to 56.67.12.0 as it leaves the VPN
Also as you are running a socks client your ENDPOINT IP is then that of the chosen state/city you require

Hope this little guide helps a few people and makes then aware that security is a must !!!

Feel free to correct anything i've left out or not explain properly or may even have got wrong as it is late at night and i am well tired

Regardz

UKDeets
01-20-2018, 06:26 PM
big thankyou for this OPSEC tutorial
i see not many people say thanks after reading

ba5ir
04-05-2018, 08:49 PM
Solid guide although Win7 isn't the most secure I'd suggest a linux distro

debitcard
04-12-2018, 01:10 AM
thanks for the infor.. works well

ibmjango
10-11-2018, 01:06 PM
really nice guide for beginner like me. Thanks for sharing.

bandaid
11-05-2018, 05:33 AM
super noob friendly thanks man