Show more

We integrated UX research into digital security trainings. We now proudly have a software development cycle that puts users first and respects privacy.

In 2017-19, we reached ~800 people in person, including #humanrights defenders, journalists, and political activists.
blog.torproject.org/reaching-p

"By cross-referencing just one hour of video footage from public webcams with Instagram stories taken and shared in Times Square, BuzzFeed News was able to confirm the real names and identities of a half dozen people."
buzzfeednews.com/article/megha
.onion: bfnews3u2ox4m4ty.onion/article

Did you know that you can support our work at by donating a weekly 0.01 on librapay? All money will go to help us pay for the server costs! We even love the smallest of donations as more differse funding means that we can stay more independent :).

If you like our work and want to support our job to spread privacy friendly alternatives, please consider donating: liberapay.com/privacytools.io/

P.S. if you want donate via crypto, look here
liberapay.com/privacytools.io/

We've got a new release: Tor 0.4.2.1-alpha.

This alpha release adds new defenses for denial-of-service attacks against onion services. It also includes numerous kinds of bugfixes and refactoring to help improve Tor's stability and ease of development. blog.torproject.org/new-alpha-

As people seems to have enjoyed the last picture, here is another one, shot on my pixel 3a Running Graphene OS with the OpenCamera app from the F-droid store.

Maybe you didn't know, but I run an IRC network called MadIRC.

It seems like it got quite famous among Tor users since we allow completely anonymous access via onion addresses.

Today I had to rework the channel ranks of the main darknet channel "#elite" after quite some abuse of power. Of course, the abusers are unhappy with this situation and declared it the end of the channel.

Feel free to prove them wrong:

Website: madirc.net
Tor direct tor web access: tor.madirc.net

10 years ago I started using ad blockers because I thought ads were annoying. Now I think that's the _least_ important reason to use them.

I think we should call them "browser firewalls." That more accurately describes their purpose.

The surveillance state is growing.

A new project by @eff and the University of Nevada allows you to explore a map of where known cell-site simulators, smart street lights, and mobile biometric technology have been deployed.
vice.com/en_us/article/xwewjj/

We also have plans to update the about config and fingerprinting section on this page, for this we will be collaborating with thorin-oakenpants from ghacks.js project.

Show thread

Dear PTIO community: after quite some work in the last few days, we are proud to show you our new browser recommendations! We now list recommendations for desktop Android and iOS!

See for yourself:privacytools.io/browsers/#brow

Greetings, the PTIO team

Big chance that our new browser recommendations will be up tonight, can't wait to show what we have been working on!

Wow…

So electron improved their security features with the recent version 5, but by doing this broke tons of applications because they either need User Namespaces or an SUID executeable (to launch proper isolated subprocesses).

#Signal Desktop noticed this problem and as well and "fixed" it in the worst way possible:

github.com/signalapp/Signal-De

On the other hand #Riot Desktop did a proper fix, which enables an SUID bit on this binary: github.com/vector-im/riot-web/

#infosec #security #linux

After @blacklight447 asked about my opinion on #OnlyKey, I looked at their docs once more.

I remembered that they didn't convince me last time, I saw them, but I took the time now to write down a short analysis of what I figured out from their docs about the security status of this "Hardware password manager".

github.com/privacytoolsIO/priv

I really hope they proof me wrong, otherwise, it's a dumpster fire.

#infosec #security #hardware

What is browser fingerprinting? How is it used? What is Tor Browser doing against it? Find out in this guest post by Pierre Laperdrix

"Any script running in your browser can silently build a fingerprint of your device without you even knowing about it."
blog.torproject.org/browser-fi

Show more
Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!