Hacker News new | ask | show | jobs
by snowwrestler 4531 days ago
Here's how I'd improve the security.

1) Forget USB drives, they are a nightmare. In fact, forget any writable medium. Get an old laptop and take out the HD. Boot it from a live CD. Use only this machine to edit your blog.

2) Make your passwords complex and write them down on a piece of paper hidden somewhere. Don't host them in any digital form anywhere. You're much more likely to screw up the digital stuff than get pipe-wrenched.

3) Forget bitcoin or any other funding mechanism. Just pay for your computer yourself and use a free blog hosting company. Don't buy a domain, just use domain.wordpress.com or whatever. Don't let money touch the blog at all ever.

4) Don't collect stats on your blog. What do you need them for?

5) Do all your posting from public WiFi points like coffee shops. (Buy your coffee with cash.)

To go deeper, consider the pattern of your traceable activities. Don't deny who you obviously are. For instance if you see one of your blog posts on Reddit, HN, Facebook, etc., click through and read it from your regular computer. After all it is probably a topic that you're demonstrably interested in, and the point is to pretend that you've never seen that post before.

5 comments

6) if you go to a public WiFi point, leave your phone at home.

7) On the way there do not fill up at a gas station, do not use the subway with an identifying pass.

8) Thwart cameras, try to disguise yourself, but in an inconspicuous matter.

I'd amend 5 to use a Pringles wifi antenna, so you don't even have to go in the shop to use their wifi.

1, 2, 3 agree absolutely. As popular as computers are becoming, just keeping data in a physical form makes it a less obvious target, and easier to hide/dispose of.

Great points. I would definitely do something like this if my life were on the line, or I needed to leak something about my government, for example.

But the convenience of Tails persistence is really tempting. I can just unlock it with a really long master password, and have access to my SSH keys, passwords (Keepass), Electrum bitcoin wallet, packages, source code, etc.

But yes indeed, a live CD, a simple blog hosted on Wordpress or Tumblr, random MAC address, and Tor on coffee shop Wifi over a long-range antenna would provide almost guaranteed security.

P.S. It's no fun without stats. 25,000 page views is a success, I think! And $25 USD in bitcoin donations. Now I just need to work on anonymously converting or spending them.

Wouldn't #5 let attackers narrow you down to your city?
This is probably where Tor would come in handy. Onion route to somewhere in Thailand or somewhere.
Yup, I did not mean to exclude Tor with my suggestions above.
mac address changer, or else you're broadcasting to every other wifi enabled device the machine you're using. I'd say a laptop that has a physical switch to disengage the antenna, but I have no idea if those actually work.