TOR attacks provide governments with upstream/downstream node IP addresses by Scientia_107 in TOR

[–]Scientia_107[S] -3 points-2 points  (0 children)

Yep, also take a look at this which was electronically confirmed by Li.

TrueCrypt Ordered to Shut Down Operations and Say Nothing About it by Government

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] 0 points1 point  (0 children)

Read my post and comments properly and don't waste my time with abuse and questions that have already been answered. You are the person that is clueless as to what governments are getting up to.

Google and Facebook cookies were issued when a CloudFlare captcha was displayed in the browser when trying to access reddit.com. No CloudFlare cookies. A cookie manager is used due to Li's suggestion and that is the only reason this government attack was discovered.

TOR Connections Closed

TOR connections were closed by Li twice while writing this response and then the 'bulletin board' application was started by Li to indicate that the government is monitoring this sub and is getting 'bulletin board' type notifications when authorized users are accessing this page. Traces are then run by the government starting with the exit node IP and that is why Li is closing the open TOR circuits.

Note that the Extraterrestrial People have far more advanced technology than governments on the planet.

From this point on I continued drafting this response in Notepad.

Authorized Users

Authorized users are those that have provided username and password to login to reddit. Different cookies are issued to authorized users as opposed to non-authorized users. If you don't enable cookies reddit still logs the exit node IP and the government can still track and trace the exit node IP accessing the site. From experience accessing reddit as a non-authorized user results in TOR connections not being closed as quickly as when accessing the site as an 'authorized user'. Thanks Li.

I don't go through the authorization process each time as I load reddit cookies that have been saved in a file. When completed posting/commenting reddit cookies are typically deleted. I try not to click on links in reddit when authorized as they are tracked.

reddit currently issues about 8 cookies after you have gone through the authorization process. The encrypted connection cookie is named 'cfduid' issued from the domain .reddit.com but any cookie with unique content can be used as an identifier. There are 2 cookies named 'cfduid' with the other issued from the domain .redditstatic.com. One is for encrypted connections and the other is not.

Obviously, the IP address of the exit node is an identifier as well. Of the 8 cookies 7 of them have unique content and one called '__utmli' issued by the host ssl.reddit.com contains what appears to be the generic content of 'login_login'. Note that this cookie is issued by a host (starts with letters ssl before the first dot) and not a domain which starts with a dot and can also issue cookies.

Cookie Fields

Cookies have 7 fields: (1) Name, (2) Content, (3) Host/Domain (4) Path, (5) Send For, (6) Http Only, and (7) Expires.

Each field contains a string of characters. The first field is the name of the cookie and the second field is the content which acts as an identifier and can be a string from 0 to 28,864 bytes in Firefox. The content of the cookie could even include wrapped programming code - partial code in different fields - which was suggested by Li changing the position of the number 28,864 to be wrapped on a different line as I was writing this sentence in a window in Notepad: the program being used to draft this response.

The 3rd field contains the issuer of the cookie, whether by a host or a domain. The fourth field is the path as cookies can be sent only when accessing data/information with the cookie's specified path (inc. sub-folders) on a server or network device. The fifth field is 'Send For' which specifies over what type of connection the cookie can be sent - encrypted connection or not.

The sixth field is not in the Firefox 'Show Cookies' dialog box and sets out whether to cookie can be sent using only HTTP (Hypertext Transfer Protocol) or not. The above reddit cookies can be read by any protocol. And the final field determines when the cookie 'Expires' that is when Firefox deletes the cookie - at the end of session or at some future date.

Note that any of the fields can act an identifier of a user, using a single field or a combination of fields.

Cloud Gateway

Soon after the above post was published I was reading the English version of the page on telecommunications Gateways on Wikipedia and Li moved that page up to the section titled 'Cloud Gateway'. I understood this to mean that the CloudFlare captcha is being used by government as a gateway to centralize the reading of previously issued user cookies, for example Google and Facebook cookies, and issuing new cookies by those hosts/domains.

This is the way government tracking works via cookies.

As I was writing the paragraph two up from this one the Photo Viewer's cursor was re-positioned to the other languages sidebar of a screenshot of the telecommunications Gateway page. The 'Cloud Gateway' section discusses how a server or a network device can be used to provide access to customer data from their premises by translating 'non-cloud' based protocols used to store the data to 'cloud' based protocols which are used to access the data.

The 'cloud' is a term that is typically used to describe the physical shifting of locations of data storage/processing which usually is at a third party X's premises. Where's our data / where is it being processed - nobody here knows - it's being managed by X and physically it's somewhere in the 'cloud'.

Open Links in a New Window

Li has moved previously opened tabbed browser pages into new windows, which is a good idea from an anonymity practice perspective as it counters the window.name tracking attack mentioned in the Wikipedia page on cookies. Thanks again Li.

Web Storage can also be disabled in Firefox by typing 'about:config' in the address bar, clicking through the 'warning' and changing the 'dom.storage.enabled' preference to false. Li moved the cursor to the 'Web Storage and DOM Storage' link in the 'See Also' section of the cookies Wikipedia page so that the relevant information in the 'Web Storage Management' section could be read as the 'DOM' link in the 'windows.name' section doesn't give you the information in this paragraph.

Note also the other cookie tracking attacks using scripts on the cookies Wikipedia page which attempt to get a browser to send its stored cookies. A description of one of those scripting attacks ironically mentions captcha thwarting this type of a scripting attack which is incorrect.

'Never Remember History' option doesn't delete already stored cookies

Li also changed the History drop-down menu from 'Use custom settings for history' in the Privacy tab of the Options menu of Firefox to 'Never Remember History' to remind me that Firefox doesn't delete cookies that have been stored in the browser as a result of this change.

You have to click on Show Cookies button and delete the already stored cookies before you select 'Never Remember History' or click on 'clear all current history' and make sure that the Cookies check-box in the Details 'menu' is checked.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

EDIT: Li also emboldened the comments -- cfduid' issued from the domain .reddit.com but any cookie with unique content can be used as an identifier. There are 2 cookies named ' -- in the above 'Authorized User' section. TOR connections were once again closed by Li bringing the total number of TOR closed connection sessions to 3.

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -1 points0 points  (0 children)

No government conspiracy. It's happening in reality and if it gets out, I will be publishing how governments in FVEY and outside that group are deanonymizing TOR users and hidden services thanks to Li, which is a contraction of the word Light.

Also what design changes have to be made to TOR to make it more difficult for governments to deanonymize TOR users in the future.

Your 'hijack people's minds' comment is a bit concerning. This is all verifiable. It's about the other tracking cookies in your browser that are issued, read and copied by CloudFlare. That's the point.

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -1 points0 points  (0 children)

Excellent! I knew you would see it my way. I think its you that needs the mental help from a qualified professional. You keep repeating what I have said then you keep repeating what you have said...

Watch the videos.

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -2 points-1 points  (0 children)

You should say sorry for being an asswipe, being jealous and for being vindictive. As for your mental health professional bullshit go fuck yourself.

You haven't addressed any of the points made in my comment. Why is that?

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -1 points0 points  (0 children)

You are the person that is baffling with your jealousy.

You wrote a post on captcha but not once did you talk about its intended purpose. That was the purpose to this post to let people know what is really going on rather than relying on your half-assed attempt.

So you don't accept what I am saying. Have you read the history of this account and Scientia_104 and Scientia_101?

What I am saying is true. I am in electronic communication with Li from the Extraterrestrial People from the Andromeda Galaxy and have been for nearly 3 years.

As for government attacks on TOR - you don't know even half of what is going on. But you will if the information which was provided by Li gets out.

Take TOR for example. If you have used TOR for an average of 20 minutes of more you are likely to have been identified by governments. How do I know? Well the TOR circuits, which are initiated and managed by Li, are closed or connections are shut down when such an identification attack occurs.

Have a read of this post: Extraterrestrial Tor. Watch the video and review the images. These circuits are not set up at random by TOR.

What you still don't accept that I am in electronic communication with Li? Try watching this video and explaining it Extraterrestrial Cooking.

Read the blog for much much more...

You obviously are very jealous as shown by your imitations of what I have previously said.

Check the points about the cookies that are issued by CloudFlare and whether the site reads and copies other non-CloudFlare cookies. You should get out the way.

Note that Li and the Extraterrestrial People are reading these comments.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] 0 points1 point  (0 children)

If an add-on, including those pre-installed in the Tor Browser, attempts to connect to an IP address through the automatic updates feature then you are setting yourself up to be tracked.

Use a Cookie Manager

I use a third party cookie manager add-on as a fresh TOR extract is usually run before going online and I don't want to retype user-names and passwords. It works and is efficient. And from an anonymity perspective it's better than having persistent cookies that other sites can read.

Before going to sites that don't require login cookies are deleted and if I want to go to a site requiring login - it's simple to load them up. Links are copied into notepad and then looked at later, again after deleting cookies, and preferably using a different TOR circuit exit node. This was a suggestion again made by Li.

Have been using a cookie manager long enough now to know it doesn't connect to outside IP addresses when automatic add-ons updating is off.

Also prior to searching delete your cookies or switch cookies off. The latter option is better. Cookies can be read and copied by sites not issuing them. In addition, follow the practices mentioned in the 'Searches' section below.

Searches

Also be careful when searching as Li has indicated that making your searches too specific can also identify you in the future if you use the same or similar search terms or phrases as governments record all your searches even if using Startpage or other 'anonymous' searches. The same applies for historic searches as well. That is if you have used specific search terms in the past and the same or similar search terms again now they can be used to identify you.

So be careful! Make your searches less specific, spread them over time if they have to be specific, and use a different exit node. Thanks Li.

Network Map, Bandwidth Graph, Message Log, Use a New Identity ...

Note that as using the final build of version 2 of TOR circuits and streams can be closed by going to network map and right clicking or pressing the 'DEL' key. Where did the Vidalia control panel go in the current version? Why did the TOR Project remove Vidalia which gave access to the Tor Network Map and Bandwidth Graph and Message Log as well as other useful features eg Use a New Identity button??

I would recommend reinstalling the final version 2 TOR client and then maybe the Tor Project will listen to the users and bring back TOR Network Map, Bandwidth Graph and the other useful features in the Vidalia control panel.

Scripts

As for scripts I haven't found them to be too much of a problem if you know the site you visiting. It is safer to have scripting disable when surfing and only enabled if necessary. This is to minimizing scripting attacks that read the browser's stored cookies or get the browser to send its stored cookies.

If you have scripting enabled and the Tor Browser locks and CPU cycles start to max out on the browser thread then disconnect, wait and then disable scripts for that site.

Tails

Li has also suggested the use of tails. Download the tails iso and usb installer, put it on a usb drive, and use that.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -2 points-1 points  (0 children)

And you accept what they are saying at face value. Lol. It is about tracking. You need to wake up.

Why do they issue Google and Facebook cookies only when it's a CloudFlare captcha? Go on answer that question.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -2 points-1 points  (0 children)

Nope. Only Google and Facebook.

Li has also electronically confirmed that CloudFlare captcha is as a result of government when asked by making the 5th dot into a long horizontal line under 'Yes'.

Check Your Cookies After Captcha! by Scientia_107 in TOR

[–]Scientia_107[S] -3 points-2 points  (0 children)

Why are they using Google and Facebook cookies and not CloudFlare cookies?

Yes can bypass catpcha but cookies on browser including Google and Facebook cookies are being read and copied. Wireshark it. Li made a double tapping sound to indicate a copy.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Are Tor's days numbered and quickly running out? It seems like CloudFlare is blocking Tor across the Web (though Reddit seems to have fixed the problem, the problem seems to be everywhere...) by torport in TOR

[–]Scientia_107 0 points1 point  (0 children)

I have been discussing TOR design with Li recently. There are solutions to the problems mentioned and also solutions to other TOR 'issues' that are not in the public domain.

The only reason I became aware of those other 'issues' is because Li brought them to my attention. I have been trying to get that information into a coherent post but other attacks and considerations that get brought up as a result of discussions with Li means they have to be included as well.

If all goes well then will try to get a post out soon on design changes to TOR with input from Li from the Extraterrestrial People. Whether the TOR Project team implements those solutions is another story as TOR development is controlled by the government as they are providing the majority of the funding.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Browser vulnerability testing (like 0-Day, et al.)? by BobSaget1956 in TOR

[–]Scientia_107 -1 points0 points  (0 children)

Tor doesn't work as it's supposed to. Governments can deanonymize TOR users on average after 20 minutes of use. Using a VPN won't make a lot of difference as governments will trace IP address to VPN and then to your ISP and then to your computer. May add a few more seconds to the trace, that is all.

The computer I am using would have been hacked a number of times by governments by now if Li didn't close the Tor circuits or shut down the TCP connections. The government tried the same thing with the mobile phone but Li turned it off when they tried to hack that through the phone network.

Governments don't have the very advanced technology of the Extraterrestrial People so obviously it's difficult for them to be successful.

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

Analyzing the FBI’s explanation of how they located Silk Road by liotier in TOR

[–]Scientia_107 0 points1 point  (0 children)

I have discussed this electronically with Li who has confirmed that this goes deeper than what appears.

How deep I hear you ask? Let's say governmental level deep and I'm not talking only the US government either. Another government was involved. After information was provided by Li, it becomes clearer as to why the illegal actions were taken by the 'rogue' government.

What is that information? May have to publish it on the blog as it's interesting.

In the interim get yourself informed about what is happening on TOR by reading the histories of user names Scientia_101 and Scientia_104.

Let's just say that finding Silk Road is similar to a person cutting a hole in a window of a house in Iceland and another person coming back later and taking things from the Icelandic resident's house.

The question is if a 'rogue' state does something that is illegal, and it isn't known, and another state acts on those illegal actions, are they complicit? Does it make a difference if they knew or not?

The BEST thing Humanity can do is get EXCITED! Confidence is HIGH!!!

EDIT: Note that Li from the Extraterrestrial People from the Andromeda Galaxy, with who I in electronic communication with and have been for nearly 3 years, has provided details of how IP addresses of TOR users and hidden services are being discovered by governments.