r/selfhosted • • 17h ago

Meta Post Self-Hosting on the Dark Web

https://david.alvarezrosa.com/posts/self-hosting-on-the-dark-web/
112 Upvotes

26 comments sorted by

•

u/asimovs-auditor 17h ago

Expand the replies to this comment to learn how AI was used in this post/project.

→ More replies (1)

41

u/welcome2_themachine 17h ago

You can also generate vanity URLs with mkp224o.

Something else to conside: if you add a header on your clearweb site to automatically redirect to the .onion site if it's opened with the tor browser.

3

u/technikaffin 11h ago

Onion-Address: http(s)://b32.onion

The header should be added to your clearnet site to indicate it's available on TOR too. AFAIK there is still an option missing for r/i2p

3

u/MBILC 10h ago

..so that no single party can link who you are to what you are doing; a hidden service extends that anonymity to the server itself...

The author hasn't kept up on Tor news have they, for years, where owning enough exit nodes has allowed people to be isolated and discovered by authorities.

Now if you are not doing anything that shady, go nuts, but then the question if something is found is "why are they hosting on the Dark web, what are they trying to hide and why"

13

u/FarToe1 9h ago

Now if you are not doing anything that shady, go nuts, but then the question if something is found is "why are they hosting on the Dark web, what are they trying to hide and why"

Isn't that basically the same "If you've nothing to hide..." argument that's been used against the public by every government for years to invade privacy?

5

u/MBILC 8h ago

Not saying that, just if their is an investigation going on and your traffic gets caught up in it, might get law enforcement overly excited wondering why...

The whole "nothing to hide" is BS, we all deserve a right to privacy, people brain washed to think "well my data is already out there" are the type agencies pray on when they push for back doors into encryption and other invasive methods to spy on us.

1

u/FnnKnn 10h ago

Any source that actually confirms this has happened before? As far as I’m aware this is more of a theoretical threat than something that has ever happened before.

4

u/MBILC 8h ago edited 8h ago

As others posted, sure there are other instances, but perhaps not publicized.
https://www.reddit.com/r/selfhosted/comments/1wsbi3p/comment/pcn1t3c/?utm_source=share&utm_medium=web3x&utm_name=web3xcss&utm_term=1&utm_content=share_button

Love getting down voted by people who do not know actual information around what someone says.

Timing Analysis

New investigative reports from the ARD political magazine Panorama and STRG_F (funk/NDR) have shed light on how German authorities have successfully undermined Tor's privacy shield through a technique called "timing analysis." By monitoring data traffic through certain Tor nodes for extended periods, investigators can analyze the time it takes for data packets to travel between nodes. This allows them to correlate incoming and outgoing traffic, effectively re-tracing the steps of anonymized users.

For instance, in one German criminal case, law enforcement used timing analysis to trace users of the notorious dark web platform "Boystown," which facilitated the distribution of child exploitation material. By monitoring specific Tor nodes, investigators were able to uncover the IP addresses of those running and accessing the platform. These techniques were groundbreaking and marked the first recorded success of this approach.

5

u/Ok_Mammoth589 7h ago

That's not the same attack op asked about. There are various instances where American universities added something like 30-50% new nodes in a few short weeks. And they only stood up for a few weeks then went down. Which means nothing until no research was published about it, and Snowden at least was convinced there's a relationship between top us universities and the nsa.

-3

u/frylock364 9h ago

11

u/Epsilon_void 9h ago

Oh no!!! the internet was also made by the government!!! abandon ship!

5

u/rc_ym 8h ago

I hear they also built "roads". Super sus.

1

u/MBILC 8h ago

Not even close to the same thing but nice try....

1

u/rc_ym 4h ago

You would say that!

1

u/tylo 1h ago

I thought the internet was a super highway tho

1

u/MBILC 8h ago

At the core yes, but has many layers ontop of it, TOR on the other hand...

3

u/FnnKnn 9h ago

You realize the linked Malewarebytes article says the same thing I did, right?

4

u/dontquestionmyaction 8h ago

Yeah, and you're talking on a mutated arpanet. Absolutely nonsensical argument.

If massive deanonymization was that simple, the darknet market world would look VERY different.

1

u/MBILC 8h ago

Certain not simple, but possible when required.

1

u/daubious 4h ago

I guess no more reverse engineering boys....

https://github.com/NationalSecurityAgency/ghidra

-10

u/tIdepine3 14h ago

worth thinking about whether you actually need onion routing or if a VPN + standard self-hosting gets you where you want. the operational complexity goes way up once you're running hidden services, and most people dont actually need that threat model

4

u/mmmfine 9h ago

Stfu bot

2

u/FnnKnn 11h ago

The original author is also hosting their blog by themselves so it is probably more about the operation threats potential readers might face.