This Page Is Anonymous (2013)
voidnull.sdf.org
voidnull.sdf.org
243 comments from 6 years ago
This will send a DNS A record request for sdf.org and on some platforms, a request for SSHFP records, too. Unless the system is configured to route all DNS traffic over Tor, it may be possible to correlate those requests' originating IP with the published update timestamps.
Edge cases like this is why I always use things like Tails when I want to do something over Tor. There are just too many gotchas, and many of them are barely even avoidable in the first place (like correlating timestamps).
"Our most forgettable words, such as pronouns and prepositions, can be the most revealing: their patterns are as distinctive as fingerprints." [1] - Prof James W. Pennebaker
https://news.ycombinator.com/threads?id=voidnull
could any HN moderator comment on the status of that account?
> Looks like the HN account is working again.
> There have been a couple of quick updates I posted on the linked page. First, SDF does accept Bitcoin for validation. Second, SMJ is personally upping the prize to $100. See the link for details.
> I am very happy with the result of this stunt. So far this page has gotten over 100,000 which works nicely towards the goal of driving more users towards Tor and SDF.
The bike in the pic is a Dahon [4] folding bike.
Adam's freeshell site [5] contains a password-protected link to his CV (request sent).
Here's an archive of his Bristol University Information Technology Society (BITS) homepage from 2002 [6].
Adnam is "a nickname given to me by some mates in Cambridge" [7].
And here's the analog site stat logs for requests from Tue-08-Feb-2000 15:16 to Mon-08-Apr-2002 13:09 (789.91 days). [8]
[1] https://news.ycombinator.com/item?id=5639997
[2] https://sdf.org/tour/sdfers/gen.cgi?adnam@sdf
[3] https://www.flickr.com/photos/adnam/16677188/
[5] http://adam.freeshell.org/
[6] https://web.archive.org/web/20020201220147/http://bits.bris....
[7] https://web.archive.org/web/20020211221929/http://www.bits.b...
[8] https://web.archive.org/web/20031112001318/http://www.bits.b...
If done carefully, using well-mixed Bitcoin is arguably as anonymous as sending cash through the mail. There are ways to screw both up, but also ways to do both with arbitrary overkill.
Anyway, this is cool. I mean, six years is an OK run. But on the other hand, all remote VPS and servers that I setup are just about as anonymous. And yes, it's lots easier now than it was in 2013.
signed. j r nydel t.
if it becomes 2023, and if by then nobody’s doxed voidnull i think a special edition “everyone wins especially voidnull sdf forever” mug &or hoodie would be in order!
I've read spun spam emails, you can easily tell something's off.
Question: Is there a technical reason the author does not suggest simply using torsocks? (eg: torsocks ssh sdf.org). I thought maybe it didn't exist in 2013 but the github has some files that date back that far.
In any case, Whonix was available in 2013, and using it would have -- and does -- prevent DNS leaks.
(Though I'm personally tempted to.)
The non-ARPA and above users are somewhat limited in what they can do[0].
I've been a card-carrying metaSDF user since 2006 and it's a wonderful $HOME away from home.
I thought maybe "HN is a community—users should have an identity that others can relate to." meant our nyms should point to a real person, and that the account mentioned in the article was terminated for being registered via Tor.
I try to find the middle ground with this account.
You can probably find out who I am, but I hope people will respect it's important to have nyms where we can have informal convos. (Also luckily most snoopers are lazy so simply not tying my legal name to this is sufficient considering I'm not expressing anything particularly controversial...)
Kind of like how half of Gotham seems to know who Batman is, but they pretend not to ;)
Your HN username should represent you as a person in the sense of providing an identity over time, because that's necessary for a community. But it's totally fine not to use your real name. I've posted a bunch about this over the years if anyone wants more: https://hn.algolia.com/?sort=byDate&dateRange=all&type=comme....
on good days i visit and appreciate the accomplishment + appreciate that our good ol' SDF is a public access multi-user system on which such a feat is possible!
on bad days i start thinking about writing evil sudos and shit, just grasping at straws.. that f'king page done been mockin' me since 2013 :P
on today, i love seeing the spirits of HN & SDF intersect!
so many incredibly insightful, funny, creative approaches abound in this comment section. warms my heart!
>Any illegal activities which includes, but certainly isn't limited to spamming, portflooding, portscanning, unauthorised connections to remote hosts and any sort of scam can really not be tolerated here. Why? Because there are many here on this system that can suffer from this sort of abuse. If you want to use SDF, you really have to care about this system and the people here. If you don't want to care, then you really shouldn't use this resource.
So what if he did? Even if we had his DNA, we wouldn’t know whose DNA it is. It would be as useful as finding a key on the ground without knowing which house it unlocks.
It would depend on the country whether or not their DNA is likely on record. Most Americans do not have their DNA on record. However it’s interesting that Kenya recently required collection of DNA from all citizens.
But yep those who have signed up for 23 and Me with their real name (or maybe a close relative) can be identified from an anonymous DNA sample. Or previously incarcerated, since then the government would have their DNA on record.
Or if they were already a suspect, then their DNA could then be taken and matched against the anonymous sample.
So maybe by disclosing that he didn’t lick the envelope, he’s inadvertently telling us that his DNA is on record somewhere?
Basically because your generic relatives have submitted their DNA to these services, a small pool of potential candidates for your DNA can be identified, and traditional investigation methods can identify you in that pool.
As the density of people who have submitted DNA to these services increases in the total population, identifying random samples will be easier. (It is already getting easier.)
These techniques were publicized with the Golden State Killer case but have been used in several other law enforcement investigations.
My contact with this field is mostly through friends in the industry, but The Daily podcast’s series on it seemed like a good introduction:
https://www.nytimes.com/2019/06/06/podcasts/the-daily/dna-ge...