▲ 520 ▼ Piracy advice (feddit.nl) submitted 2 years ago by moe90@feddit.nl to c/piracy@lemmy.dbzer0.com 98 comments fedilink hide all child comments
[+] hamid@vegantheoryclub.org 58 points 2 years ago (8 children) [deleted] permalink fedilink source hideshow 16 child comments replies: [–] merde@sh.itjust.works 93 points 2 years ago (3 children) let's say that VPNs are compromised and "they" know that you're downloading "illegally" in order to prosecute, "they" have to prove you're a pirate and show how they know would they compromise their backDoor to go after a tiny pirate? permalink fedilink source parent hideshow 6 child comments replies: [+] hamid@vegantheoryclub.org 21 points 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] parody@lemmings.world 28 points 2 years ago (3 children) This is why I compose all my messages on an air gapped computer and send them out from my compound with couriers. permalink fedilink source parent hideshow 6 child comments replies: [–] y0kai@lemmy.dbzer0.com 11 points 2 years ago I personally just use a VPN that connects to NSA servers so they think it's themselves doing the torrenting. permalink fedilink source parent [–] liveinthisworld@lemmy.dbzer0.com 4 points 2 years ago* Unless you PGP-encrypt everything by hand you've just lost the fight permalink fedilink source parent [–] ElCanut@jlai.lu 1 point 2 years ago Who controls the couriers though permalink fedilink source parent [–] Blackmist@feddit.uk 9 points 2 years ago Will they collect data on you to profile you and your activities and use that in the future? Yes. And that's why the only thing I use my VPN for is piracy. Don't really have a good reason to push anything else through it. permalink fedilink source parent [–] KillingTimeItself@lemmy.dbzer0.com 0 points 2 years ago in order to prosecute, “they” have to prove you’re a pirate and show how they know would they compromise their backDoor to go after a tiny pirate? this information isn't likely to be public after the fact. permalink fedilink source parent [+] hamid@vegantheoryclub.org -3 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 9 points 2 years ago (1 child) nothing because it's fucking hormones. It's not meth. permalink fedilink source parent hideshow 2 child comments replies: [–] AlligatorBlizzard@sh.itjust.works 2 points 2 years ago (1 child) Estrogen, yes. Trans guys are fucked if we've got to order testosterone off the internet. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent [–] Blackmist@feddit.uk 31 points 2 years ago In fairness I doubt the NSA give a single solitary fuck about piracy and aren't about to give themselves up over a telesync rip of Beetlejuice 2. But probably best to plan 9/11 part 2 over something a bit more secure. permalink fedilink source parent [–] SaharaMaleikuhm@feddit.org 21 points 2 years ago Bro I'm downloading Final Fantasy, not running a pedo marketplace. I will be fine. permalink fedilink source parent [–] headerfile@lemmy.blahaj.zone 16 points 2 years ago do you have a moment to talk about our lord and saviour mullvad vpn permalink fedilink source parent [–] pewgar_seemsimandroid@lemmy.blahaj.zone 11 points 2 years ago (1 child) what about proton or mullvad? permalink fedilink source parent hideshow 2 child comments replies: [+] sunzu2@thebrainbin.org 0 points 2 years ago* (last edited 10 months ago) [deleted] permalink fedilink source parent [–] Telorand@reddthat.com 7 points 2 years ago (3 children) Are you suggesting that it's pointless to use a VPN? permalink fedilink source parent hideshow 6 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) For anonymity, yes. Sure you might fool Google trying to match your IP to your traffic but that's about it permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 1 point 2 years ago (1 child) How so, specifically for logless VPNs? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago* (1 child) Technically speaking, VPN logs tend to include the IP address of clients connecting to them, after which the good VPN providers like Mullvad, IVPN and maybe PIA tend to purge them somewhere in their process. Now, if the VPN is running in a RAM-only node, then these logs probably don't touch storage, which means there's not much need to shred information from hard drives for the VPN provider. With that said, an ISP can technically log your traffic and see that you're connecting to the IP range associated with a VPN. That and perhaps some more covert side-channel/correlation attacks can, in theory, compromise your identity. Of course, this is going deep into OPSEC and forensics, and I don't think the NSA is that interested in the average Billy torrenting "The Office" to go through that many logs, even if the studios sue in court. Hence, technically your privacy is somewhat maintained with the good VPN providers, but you're definitely not anonymous permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent [+] hamid@vegantheoryclub.org 1 point 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] myersguy@lemmy.simpl.website 12 points 2 years ago (2 children) If you are worried about VPN's, why are you not worried about seedbox providers? permalink fedilink source parent hideshow 4 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) As he said, paid with crypto and managed with his own keys. I don't see how the seedbox provider can trace you if you do that, so there's not that much to worry about permalink fedilink source parent hideshow 2 child comments replies: [–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent [+] hamid@vegantheoryclub.org -1 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent [–] Telorand@reddthat.com 5 points 2 years ago (10 children) What evidence do you have that no-log VPNs are compromised by the NSA? What about VPNs based in other countries like Canada? permalink fedilink source parent hideshow 11 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 3 points 2 years ago* (1 child) the US has so much geopolitical reach that companies in canada or elsewhere would just hand over the question if it was high enough profile. permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent load more comments (9 replies) [–] Appoxo@lemmy.dbzer0.com 1 point 2 years ago (2 children) At least if the company is run from the US permalink fedilink source parent hideshow 4 child comments replies: [–] socsa@piefed.social 4 points 2 years ago* Everyone knows it's impossible for the NSA to buy rack space in Bulgaria, where they literally don't have to deal with any US legal process. It's also impossible for the NSA to market such a service via pop-privacy blogs and social media profiles. The funny part about this is that the Snowden leaks showed that the NSA actually put a lot of effort into doing shit like this specifically to avoid all the paperwork which came with accidentally collecting data from US citizens. Keeping the data and analysis off shore means no pesky FISA paperwork. permalink fedilink source parent [–] Telorand@reddthat.com 2 points 2 years ago (1 child) Why? permalink fedilink source parent hideshow 2 child comments replies: [–] winkerjadams@lemmy.dbzer0.com 6 points 2 years ago (1 child) Because if the government wants that data then they are gonna get it. If it's in another country its a lot more work than just serving them a warrant like it is if they are USbased permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent [–] Rogers@lemmy.ml 7 points 2 years ago Title is probably true, but also it's less likely for the NSA to leak your info than say an ISP that openly sells your info. I highly doubt that the NSA sees someone pirating Photoshop as a priority. VPNs can help with preventing a random ad from logging your real loose location, have built in DNS ad block, open up region locked content plus a list of other benefits. VPNs absolutely help with general privacy, like not putting your personal phone number on a public registry. They are not intended to perfectly hide you from a super power's intelligence agency lol permalink fedilink source parent [+] x00za@lemmy.dbzer0.com 4 points 2 years ago* (last edited 2 years ago) [removed by mod] permalink fedilink source parent
[–] merde@sh.itjust.works 93 points 2 years ago (3 children) let's say that VPNs are compromised and "they" know that you're downloading "illegally" in order to prosecute, "they" have to prove you're a pirate and show how they know would they compromise their backDoor to go after a tiny pirate? permalink fedilink source parent hideshow 6 child comments replies: [+] hamid@vegantheoryclub.org 21 points 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] parody@lemmings.world 28 points 2 years ago (3 children) This is why I compose all my messages on an air gapped computer and send them out from my compound with couriers. permalink fedilink source parent hideshow 6 child comments replies: [–] y0kai@lemmy.dbzer0.com 11 points 2 years ago I personally just use a VPN that connects to NSA servers so they think it's themselves doing the torrenting. permalink fedilink source parent [–] liveinthisworld@lemmy.dbzer0.com 4 points 2 years ago* Unless you PGP-encrypt everything by hand you've just lost the fight permalink fedilink source parent [–] ElCanut@jlai.lu 1 point 2 years ago Who controls the couriers though permalink fedilink source parent [–] Blackmist@feddit.uk 9 points 2 years ago Will they collect data on you to profile you and your activities and use that in the future? Yes. And that's why the only thing I use my VPN for is piracy. Don't really have a good reason to push anything else through it. permalink fedilink source parent [–] KillingTimeItself@lemmy.dbzer0.com 0 points 2 years ago in order to prosecute, “they” have to prove you’re a pirate and show how they know would they compromise their backDoor to go after a tiny pirate? this information isn't likely to be public after the fact. permalink fedilink source parent [+] hamid@vegantheoryclub.org -3 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 9 points 2 years ago (1 child) nothing because it's fucking hormones. It's not meth. permalink fedilink source parent hideshow 2 child comments replies: [–] AlligatorBlizzard@sh.itjust.works 2 points 2 years ago (1 child) Estrogen, yes. Trans guys are fucked if we've got to order testosterone off the internet. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent
[+] hamid@vegantheoryclub.org 21 points 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] parody@lemmings.world 28 points 2 years ago (3 children) This is why I compose all my messages on an air gapped computer and send them out from my compound with couriers. permalink fedilink source parent hideshow 6 child comments replies: [–] y0kai@lemmy.dbzer0.com 11 points 2 years ago I personally just use a VPN that connects to NSA servers so they think it's themselves doing the torrenting. permalink fedilink source parent [–] liveinthisworld@lemmy.dbzer0.com 4 points 2 years ago* Unless you PGP-encrypt everything by hand you've just lost the fight permalink fedilink source parent [–] ElCanut@jlai.lu 1 point 2 years ago Who controls the couriers though permalink fedilink source parent [–] Blackmist@feddit.uk 9 points 2 years ago Will they collect data on you to profile you and your activities and use that in the future? Yes. And that's why the only thing I use my VPN for is piracy. Don't really have a good reason to push anything else through it. permalink fedilink source parent
[–] parody@lemmings.world 28 points 2 years ago (3 children) This is why I compose all my messages on an air gapped computer and send them out from my compound with couriers. permalink fedilink source parent hideshow 6 child comments replies: [–] y0kai@lemmy.dbzer0.com 11 points 2 years ago I personally just use a VPN that connects to NSA servers so they think it's themselves doing the torrenting. permalink fedilink source parent [–] liveinthisworld@lemmy.dbzer0.com 4 points 2 years ago* Unless you PGP-encrypt everything by hand you've just lost the fight permalink fedilink source parent [–] ElCanut@jlai.lu 1 point 2 years ago Who controls the couriers though permalink fedilink source parent
[–] y0kai@lemmy.dbzer0.com 11 points 2 years ago I personally just use a VPN that connects to NSA servers so they think it's themselves doing the torrenting. permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 4 points 2 years ago* Unless you PGP-encrypt everything by hand you've just lost the fight permalink fedilink source parent
[–] ElCanut@jlai.lu 1 point 2 years ago Who controls the couriers though permalink fedilink source parent
[–] Blackmist@feddit.uk 9 points 2 years ago Will they collect data on you to profile you and your activities and use that in the future? Yes. And that's why the only thing I use my VPN for is piracy. Don't really have a good reason to push anything else through it. permalink fedilink source parent
[–] KillingTimeItself@lemmy.dbzer0.com 0 points 2 years ago in order to prosecute, “they” have to prove you’re a pirate and show how they know would they compromise their backDoor to go after a tiny pirate? this information isn't likely to be public after the fact. permalink fedilink source parent
[+] hamid@vegantheoryclub.org -3 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 9 points 2 years ago (1 child) nothing because it's fucking hormones. It's not meth. permalink fedilink source parent hideshow 2 child comments replies: [–] AlligatorBlizzard@sh.itjust.works 2 points 2 years ago (1 child) Estrogen, yes. Trans guys are fucked if we've got to order testosterone off the internet. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent
[–] KillingTimeItself@lemmy.dbzer0.com 9 points 2 years ago (1 child) nothing because it's fucking hormones. It's not meth. permalink fedilink source parent hideshow 2 child comments replies: [–] AlligatorBlizzard@sh.itjust.works 2 points 2 years ago (1 child) Estrogen, yes. Trans guys are fucked if we've got to order testosterone off the internet. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent
[–] AlligatorBlizzard@sh.itjust.works 2 points 2 years ago (1 child) Estrogen, yes. Trans guys are fucked if we've got to order testosterone off the internet. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent
[–] KillingTimeItself@lemmy.dbzer0.com 1 point 2 years ago yeah, and? What are they going to do? Send the DEA after you for growing GMO titties? Gonna hit you with the ATF because you grew hormonally altered facial hair? They've got shit like fentanyl to be worrying about. I think this is probably the least of concerns, especially considering this is less "drug addiction" and more "illegal prescription drugs" instead. Besides, they don't get drug money from trans people. It's certainly a potential risk for procurement of the drug legally. But that's already a problem. permalink fedilink source parent
[–] Blackmist@feddit.uk 31 points 2 years ago In fairness I doubt the NSA give a single solitary fuck about piracy and aren't about to give themselves up over a telesync rip of Beetlejuice 2. But probably best to plan 9/11 part 2 over something a bit more secure. permalink fedilink source parent
[–] SaharaMaleikuhm@feddit.org 21 points 2 years ago Bro I'm downloading Final Fantasy, not running a pedo marketplace. I will be fine. permalink fedilink source parent
[–] headerfile@lemmy.blahaj.zone 16 points 2 years ago do you have a moment to talk about our lord and saviour mullvad vpn permalink fedilink source parent
[–] pewgar_seemsimandroid@lemmy.blahaj.zone 11 points 2 years ago (1 child) what about proton or mullvad? permalink fedilink source parent hideshow 2 child comments replies: [+] sunzu2@thebrainbin.org 0 points 2 years ago* (last edited 10 months ago) [deleted] permalink fedilink source parent
[+] sunzu2@thebrainbin.org 0 points 2 years ago* (last edited 10 months ago) [deleted] permalink fedilink source parent
[–] Telorand@reddthat.com 7 points 2 years ago (3 children) Are you suggesting that it's pointless to use a VPN? permalink fedilink source parent hideshow 6 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) For anonymity, yes. Sure you might fool Google trying to match your IP to your traffic but that's about it permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 1 point 2 years ago (1 child) How so, specifically for logless VPNs? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago* (1 child) Technically speaking, VPN logs tend to include the IP address of clients connecting to them, after which the good VPN providers like Mullvad, IVPN and maybe PIA tend to purge them somewhere in their process. Now, if the VPN is running in a RAM-only node, then these logs probably don't touch storage, which means there's not much need to shred information from hard drives for the VPN provider. With that said, an ISP can technically log your traffic and see that you're connecting to the IP range associated with a VPN. That and perhaps some more covert side-channel/correlation attacks can, in theory, compromise your identity. Of course, this is going deep into OPSEC and forensics, and I don't think the NSA is that interested in the average Billy torrenting "The Office" to go through that many logs, even if the studios sue in court. Hence, technically your privacy is somewhat maintained with the good VPN providers, but you're definitely not anonymous permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent [+] hamid@vegantheoryclub.org 1 point 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] myersguy@lemmy.simpl.website 12 points 2 years ago (2 children) If you are worried about VPN's, why are you not worried about seedbox providers? permalink fedilink source parent hideshow 4 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) As he said, paid with crypto and managed with his own keys. I don't see how the seedbox provider can trace you if you do that, so there's not that much to worry about permalink fedilink source parent hideshow 2 child comments replies: [–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent [+] hamid@vegantheoryclub.org -1 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent [–] Telorand@reddthat.com 5 points 2 years ago (10 children) What evidence do you have that no-log VPNs are compromised by the NSA? What about VPNs based in other countries like Canada? permalink fedilink source parent hideshow 11 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 3 points 2 years ago* (1 child) the US has so much geopolitical reach that companies in canada or elsewhere would just hand over the question if it was high enough profile. permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent load more comments (9 replies) [–] Appoxo@lemmy.dbzer0.com 1 point 2 years ago (2 children) At least if the company is run from the US permalink fedilink source parent hideshow 4 child comments replies: [–] socsa@piefed.social 4 points 2 years ago* Everyone knows it's impossible for the NSA to buy rack space in Bulgaria, where they literally don't have to deal with any US legal process. It's also impossible for the NSA to market such a service via pop-privacy blogs and social media profiles. The funny part about this is that the Snowden leaks showed that the NSA actually put a lot of effort into doing shit like this specifically to avoid all the paperwork which came with accidentally collecting data from US citizens. Keeping the data and analysis off shore means no pesky FISA paperwork. permalink fedilink source parent [–] Telorand@reddthat.com 2 points 2 years ago (1 child) Why? permalink fedilink source parent hideshow 2 child comments replies: [–] winkerjadams@lemmy.dbzer0.com 6 points 2 years ago (1 child) Because if the government wants that data then they are gonna get it. If it's in another country its a lot more work than just serving them a warrant like it is if they are USbased permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) For anonymity, yes. Sure you might fool Google trying to match your IP to your traffic but that's about it permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 1 point 2 years ago (1 child) How so, specifically for logless VPNs? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago* (1 child) Technically speaking, VPN logs tend to include the IP address of clients connecting to them, after which the good VPN providers like Mullvad, IVPN and maybe PIA tend to purge them somewhere in their process. Now, if the VPN is running in a RAM-only node, then these logs probably don't touch storage, which means there's not much need to shred information from hard drives for the VPN provider. With that said, an ISP can technically log your traffic and see that you're connecting to the IP range associated with a VPN. That and perhaps some more covert side-channel/correlation attacks can, in theory, compromise your identity. Of course, this is going deep into OPSEC and forensics, and I don't think the NSA is that interested in the average Billy torrenting "The Office" to go through that many logs, even if the studios sue in court. Hence, technically your privacy is somewhat maintained with the good VPN providers, but you're definitely not anonymous permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent
[–] Telorand@reddthat.com 1 point 2 years ago (1 child) How so, specifically for logless VPNs? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago* (1 child) Technically speaking, VPN logs tend to include the IP address of clients connecting to them, after which the good VPN providers like Mullvad, IVPN and maybe PIA tend to purge them somewhere in their process. Now, if the VPN is running in a RAM-only node, then these logs probably don't touch storage, which means there's not much need to shred information from hard drives for the VPN provider. With that said, an ISP can technically log your traffic and see that you're connecting to the IP range associated with a VPN. That and perhaps some more covert side-channel/correlation attacks can, in theory, compromise your identity. Of course, this is going deep into OPSEC and forensics, and I don't think the NSA is that interested in the average Billy torrenting "The Office" to go through that many logs, even if the studios sue in court. Hence, technically your privacy is somewhat maintained with the good VPN providers, but you're definitely not anonymous permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago* (1 child) Technically speaking, VPN logs tend to include the IP address of clients connecting to them, after which the good VPN providers like Mullvad, IVPN and maybe PIA tend to purge them somewhere in their process. Now, if the VPN is running in a RAM-only node, then these logs probably don't touch storage, which means there's not much need to shred information from hard drives for the VPN provider. With that said, an ISP can technically log your traffic and see that you're connecting to the IP range associated with a VPN. That and perhaps some more covert side-channel/correlation attacks can, in theory, compromise your identity. Of course, this is going deep into OPSEC and forensics, and I don't think the NSA is that interested in the average Billy torrenting "The Office" to go through that many logs, even if the studios sue in court. Hence, technically your privacy is somewhat maintained with the good VPN providers, but you're definitely not anonymous permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent
[–] Telorand@reddthat.com 3 points 2 years ago (1 child) That's kind of my thought as well. It's certainly possible someone might go through the effort to find a single pirate downloading The Lion King, but that's a lot of effort (read: money) to find just one person. There's certainly the possibility that an ISP could note that you connected to a VPN, but given that it's not a remarkable event, since people connect to VPNs for all kinds of legal reasons, they aren't likely to track your particular IP's connection to a VPN apart from a court ordering them to care. They get paid their monthly internet plan price whether someone pirates or checks their email. If someone was running the Pirate Bay from their home servers, however, more parties would likely be interested in finding that person, and that person's threat model probably exceeds just using a logless VPN. permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 3 points 2 years ago Maybe I should have said "it's not anonymous based on your threat model" permalink fedilink source parent
[+] hamid@vegantheoryclub.org 1 point 2 years ago (2 children) [deleted] permalink fedilink source parent hideshow 4 child comments replies: [–] myersguy@lemmy.simpl.website 12 points 2 years ago (2 children) If you are worried about VPN's, why are you not worried about seedbox providers? permalink fedilink source parent hideshow 4 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) As he said, paid with crypto and managed with his own keys. I don't see how the seedbox provider can trace you if you do that, so there's not that much to worry about permalink fedilink source parent hideshow 2 child comments replies: [–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent [+] hamid@vegantheoryclub.org -1 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent [–] Telorand@reddthat.com 5 points 2 years ago (10 children) What evidence do you have that no-log VPNs are compromised by the NSA? What about VPNs based in other countries like Canada? permalink fedilink source parent hideshow 11 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 3 points 2 years ago* (1 child) the US has so much geopolitical reach that companies in canada or elsewhere would just hand over the question if it was high enough profile. permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent load more comments (9 replies)
[–] myersguy@lemmy.simpl.website 12 points 2 years ago (2 children) If you are worried about VPN's, why are you not worried about seedbox providers? permalink fedilink source parent hideshow 4 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) As he said, paid with crypto and managed with his own keys. I don't see how the seedbox provider can trace you if you do that, so there's not that much to worry about permalink fedilink source parent hideshow 2 child comments replies: [–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent [+] hamid@vegantheoryclub.org -1 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 1 point 2 years ago (1 child) As he said, paid with crypto and managed with his own keys. I don't see how the seedbox provider can trace you if you do that, so there's not that much to worry about permalink fedilink source parent hideshow 2 child comments replies: [–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent
[–] myersguy@lemmy.simpl.website 2 points 2 years ago (1 child) You're going to connect to the seedbox at some point, which ties your IP to the traffic. If you are worried about a VPN attaching your IP to traffic, this is no different, no? permalink fedilink source parent hideshow 2 child comments replies: [–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent
[–] liveinthisworld@lemmy.dbzer0.com 0 points 2 years ago* SFTP over TOR. This should be a requirement at this point. If you're not doing that, then yes you're technically right in that seedbox companies can be subpoenaed too. I usually use TOR to copy over what little I torrent. permalink fedilink source parent
[+] hamid@vegantheoryclub.org -1 points 2 years ago (1 child) [deleted] permalink fedilink source parent hideshow 2 child comments replies: [–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent
[–] sus@programming.dev 1 point 2 years ago if you can't connect to a vpn using only open source software, that's a crappy vpn permalink fedilink source parent
[–] Telorand@reddthat.com 5 points 2 years ago (10 children) What evidence do you have that no-log VPNs are compromised by the NSA? What about VPNs based in other countries like Canada? permalink fedilink source parent hideshow 11 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 3 points 2 years ago* (1 child) the US has so much geopolitical reach that companies in canada or elsewhere would just hand over the question if it was high enough profile. permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent load more comments (9 replies)
[–] KillingTimeItself@lemmy.dbzer0.com 3 points 2 years ago* (1 child) the US has so much geopolitical reach that companies in canada or elsewhere would just hand over the question if it was high enough profile. permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent
[–] Telorand@reddthat.com 4 points 2 years ago (1 child) That's an interesting point, but I think the "if it's high profile enough" is key. People torrenting files is probably low on their priorities. On the other hand, somebody organizing a terrorist cell is probably much higher. Companies might have an interest in finding pirates, but it would not be as easy for them to get other companies to comply with their subpoenas. permalink fedilink source parent hideshow 2 child comments replies: [–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent
[–] KillingTimeItself@lemmy.dbzer0.com 4 points 2 years ago yeah if ur just a dude pirating, it probably doesn't matter, but if they find you've done a large crime, you can bet your ass that shits getting yoinked from you. companies might, but that's almost entirely through legal processes. ceast and desists, required reporting, etc... permalink fedilink source parent
[–] Appoxo@lemmy.dbzer0.com 1 point 2 years ago (2 children) At least if the company is run from the US permalink fedilink source parent hideshow 4 child comments replies: [–] socsa@piefed.social 4 points 2 years ago* Everyone knows it's impossible for the NSA to buy rack space in Bulgaria, where they literally don't have to deal with any US legal process. It's also impossible for the NSA to market such a service via pop-privacy blogs and social media profiles. The funny part about this is that the Snowden leaks showed that the NSA actually put a lot of effort into doing shit like this specifically to avoid all the paperwork which came with accidentally collecting data from US citizens. Keeping the data and analysis off shore means no pesky FISA paperwork. permalink fedilink source parent [–] Telorand@reddthat.com 2 points 2 years ago (1 child) Why? permalink fedilink source parent hideshow 2 child comments replies: [–] winkerjadams@lemmy.dbzer0.com 6 points 2 years ago (1 child) Because if the government wants that data then they are gonna get it. If it's in another country its a lot more work than just serving them a warrant like it is if they are USbased permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent
[–] socsa@piefed.social 4 points 2 years ago* Everyone knows it's impossible for the NSA to buy rack space in Bulgaria, where they literally don't have to deal with any US legal process. It's also impossible for the NSA to market such a service via pop-privacy blogs and social media profiles. The funny part about this is that the Snowden leaks showed that the NSA actually put a lot of effort into doing shit like this specifically to avoid all the paperwork which came with accidentally collecting data from US citizens. Keeping the data and analysis off shore means no pesky FISA paperwork. permalink fedilink source parent
[–] Telorand@reddthat.com 2 points 2 years ago (1 child) Why? permalink fedilink source parent hideshow 2 child comments replies: [–] winkerjadams@lemmy.dbzer0.com 6 points 2 years ago (1 child) Because if the government wants that data then they are gonna get it. If it's in another country its a lot more work than just serving them a warrant like it is if they are USbased permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent
[–] winkerjadams@lemmy.dbzer0.com 6 points 2 years ago (1 child) Because if the government wants that data then they are gonna get it. If it's in another country its a lot more work than just serving them a warrant like it is if they are USbased permalink fedilink source parent hideshow 2 child comments replies: [–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent
[–] Telorand@reddthat.com 6 points 2 years ago At least that's a more reasonable answer than trying to imply the NSA has backdoors everywhere. My position is that it all depends on your threat model. The government isn't likely to go after someone who torrents files and is hidden by a VPN. The government might go after someone running a streaming site, on the other hand. And even that might wind up with a dead end. AirVPN (for example) is Canada-based, has no logs, and accepts both crypto and anonymous cash payments. permalink fedilink source parent
[–] Rogers@lemmy.ml 7 points 2 years ago Title is probably true, but also it's less likely for the NSA to leak your info than say an ISP that openly sells your info. I highly doubt that the NSA sees someone pirating Photoshop as a priority. VPNs can help with preventing a random ad from logging your real loose location, have built in DNS ad block, open up region locked content plus a list of other benefits. VPNs absolutely help with general privacy, like not putting your personal phone number on a public registry. They are not intended to perfectly hide you from a super power's intelligence agency lol permalink fedilink source parent
[+] x00za@lemmy.dbzer0.com 4 points 2 years ago* (last edited 2 years ago) [removed by mod] permalink fedilink source parent