Grey - Privacy/TOR/OPSEC
Privacy, Tor, PGP, and personal OPSEC references.
Grey is for personal privacy, anonymity, secure communication, Tor, PGP, and operational safety for legitimate research. Dark-web search and OSINT sources belong in Cyber Intelligence; offensive routing, evasion, and command-history hiding belong in Red Offensive.
Start Here
The Jolly Roger page is preserved as a historical archive and should not be modernized in place.
Privacy Guides and Reference
General Guides
Prism Break - Alternatives focused on reducing data collection.
Privacy Guides - Successor community to the old privacytools.io project.
Exposing the Invisible: Watching Out for Yourself - Personal security guide for investigators.
SafetyDetectives VPN list - Commercial review list; verify recommendations independently before trusting them.
Browser Privacy and Leak Checks
Browser Checks
Use Tor Browser, Firefox, Mullvad Browser, or another privacy-focused browser with a configuration that matches your threat model. Chrome and other Chromium browsers can be hardened, but their defaults are not privacy-first.
Firefox secure install and setup - Extreme Privacy: What it Takes to Disappear, 5th edition, pg. 39
DuckDuckGo - Private search engine.
SearXNG - Self-hostable metasearch engine.
Cover Your Tracks - EFF browser tracking and fingerprinting test. Replaces the older Panopticlick branding.
AmIUnique - Browser fingerprint uniqueness check.
Privacy Analyzer - Browser data exposure check.
Browser Mirror - Shows browser headers and exposed client data.
Webkay - Demonstrates what browser APIs expose.
IntelTechniques Logger - Shows trackable browser data.
GRC ShieldsUP - Internet connection and router exposure check.
ipleak.net - IP, DNS, WebRTC, and user-agent leak checks.
BrowserLeaks - Browser security and privacy testing tools.
SOCRadar VPNRadar - VPN privacy checker.
Tenta browser test - Historical leak-check tool; verify current availability before relying on it.
Shut Up Trackers browser tweaks - Older Firefox tweak list. Prefer current Firefox/Mullvad/arkenfox guidance for maintained hardening.
Privacy Apps
General Tools
Awesome Anti-Forensics - Awesome list; duplicate allowed by the guide's Awesome List exception.
OneRep - Data broker removal service.
SnowHaze Browser - iOS privacy browser.
MySudo - Creates alternate phone/email identities.
Privacy.com - Virtual payment cards.
Burner - Temporary phone numbers.
Syncthing - Open source file synchronization.
Tails - Portable privacy-focused live OS.
Anonymouse.org - Legacy anonymous proxy; not recommended for serious privacy.
Privoxy - Filtering web proxy.
Kali Anonsurf - Kali port of ParrotSec Anonsurf.
cryptsetup-nuke-password - Kali package that can destroy encrypted partition keys with a special passphrase.
Secure Communications
Primary tools:
Wire - E2EE collaboration and messaging platform. Verify the current plan and identity model before selecting it for sensitive use.
Alternatives:
Deprecated or high-risk:
TorChat - Abandoned Tor-based messenger. Keep only as historical context.
Wickr Me - Discontinued for consumers.
WhatsApp - Strong message encryption but high metadata and account-linkage concerns.
Telegram - Standard chats are not end-to-end encrypted; secret chats have different behavior and limitations.
Secure File Transfer and Webmail
Mail2Tor - Historically used anonymous email service; verify current trust and availability before use.
Altnets
Whonix ZeroNet guide - ZeroNet is largely historical; verify project activity before using it.
FidoNet node history - Historical/alternative network reference.
NZBFriends - Usenet search engine.
Personal Network Security
The old page used a hotlinked 2015 image for this section. Prefer current router and home-network guidance:
Update router firmware and replace unsupported hardware.
Use WPA2/WPA3 with a strong passphrase.
Disable WPS.
Separate guest, IoT, and trusted devices where possible.
Review UPnP, port forwards, DNS settings, and admin-interface exposure.
Run leak checks from the Browser Privacy section after VPN/Tor changes.
OPSEC
Exposing the Invisible Kit - Investigation and verification training.
A 5-minute guide to creating a covert account for internet investigations - Maintained under Cyber Intelligence because it is an OSINT persona workflow.
Historical Dread OPSEC Guide
The old Dread OPSEC material mixed useful browser/Tails/Whonix advice with darknet-market framing, stale onion links, and outdated CCleaner-style footprint cleanup. Preserve it only as historical context; use the maintained Tor, Tails, Whonix, and browser references above for current workflows.
Device OPSEC
macOS
Extreme Privacy: What it Takes to Disappear, 5th edition, pg. 39
Little Snitch - Commercial macOS network monitor/firewall. It is not open source.
LuLu - Open source macOS firewall.
KnockKnock - Reveals persistent software.
Linux
Extreme Privacy: What it Takes to Disappear, 5th edition, pg. 21
OpenSnitch - Linux application firewall.
Mobile
Extreme Privacy: What it Takes to Disappear, 5th edition, pg. 75 and pg. 117
GrapheneOS - Privacy and security focused Android distribution for supported Pixel devices.
Web OPSEC Basics
Disable JavaScript for high-risk Tor browsing when your workflow allows it.
Use the Tor Browser security slider for riskier browsing.
Do not mix personal browsing sessions with research or anonymity sessions.
Restart Tor Browser regularly to clear state.
Prefer Tor Browser/Tails/Whonix defaults over hand-rolled browser hardening for anonymity work.
Treat old v2 onion addresses and clearnet onion proxy links as stale or unsafe by default.
File Verification and Encryption
Gpg4win - Windows OpenPGP tooling.
Prefer OpenPGP signatures and SHA-256 or stronger hashes.
Treat MD5 and SHA-1 as legacy integrity checks, not secure verification.
Offensive OPSEC and Evasion
Command-history hiding, log tampering, process masquerading, PowerShell logging bypasses, and similar material belong in Red Offensive and should only be used in explicitly authorized labs or engagements.
Defense EvasionLateral MovementLast updated