In my opinion it would probably be using Qubes certified hardware with Qubes on it and then routing everything through whonix VM.

Curious to know if anyone has anything else that is more secure than Qubes - I mean like does anyone know what darknet vendors use opsec wise?

Also I heard Snowden used Tails OS when blowing the whistle - so perhaps using tails would be up there.

  • Sneezycat@sopuli.xyz
    link
    fedilink
    arrow-up
    29
    arrow-down
    1
    ·
    8 months ago

    Computer without any networking capabilities, no external drives, in a secure location. 99% secure (not immune to human error/social engineering).

    Extra points if nobody but you knows about its existence.

    If you’re asking about OS, Tails is a pretty popular one but I’m sure you’ll get better recommendations (sorry can’t actually help you!).

      • satanmat@lemmy.world
        link
        fedilink
        arrow-up
        4
        ·
        8 months ago

        Nice option… but I was looking for something that could run on my PET16. This is too powerful for me

      • Sneezycat@sopuli.xyz
        link
        fedilink
        arrow-up
        2
        arrow-down
        2
        ·
        8 months ago

        Why? It’s not like it can be wirelessly accessed. Could protect against cosmic rays or whatever I guess.

        I think a better addition to the setup I suggested would be hard drive encryption. Just in case.

        • 𝒍𝒆𝒎𝒂𝒏𝒏@lemmy.one
          link
          fedilink
          arrow-up
          7
          ·
          8 months ago

          It’s not like it can be wirelessly accessed

          The creativity of research students shouldnt be underestimated lol, they have found ways to transmit data to cameras, to microphones (inaudible to us), and also by using coil whine in power supplies, all by modulation.

          There is the caveat that these usually require the computer to be compromised first though, if it is airgapped

    • Throwaway@lemm.eeOP
      link
      fedilink
      arrow-up
      6
      ·
      8 months ago

      Yeah, I guess the most secure you can really get is having a device that has literally no networking capabilities.

      Although that isn’t fool proof, just look at stuxnet