• [Bitmessage] A proposal, what do you think?

    From Onion Courier@21:1/5 to All on Tue Feb 18 21:53:41 2025
    Let's assume Bob travels a lot and does not want to take any devices
    with him, including his private keys, email addresses etc., but Alice
    wants to be sure that she is communicating securely with Bob, once he
    arrived at his various destinations.

    Prior his departure they both agreed on (a) shared secret(s) they will use.

    First they agree on a secret chan, like this example shows:

    [BM-2cVDByPfU25C6txRff2GfDSrxCD1PCm6yx]
    label = [chan] 97be230c60497b24a0f42c9835b1002e33a7ca7574d441a10845c285c985c6d3483304278e7a26009ab49dd4d4a7f7532912d4c662011a836f46b708368914670000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000
    0000000000000425
    enabled = true
    decoy = false
    chan = true
    noncetrialsperbyte = 1000
    payloadlengthextrabytes = 1000
    privsigningkey = 5K2Vycub1BAfbpsVxjnp8KSjoyXLAwB9hyuT819Nu7WB2Sd9mFx privencryptionkey = 5KXVcwz7EDXNPnDqYfiHS1SsDjsEazsvpAkHY6oUDb1ZWM9fUNr

    The chan was generated with a 1024-bit hex prime number, which is deterministic. In order to generate such a deterministic prime number
    they used https://github.com/706f6c6c7578/dprime

    $ dprime -p test -s test -h

    So, when Bob arrives at his destination he visits a public library or
    Internet Café etc. and downloads the BM-client and dprime from GitHub. Hopefully these two URLs are not blocked at his destination(s)!

    Now since Alice and Bob have a communication channel established they
    can additionally use dprime with zkp+ https://github.com/706f6c6c7578/zkp
    (with a second shared secret), so that she knows that she is really communicating with Bob.

    Hope you like the idea and that it is not to complicated!

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Stefan Claas@21:1/5 to Chris M. Thomasson on Wed Feb 19 14:48:33 2025
    Chris M. Thomasson wrote:
    On 2/18/2025 1:58 PM, Chris M. Thomasson wrote:
    On 2/18/2025 1:53 PM, Onion Courier wrote:
    Let's assume Bob travels a lot and does not want to take any devices
    with him, including his private keys, email addresses etc., but Alice wants to be sure that she is communicating securely with Bob, once he arrived at his various destinations.

    Prior his departure they both agreed on (a) shared secret(s) they will use.

    If this is a truly secret key, then they are already setup for a secure channel anyway using existing symmetric encryption techniques?


    http://fractallife247.com/test/hmac_cipher/ver_0_0_0_1? ct_hmac_cipher=189e8b754b816c819e0dd0d9c33a65de192cc7b83213ae1a267626c6cc876515b5f3693848472fa86496b3d7ce280ef96c8bd421ad782c1682fd5f85234a39f5df0f439daabe2f01676108f5808c681b20bc0b6d95750355fad62e7ab577b5e505ef5b9ee9d8f12378021e81e97df1f9461fb1f22511
    90f940ad4454ef7170e353a0ed7f4879ee06e544a4e7cde58776cd02ce0d98ba52820d8f71784bf9c9e0a6badb0749b2d6a33ea1603d97da9ad1f52a4b8f8375e1bc136e362089933956d1cc3cb99883a969f8a944bbb3cc7c428caed0cb1aeb8cb170b414612553fdfe6a8f56e94d9f9ba071e6f05e

    [...]

    Or are you talking about Bob getting kidnapped, and exposed to the
    rubber hose treatment? Then AgentX has the secret key; Spoofs as Bob
    into luring Alice into a rather precarious scenario?

    I am talking about that Bob travels a lot, without any device and keys, passwords etc. and he must establish a channel to Alice, so that he
    can communicate securely, without email, social media etc. with Alice
    and that she knows it is him.

    Regards
    Stefan

    --
    Onion Courier Home Server Mon-Fri 15:00-21:00 UTC Sat-Sun 11:00-21:00 UTC ohpmsq5ypuw5nagt2jidfyq72jvgw3fdvq37txhnm5rfbhwuosftzuyd.onion:8080 inbox
    age1yubikey1qv5z678j0apqhd4ng7p22g4da8vxy3q5uvthg6su76yj0y8v7wp5kvhstum

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Stefan Claas@21:1/5 to Chris M. Thomasson on Wed Feb 19 21:18:10 2025
    Chris M. Thomasson wrote:
    On 2/19/2025 5:48 AM, Stefan Claas wrote:
    Chris M. Thomasson wrote:
    On 2/18/2025 1:58 PM, Chris M. Thomasson wrote:
    On 2/18/2025 1:53 PM, Onion Courier wrote:
    Let's assume Bob travels a lot and does not want to take any devices with him, including his private keys, email addresses etc., but Alice wants to be sure that she is communicating securely with Bob, once he arrived at his various destinations.

    Prior his departure they both agreed on (a) shared secret(s) they will
    use.

    If this is a truly secret key, then they are already setup for a secure channel anyway using existing symmetric encryption techniques?


    http://fractallife247.com/test/hmac_cipher/ver_0_0_0_1? ct_hmac_cipher=189e8b754b816c819e0dd0d9c33a65de192cc7b83213ae1a267626c6cc876515b5f3693848472fa86496b3d7ce280ef96c8bd421ad782c1682fd5f85234a39f5df0f439daabe2f01676108f5808c681b20bc0b6d95750355fad62e7ab577b5e505ef5b9ee9d8f12378021e81e97df1f9461fb1f2
    251190f940ad4454ef7170e353a0ed7f4879ee06e544a4e7cde58776cd02ce0d98ba52820d8f71784bf9c9e0a6badb0749b2d6a33ea1603d97da9ad1f52a4b8f8375e1bc136e362089933956d1cc3cb99883a969f8a944bbb3cc7c428caed0cb1aeb8cb170b414612553fdfe6a8f56e94d9f9ba071e6f05e

    [...]

    Or are you talking about Bob getting kidnapped, and exposed to the
    rubber hose treatment? Then AgentX has the secret key; Spoofs as Bob
    into luring Alice into a rather precarious scenario?

    I am talking about that Bob travels a lot, without any device and keys, passwords etc. and he must establish a channel to Alice, so that he
    can communicate securely, without email, social media etc. with Alice
    and that she knows it is him.

    What would be the communication channel? How does Bob get in touch with
    Alice without email, social media, ect? Define ect?


    Like the Subject: says, they both use Bitmessage. ;-)

    With Bitmessage the delivery of messages is 100% guaranteed, compared
    for example with unreliable anonymous Remailers etc. Alice, at home,
    can use Bitmessage with the Tor Network, while Bob can use it without
    Tor, in case Tor is censored in some countries he travels. Bitmessage
    is a secure/anonymous alternative to email/Usenet.

    Regards
    Stefan

    --
    Onion Courier Home Server Mon-Fri 15:00-21:00 UTC Sat-Sun 11:00-21:00 UTC ohpmsq5ypuw5nagt2jidfyq72jvgw3fdvq37txhnm5rfbhwuosftzuyd.onion:8080 inbox
    age1yubikey1qv5z678j0apqhd4ng7p22g4da8vxy3q5uvthg6su76yj0y8v7wp5kvhstum

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Stefan Claas@21:1/5 to Stefan Claas on Wed Feb 19 21:22:11 2025
    Stefan Claas wrote:
    Chris M. Thomasson wrote:
    On 2/19/2025 5:48 AM, Stefan Claas wrote:
    Chris M. Thomasson wrote:
    On 2/18/2025 1:58 PM, Chris M. Thomasson wrote:
    On 2/18/2025 1:53 PM, Onion Courier wrote:
    Let's assume Bob travels a lot and does not want to take any devices
    with him, including his private keys, email addresses etc., but Alice
    wants to be sure that she is communicating securely with Bob, once he
    arrived at his various destinations.

    Prior his departure they both agreed on (a) shared secret(s) they will
    use.

    If this is a truly secret key, then they are already setup for a secure
    channel anyway using existing symmetric encryption techniques?


    http://fractallife247.com/test/hmac_cipher/ver_0_0_0_1? ct_hmac_cipher=189e8b754b816c819e0dd0d9c33a65de192cc7b83213ae1a267626c6cc876515b5f3693848472fa86496b3d7ce280ef96c8bd421ad782c1682fd5f85234a39f5df0f439daabe2f01676108f5808c681b20bc0b6d95750355fad62e7ab577b5e505ef5b9ee9d8f12378021e81e97df1f9461fb1
    f2251190f940ad4454ef7170e353a0ed7f4879ee06e544a4e7cde58776cd02ce0d98ba52820d8f71784bf9c9e0a6badb0749b2d6a33ea1603d97da9ad1f52a4b8f8375e1bc136e362089933956d1cc3cb99883a969f8a944bbb3cc7c428caed0cb1aeb8cb170b414612553fdfe6a8f56e94d9f9ba071e6f05e

    [...]

    Or are you talking about Bob getting kidnapped, and exposed to the rubber hose treatment? Then AgentX has the secret key; Spoofs as Bob into luring Alice into a rather precarious scenario?

    I am talking about that Bob travels a lot, without any device and keys, passwords etc. and he must establish a channel to Alice, so that he
    can communicate securely, without email, social media etc. with Alice
    and that she knows it is him.

    What would be the communication channel? How does Bob get in touch with Alice without email, social media, ect? Define ect?


    Like the Subject: says, they both use Bitmessage. ;-)

    With Bitmessage the delivery of messages is 100% guaranteed, compared
    for example with unreliable anonymous Remailers etc. Alice, at home,
    can use Bitmessage with the Tor Network, while Bob can use it without
    Tor, in case Tor is censored in some countries he travels. Bitmessage
    is a secure/anonymous alternative to email/Usenet.

    BTW. There is also a sci.crypt chan on Bitmessage. :-)

    [BM-2cVsPz7KY9ziDETwnx8GrWAvG953YUfXur]
    label = [chan] sci.crypt
    enabled = true
    decoy = false
    chan = true
    noncetrialsperbyte = 1000
    payloadlengthextrabytes = 1000
    privsigningkey = 5JrTvRy2Vramck1Ladu6LDeashcDQhbaXZo1GjozVY2ymTMGBv8 privencryptionkey = 5KMjA2sJsPxSVSu4HX2CooCHy8zJvQvTmKMLQtiwR9kAe5nAnHJ

    Regards
    Stefan

    --
    Onion Courier Home Server Mon-Fri 15:00-21:00 UTC Sat-Sun 11:00-21:00 UTC ohpmsq5ypuw5nagt2jidfyq72jvgw3fdvq37txhnm5rfbhwuosftzuyd.onion:8080 inbox
    age1yubikey1qv5z678j0apqhd4ng7p22g4da8vxy3q5uvthg6su76yj0y8v7wp5kvhstum

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Stefan Claas@21:1/5 to Chris M. Thomasson on Wed Feb 19 21:25:06 2025
    Chris M. Thomasson wrote:
    On 2/19/2025 12:18 PM, Stefan Claas wrote:
    Chris M. Thomasson wrote:
    On 2/19/2025 5:48 AM, Stefan Claas wrote:
    Chris M. Thomasson wrote:
    On 2/18/2025 1:58 PM, Chris M. Thomasson wrote:
    On 2/18/2025 1:53 PM, Onion Courier wrote:
    Let's assume Bob travels a lot and does not want to take any devices
    with him, including his private keys, email addresses etc., but Alice
    wants to be sure that she is communicating securely with Bob, once he
    arrived at his various destinations.

    Prior his departure they both agreed on (a) shared secret(s) they will
    use.

    If this is a truly secret key, then they are already setup for a secure
    channel anyway using existing symmetric encryption techniques?


    http://fractallife247.com/test/hmac_cipher/ver_0_0_0_1? ct_hmac_cipher=189e8b754b816c819e0dd0d9c33a65de192cc7b83213ae1a267626c6cc876515b5f3693848472fa86496b3d7ce280ef96c8bd421ad782c1682fd5f85234a39f5df0f439daabe2f01676108f5808c681b20bc0b6d95750355fad62e7ab577b5e505ef5b9ee9d8f12378021e81e97df1f9461f
    b1f2251190f940ad4454ef7170e353a0ed7f4879ee06e544a4e7cde58776cd02ce0d98ba52820d8f71784bf9c9e0a6badb0749b2d6a33ea1603d97da9ad1f52a4b8f8375e1bc136e362089933956d1cc3cb99883a969f8a944bbb3cc7c428caed0cb1aeb8cb170b414612553fdfe6a8f56e94d9f9ba071e6f05e

    [...]

    Or are you talking about Bob getting kidnapped, and exposed to the rubber hose treatment? Then AgentX has the secret key; Spoofs as Bob into luring Alice into a rather precarious scenario?

    I am talking about that Bob travels a lot, without any device and keys, passwords etc. and he must establish a channel to Alice, so that he
    can communicate securely, without email, social media etc. with Alice and that she knows it is him.

    What would be the communication channel? How does Bob get in touch with Alice without email, social media, ect? Define ect?


    Like the Subject: says, they both use Bitmessage. ;-)

    With Bitmessage the delivery of messages is 100% guaranteed, compared
    for example with unreliable anonymous Remailers etc. Alice, at home,
    can use Bitmessage with the Tor Network, while Bob can use it without
    Tor, in case Tor is censored in some countries he travels. Bitmessage
    is a secure/anonymous alternative to email/Usenet.

    How does it get around the rubber hose treatment?


    Very well, because rubber hose is only availabe in US/UK? and not in
    very big Eurasia. :-D :-D :-D

    Regards
    Stefan

    --
    Onion Courier Home Server Mon-Fri 15:00-21:00 UTC Sat-Sun 11:00-21:00 UTC ohpmsq5ypuw5nagt2jidfyq72jvgw3fdvq37txhnm5rfbhwuosftzuyd.onion:8080 inbox
    age1yubikey1qv5z678j0apqhd4ng7p22g4da8vxy3q5uvthg6su76yj0y8v7wp5kvhstum

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Stefan Claas@21:1/5 to Chris M. Thomasson on Wed Feb 19 21:32:20 2025
    Chris M. Thomasson wrote:
    On 2/19/2025 12:25 PM, Stefan Claas wrote:

    With Bitmessage the delivery of messages is 100% guaranteed, compared for example with unreliable anonymous Remailers etc. Alice, at home, can use Bitmessage with the Tor Network, while Bob can use it without Tor, in case Tor is censored in some countries he travels. Bitmessage is a secure/anonymous alternative to email/Usenet.

    How does it get around the rubber hose treatment?


    Very well, because rubber hose is only availabe in US/UK? and not in
    very big Eurasia. :-D :-D :-D

    ;^)

    Hey Bob you will communicate with Alice right now or else it gets the
    hose again! Bob says, oh shit that hurts!

    Bob is traveling *a lot* and might not be available for such treatment,
    until he returns home to Alice. :-)

    Regards
    Stefan

    --
    Onion Courier Home Server Mon-Fri 15:00-21:00 UTC Sat-Sun 11:00-21:00 UTC ohpmsq5ypuw5nagt2jidfyq72jvgw3fdvq37txhnm5rfbhwuosftzuyd.onion:8080 inbox
    age1yubikey1qv5z678j0apqhd4ng7p22g4da8vxy3q5uvthg6su76yj0y8v7wp5kvhstum

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)