• Re: Dark Web: Tor and Onion

    From Stefan Claas@pollux@yeffqiea4xtcu6woyab6z6bz4oehisfuzgtmk4e277bydq25p7nha7ad.onion to alt.privacy.anon-server on Fri Sep 26 17:50:34 2025
    From Newsgroup: alt.privacy.anon-server

    Stefan Claas wrote:

    Messages comming from an Onion Courier client, regardless
    of size, will be automatically padded with a multiple of
    4096 bytes and with 33 percent base64 overhead. I will
    integrate adaptive padding, which varies for each message,
    in the Onion Courier Mix client, so that third parties do not
    know the real message size and do not know, when inspecting
    encrypted Tor network pakets that the message is for the
    Onion Courier Mixnet, which one can guess with fixed client
    payload approx. 30 KB, with Mixmaster and YAMN. The adpative
    padding from the client will be removed, when messages
    are saved in the pool so that they always have the same size
    (from a mulitple of 4096 bytes), as you can see above.

    Regarding the 1.1.1970 date, I think it is cool when an (or
    an anonymous) operator starts his own Onion Courier Mixnode,
    either publicity or anonymously, he will only see all relevant
    Mixnode files have this date, so in case third parties would
    gain access to the Tor Hidden Service Onion Courier Mixnode
    they only see file creation dates from this date. :-)

    Re-worked the design. Now the Onion Courier Tor Hidden Service
    Mix Server holds the pool in RAM (not a RAM-Disk) and messages
    are saved in binary format to get rid of the base64 overhead.
    Therefore no filenames with the date 1.1.1970 are needed.

    All binary messages in the pool have three encrypted headers in
    json format. The headers are: OnionAddress, Message, CreatedAt,
    so in case forensic techniques would be used to access the RAM,
    then there is not much to see, only encrypted blobs.

    Each message sits in the pool between 5 to 20 minutes. Messages
    are shuffled and picked randomly. The pool size is 100 messages.
    If the pool gets flooded 33% of the pool messages will be send.

    If script kiddies use some techniques to create loops, this will
    be detected too and deleted. Messages addressed to abcde123.dummy
    instead of abcde123.onion are dummy messages, the client can send.
    They stay in the pool also between 5 to 20 minutes prior they get
    deleted.

    When onion addresses are not reachable, messages will be deleted,
    instead of re-trying, so that this is not another attack vector.

    Regards
    Stefan
    --
    https://tilde.club/~pollux/
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Stefan Claas@pollux@yeffqiea4xtcu6woyab6z6bz4oehisfuzgtmk4e277bydq25p7nha7ad.onion to alt.privacy.anon-server on Sat Sep 27 12:07:37 2025
    From Newsgroup: alt.privacy.anon-server

    Stefan Claas wrote:

    Re-worked the design. Now the Onion Courier Tor Hidden Service
    Mix Server holds the pool in RAM (not a RAM-Disk) and messages
    are saved in binary format to get rid of the base64 overhead.
    Therefore no filenames with the date 1.1.1970 are needed.

    All binary messages in the pool have three encrypted headers in
    json format. The headers are: OnionAddress, Message, CreatedAt,
    so in case forensic techniques would be used to access the RAM,
    then there is not much to see, only encrypted blobs.

    Each message sits in the pool between 5 to 20 minutes. Messages
    are shuffled and picked randomly. The pool size is 100 messages.
    If the pool gets flooded 33% of the pool messages will be send.

    If script kiddies use some techniques to create loops, this will
    be detected too and deleted. Messages addressed to abcde123.dummy
    instead of abcde123.onion are dummy messages, the client can send.
    They stay in the pool also between 5 to 20 minutes prior they get
    deleted.

    When onion addresses are not reachable, messages will be deleted,
    instead of re-trying, so that this is not another attack vector.

    CLI client is done. :-) Next comes a GUI client version and finally
    an email gateway.

    C:\Users\xxxxxxxxxxxx\Desktop>ocmix
    Usage:
    ocmix -i Download configuration files
    ocmix -r < infile Send through 2-5 random hops (auto node selection)
    ocmix node1,node2,node3 < infile Send through specific nodes
    ocmix -d Send dummy/cover traffic

    C:\Users\xxxxxxxxxxxx\Desktop>

    The GUI client is then intended for elderly people and/or QSL users,
    whishing to avoid the learning curve of OmniMix. They are then also
    able to run their own Mixnode, for the community.

    Regards
    Stefan
    --
    https://tilde.club/~pollux/
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Stefan Claas@pollux@yeffqiea4xtcu6woyab6z6bz4oehisfuzgtmk4e277bydq25p7nha7ad.onion to alt.privacy.anon-server on Sat Sep 27 15:28:48 2025
    From Newsgroup: alt.privacy.anon-server

    Stefan Claas wrote:

    CLI client is done. :-) Next comes a GUI client version and finally
    an email gateway.

    A message send to an Onion Courier home server does not have a From:
    header so that anonymous Onion Courier Mix nodes stay anonymous. :-)

    Example received message:

    To: vztrzrdafvnjegctrltkv6azyrjqawqmrwnhe7kvaqnj5vvnwhoiq7id.onion:8080

    Hello World! :-)

    Regards
    Stefan

    As you can see MIME headers, like in classic emails, are no longer needed, because Go handles UTF-8, but users can still include additional headers.

    Regards
    Stefan
    --
    https://tilde.club/~pollux/
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Gabx@info@tcpreset.invalid to alt.privacy.anon-server on Sat Sep 27 16:30:16 2025
    From Newsgroup: alt.privacy.anon-server

    Stefan Claas wrote:
    Stefan Claas wrote:

    CLI client is done. :-) Next comes a GUI client version and finally
    an email gateway.

    A message send to an Onion Courier home server does not have a From:
    header so that anonymous Onion Courier Mix nodes stay anonymous. :-)

    Example received message:

    To: vztrzrdafvnjegctrltkv6azyrjqawqmrwnhe7kvaqnj5vvnwhoiq7id.onion:8080

    Hello World! :-)

    Regards
    Stefan

    As you can see MIME headers, like in classic emails, are no longer needed, because Go handles UTF-8, but users can still include additional headers.

    Brilliant !!!
    +1000

    Gabx
    --
    0745 074D FEAA 9CB7 62E9 D89D 3E54 F490 F2CC 5A82
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Stefan Claas@pollux@yeffqiea4xtcu6woyab6z6bz4oehisfuzgtmk4e277bydq25p7nha7ad.onion to alt.privacy.anon-server on Sat Sep 27 17:06:51 2025
    From Newsgroup: alt.privacy.anon-server

    Gabx wrote:
    Stefan Claas wrote:
    Stefan Claas wrote:

    CLI client is done. :-) Next comes a GUI client version and finally
    an email gateway.

    A message send to an Onion Courier home server does not have a From:
    header so that anonymous Onion Courier Mix nodes stay anonymous. :-)

    Example received message:

    To: vztrzrdafvnjegctrltkv6azyrjqawqmrwnhe7kvaqnj5vvnwhoiq7id.onion:8080

    Hello World! :-)

    Regards
    Stefan

    As you can see MIME headers, like in classic emails, are no longer needed, because Go handles UTF-8, but users can still include additional headers.

    Brilliant !!!
    +1000

    Thank you very much, Gabx!

    Best regards
    Stefan
    --
    https://tilde.club/~pollux/
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Underground Railroad@underground@railroad.invalid to alt.privacy.anon-server,alt.free.nntp,news.software.nntp on Sun Sep 28 13:43:34 2025
    From Newsgroup: alt.privacy.anon-server

    On Mon, 22 Sep 2025 02:59:00 +0100
    nobody <noreply@mixmin.net> wrote:

    On 21 Sep 2025, Underground Railroad <underground@railroad.invalid>
    posted some news:10aq8cd$b5ch$1@paganini.bofh.team:


    Do you prefer to feel swell rather than swollen? Tired of being
    battered by the Mix Masters?

    Escape the Mix Master plantation. Find your underground railroad to
    digital freedom with Bitmessage.

    How many groups can you post to at once with bitmessage?

    If it has the same stupid 3 group 2 hierarchy limit like the server you posted from it is not worth shit. Other usenet server users can shit all over groups and anonymous users can't reply because of blocked groups or group limits. Pretty stupid in this day and age to still do that.

    You morons using the anonymous remailers have never had anything intelligent or worthwhile to say. Having access to great anonymity technology, you use it for nothing but nonsense.

    Add to killfile: 'mixmin' 'noreply' 'nobody'.

    So I won't see any more of your nameless raving and profanity.


    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Stefan Claas@pollux@yeffqiea4xtcu6woyab6z6bz4oehisfuzgtmk4e277bydq25p7nha7ad.onion to alt.privacy.anon-server on Mon Sep 29 17:16:49 2025
    From Newsgroup: alt.privacy.anon-server

    Stefan Claas wrote:
    Gabx wrote:
    Stefan Claas wrote:
    Stefan Claas wrote:

    CLI client is done. :-) Next comes a GUI client version and finally
    an email gateway.

    A message send to an Onion Courier home server does not have a From: header so that anonymous Onion Courier Mix nodes stay anonymous. :-)

    Example received message:

    To: vztrzrdafvnjegctrltkv6azyrjqawqmrwnhe7kvaqnj5vvnwhoiq7id.onion:8080

    Hello World! :-)

    Regards
    Stefan

    As you can see MIME headers, like in classic emails, are no longer needed,
    because Go handles UTF-8, but users can still include additional headers.

    Brilliant !!!
    +1000

    Thank you very much, Gabx!

    Debugging the CLI client.

    C:\Users\xxxxxxxxxxxx\Desktop>ocmix bob,hal < m.txt
    DEBUG: Loaded 3 mixnodes, 3 public keys
    DEBUG: Starting onion construction for 2 hops: bob raA hal
    DEBUG: Final destination: vztrzrdafvnjegctrltkv6azyrjqawqmrwnhe7kvaqnj5vvnwhoiq7id.onion:8081
    DEBUG: Message body: 45 bytes
    DEBUG: Initial message size: 118 bytes
    DEBUG: Found public key for 'hal'
    DEBUG: === Processing Layer 1 for 'hal' ===
    DEBUG: Input message size: 118 bytes
    DEBUG: Final hop - adding padding and encryption
    DEBUG: Padded final message from 118 to 6837 bytes (+6719 bytes padding)
    DEBUG encryptMessageRaw: plaintext=6837, ciphertext=6853, total=6909
    DEBUG: Encrypted final layer to 6909 bytes
    DEBUG: Layer 1 for 'hal' completed: 6909 bytes
    DEBUG: ================================
    DEBUG: Found public key for 'bob'
    DEBUG: === Processing Layer 2 for 'bob' ===
    DEBUG: Input message size: 6909 bytes
    DEBUG: Intermediate hop - next destination: hal
    DEBUG: Added routing header, payload size: 6982 bytes
    DEBUG: Padded layer from 6982 to 9067 bytes (+2085 bytes padding)
    DEBUG encryptMessageRaw: plaintext=9067, ciphertext=9083, total=9139
    DEBUG: Encrypted layer to 9139 bytes
    DEBUG: Layer 2 for 'bob' completed: 9139 bytes
    DEBUG: ================================
    DEBUG: === ONION CONSTRUCTION COMPLETE ===
    DEBUG: Total layers: 2
    DEBUG: Final encrypted onion size: 9139 bytes
    DEBUG: Original message: 118 bytes
    DEBUG: Total added (padding + encryption): 9021 bytes
    DEBUG: Final size increase: 7644.9%
    DEBUG: Final Base64 message size: 12348 bytes
    DEBUG: Sending to first hop: 5eery7vpawbafpllddnjgrxcubpef7a3ccdenoivf3yng4prdnnlw5ad.onion:8080
    Sending message...
    DEBUG: Sending to http://5eery7vpawbafpllddnjgrxcubpef7a3ccdenoivf3yng4prdnnlw5ad.onion:8080/upload
    Message sent successfully. Time: 6 sec
    OK
    DEBUG: Message sent successfully!

    Regards
    Stefan
    --
    https://tilde.club/~pollux/
    --- Synchronet 3.21a-Linux NewsLink 1.2
  • From Yamn2 Remailer@noreply@mixmin.net to alt.privacy.anon-server on Wed Oct 1 21:18:02 2025
    From Newsgroup: alt.privacy.anon-server

    You morons using the anonymous remailers have never had anything
    intelligent or worthwhile to say. Having access to great anonymity
    technology, you use it for nothing but nonsense.

    Add to killfile: 'mixmin' 'noreply' 'nobody'.

    So I won't see any more of your nameless raving and profanity.

    Speak you yourself. I just remailered a message to our police
    department about a crime going on in our neighborhood.

    --- Synchronet 3.21a-Linux NewsLink 1.2