I love that more people are waking up to privacy. Really. But I’ve got to be honest, most of you are not being hunted by nation state actors.

Yeah, I get hyped reading spy tier tactics too. And privacy influencers love dropping lines about how satellites can ID you by your laptop fan noise. Feels badass. Feels urgent.

But most of us aren’t being actively targeted. We’re just being quietly monetized. Every tap. Every message. Every search.

You’re not being chased.

You’re being sold.

The good thing is that you don’t need a big budget to claw back your privacy. You need discipline and good habits. You need to stop doing dumb shit with your data.

90% of your privacy goals can be met with a handful of free tools and good habits.

The stack rarely fails. People do.

Go read the arrest records from major ops. It’s not cracked encryption or hacked devices that took them down, it was bad OPSEC. Reused aliases. Contact leaks. Sloppy data hygiene.

I wish I had the lucrative VPN sponsor or sell you the Extra Hack Proof tinfoil but it's usually what you do and don't do that is more important than the tool. That’s the part no one can sell you.

Reply to this note

Please Login to reply.

Discussion

Thanks for all you do. Your no bullshit approach is key.

2 words, Threat Model.

👆💯

Past that i view it the same as a random person dressed tacticool saying theyre a gray man. No, youre a tool

Threat modelling is nonsense according to Custodiate.

I personally go more for the route of, "giving very little data" while also going by a singular pseudonym. Sure, it may not be the best, but it's a balancing act I try to practice as best as possible.

When did he say that? I usually like most of his material but disagree with that. Unless you know what you are protecting and from who how do you know what risks are important to manage?

I think he's said that in all of his episodes as part of his intro. I might be mistaken.

Haha that's awesome if he does. At least I don't copy other people,🤣

yes you do.

do you offers paid consultations?

The amount of time and work that goes into it is rarely worth the fee.

Its two fold. One is just being monetized less. Taking back some data sovereignty. It feels good. Biggest impact was family photos. Knowing they never touched a big tech cloud just makes me more comfortable.

Second thing is, I just can't know what I could be targeted for in the future. Having learned good opsec now just makes my chances that much better should I ever actually NEED that skill. I take pretty extreme measures today for a low threat model individual, but should I need it in the future, I'd be able to go pretty much offline without having to learn it all at that point in time.

Its the same with bitcoin. Dont wait with learning how to handle a coldcard until A) the bullrun is at its highest and now u need to scramble to secure some sats or B) now u need to move in an emergency and need to learn how to bring ur stuff with you in a hurry. Those are the worst times to learn new skills.

The pictures thing is such an uphill battle. People take pictures of kids and post them on FB like it's okay. If my keds wanted to do any activity (eg, soccer) then parents would be taking pictures and posting them. It gets really annoying.

Yes, its an impossible battle. Even with all I've done, even relatives take pictures of my kids with snapchat. But I refrain from going nuts and accept reality. I will, however, take the steps that are within my realm of control.

In the end, as a low threat model individual, my approach to privacy is, I wont be invisible, but I can at least not be easy to find.

Hi Ghost!! I agree with you in all you said. However, how a person rol today evolves along time might impact the threat model scheme as a static photo today becoming innacurate.

I know it might be like playing lottery try to guess what this person might be in short and medium term future. But this variable, time, should not be neglected.

What is valid today according to your threat model today might not be valid according to your threat model of the future.

I love your blog by the way. 🙌

Thank you and I agree. Why I typically advise people to compartmentalize and keep separate identities. Front facing, various nyms, a Nemo. Etc

Can I ask, do you feel running an always on VPN on mobile is helpful/necessary for an average person?

Yes