4 ms·
Tails has a very specific use case, very few people need anti-forensics. I suggest looking into Whonix[1] if you want something that you can truly use for priv
by paravirtualized 3y ago
Tails has a very specific use case, very few people need anti-forensics.
I suggest looking into Whonix[1] if you want something that you can truly use for privacy. It is also much more secure than Tails by design, and does not have any limitations like locking down the root user account.
Summary from GitHub:
"Whonix is an operating system focused on anonymity, privacy and security. It's based on the Tor anonymity network, Debian GNU/Linux and security by isolation. DNS leaks are impossible, and not even malware with root privileges can find out the user's real IP."
[1]: https://www.whonix.org/wiki/FAQ https://www.whonix.org/wiki/FAQ
- trw55 3y agoWhat isn't secure about Tails? Its been recommended by so many InfoSec podcasts that I've been poking around in it on a USB stick
- paravirtualized 3y agoTails uses a less secure model because it relies on the system firewall to block any non-Tor connections. This means that any user to root vulnerability will leave you naked, deanonymized. Additionally, protocol leaks, or unintentional leaks are more likely to happen. Both of which have happened in the past and are not mere speculation. I've commented in this thread that at one point, such a vulnerability was left unpatched in Tails for years despite being documented and a PoC existing. Whonix on the other uses two VMs, one of which runs Tor and the other applications, and connects via an internal network. This means that non-Tor connections are impossible, as the VM where you run software is completely unaware of the real, external IP. This raises the level of exploit needed substantially, from user to root, to remote kernel exploits or hypervisor escapes.
- replwoacause 3y agoDoesn’t seem to work on ARM though? So if you have a M1/M2 mac, even running a hypervisor, you are SOL…