Jump to content


Photo
- - - - -

How to setup a Hidden Anonymous Web Server - Help please


  • Please log in to reply
8 replies to this topic

#1 xtrm

xtrm

    Will I break 10 posts?

  • Members
  • 4 posts
  • Gender:Male

Posted 20 January 2012 - 06:58 AM

Hi all, after the bad news today about Megaupload, I would like to get all possible information, good advices, books, tutorials, tricks and others to setup a totally Anonymous and Hidden Web Server online.

I know that everything is crackable and everything is not 100% secure or forever anonymous, but as dark times are coming with new Laws, we need good information and fight united. Information is power.
A lot of sites are in danger of being closed, from simple forums to big file servers, thats why I would like to know your opinion about the best possible techniques of setting up an Anonymous Server, and share it with all of us to be prepared for the future.

I have seen very interesting and good articles, many of them from Irongeek (thanks). I know its a hard topic and a lot more complicated than reading tutorials, but we the non security experts, need your help in order to setup anonymous information in the net which could not be taken down easily with just a simple dns block, domain block, ISP block..


I would like to expand this topic having in mind important and hard subjects such as the following, and expand it with a lot more:
1. How to setup an Anonymous & Hidden Web Server. Best Techniques to setup an online Anonymous Hidden Web Server.
2. Hardware and Software. Best Anonymous Hardware options. External Hosting Setup Options. Best Operative System Options.
3. Speed of an Anonymous & Hidden Web Server. Setting it with the best possible speed.
4. Stimated Cost of an Anonymous & Hidden Web Server. Best possible options and Anonymous Payment Methods.
5. Example: Best techniques to setup a totally Anonymous Forum.
6. Example: Best techniques to setup a totally Anonymous File Server.
7. Blocking techniques, what they can easily take down/block and what they wont be able to.
8. Things to Never do while Creating and Managing an Anonymous Server. How to do it right without being exposed, hide all your tracks from the beggining.
9. Information Reference: Articles, books, information, forums, others..


This could be an awesome thread where we will show that our freedom and power cannot be stopped. It will be really awesome if we could create a Reference Manual for all of us and for new Web Masters. Feel free to post your comments, advices, books or anything you consider essential to know. Credits for all of you who share your knowlegde.
Thanks a lot :)

Introduction and essential info:
--------------------------------
General Network Security:
http://www.irongeek....curity/security

Cipherspace / Darknets: Anonymizing Networks:
http://www.irongeek....rknets-aide.pdf

Introduction to Tor:
http://www.irongeek....ge=videos/tor-1

Getting started with the I2P Darknet:
http://www.irongeek....the-i2p-darknet

Installing the I2P darknet software in Linux:
http://www.irongeek....ftware-in-linux


Setting up hidden Services:
---------------------------
Setting Up Hidden Services in Tor:
http://www.irongeek....hidden-services
https://www.torproje...service.html.en
http://en.linuxrevie...ernet_using_Tor

Hosting Hidden Services in I2P: eepSites and SSH:
http://www.irongeek....-hidden-servers


Attacking and Getting Info of Anonymous Servers:
------------------------------------------------
Cipherspace / Darknets Weakness, Overview of Attack Strategies:
http://www.irongeek....weaknesses.pptx

Locating I2P Services Via Leaks on the Application Layer:
http://www.irongeek....i2pproposal.pdf

Darknets and hidden servers: Identifying the true IP/network identity of I2P service hosts:
http://www.irongeek....-hidden-servers


Others:
-------
Building a remote cheap host:
http://www.irongeek....ogoplug-dropbox

Anonymous Links:
http://en.wikipedia....gnet_URI_scheme

Decentralized Private Medium Size Network:
http://sourceforge.n...cts/wasteagain/

Edited by xtrm, 27 January 2012 - 04:38 AM.


#2 nyphonejacks

nyphonejacks

    Dangerous free thinker

  • Members
  • 793 posts
  • Gender:Male
  • Location:718

Posted 20 January 2012 - 08:41 PM

i think that people are going to have to start building their own private wifi mesh networks to allow the spread of information freely over air waves..

while these types of networks could also be effected by laws, or government intervention it would be a lot more difficult to shut down hundreds or thousands of smaller mesh networks than just taking down a website...

EDIT- oh and you could probably run a hidden server on tor .onion

Edited by nyphonejacks, 20 January 2012 - 08:42 PM.


#3 xtrm

xtrm

    Will I break 10 posts?

  • Members
  • 4 posts
  • Gender:Male

Posted 22 January 2012 - 01:49 PM

i think that people are going to have to start building their own private wifi mesh networks to allow the spread of information freely over air waves..

while these types of networks could also be effected by laws, or government intervention it would be a lot more difficult to shut down hundreds or thousands of smaller mesh networks than just taking down a website...

EDIT- oh and you could probably run a hidden server on tor .onion


Yes, wifi networks would be one of the best ways to stay anonymous and share info, however its really hard to implement a big wifi network in a country, and the goverment wont allow it. Small networks could be easily implemented, but you wont find many things you need as in a public network with million of users sharing content.

I have read many things these days, and there is a lot of movement cuz most Big File Centralized servers are frightened of getting down as Megaupload. People is thinking in a lot of ideas to share our power and info again. Someone talked about using private Satellites which wont be affected by any law:
http://shackspace.de...?id=project:hgg
http://aerospacerese...t/constellation (company supporting the hacker network).

There is also a lot of talking about p2p and how to improve it to avoid fakes and false spam links using magnet and elinks.

I think that its just question of time until the people agrees together again into the best way to share info.

#4 phaedrus

phaedrus

    Gibson Hacker

  • Members
  • 90 posts
  • Gender:Male

Posted 23 January 2012 - 06:37 PM

Buy hosting in favourite legally unreachable hornets nest (russia, china, anywhere really truly offshore), share location by ip address, be naughty until your hosts get fed up with your behavour/bandwidth usage and evict you. Rinse & repeat with new host.

#5 nyphonejacks

nyphonejacks

    Dangerous free thinker

  • Members
  • 793 posts
  • Gender:Male
  • Location:718

Posted 23 January 2012 - 10:49 PM

Buy hosting in favourite legally unreachable hornets nest (russia, china, anywhere really truly offshore), share location by ip address, be naughty until your hosts get fed up with your behavour/bandwidth usage and evict you. Rinse & repeat with new host.


would be nice, until the DNS servers do not direct traffic to your site... sharing ip addresses would be a major PITA

#6 phaedrus

phaedrus

    Gibson Hacker

  • Members
  • 90 posts
  • Gender:Male

Posted 25 January 2012 - 04:18 PM

Thats why its always a great thing to have your dns hosted by a different service than your webhosts, then you are not putting all your eggs in one basket and can be back up and running on a new server within hours of problems.

What's even better is to have your own domain registrar register it too, so you can edit the details on the console directly too. And steer clear of .uk & .com domains of course, nominet have some strange ips tag system which costs a fortune to register in, and .com we all know about the current activities going down there. It is a pity they tightened up on cook islands requirements so much, as it used to be fun to have a .co.ck domain way back but now all the requirements to be met puts it outside the bounds of doable for a bit of fun. .ru should strike phear into any sysadmin's heart as they read the snort logs too :-)

The question of level of setup/operational cost vs level of payback is what it comes down to as always. How naughty are you going to be? will it pay enough to cover the above properly? If you are just building a information store and not generally going to be a asshole over half the internet from the server, you probably can quietly get away with it without making too many ripples.

I do believe spammers,phishers and carders should burn in hell, and the above is not a endorsement. Their obvious abuse of the above has gotten many a good host and service prematurely shut down or put under the spotlight.

#7 Afterm4th

Afterm4th

    SUPR3M3 31337 Mack Daddy P1MP

  • Members
  • 403 posts
  • Country:
  • Gender:Male
  • Location:way up north eh

Posted 26 January 2012 - 02:19 PM

check out waste again

http://wasteagain.sourceforge.net/

What is "WASTE again"?

"WASTE again" enables you to create a decentralized and secure private mesh network using an unsecure network, such as the internet. Once the public encryption keys are exchanged, sending messages, creating groupchats and transferring files is easy and secure.

Supported Platforms

Windows XP 32bit
Linux (wxWidgets)
Mac OSX (wxWidgets)
Current Features

Encrypted Chat
Encrypted Groupchat
Automated Key Exchange
Encrypted File Transfer
Single-Source downloads
Browsing other users shared files
Sending files
Presence (Online, Away, Busy, DND, Sleeping)



#8 xtrm

xtrm

    Will I break 10 posts?

  • Members
  • 4 posts
  • Gender:Male

Posted 27 January 2012 - 04:46 AM

thanks for the information :)

#9 Gregimbal

Gregimbal

    n00bie

  • Members
  • 10 posts
  • Country:
  • Gender:Male
  • Location:Bellingham WA

Posted 10 February 2012 - 06:24 PM

Page kite would work well as an alternative to dyndns and since it is over SSL and can filter requests you could setup a mobile server and move from place to place because propagation apparently is around 30-45 minutes you could get a rental truck and add two server racks and a generator plus UPS plus some batteries and you have a line of cat5/6 or a wireless mobile internet with a couple dozen pages. If you could broadcast further using pirate box style repeater boxes or laptops that would be a amazing setup




BinRev is hosted by the great people at Lunarpages!