Buy a thinkpad x230 and install heads.

Buy a thinkpad x230 and install heads. Heads is a lot more secure than standard bios or uefi and unlike Libreboot it provides measured boot. Write protect the flash chip. put nail polish on the screws and take high resolution pictures to ensure signs of tampering. Do NOT use a HDD or SSD. These have DMA so a malicious firmware could do a lot of damage, use of USB is preferred since they do not have DMA. Completely remove the microphone, sound card, webcam and the WWAN card from the laptop. Remove the fan to prevent binary acoustic data transmission. Replace the default wifi card with a supported atheros card. Disable wifi when not in use. Make your own independent Linux distro. Most Linux distros value covenience over security and will thus never have good security. Your only option is to make your own. Use musl instead of glibc, Libressl instead of openssl, sinit instead of systemd, oksh instead of bash to reduce attack surface. Enable as little kernel modules as possible to reduce attack surface. Use a hardened memory allocator. Apply strong SELinux and sandboxing policies. Restrict the root account heavily to make sure it never gets compromised. Disable JavaScript and CSS in your browser. Block all FAGMAN domains in your hosts file. Monitor all network requests. Do not use a phone. Never speak near anyone who owns a phone, they are always listening. Never use any technology made after 2008 except for technology which can be corebooted/librebooted and is not skylake onwards. Never leave your devices unattended. Tape triple layer aluminum foil all around your room as ghetto tempest shielding. Type really quietly as defense against audio keylogging. Use ecc ram to minimize rowhammer and rambleed. Encrypt everything multiple times with various different encryption implementations. Compile everything from source. Use hardened compilation flags. Always read through the code before installing something if possible. Only use the internet when necessary.

  1. 3 weeks ago
    Anonymous

    cool

  2. 3 weeks ago
    Anonymous

    no

    • 3 weeks ago
      Anonymous

      glownagger

  3. 3 weeks ago
    Anonymous

    This is great and it has it's use, but if you are going through all this hassle, you might as well create the hardware and software from scratch.

    • 3 weeks ago
      Anonymous

      If you're going through all of this hassle, you unironically should get off the internet and destroy all your devices. Live like Uncle Ted.

  4. 3 weeks ago
    Anonymous

    >x230
    Shit keyboard. For me it's the T520.

  5. 3 weeks ago
    Anonymous

    I'm just going to keep on downloading free robux, and you can't stop me.

  6. 3 weeks ago
    Anonymous

    how's no sound?

  7. 3 weeks ago
    Anonymous

    As a white man I refine my own silicon and use non kabalic sigils during the etching process. This is to ensure no demons are summoned to spy on me.

  8. 3 weeks ago
    Anonymous

    You'll miss out on all the great software compatibility!

  9. 3 weeks ago
    Anonymous

    uhh cool
    still using windows though

  10. 3 weeks ago
    Anonymous

    pretty based.

    you seem positively paranoid. join us on the only place where NO ONE can censor you (and yet still moderation is possible, each viewer chooses who to read who to ignore and shares that info with option by others to import it if they want) - Freenet (Hyphanet now), chat system FMS - localhost NNTP usenet OG, on the most anti-censorship and quite private (when used properly, more than all alternatives) options.

    Hyphanet (Freenet, though the creator after decade of inactivity grifted back the copyright to name, kind of, so now it's legally named Hyphanet) is the privacy oriented DHT network, P2P in Java. Run own node easily.

    You have files and static pages.

    FMS (Freenet Message System) is created using Freenet API - it stored static data (but versions each update) thus creating an ABSOLUTELY decentralised boards system (still you have default seeds for network ofc, and default trust-seeds for FMS to discover other users, but you can anything else, amend or override all these settings to anything; defaults are rather good).

  11. 3 weeks ago
    Anonymous

    >Heads is a lot more secure

    What do you need more security for?

    You don't leave the house and nobody cares about you enough to ever want access to your filthy computer.

  12. 3 weeks ago
    Anonymous

    how are you supposed to run qubes on a laptop from 2012?

    • 3 weeks ago
      Anonymous

      X230 is actually one of the devices recommended by qubes community.
      https://forum.qubes-os.org/t/community-recommended-computers/5560
      It should even run on X220 from 2011 just fine according to HCL.
      https://www.qubes-os.org/hcl/

  13. 3 weeks ago
    Anonymous

    Use 4get.ca

Your email address will not be published. Required fields are marked *