home.social

#onionshare — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #onionshare, aggregated by home.social.

  1. Send files privately. No cloud. No trace.

    glitr.io

    I’m working towards something for #secure / #private / #simple #P2P #filetransfer. It isnt as “simple” as it could be, im still working on it, but ive got it down to:

    Zero-installation as a #PWA

    Zero-registration by using local-only storage

    #P2P-authentication using #WebCryptoAPI

    Fast #datatransfer using #WebRTC

    It’s far from finished, but i think ive got it “usable” enough to ask for feedback on it.

    When comparing this project to things like #wormhole, #onionshare, #localsend, #syncthing, #croc, #sphynctershare and countless others. the key difference in my approach is that its a #webapp thats ready to go without any "real" setup process. you just need a browser.

    I’m aware there are things like #SFTP and several other established protocols and tools. I started doing this because I was learning about #WebRTC and it seems suprisingly capable. This isnt ready to replace any existing apps or services.

    (Note: I know you guys are typically interested in #opensource code. this project is a spin-off from a bigger project: github.com/positive-intentions)

    Let me know what you think about the app, features and experience you would expect from a tool like this.

    ---

    SUPER IMPORTANT NOTES TO PREVENT MISLEADING:

    These projects are not ready to replace any existing apps or services.

    These projects are not peer-reviewed or security audited.

    The chat-app is #opensource for transparency (as linked above)... but the file-app is not open souce at all (especially spicy when not reviewed or audited.).

    All projects behind positive-intentions are provided for testing and demo purposes only.

  2. Would it not be fair to say that #vanguards is the #fdns of #tor ?

    #netblue #firejail and #mikePerry really should talk to each other if they haven't already.

    lots of factors come into play. There isn't just one easy solution that works for everything online. There are levels of tor just like there are levels of dns filtering and control.

    ****** Why have local storage if you have a secure and accessible global commons? Because there will never be enough of one, just more fences on the prairie? Could you keep out a Tailored Access APT even if you were primarily locally owned? *****

    I wonder why p2p like i2p and yggdrasil have remained less developed than tor or dns. Has anyone got the i2p config to work well with ygg or torsocks as was envisioned?

    #obliviousDNS is new and interesting R&D.

    #VPN has definite flaws. Often acts more like a vector than a security.

    #Veilid looks promising with #IPFS and the anonymity design. But it might end up like i2p, freenet, or yggdrasil without more development. Technologies like tor's #onionshare (which requires agreed upon share time) or ricochet-refresh #gosling (#rust) are useful if you don't want upload/download from 3rd party drives and the cloud. Everyone finds a need to share hefty files from time to time unless you like passing USB sticks around.

  3. Would it not be fair to say that #vanguards is the #fdns of #tor ?

    #netblue #firejail and #mikePerry really should talk to each other if they haven't already.

    lots of factors come into play. There isn't just one easy solution that works for everything online. There are levels of tor just like there are levels of dns filtering and control.

    ****** Why have local storage if you have a secure and accessible global commons? Because there will never be enough of one, just more fences on the prairie? Could you keep out a Tailored Access APT even if you were primarily locally owned? *****

    I wonder why p2p like i2p and yggdrasil have remained less developed than tor or dns. Has anyone got the i2p config to work well with ygg or torsocks as was envisioned?

    #obliviousDNS is new and interesting R&D.

    #VPN has definite flaws. Often acts more like a vector than a security.

    #Veilid looks promising with #IPFS and the anonymity design. But it might end up like i2p, freenet, or yggdrasil without more development. Technologies like tor's #onionshare (which requires agreed upon share time) or ricochet-refresh #gosling (#rust) are useful if you don't want upload/download from 3rd party drives and the cloud. Everyone finds a need to share hefty files from time to time unless you like passing USB sticks around.

  4. Computers are going backwards at a staggering rate.

    Ten years ago you could share a large file with your friends and family without Goog, (sc)Amazon or other CAGEMAFIA systems involved in the process — today, this is almost impossible, without #I2P.

    If you thought #Onionshare might work, it was not functional last we tried using it.

    #technoFeudalism #smartDevices #dangerousDevices #computers #computing #generalComputing #useI2P

  5. Also our testing indicates #Tor is #censorable and there is active censorship in the network, especially when #trafficAnalysis may be able to identify who is using a connection.

    We have tried multiple times to use #OnionShare and the connection cuts out about 1MB into the download everytime.

    So its not just #exitNode related.

    This means Tor is no longer able to protect #whistleblowers and #journalists in #Australia (elsewhere?).

    Seems #I2P is a way forward.

    #useI2P @smallcircles @vegafjord

  6. Dieser #xkcd ist mindestens 11 Jahre alt. Als wir in der AG Digitale Selbstverteidigung von @digitalcourage darüber diskutierten, welche Datei-Transfer-Dienste wir empfehlen können, wurde mir klar, dass er immer noch aktuell ist.

    Unser vorläufiges Ergebnis: Der 2020 von Mozilla eingestellte Dienst „Firefox Send“ ist die einzige für die Allgemeinheit empfehlenswerte privatsphärewahrende Möglichkeit. Zum Glück gibt es weiterhin #Send-Instanzen, die von Enthusiast:innen betrieben werden: digitalcourage.de/digitale-sel

    (Edit: Das bei @Framasoft entwickelte #Lufi ist ähnlich gut. Wie konnte mir das entfallen?)

    Persönlich bin ich ein Fan von #OnionShare. Als ich das bei einer #CryptoParty vorstellte, kamen die Teilnehmenden großartig damit klar. Allerdings hatten sie #Tails zur Verfügung, wo dieses Tool vorinstalliert ist.

    Der Original-Comic: xkcd.com/949/

    Erklärungen dazu: explainxkcd.com/949/

    #FileTransfer #DateiTransfer #FileUpload #DateiUpload #DateienTausch #DateiAustausch