this post was submitted on 20 Jun 2023
118 points (97.6% liked)

Piracy: ꜱᴀɪʟ ᴛʜᴇ ʜɪɢʜ ꜱᴇᴀꜱ

54716 readers
231 users here now

⚓ Dedicated to the discussion of digital piracy, including ethical problems and legal advancements.

Rules • Full Version

1. Posts must be related to the discussion of digital piracy

2. Don't request invites, trade, sell, or self-promote

3. Don't request or link to specific pirated titles, including DMs

4. Don't submit low-quality posts, be entitled, or harass others



Loot, Pillage, & Plunder

📜 c/Piracy Wiki (Community Edition):


💰 Please help cover server costs.

Ko-Fi Liberapay
Ko-fi Liberapay

founded 1 year ago
MODERATORS
 

So I'm pretty recent to the high seas but I've seen a few posts now about "stop relying on your VPN" and "people that think VPNs will protect them are naive" and so on.

So since I believe knowledge is our greatest weapon/tool/super-power, can we get some answers regarding what exactly the doomsayers are getting at? ELI5 why VPNs wouldn't protect your anonymity.

Is it about logging? The country your end-point is in? Something more technical?

Ultimately I'd like to be fully armed in order to keep making the best choices for my fledgling ship as it navigates the vast, stormy seas.

you are viewing a single comment's thread
view the rest of the comments
[–] justinalanbass@kbin.social 7 points 1 year ago* (last edited 1 year ago) (2 children)

That sentiment isn't so much about piracy, but general security. Do keep in mind that the NSA can easily sniff your VPN traffic, even through logless Mullvad in theory, and access your account information to correlate and deanonymize you via subpoena. This is done routinely, and there are thousands of illegal subpoenas done yearly with no repercussion. Fortunately it seems the NSA is only going after heinous criminals, but that could also change. To be truly NSA safe is nearly impossible - did you know your password can be determined by a simple audio recording of you typing it? The NSA has frequently snuck into private residence to install keyloggers as well. What will a VPN matter in such a case?

So a VPN might prevent a DCMA notice from your ISP, but if the NSA starts caring about piracy y'all are out of luck.

[–] Banzai51@midwest.social 5 points 1 year ago (1 children)

The NSA is always going to have bigger fish to fry than busting individuals for IP violations. Risks exposing their methods in court and allowing their real targets the opportunity to harden their security even more. It would be an incredible waste of their resources.

[–] justinalanbass@kbin.social 3 points 1 year ago* (last edited 1 year ago)

They're pretty exposed already, and in my opinion their targets probably can't do much to protect themselves unless they are part of a foreign government, like the Kremlin. But yea they haven't gone after piracy yet.

[–] Armbar@kbin.social 2 points 1 year ago (2 children)

Do keep in mind that the NSA can easily sniff your VPN traffic, even through logless Mullvad in theory, and access your account information to correlate and deanonymize you via subpoena.

Can you say more about this?

[–] justinalanbass@kbin.social 2 points 1 year ago (1 children)

The NSA has unlimited legal power in this context. They can legally go to any US VPN, copy all traffic onto their massive servers, and use it as they want. They probably already do this, although that claim is unverifiable. That traffic contains your IP address and the websites you've viewed, clear data of torrents you've downloaded, etc. Mullvad, being outside its jurisdiction, is possibly safer, but presumably since they operate servers in the United States at least those could be sniffed. There is precedent for all of this.

While it's unlikely for you to specifically be targeted, my point is that you can never be truly anonymous on the internet.

[–] pirate@lemmy.dbzer0.com 3 points 1 year ago

If you use US VPN you already doing it wrong. You should never use US for anything related to piracy that rule #1.

[–] leraje@kbin.social 2 points 1 year ago

Its trivial to find out youre using a VPN and which one and which of their servers youre using. If you pay for your VPN with identifying information (a card, PayPal etc) then they can theoretically make the provider log your specific activity.