/d/OpSec icon

/d/OpSec

15,202 subscribers

Discussion about OpSec, Threat Models, Protection, Assessment and Countermeasures.

Whonix

by /u/higherself883622 · 1 votes · 1 week ago

I am using Whonix in VirtualBox and I am just wandering if anyone else has tips on special configurations I can do to help my opsec.

The DNM Bible says:

"Using a Whonix/Qubes setup is one of the most secure setups. This setup is very advance, if you do not configure everything correctly you can potentially hurt your opsec or put yourself at risk"

So I am wandering what other if any configurations I need or can make,

*edit* Like I would like to install Jabber / XMPP (I can research how to install these packages I guess?

Comments (14)
/u/Gostu · 1 votes · 1 week ago · Link

Download whonix and read the whonix.org/wiki. Install the ova inside of a veracrypt volume (/media/veracrypt1) and run the VM. You do not need to mess with the configuration once inside of whonix as whonix is set up for you by default. Download and install the gateway-cli and the workstation-xfce to save on RAM.

Make sure your host is a nix* host and make sure you have FDE on your machine.

For Jabber use gajm inside of whonix with OMEMO.

sudo apt-get install gajim.

GPA for PGP and KeePassXC for secure a password manager (all can be found in whonix by default).

/u/higherself883622 OP · 1 votes · 1 week ago · Link

I am using whonix and its default config I havent messed with anything.

"Make sure your host is a nix* host and make sure you have FDE on your machine."

Im not sure how to see if host is a nix* host and if I have FDE on my machine,,,

/u/Gostu · 1 votes · 1 week ago · Link

Nix* = linux/BSD. FDE = Full Disk Encryption. DO NOT use windows or Mac.

/u/HeadJanitor Moderator · 1 votes · 1 week ago · Link

That's the problem. Her OS.

/u/higherself883622 OP · 1 votes · 1 week ago · Link

Whats the problem? That I am running Windows and a VirtualBox with Whonix?

/u/HeadJanitor Moderator · 1 votes · 1 week ago · Link

Yes, Windows, like I described. If you have your dual-boot setup you can do the exact same in Kali Linux.

/u/higherself883622 OP · 0 votes · 1 week ago · Link

So running Whonix ontop of Kali Linux is safer is what your saying? Ok.... But I am still safe running whonix ontop of windows in the mean time?

/u/HeadJanitor Moderator · 1 votes · 1 week ago · Link

You're never in DANGER but you're not safe running VirtualBox in Windows.

You can install Linux Mint Cinnamon and run VirtualBox and Whonix in it and it'll be like Windows.

/u/higherself883622 OP · 1 votes · 1 week ago · Link

So basically it doesnt matter what OS I am running behind virtual box and whonix?

/u/HeadJanitor Moderator · 1 votes · 1 week ago · Link

ALL that matters is that the OS is Linux and not Windows.

/u/Cerebrate · 1 votes · 1 week ago · Link

[removed]

/u/Gostu · 1 votes · 1 week ago · Link

I didnt forget anything. It's obvious to not use the gateway for anything other than just running it. The wiki which i referred to mentions this boldly.

/u/KAVe · 1 votes · 1 week ago · Link

It depends for what purpose, even if i guess it's for carding. What's your goal?

/u/higherself883622 OP · 1 votes · 1 week ago · Link

Simply ordering items from markets