ReBreached Forums
IMPORTANT-READ ReBreached - Launch - forum OPSEC details - Printable Version

+- ReBreached Forums (https://rebreached.vc)
+-- Forum: General (https://rebreached.vc/Forum-General)
+--- Forum: Announcements (https://rebreached.vc/Forum-Announcements)
+--- Thread: IMPORTANT-READ ReBreached - Launch - forum OPSEC details (/Thread-IMPORTANT-READ-ReBreached-Launch-forum-OPSEC-details)

Pages: 1 2 3 4 5 6 7


RE: ReBreached - Launch - forum OPSEC details - OSCAR_B16 - 08-21-2023

gonna spend some time here, alot.


RE: ReBreached - Launch - forum OPSEC details - ReBreached - 08-21-2023

(08-21-2023, 12:02 AM)OSCAR_B16 Wrote: gonna spend some time here, alot.


enjoy your time, don't try to farm points with spam, or so. you will endup banned forever

good luck


RE: ReBreached - Launch - forum OPSEC details - Revin001 - 08-22-2023

Looks like I'm going to spend a lot of time in this place.


RE: ReBreached - Launch - forum OPSEC details - falcon1123 - 08-24-2023

thats good


RE: ReBreached - Launch - forum OPSEC details - omnilol101 - 08-25-2023

hopefully this site lasts a while.


RE: ReBreached - Launch - forum OPSEC details - mmmus - 08-30-2023

(06-28-2023, 02:33 PM)ReBreached Wrote:
 Welcome to Rebreached Forum
we aim to offer more transparent security so below is our OPSEC details
OPSEC
-
Forums and host
Forum is running as a container isolated from host to simplify migration to other hosts (in case), backup, defense and mitigate damage.
Forum is behind double reverse proxies
Close-end acting as web applications firewall WAF
Far-end managing traffic throttling, basic security, cache, authorizing sensitive endpoints
Host server is behind Cloudflare and it will simply drop all side connections
Users’ IP addresses are not logged in the forum’s database, and all records are removed within a week from other log files 
- Email is not required to be confirmed[can use a total fake email]
SSH to host server will only allow TOR traffic to establish connection, forcing anonymity for system administrators and making it harder for brute force attacks.
Host system and system services are auto updated
Host real IP is masked using multiple techniques, and SSL fingerprinting is minimized by issuing HTTP certs via DNS challenges
Eventually domain name could (or will) be banned by provider therefore backup clear net and darknet domains are in place. 
Auto backup (ENABLED) - But on the host not the application level (Because it’s vulnerable)


CDN
The file servers are still not protected as good as the forums, however we have some tricks in our pockets
The file download and validation mechanism is built from scratch and therefore it’s a black box
Traffic is forced through Cloudflare
Real IPs are not masked but will be soon
SSH via TOR only
Auto update and upgrade (ENABLED)


Admin access
We are humans and so we understand that we need to eliminate human error factor, of course to protect ourselves, but more importantly protect the project. 
Dedicated end points. So, no gaming, no chilling, no nothing on our endpoints except for this work only.
Dedicated accounts to null all possible correlation. We use stack overflow using a unique dedicated username on it. And same for ChatGPT by the way.
No direct admin access, neither on our endpoint nor on servers, there has to be extra authentication and authorization before any root level operation.
Always on TOR & VPN on our endpoints and MIFIs
Open or private wifi connection in the extremely unlikely case of tracing our IP address it won’t lead anywhere useful.
No single point of failure, in case someone was ran under the bus
Rotate keys, IPs, providers, servers, freelancers. Don’t trust any tool for too long. 
Future plans and notes
Distribute hosting the forums on multiple host servers (Better redundancy and backup) leveraging k8s, and database replication.
Use more hidden networks services (like I2P and Loki) to promote more anonymity
Distribute CDN onto a cluster of servers
Rotating unnecessary data (ex: delete messages within a window of month) to minimise the damage of any breach that could happen in future.
Enable bittorrent download of files. But probably we’ll have to encrypt zip files to make our providers happy
Move away from MyBB as it is fragile by design (many plugins, themes, backend, etc ..)
Note: CloudFlare is playing a major role but we recognize that they are basically just MITM and we have to move away.
Note: unfortunately the first people to attack us (and make us stronger) were the people supposed to support us, and thus the use for this many firewalls


Obvious ones
Database is protected with its own user and password, and its network port is private
HTTPS traffic is enforced with 301 redirect for the clear net, and an onion link is advertised for better privacy
Payments are only accepted in Crypto coins (Monero is recommended) and to the public advertised addresses (Don’t get yourself phished


Please read the rules, contribute and enjoy your time here. 
Good, thank you.  Excitive, perfect, smile, oh my god.


RE: ReBreached - Launch - forum OPSEC details - VOXIL.exe - 08-30-2023

Hop to do something here with someone

How you doin

It feels like mr robot series here

(06-28-2023, 02:33 PM)ReBreached Wrote:
 Welcome to Rebreached Forum
we aim to offer more transparent security so below is our OPSEC details
OPSEC
-
Forums and host
Forum is running as a container isolated from host to simplify migration to other hosts (in case), backup, defense and mitigate damage.
Forum is behind double reverse proxies
Close-end acting as web applications firewall WAF
Far-end managing traffic throttling, basic security, cache, authorizing sensitive endpoints
Host server is behind Cloudflare and it will simply drop all side connections
Users’ IP addresses are not logged in the forum’s database, and all records are removed within a week from other log files 
- Email is not required to be confirmed[can use a total fake email]
SSH to host server will only allow TOR traffic to establish connection, forcing anonymity for system administrators and making it harder for brute force attacks.
Host system and system services are auto updated
Host real IP is masked using multiple techniques, and SSL fingerprinting is minimized by issuing HTTP certs via DNS challenges
Eventually domain name could (or will) be banned by provider therefore backup clear net and darknet domains are in place. 
Auto backup (ENABLED) - But on the host not the application level (Because it’s vulnerable)


CDN
The file servers are still not protected as good as the forums, however we have some tricks in our pockets
The file download and validation mechanism is built from scratch and therefore it’s a black box
Traffic is forced through Cloudflare
Real IPs are not masked but will be soon
SSH via TOR only
Auto update and upgrade (ENABLED)


Admin access
We are humans and so we understand that we need to eliminate human error factor, of course to protect ourselves, but more importantly protect the project. 
Dedicated end points. So, no gaming, no chilling, no nothing on our endpoints except for this work only.
Dedicated accounts to null all possible correlation. We use stack overflow using a unique dedicated username on it. And same for ChatGPT by the way.
No direct admin access, neither on our endpoint nor on servers, there has to be extra authentication and authorization before any root level operation.
Always on TOR & VPN on our endpoints and MIFIs
Open or private wifi connection in the extremely unlikely case of tracing our IP address it won’t lead anywhere useful.
No single point of failure, in case someone was ran under the bus
Rotate keys, IPs, providers, servers, freelancers. Don’t trust any tool for too long. 
Future plans and notes
Distribute hosting the forums on multiple host servers (Better redundancy and backup) leveraging k8s, and database replication.
Use more hidden networks services (like I2P and Loki) to promote more anonymity
Distribute CDN onto a cluster of servers
Rotating unnecessary data (ex: delete messages within a window of month) to minimise the damage of any breach that could happen in future.
Enable bittorrent download of files. But probably we’ll have to encrypt zip files to make our providers happy
Move away from MyBB as it is fragile by design (many plugins, themes, backend, etc ..)
Note: CloudFlare is playing a major role but we recognize that they are basically just MITM and we have to move away.
Note: unfortunately the first people to attack us (and make us stronger) were the people supposed to support us, and thus the use for this many firewalls


Obvious ones
Database is protected with its own user and password, and its network port is private
HTTPS traffic is enforced with 301 redirect for the clear net, and an onion link is advertised for better privacy
Payments are only accepted in Crypto coins (Monero is recommended) and to the public advertised addresses (Don’t get yourself phished


Please read the rules, contribute and enjoy your time here. 



RE: ReBreached - Launch - forum OPSEC details - Valhalla - 08-31-2023

(08-30-2023, 03:51 PM)VOXIL.exe Wrote: Hop to do something here with someone

How you doin

It feels like mr robot series here

(06-28-2023, 02:33 PM)ReBreached Wrote:
 Welcome to Rebreached Forum
we aim to offer more transparent security so below is our OPSEC details
OPSEC
-
Forums and host
Forum is running as a container isolated from host to simplify migration to other hosts (in case), backup, defense and mitigate damage.
Forum is behind double reverse proxies
Close-end acting as web applications firewall WAF
Far-end managing traffic throttling, basic security, cache, authorizing sensitive endpoints
Host server is behind Cloudflare and it will simply drop all side connections
Users’ IP addresses are not logged in the forum’s database, and all records are removed within a week from other log files 
- Email is not required to be confirmed[can use a total fake email]
SSH to host server will only allow TOR traffic to establish connection, forcing anonymity for system administrators and making it harder for brute force attacks.
Host system and system services are auto updated
Host real IP is masked using multiple techniques, and SSL fingerprinting is minimized by issuing HTTP certs via DNS challenges
Eventually domain name could (or will) be banned by provider therefore backup clear net and darknet domains are in place. 
Auto backup (ENABLED) - But on the host not the application level (Because it’s vulnerable)


CDN
The file servers are still not protected as good as the forums, however we have some tricks in our pockets
The file download and validation mechanism is built from scratch and therefore it’s a black box
Traffic is forced through Cloudflare
Real IPs are not masked but will be soon
SSH via TOR only
Auto update and upgrade (ENABLED)


Admin access
We are humans and so we understand that we need to eliminate human error factor, of course to protect ourselves, but more importantly protect the project. 
Dedicated end points. So, no gaming, no chilling, no nothing on our endpoints except for this work only.
Dedicated accounts to null all possible correlation. We use stack overflow using a unique dedicated username on it. And same for ChatGPT by the way.
No direct admin access, neither on our endpoint nor on servers, there has to be extra authentication and authorization before any root level operation.
Always on TOR & VPN on our endpoints and MIFIs
Open or private wifi connection in the extremely unlikely case of tracing our IP address it won’t lead anywhere useful.
No single point of failure, in case someone was ran under the bus
Rotate keys, IPs, providers, servers, freelancers. Don’t trust any tool for too long. 
Future plans and notes
Distribute hosting the forums on multiple host servers (Better redundancy and backup) leveraging k8s, and database replication.
Use more hidden networks services (like I2P and Loki) to promote more anonymity
Distribute CDN onto a cluster of servers
Rotating unnecessary data (ex: delete messages within a window of month) to minimise the damage of any breach that could happen in future.
Enable bittorrent download of files. But probably we’ll have to encrypt zip files to make our providers happy
Move away from MyBB as it is fragile by design (many plugins, themes, backend, etc ..)
Note: CloudFlare is playing a major role but we recognize that they are basically just MITM and we have to move away.
Note: unfortunately the first people to attack us (and make us stronger) were the people supposed to support us, and thus the use for this many firewalls


Obvious ones
Database is protected with its own user and password, and its network port is private
HTTPS traffic is enforced with 301 redirect for the clear net, and an onion link is advertised for better privacy
Payments are only accepted in Crypto coins (Monero is recommended) and to the public advertised addresses (Don’t get yourself phished


Please read the rules, contribute and enjoy your time here. 

seems like you are confused too tho


RE: ReBreached - Launch - forum OPSEC details - Valhalla - 08-31-2023

(08-25-2023, 01:56 PM)omnilol101 Wrote: hopefully this site lasts a while.

how long is good for you mate?


RE: ReBreached - Launch - forum OPSEC details - omnilol101 - 09-01-2023

Ahaha I don’t mind, just don’t wanna lose it like breached.