#IllicitActivity

Kevin Karhan :verified:kkarhan@infosec.space
2026-01-27

@Tutanota !#KYC" of any kind and.under any pretense ("#AgeVerification" IS the #IllicitActivity!

Kevin Karhan :verified:kkarhan@infosec.space
2025-11-15

@index and now you know why many folks, including myself, say:

"#KYC is the #IllicitActivity!"

I refuse to 'Self-d0x' as a matter of principle.

Kevin Karhan :verified:kkarhan@infosec.space
2025-10-17

@snow I didn't say this is performant or fool-proof, and obviously this is only recommended to connect to services that are actively hostile towards @torproject / #Tor users...

  • Obviously @mullvadnet accepting #Monero makes things easier than having to slosh around #Shitcoins and shuttling them back and forth through automated exchangers...

Needless to say: "#KYC IS tge #IllicitActivity!"

Kevin Karhan :verified:kkarhan@infosec.space
2025-10-15

@Jerry FOR WHAT FUCKIBG PURPOSE DOES @signalapp EVEN WANT #Location DATA BUT #Spying ON IT'S USERS?

Also it's not even #FLOSS (why else is there no #Signal #App on @fdroidorg ?)

  • My verdict is that Signal - like #ANØM - is a #HoneyPot… I don't have evidenye - yet - but so far my track record has been excellent…
BGDon 🇨🇦 🇺🇸 👨‍💻BrentD@techhub.social
2025-10-09

Yowzers! New analysis indicates on-chain balances linked to criminal activity currently exceeds $75B. Bitcoin holds ~ 75% of total illicit entity balances and not surprising stablecoins and ether have grown substantially.

This situation presents law enforcement with an unprecedented opportunity: billions of dollars in illicit proceeds are sitting on public blockchains, and theoretically can be seized if authorities can coordinate action! chainalysis.com/blog/landscape #Crypto #CryptoCurrencies #IllicitActivity #CryptoAssets #CriminalActivities #BlockChain #DigitalAssets #CryptoCrime #MoneyLaundering #BTC #ETH #ShadowEconomy #StableCoins

Cyber Criminal
Kevin Karhan :verified:kkarhan@infosec.space
2025-08-31

@Billie @neil PRECISELY THAT!

  • And even if one's comfortable about this as a white heterocisbinary #TechBro from the #USA, just imagine of some of Trump's friends (like the KSA) would demand a #backdoor to target any comms to organizations they dislike and thus lable as *"tereorists" (i.e. @trans_rescue) to systematically prevent trans* people from fleeing and commit #TransGenocide).

That's just a hypothetical, but given the facist tyrant ignoring laws and due process being armed with #CloudAct, it further entrenches the reason why I say "#ID|ing #developers IS the #Illicitactivity!" because it'll only NOPE good devs (i.e. @linear and myself) but will not stop North Korean Hackers that can obtain forged identities and pay IRL #MeatProxies.

youtube.com/watch?v=Hd9pmPrpFtM
youtube.com/watch?v=-cW3SocBtMI
youtube.com/watch?=76DbGrphE7g
youtube.com/watch?=Hb21NLjN1vg

Kevin Karhan :verified:kkarhan@infosec.space
2025-08-24

@reiayanami nodds in agreement

It's important to go out of one's way and shout: "#KYC *IS THE #IllicitActivity!" and threaten the digital equivalent of #camover against #Cyberfacism!

youtube.com/watch?v=9GCsd2TJKj

Kevin Karhan :verified:kkarhan@infosec.space
2025-08-10

Thx @lina for exposing the #Copyrightmafia's #DNS-based #internetcensorship:
cuiiliste.de

As for circumvention: Just use #OpenNIC's DNS servers...

The sheer #Zensursula-Style bullshit is the #IllicitActivity! #ISP|s should have no right to interfere with any traffic (except to defend their own infrastructure from getting hacked) unless explicitly requested by customers to do so.

I do wish @ooni would take a look at the CUII blocklist and add that to their #OONIprobe to test for.

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-30

@harmonycorrupted seriously, this #cyberfacist bs needs to be outlawed!

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-25

@Lazarou or rather: THIS is why #KYC IS the #IllicitActivity!

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-24

@Mandrake Remember: "#KYC IS the #IllicitActivity!" and demanding such for anything without a legal mandate is a gross violation of #GDPR & #BDSG!

  • But then again the #UK doesn't eben recognize the right to not sepf-incriminate when it comes to data…
Kevin Karhan :verified:kkarhan@infosec.space
2025-07-14

In jedem Falle sollte mensch niemals und unter keinen Umständen irgendwem seine [echten] Personalien Mitteilen oder gar nen Perso-Foto bzw. Selfie schicken!

  • Es gibt sehr, sehr wenige die wirklich sowas verlangen dürfen [bspw. #Autovermietung] oder gar müssen [siehe #Banken] aber die werden i.d.R. einen persönlich hereinbestellen [bspw.: Autovermietung machts bei Schlüsselübergabe] oder seriöse Lösungen [bspw.: #POSTIDENT] nutzen. Auf jeden Fall wird kein Händler³ im Internet sowas verlangen!

Alles andere führt nur zu #Identitätsdiebstahl und #Identitätsmissbrauch wo entsprechende Opfer dann z.T. als Beschuldigte*r in tausenden Fällen dann gearscht ist...

³[Selbst nicht beim legalen Waffenkauf! Da wird stattdessen ne Kopie der WBK samt Nummer verlangt weil der Kauf wird quasi in Echtzeit gemeldet und ohne passenden Voreintrag im System ist auch kein Erwerb möglich!...]

#KYCisTheIllicitActivity #InfoSec #ComSec #OpSec #KYC #IllicitActivity

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-12

@purplepadma #KYC Is the #IllicitActivity!

  • Ask the people who got kidnapped for their #Bitcoin...

#Anonymity is a #HumanRight and #BlueSky has no #LegitimateInterest in demanding an #ID or any other proof of age!

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-04

@solarisfire how about.stop using #discord since it's not only an #InformationBlackhole but demanding #PII is the #IllicitActivity!

Kevin Karhan :verified:kkarhan@infosec.space
2025-07-03

@OhMyGod Remember: ANY "#KYC" in terms of #Messenger| #Apps IS the #IllicitActivity!

Regardless if @matrix or @signalapp , the sheer request, demand or coercion onto #PII like a #PhoneNumber or #eMail-Address is bad.

Personally, I'll recommend to switch to some real #E2EE with good #SelfHosting options like @delta / #deltaChat [which uses #PGP/MIME) or @monocles / #monoclesChat (which is based upon #XMPP+#OMEMO and who do host their own servers which are user-financed and can be paid for 100% anonymously.

@bfdi @kuketzblog @netzpolitik_feed @ccc @heiseonline

Kevin Karhan :verified:kkarhan@infosec.space
2025-06-12

@bortzmeyer LMAO!

I guess by that logic they soon designate .mp4 & .zip files a porn cuz they could contain it.

  • Why are "#Internetausdrucker" (lit. "people who printoout websites"; German term for #TechIlliterate decisionmakers) allowed to regulate shit they obviously don't know and don't even care to get an expert to explain to them?

#AgeVerification - like any #KYC - is the #IllicitActivity!

Kevin Karhan :verified:kkarhan@infosec.space
2025-01-24

@not2b @dangillmor I mean, she's just a #cyberfacist like #Zensursula, and the only correct way to deal with these #facists is to "#EncryptHarder!" (with #XMPP+#OMEMO & #PGP/MIME) and tunnel everything through @torproject / #Tor and setup #OnionServices for everything!

Kevin Karhan :verified:kkarhan@infosec.space
2025-01-23

@lucasmz @Avitus @david_chisnall the benefit of #XMPP+#OMEMO is that there are several providers, including free options...

All #PII incl. #PhoneNumbers can and will be abused by existing governments and if users don't pay, then they are the product and their data is the one to be sold.

After all, you have the same cost problem with phone numbers. Even if one doesn't pay per line/number and never pay for calls and texts, they still have to top it up to extent validity.

  • And again: It's way easier for a government to demand an ID for a #SIM that works in networks around their country (i.e. #Turkey demands registration on a per-#IMEI - basis *with #ID) than to tunnel XMPP+OMEMO through @torproject over #EDGEland-speed #2G networks.

Plus you relying an unfixably insecure #Telephony makes a system inherently unsafer than it needs to be...

  • This is how people get caught!

Also #Signal is able and willing to use said PII to restrict and ban users and if I were some dissident in Cuba or North Korea or even just Eritrea or Yemen I'd not rely on non-enforcement of #OFAC / #USML / #ITAR since Signal can obviously distinguish & identify accounts by virgue if their #PhoneNumber!

  • Always think "How can this be weaponized against someone?" when it comes to #privacy!
Kevin Karhan :verified:kkarhan@infosec.space
2024-12-19

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst