Page MenuHomePhabricator

WhonixProject
ActivePublic

Members (2)

Watchers

  • This project does not have any watchers.
  • View All

Details

Recent Activity

Jun 24 2021

Patrick closed T868: mediawiki fixes #2 as Invalid.

migrated to https://forums.whonix.org/t/mediawiki-css-fixes/11874

Jun 24 2021, 11:42 PM · Whonix, website
Patrick closed T964: mediawiki fixes #3 as Invalid.

migrated to https://forums.whonix.org/t/mediawiki-css-fixes/11874

Jun 24 2021, 11:42 PM · Whonix, website
Patrick updated the task description for T964: mediawiki fixes #3.
Jun 24 2021, 11:35 PM · Whonix, website

Mar 21 2021

Patrick added a comment to T993: improve Windows Hosts / macOS wiki mentions.
In T993#20220, @Patrick wrote:

I don't see what else can be done here. This statement is limited to only what was said in this ticket.

Mar 21 2021, 12:20 PM · Whonix, Whonix 15, user documentation
Patrick closed T993: improve Windows Hosts / macOS wiki mentions as Resolved.

I don't see what else can be done here. This statement is limited to only what was said in this ticket.

Mar 21 2021, 12:20 PM · Whonix, Whonix 15, user documentation

Mar 20 2021

Patrick updated the task description for T993: improve Windows Hosts / macOS wiki mentions.
Mar 20 2021, 3:00 PM · Whonix, Whonix 15, user documentation
Patrick updated the task description for T993: improve Windows Hosts / macOS wiki mentions.
Mar 20 2021, 2:58 PM · Whonix, Whonix 15, user documentation
Patrick updated the task description for T993: improve Windows Hosts / macOS wiki mentions.
Mar 20 2021, 2:57 PM · Whonix, Whonix 15, user documentation

Jan 24 2021

Patrick closed T1001: Updates proxy check fails in whonix-ws-15 as Resolved.

Btw this issue tracker is being phased out:
https://www.whonix.org/wiki/Reporting_Bugs#Issue_Tracker

Jan 24 2021, 12:08 PM · bug, Whonix, Whonix 15

Jan 12 2021

Patrick added a comment to T533: iptables block network access until sdwdate succeeded.

I am not sure sdwdate-gui would be a strong enough notification if networking was actually blocked if sdwdate did not succeed yet.

Jan 12 2021, 8:51 AM · Whonix, usability, whonix-ws-firewall, whonix-gw-firewall, iptables, python, security, enhancement, sdwdate-gui, sdwdate
Patrick updated the task description for T533: iptables block network access until sdwdate succeeded.
Jan 12 2021, 4:53 AM · Whonix, usability, whonix-ws-firewall, whonix-gw-firewall, iptables, python, security, enhancement, sdwdate-gui, sdwdate

Jan 9 2021

Patrick closed T133: url_to_unxtime https support, a subtask of T132: port sdwdate to url_to_unixtime, as Resolved.
Jan 9 2021, 3:48 PM · Whonix 10, sdwdate, Whonix
Patrick closed T133: url_to_unxtime https support as Resolved.
Jan 9 2021, 3:48 PM · python, sdwdate, Whonix
Patrick added a comment to T133: url_to_unxtime https support.

This was implemented. Now using python3 requests.

Jan 9 2021, 3:47 PM · python, sdwdate, Whonix
Patrick closed T916: improve sdwdate connectivity check as Resolved.

No longer required. Was implemented through te_pe_tb_check enhancements.

Jan 9 2021, 3:34 PM · whonixcheck, sdwdate-gui, Whonix, sdwdate
Patrick added a comment to T1001: Updates proxy check fails in whonix-ws-15.

https://gitlab.com/whonix/qubes-whonix/-/commit/53ff72ab6ce59cb2c98401fd701ae782ca100e37

Jan 9 2021, 7:43 AM · bug, Whonix, Whonix 15

Jan 8 2021

marmarek added a comment to T1001: Updates proxy check fails in whonix-ws-15.

I've found why sudo asked for password, it wasn't related to security-misc script mentioned earlier. And should be fixed in newer qubes-core-agent package.

Jan 8 2021, 3:28 PM · bug, Whonix, Whonix 15

Jan 5 2021

marmarek added a comment to T1001: Updates proxy check fails in whonix-ws-15.

/usr/lib/qubes-whonix/init/torified-updates-proxy-check is currently only started by /lib/systemd/system/qubes-whonix-torified-updates-proxy-check.service.

Wondering why this is happening. When root uses sudo, pam shouldn't even be involved.

Jan 5 2021, 6:54 PM · bug, Whonix, Whonix 15
Patrick added a comment to T1001: Updates proxy check fails in whonix-ws-15.

/usr/lib/qubes-whonix/init/torified-updates-proxy-check is currently only started by /lib/systemd/system/qubes-whonix-torified-updates-proxy-check.service.

Jan 5 2021, 7:07 AM · bug, Whonix, Whonix 15
marmarek added a project to T1001: Updates proxy check fails in whonix-ws-15: bug.
Jan 5 2021, 6:03 AM · bug, Whonix, Whonix 15
marmarek created T1001: Updates proxy check fails in whonix-ws-15.
Jan 5 2021, 6:03 AM · bug, Whonix, Whonix 15

Oct 26 2020

Patrick updated the task description for T689: use whonixcheck Whonix News to count Whonix users.
Oct 26 2020, 9:54 PM · Whonix 14, Whonix, whonixcheck
Patrick added a comment to T689: use whonixcheck Whonix News to count Whonix users.

documented here:
https://www.whonix.org/wiki/Whonixcheck_Hardening#Prevent_Downloading_Whonix_.E2.84.A2_News_and_Whonix_.E2.84.A2_User_Census_Counting

Oct 26 2020, 9:53 PM · Whonix 14, Whonix, whonixcheck

Sep 28 2020

Patrick closed T950: set kernel.printk sysctl to prevent kernel info leaks as Resolved.

Looks all good and quite in Whonix 15.0.1.5.1.

Sep 28 2020, 4:32 PM · Debian version 11 codename Bullseye, Whonix 15, Whonix, security-misc

Aug 31 2020

Patrick closed T1000: Add Wasabi Bitcoin wallet as Invalid.

We don't use this tracker for new feature requests anymore either as per:
https://www.whonix.org/wiki/Reporting_Bugs

Aug 31 2020, 12:38 PM · Whonix

Aug 30 2020

ratpoison4 created T1000: Add Wasabi Bitcoin wallet.
Aug 30 2020, 4:33 PM · Whonix

Aug 23 2020

sanyo added a comment to T998: Whonix without systemD.

It is important to understand, that systemD is actually much more than simply an init system:

Aug 23 2020, 2:56 PM · Whonix

Aug 13 2020

Patrick updated the task description for T540: Advanced Attacks Meta Ticket.
Aug 13 2020, 10:33 AM · VirtualBox, KVM, Qubes, security, research, Whonix
Patrick closed T542: Keyboard/Mouse Fingerprinting Defense as Resolved.

Shipping kloak in Whonix stable for a few releases already.

Aug 13 2020, 10:32 AM · security, Whonix
Patrick closed T542: Keyboard/Mouse Fingerprinting Defense, a subtask of T540: Advanced Attacks Meta Ticket, as Resolved.
Aug 13 2020, 10:32 AM · VirtualBox, KVM, Qubes, security, research, Whonix

Aug 12 2020

HulaHoop closed T530: CPU-induced latency Covert Channel Countermeasures as Invalid.

After running a bunch of tcp ping tests, the conclusion is this attack
is not really effective against TCP like ICMP. The latency is much lower
for TCP pings and though it slightly decreases with cpu stress it is not
consistent. Reloading pages in TBB with cpu stress
on/off does not impact latency readings while doing so with tc
attached has massive latency foot prints - implying it will ironically make such attacks much easier in addition to degrading performance.

Aug 12 2020, 6:30 PM · virtualizer, VMware, VirtualBox, KVM, Qubes, security, research, Whonix
HulaHoop closed T530: CPU-induced latency Covert Channel Countermeasures, a subtask of T540: Advanced Attacks Meta Ticket, as Invalid.
Aug 12 2020, 6:30 PM · VirtualBox, KVM, Qubes, security, research, Whonix

Aug 7 2020

HulaHoop added a comment to T530: CPU-induced latency Covert Channel Countermeasures.

Cyrus recommends adding delays per packet to disrupt inter-packet patterns that remain. The command can be fine tuned as such:

Aug 7 2020, 6:54 PM · virtualizer, VMware, VirtualBox, KVM, Qubes, security, research, Whonix

Aug 1 2020

HulaHoop added a comment to T530: CPU-induced latency Covert Channel Countermeasures.

The good news is I think I've figured out the equivalent tc-netem command looking the slot parameter in the manual:

Aug 1 2020, 5:42 PM · virtualizer, VMware, VirtualBox, KVM, Qubes, security, research, Whonix

Jul 23 2020

Patrick closed T999: Can't build Whonix from source as Invalid.

Building on anything other than Debian buster is unsupported.

Jul 23 2020, 7:08 PM · Whonix
el-cpu created T999: Can't build Whonix from source.
Jul 23 2020, 6:56 PM · Whonix
Patrick added a comment to T996: Readying for Tor Browser 9.5 (June 2).

553 Unable to store creds for

Did you set ClientOnionAuthDir in torrc (to a directory with "private
enough" permissions)?

Rusty

Jul 23 2020, 1:27 PM · Whonix 15, Whonix, anon-gw-anonymizer-config

Jul 7 2020

sanyo added a comment to T998: Whonix without systemD.

A few more questions:

Jul 7 2020, 10:23 PM · Whonix
sanyo added a comment to T998: Whonix without systemD.

Btw, Devuan is almost the same Debian with systemD removed from it.
Devuan even uses the same Debian binary repository with a few substitutions/replacements by its own Devuan packages just to eliminate nasty systemD.

Jul 7 2020, 8:05 PM · Whonix
Patrick added a comment to T998: Whonix without systemD.
In T998#20144, @sanyo wrote:

May I know, what do you think about Whonix vs OpenBSD in terms of security for a headless server without any GUI?

Jul 7 2020, 11:53 AM · Whonix

Jul 6 2020

sanyo added a comment to T998: Whonix without systemD.

May I know, what do you think about Whonix vs OpenBSD in terms of security for a headless server without any GUI?

Jul 6 2020, 8:29 PM · Whonix
sanyo added a comment to T998: Whonix without systemD.

I guess it shall not be any harder to port Whonix to Devuan than porting it to original Debian.

Jul 6 2020, 8:26 PM · Whonix
Patrick closed T998: Whonix without systemD as Wontfix.

There's no manual.

Jul 6 2020, 12:01 PM · Whonix

Jul 5 2020

sanyo updated the task description for T998: Whonix without systemD.
Jul 5 2020, 8:36 PM · Whonix
sanyo updated the task description for T998: Whonix without systemD.
Jul 5 2020, 8:34 PM · Whonix
sanyo triaged T998: Whonix without systemD as Wishlist priority.
Jul 5 2020, 8:33 PM · Whonix

Jun 25 2020

Patrick added a comment to T997: All pluggable transports stopped working after 11-06-2020 .

Thanks for the report.

Jun 25 2020, 11:29 AM · Whonix
Patrick triaged T997: All pluggable transports stopped working after 11-06-2020 as Normal priority.
Jun 25 2020, 11:29 AM · Whonix

Jun 24 2020

leh6r0 added a comment to T997: All pluggable transports stopped working after 11-06-2020 .

More useful information from my tests: When I setup obfs4 using the Anon-Connection-Wizard the previous obfs4 that I used worked fine. Unfortunately I can't setup snowflake from it.

Jun 24 2020, 1:51 PM · Whonix

Jun 23 2020

leh6r0 renamed T997: All pluggable transports stopped working after 11-06-2020 from Snowflake stopped working after 11-06-2020 to All pluggable transports stopped working after 11-06-2020 .
Jun 23 2020, 10:55 AM · Whonix