Hypothetically, if you are a witness or whistleblower who's adversary was a very big corporation (such as boeing), what measures could you take to prevent yourself from being "suicided"?
Easy. We had a list of the fifteen or so guys that did that specific part of the job, we got their IP addresses, watched them for a while, and as it turns out, two of them regularly use a VPN and send all of their traffic to Canada.
How long do you think it would take to figure out whether or not which one of these boys are harmless software pirates, or their man?
People do all of the work in the world without knowing that your preparation will blow your cover.
Have you ever visited TailsOS's website off of a VPN? Could the Feds find out? Do you think the other guys have the same level of deniability?
That trail is not washing off. You even knowing or having a history of using a Linux iso is suspicion enough if the rest of the suspects are all boring chuds.
Don't leak. Spread seldom rumours online about the company with plausible deniability. Find a crazy-er person and/or group. Continue spreading dots. Spread info to Youtubers. Others with a platform.
Use a VM, a password manager inside the VM.
After 12 months, delete all your credentials and the VM.
The system can not protect you. Corps rule democracy. Don't trust the system. Spread the info until it reaches critical mass or the faith in the system collapses. Your life is worth more than some righteous leak.
See the Pentagon Papers life. He lived a very humble life afterwards.
Despite all precautions, if you are one of the few persons whose circumstances could allow the leak, then they'll narrow it down to you. Especially if you were the reluctant one, the one that raised ethical issues etc...
Rent a car and change it at different rental locations every week;
Communicate only with your lawyer;
Record everything in an official manner as soon as possible.
Stay offline
Get a dumb phone, and if you must have a computer get a new laptop with no wifi or mobile data hardware;
Do Not
Go anywhere you don't need to go;
Tell anyone where you are;
Go to the middle of nowhere, this reduces your escape routes unless you're Bear Grylls;
Confront anyone, they can have you arrested and prison violence makes their job much easier;
Go to the news without your lawyer;
Use a smartphone, or any device that was yours before and is capable of connecting online;
And most of all don't listen to the billy badasses in here. If a multi billion dollar corporation wants you dead and is willing to break the law they can afford a lot of very nasty people. You aren't getting the tactical training to stand against them in that short amount of time, that takes years and dedication and even then you'll be learning how to run away in a deadly manner. Your best defense is to be ghost except when you show up for court dates and depositions. That's what the Secret Service Witness Protection Program does and it works if you have discipline.
Additionally, give a copy of all the documents to your lawyer to release in the case of your death. Multiple Deadman switches are better than one, especially one that's controlled by a person and not just hoping your cloud service doesn't go down after you're dead.
Only use encrypted communication, use a phone running GraphineOS, and your computer should be running a secure OS like QubesOS (in addition to Tor and/or MullvadVPN). Basically you need maximum security and maximum privacy, a Thinkpad running Libreboot is the best laptop and a Pixel will be the best phone.
Good suggestions, however, I don't think even pigeon carriers will stop yourself from mysteriously dying of suicide with 2 shots in the back of your head.
Was just looking at something like how to execute on that this morning as my morning coffee dive down an internet rabbit hole.
There’s this guy named Michael Bazzell who used to make a podcast about stuff like this, and he also wrote a book called Extreme Privacy that I thumbed through this morning. He talks about where to go to get a ghost address, how to buy and set up a cell phone to be virtually anonymous, how to buy a house anonymously or how to re-title your car to a trust or LLC, and pretty much everything in between. Even talks about what information to not divulge when you go to the ER and details what to consider you put on your kids birth certificate.
So if anyone is paranoid enough to know how to avoid getting suicided, I’m going to bet on this guy’s advice
His podcast ended and he's worked to remove them where possible. While I don't know if there are archives of it I can vouch for the quality of his books. They receive updates throughout the year and are step by step guides on how to lock down certain aspects of your life. Its worth purchasing.
Amongst everything others have said, if you get sucked into an interview or press conference, directly and firmly state that, for the record, you are not suicidal and that if you should die, it was absolutely not suicide. You believe that you've become a target and fear for your safety and life.
It doesn't matter if you believe yourself to be a target in the privacy of your head. Always say that you are early, often, loudly, and to anyone who will listen.
It’s pretty sad that not only are we at a point where this is a very legitimate question, but that the answer is something that should be taught in schools.
School aint teaching this shit. That would imply that you should be a whistleblower or be a witness to wrongdoings. No way governments would let this be taught.
Take the advice offered by journalists on how to contact them privately and avoid getting caught. I.e. secure and protect evidence without raising suspicion. Contact a reputable journalist via some secure means of communication. Let them take over and keep silent. Don't brag or something.
Most good newspapers offer something like PGP encrypted mail, SecureDrop over TOR and more to talk to them.
Absolutely. There are many reasons, but attacks on journalists/whistleblowers and the malicious potential of collated data in a capitalist oligarchy are the first two that come to mind.
Encrypt email with anyone who publishes a key. If "bad" emails are the only ones you encrypt, then that metadata can be used to raise suspicion of you and to trace your contacts.
I'm sure he has still had to worry about his personal safety after getting stuck in a country he wasn't planning on getting stuck in.
But the reality is you have to meticulously plan and basically abandon your entire life and move somewhere they cannot touch you. When it comes to US companies, you generally will have to do like Snowden and avoid US-allied nations.
Donziger was placed under house arrest in August 2019 while awaiting trial on charges of criminal contempt of court, which arose during his appeal against Kaplan's RICO decision, when he refused to turn over electronic devices he owned to Chevron's forensics experts. In July 2021, US District Judge Loretta Preska found him guilty, and Donziger was sentenced to 6 months in jail in October 2021. While Donziger was under house arrest in 2020, twenty-nine Nobel laureates described the actions taken by Chevron against him as "judicial harassment." Human rights campaigners called Chevron's actions an example of a strategic lawsuit against public participation (SLAPP). In April 2021, six members of the Congressional Progressive Caucus demanded that the Department of Justice review Donziger's case. In September 2021, the United Nations High Commissioner for Human Rights stated that the pre-trial detention imposed on Donziger was illegal and called for his release. Having spent 45 days in prison and a combined total of 993 days under house arrest, Donziger was released on April 25, 2022.
US corporations can and will bring the weight of the US "justice" system on whistleblowers. The US is not unique in this regard. Whatever giant company you're whistleblowing against, you better GTFO of the country they are based in.
Yeah so many people talk about Snowden going to Russia and ignore the fact that he was only in Russia transferring to another plane when his passport was cancelled stranding him there. The choice was basically stay there, or go back to the US, and that wasn't really an option.
Why the US would want to leave him in Russia as a potential asset for Russian intelligence to break instead of letting him get to a different country that isn't such a direct threat though is a really good question.
Tails on a usb on a personal device only. Never do anything in person. Redact all personal information for all people yourself included. Use a pdf to image embedded pdf conversion tool to hide all possible pdf metadata. Remove all image metadata. Never tell anyone any traceable information this includes names, locations, times, contacts, you voice, anything that can in any way be identified as unique to u.
Do not raise suspicion quit within a short period of disclosure of information, speak out about issurs, etc. Use simplex chat or pgp encrypted email with a new randomly generated email address not linked to personal info (phone number, existing email etc). Do this all via tor on ur tails install.
Data exfiltration is difficult and can be linked/traced depending on threat model (boing will have extreme capacity and can be considered as dangerouse as a government actor). If u can take the device home and their is no device opened detection in BIOS then extract drive plug into personal device thats booted with tails and copy files from drive to tails (avoids any logging of files being copied or what fikes).
If files are on a secure server then exfil will be traceable. U can avoid this by taking pictures of screen with an oldschoop dslr (be carfull of information leakage (the monitor reflections etc).
If u are to testify and therefore need to disclose your real identity then u could theoreticly livestream ur entire life untill the point of testifying at which point u state clearly for the record u are not suicidal that u fear for you life and hope to hell thwy dont suicide u out of spite. Also if ur in the states carry a firearm and learn how to use it effectively.
Also deadmans switch which publicly dumps info. Files, audio/video from ur phone streamed to a remote server (in an internal durastinction they cant get to easily or quickly)
There are apps that will upload video to the web live while recording in the background. Don't have any interactions with random strangers that you aren't recording. Have security cams at your house recording 24/7 saving remotely to a secure server.
I can't believe no one has said to keep and train with a gun. The best way to live is to kill your killer. Secure channels and home security cameras won't do shit if you don't have a good way to physically defend yourself.
This isn't the movies. They aren't sending one person you can get into a fight with. They'll just shoot you and ransack your house to make it look like you died in a robbery gone wrong. Just don't be there.
there exists a dark package infrastructure. usually used for stealing money from grannies but does drug drops and others. get in contact with them on a burner. send them the package with fee and they will deliver it anywhere you need it.
make sure you find a scapegoat within your company that knows what's going on but doesn't know you know. make them the whistleblower.
sit back and enjoy the shitshow as the trust breaks down and the company goes under.