Thanks i will reach out if needed
Hacking / Opsec
How do i keep myself anonymous while performing brute forces on websites??
Started by blackhatcaspian · Jul 23, 2026
Just route the traffic going to the
website over Tor and it would be nice if you would do first Tor and then
some proxy so the website won't detect tor traffic that's it.
website over Tor and it would be nice if you would do first Tor and then
some proxy so the website won't detect tor traffic that's it.
Work is done on a remote server (VPS if you are cheap, dedicated server is better).
Connection to said VPS with proper OpSec is harder. But if you aren't up
against 3 letters then you are good with using tor to connect to your
VPS. The real issue is the ping, most of the time it will be bothering
because you have a little delay so try to do everything scripted
Connection to said VPS with proper OpSec is harder. But if you aren't up
against 3 letters then you are good with using tor to connect to your
VPS. The real issue is the ping, most of the time it will be bothering
because you have a little delay so try to do everything scripted
Okk thnx
hmm in my case there are a lot of records to get the info from like almost a million so this needs to be a multi day thing
Buy the VPS/server. Set up hidden
service on VPS/server to access it without leaving tor network. Set up
your work tool (Selenium, OpenBullet, your own script idk) and proxies
if the site apply IP bans. Let it run as long as needed, once in a while
you log inside the VPS/server to check how it's going
service on VPS/server to access it without leaving tor network. Set up
your work tool (Selenium, OpenBullet, your own script idk) and proxies
if the site apply IP bans. Let it run as long as needed, once in a while
you log inside the VPS/server to check how it's going
hmm thanks i will do that
No problem. Remember that this setup
isn't rock-solid but it's already quite good. Do not do stupid shit like
bothering government sites or similar, you will face serious risks
isn't rock-solid but it's already quite good. Do not do stupid shit like
bothering government sites or similar, you will face serious risks
the company in which i found this
exploit really dont even care bout this they have already suffered a
data breach some years ago and they didnt disclose it not even to the
gov it was only later that some other security company identified the
data circulating, if i do enough security that they would need support
from gov or others then i will be probably in the safe range
exploit really dont even care bout this they have already suffered a
data breach some years ago and they didnt disclose it not even to the
gov it was only later that some other security company identified the
data circulating, if i do enough security that they would need support
from gov or others then i will be probably in the safe range
Excellent reply, rotate proxies,
obfuscation methods, basically change your source ip, route and
fingerprint as frequently as possible.
obfuscation methods, basically change your source ip, route and
fingerprint as frequently as possible.
Members-only continuation
This discussion contains more posts.
Create an account or sign in to continue reading the full conversation. 10 additional posts await inside.