Hacking / Opsec

Evaluide my opsec. I look for advice on the separation of personal data and workers when entering the network from one point.

Started by lokike · Jul 17, 2026

#441
A smartphone lying somewhere (I haven't decided where) connected to a charger with my personal SIM card. Connected as a VoIP terminal. I have remote access to it; I can receive SMS and calls over the internet.

Changing apartments every month. Check-in is contactless using false data. Payment with a temporary card issued on a drop.

eSIM adapter bought from someone for cash. Left lying around for half a year. Change with every new eSIM. (So that tracking the physical eSIM chip owner via the EID is more difficult).

eSIM bought with crypto. Installed on an eSIM adapter with a USB SIM adapter from the laptop via VPN + Tor + Proxy. (I understand that with great desire, one can use servers that issue eSIM keys to find the IP address that requested those keys).

Inserted into a flashed modem which changed the IMEI before installing the new SIM card.

(My modem for changing the IMEI must be turned on and I understand that it displays its old IMEI. That is, very high correlation between the two IMEIs entering the network at the moment of the IMEI change. Please tell me which modem firmware to use to avoid such correlation).

Pixel with GraphOS. in airplane mode. To go out to the city with the modem and Bluetooth headphones. (It is annoying to have Bluetooth and Wi-Fi turned on. It seems they can record various online cards or other means that collect and process signals in public places. But it's somehow inconvenient to walk with wired connection to the modem and wired headphones).

The phone is connected via VPN + Proxy for applications that might collect various information. Mostly taxis. Accounts are registered on a temporary SIM card. They change every month with a new SIM card and a new apartment. How to minimize connection with interest. Accessing the network exclusively to check messengers and order taxis. Everything else is strictly offline (I think only music. I don't use the phone much).

In this whole system, I am stuck at the stage of understanding the security of my laptop.

I already use the maximum possible offline functionality. This concerns music during work, local translators, AI. I try to send as little data to the network and use as few accounts and systems that collect data as possible. But this is definitely not enough.

Connecting my personal and work accounts (how to access the network to check various personal accounts, white-collar work).

Gaming accounts (I like to play on the computer; I have a separate computer for this).

Black work.

I don't understand how to separate my black work from the white-collar personal accounts and games.

I assume I need two different sources of internet. But I am very afraid of correlations.

Please tell me what to do?

That is, if I connect to my apartment's Wi-Fi for personal accounts, then after several points, upon successful determination of my place of residence, my personal accounts can be determined.

If I use a separate modem for personal accounts and a separate modem for work, there will be high correlations in going online or simply online activity.

Of course, I can quit my official job and give up gaming. But that would be terrible. And some personal accounts still need to be connected to.

If I have a VDS in the same place where my VoIP phone is located, then I still need to connect to it, and it seems this is not sufficiently reliable protection; the chain can be untangled down to personal accounts.

Please tell me what to do?

And if you notice errors in my approach, please tell me. I try to be better.
#442
↳ Replying to @lokike
What is your threat model? Who are you trying to protect against? Are you a buyer or vendor?

Focus on your real life and crypto/fiat OPSEC. That is how they get you. Not the digital stuff.

Why are you ordering taxis with the same network you are using for your "black work"? Why not use your normal "white-collar personal accounts"?