DuckDuckGo may be compromised

Caleb Stewart
Caleb Stewart

Some searches (particularly those concerning error codes) in DDG show that they're in a "partnership" with Yandex, a known Russian company.
Just a heads up, DDG may be sending data to Yandex.

All urls found in this thread:
https://duck.co/help/results/sources
https://archive.org/tech/ddg.html
https://searx.laquadrature.net
https://ftp.gnu.org/gnu/gnuzilla/
http://oxwugzccvk3dk6tj.onion/
Jonathan Cox
Jonathan Cox

a known Russian company
muh Russia!!!!

Evan Brown
Evan Brown

https://duck.co/help/results/sources
It's a proxy, so if it's werks well, yandex and bing don't get metadata.

Lincoln Rodriguez
Lincoln Rodriguez

anyone using DDG instead of Startpage/Ixquick
Shake my fucking head.
https://archive.org/tech/ddg.html

Cooper Thomas
Cooper Thomas

using a google mirror
You should hang yourself just the same.

John Anderson
John Anderson

We knew this since forever.
Muh Russia
Have you neglected the obvious Judaism of DDG?

Landon James
Landon James

the founder did something bad a long time ago so everything he does is bad
This is not a valid criticism.
it used to set a tracking cookie by accident
Does it do that still? No? Then it's irrelevant.
it's US-based so the NSA... bla, bla
Your ISP, DNS server and most websites you connect to already keep logs of the shit you do on them. The government (especially the US and EU) can request that information. There's not much you can do if you're an enemy of the State anyway.
If you're paranoid enough to care about logs, you'd be using Tor and/or some sort of VPN/Proxy anyway; so this point is also irrelevant.
muh joos
Back to your designated shitposting board, /pol/jeet.

Elijah Myers
Elijah Myers

There's no confirmed proof that DuckDuckGo is violating your privacy,
Meanwhile at startpage...

Chase Edwards
Chase Edwards

dealing with slower search or stupid results (DDG) just to LARP as a secret agent
<can’t let the nsa know that I watch animu

Cameron Long
Cameron Long

not using one of the many instances of Searx
Use what the FSF would use, faggot.

Carter Howard
Carter Howard

What is that supposed to prove?
DDG is pretty fast tho, and it has decent results. A lot better than Searx, Bing and Yahoo!; that's for sure.

Chase Gomez
Chase Gomez

doesn't matter if it's used over tor
you can't trust any of them anyway

Adrian Morales
Adrian Morales

DDG can search on another search engine without revealing anything about you. All the other search engine knows is that DDG searched for something. You can take off your tinfoil hat. Meanwhile, Startpage sometimes actively interferes with or blocks searches from Tor browser. That's why a lot of privacy-minded people stopped using them.

Robert Morris
Robert Morris

t. Someone who knows nothing about Tor

Joseph Martinez
Joseph Martinez

The FSF uses DDG. GNUzilla Icecat has DDG by default enabled.

David Rogers
David Rogers

Also, note that Agent Fud is constantly trying to scare people away from DDG, Tor, strong encryption, etc.
Now why would he be doing that?

Ryan Kelly
Ryan Kelly

You're full of shit.
I have no idea to what repo you're referring to, because the IceCat from Parabola comes with https://searx.laquadrature.net as default search engine.

Samuel Anderson
Samuel Anderson

not using bing to blend in with the normalfags
sad

Caleb Garcia
Caleb Garcia

I'm referring to the tarball found on GNU's very own FTP server: https://ftp.gnu.org/gnu/gnuzilla/

Jose Wright
Jose Wright

I've been using Bing exclusively for about a month tbh. I don't see the hype.

Andrew Rivera
Andrew Rivera

Why is a simple search for 'car' showing localized results for nordic user?

David Turner
David Turner

Everyone on Holla Forums knows this and most of us don't use DDG.
I hope so

Levi Green
Levi Green

If you look for a store that only exists in, let's say, Argentina using a non-localized version of Google you could end up with a bunch of irrelevant and stupid results; especially if the thing you searched for is a common word or an acronym.
Startpage may be using the IP provided to search on the localized version of Google. This is the most they can do to show relevant search results without giving any information away.
You should, of course, ask them directly if it bothers you that much.

Blake Carter
Blake Carter

Fuck off
(((modern Russia))) needs to die.

Noah Parker
Noah Parker

(((le scary parentheses)))
/pol/jeets need to die.

Camden Cox
Camden Cox

Post about *any* good privacy/security measure, and Agent Fud will be there within minutes to blow smoke, shovel bullshit, and parrot "it's compromised, it's compromised, awk..." over and over. It would be comical if so many poor n00bs weren't so confused by it.

Alexander Campbell
Alexander Campbell

duckduckgo
pic related
owned by (((domains by proxy)))
Lurk moar faggot OP. No shit shirlock. It's been known they are compromised for some time now. They still give better results than jewgle though. Just realise that certain words catch the attention of the robot generating domain's of the cianigggers.

Jacob Wright
Jacob Wright

What's the point of MITMing your connection if *insert spook agency here* already has tap on DDG servers? Anybody in possession of legit CA servers can issue a certificate even for Google and do exactly the same, unless you pin them on first visit. But isn't that counterproductive? It seems that they added new certificate with Extended Validation and forgot to turn off older one.
not visiting Holla Forums and DDG exclusively over tor
Ha, gotcha, Agent Smith!

Asher Stewart
Asher Stewart

Forged CAs are generally unlikely to be used except in very specific, targeted situations as there's a lot of risk to everyone involved if caught and it's not hard to catch it. Don't expect to see them used for mass surveillance.

Connor Williams
Connor Williams

may be
Lurk 50 years before posting

Jose Thompson
Jose Thompson

I don't trust DuckDuckGo, I don't trust ixquick/startpage. You shouldn't trust nobody.

I search them using TorBrowser. When you use Tor, you don't need to trust them. Unless you type your name in search query, they aren't tracking you. They just get queries, but they don't know who makes them.

Eli Lee
Eli Lee

implying searches arent even more biased for Tor users
implying Tor can be trusted
implying you're not reddit-spacing

Hunter Reyes
Hunter Reyes

muh parentheses
muh cianiggers
You need to go back.

Jaxson Bell
Jaxson Bell

implying Tor can be trusted

for sure more than your ISP can be trusted, or some honeypot VPN. At least Tor works by design, not by trust

if you don't use Tor, your web browsing history is being recorded by ISP and police. Also every website can see your IP address. And IP addresses are registered to home address.

implying you're not reddit-spacing

I am, you mad bro?

Colton Kelly
Colton Kelly

reddit spacing

Carter Fisher
Carter Fisher

t. faggot crying about russians
I can understand crying about the chinaman but crying about russians makes you look like a fucking idiot.

Chase Stewart
Chase Stewart

VPNs are honeypot
implying Tor isn't
VPNs work by design as well, and they are designed after AAA.
The only issue is making sure that the Accounting is managed by you and not someone else.
Also, please, keep reddit-spacing, so that your dementia can be recognized by everyone.

Anthony Lewis
Anthony Lewis

GAD EMPRAH said le Russians are le good so it must be true XDDD
Kill (((yourself))).

Julian Phillips
Julian Phillips

VPNs were never designed for anonymity, it's just an encrypted channel between two computers, nothing more. Websites and all types of public traffic going through a public-facing VPN can be passively fingerprinted, there are dozens of papers on this topic. You have to believe kikes that sell you the service on your data security, and in the end it turns out they rent servers from someone else who keeps another set of logs above that. Trusting a VPN is trusting a single point of failure unless you own a botnet or a few thousand severs bought for tumbled cryptocurrencies every month which you'd better spend on running Tor nodes and bridges.
As for reddit spacing, this board has atrocious kerning and font size, making it unreadable. Reddit posts have no "reddit spacing" but have more readability on large paragraphs overall.
Did you miss this year's news? Russkies went full ching-chong way. Banned VPNs, Tor, everything related to circumvention, no Net Neutrality either, all ISPs keep full logs for 3 years and can MITM without court order. Based Putin amirite guise xDD.

Owen Taylor
Owen Taylor

DDG or starpage are centralized service with a financial system that relies on selling data stop being fucking gullible and just use YACY or a SEARX instance.

Hunter Moore
Hunter Moore

underrated comment

Juan Martinez
Juan Martinez

This is not a valid criticism.
True but you shouldn't be gullible in that case, learn a lesson from it.
Does it do that still? No? Then it's irrelevant.
No it isn't, if they used tracking cookies "by mistake" if you believe that it means that they made another way of making money.
Don't be gullible user it's a centralized service that doesn't share it's research system they are here to make money via what should be private data.

Your ISP, DNS server and most websites you connect to already keep logs of the shit you do on them. The government (especially the US and EU) can request that information. There's not much you can do if you're an enemy of the State anyway.
And you find this normal ?

Zachary Lewis
Zachary Lewis

you think Google doesnt sell itself to Russia?
you got too high opinions friend

Benjamin Harris
Benjamin Harris

FEAR!!! UNCERTAINTY!!! DOUBT!!!

Thank you for your cooperation,
Agent Fud

Chase Martin
Chase Martin

LOOK MOM! I POSTED IT AGAIN!!!!!!!!!!!!!!
XDDDDDDDDDDDDDDDDDDDDDDDD

Jordan Bailey
Jordan Bailey

The thing that people don't understand is that you can't just indiscriminately use the services of random people and expect them to have your best interests at heart.

It's like if I went to some third-world country where the government participates in gangs and petty crime, and went into every store and talked to everyone I met. It would be ridiculous to get angry if some random picks my pocket or beats me up, because I should never have assumed that everyone was my friend.

Caleb Hernandez
Caleb Hernandez

Why is a simple search for 'car' showing localized results for nordic user?
Hungary is not "nordic".

Ayden Watson
Ayden Watson

(((humanity))) as a whole is pretty (((crap)))

Jackson Harris
Jackson Harris

Duckduckgo has done a bunch of different suspicious shit for fucking years. I don't think anyone has been autistic enough to even keep track of it all, because you should not assume it to be any better than google as far as privacy goes.

The bottom lines comes down to the fact that they are making money somehow to provide you a free service. This means you are their product.

Gabriel Wright
Gabriel Wright

Nice try Bill

Logan Parker
Logan Parker

We've known that it's not completely secure for a while now but actual proof that it's been compromised might push the free software community into making a new one that doesn't rely on Google at all like Startpage does.

Eli Miller
Eli Miller

pic 1
I'm not sure what it's trying to imply with the bit about a SSL termination proxy.
1. If it was using an SSL termination proxy, what does it matter? A web server is going to need to get your unencrypted request eventually.
2. A SSL termination proxy does not let you man in the middle the https connection to a different server letting them see your unencrypted content.
3. Nginx sole's purpose is not being a SSL termination proxy. It's a web server which happens to support the feature.

I'm not trying to give any credit to duckduckgo, but the logic for that seems retarted.

Christian Ross
Christian Ross

Options > Filters > Add new filter
>.*reddit.*spacing.*

Asher Allen
Asher Allen

site knows your user agent, IP and location based on it
At least they tried.

Elijah Powell
Elijah Powell

May
I wish I had this kind of optimism

Michael Lee
Michael Lee

implying there's anything wrong with yandex
Yandex might be the best email provider if you're in a NATO country. Probably the worst if you're a Russian, though.

Levi Gonzalez
Levi Gonzalez

single
waifu
wut?

Aaron Carter
Aaron Carter

imblyign Holla Forums even works over tor

Easton Miller
Easton Miller

It does, though. The only problem is that the hidden service still makes clear net requests.

http://oxwugzccvk3dk6tj.onion/

Grayson Gonzalez
Grayson Gonzalez

well that means it doesn't work. images don't load when using the hidden service, and accessing clearnet links through tor introduces the possibility of the exit node being jew controlled

Parker Jackson
Parker Jackson

Fucking morons make another dumbass "be afraid" thread. If anybody are "cucks" it's you sissy faggots.

Luke Gonzalez
Luke Gonzalez

Russia did nothing wrong

Aiden Jackson
Aiden Jackson

I think it has less to do with then being Russian and more to do with them being a for-profit corporation that makes its money by collecting and selling your information to advertisers.

Elijah Harris
Elijah Harris

pic
<that face
my weenie is hard

Disable AdBlock to view this page

Disable AdBlock to view this page