I used Tor as a small part of one of the capabilities of a supply chain integrity startup. I built a fancy scraper/crawler to discreetly monitor a major international marketplace (mainstream, not darknet), including selecting appropriate Tor exit nodes for each regional site, to try to ensure that we were seeing the same site content that people from those regions were seeing.
Tor somehow worked perfectly for those needs. So my only big concern was making sure everyone in the startup knew not to go bragging about this unusually good data we had. Since we were one C&D letter away from not being able to get the data at all.
(Unfortunately, this had to be a little adversarial with the marketplace, not done as a data-sharing partnership, since the marketplace benefited from a cut of all the counterfeit and graymarket sales that we were trying to fight. But I made sure the scraper was gentle yet effective, both to not be a jerk, and also to not attract attention.)
(I can talk about it now, since the startup ran out of runway during Covid investor skittishness.)
The right way to do this would be through a VPN/tor + Residential proxy to hide your intentions from everyone involved.
So, a proxy? Onion routing doesn't really play a role for this use case.
I'm letting my imagination fill in the color on the specifics here and I'm working up a little grin.
A hat tip to you
Plus I learned a lot -- it came out of some academic research that pursued a unique angle: finding and talking to the Tor exit node operators about their experiences, rather than just say the developers, the executives, or the funders.
Here’s my torrc:
SocksPort 0
ExitRelay 0
ORPort NNNN
DirPort NNNN
Nickname X
ContactInfo X@X.com
RelayBandwidthRate 80 megabits
RelayBandwidthBurst 120 megabits
MaxMemInQueues 384 megabytes
AvoidDiskWrites 1
HardwareAccel 1
NoExec 1
NumCPUs 1
Here’s my override config for systemd (Ubuntu 24.04): $ sudo systemctl edit tor@default
[Service]
Nice=15
CPUAffinity=0
CPUWeight=60
StartupCPUWeight=6
IOWeight=60
TimerSlackNSec=100us
MemoryMax=896M
MemoryHigh=800M
OOMScoreAdjust=1000
LimitAS=2G
LimitNPROC=512
LimitNOFILE=10240
PrivateDevices=true
ProtectSystem=true
ProtectHome=trueWith the porn block in the UK though, the "New Private Window with Tor" in Brave is very convenient.
Maybe not for long, or maybe not. I guess websites don't need to comply beyond a certain point.
There are tons of "residential proxy" and whatnot type services available, IP being a source of truth doesn't seem to matter much in 2025. The Perplexity 'bot' recent topic being an example of that.
Basically if you want to access any resource on the web for a dollar a GB or so you can use millions of IPs.
Has someone interested in seeing privacy secured into the future, I’ve been happy that governments are accelerating their censorship for this reason.
To understand how, you should review the Princeton Report's Raptor attack, and understand how it works (2015).
I have not yet had time to find a suitable replacement machine. But running a bridge is a cheap, safe low network volume method people can help out from home. I had it going to help people in 'bad' countries to get out to the rest of the world.
A lifetime ago, I ran bridges from RAM only distros. But early versions of the Dan list (1st in wide use) killed that.
DL didn't try hard to differentiate between bridge IPs and exit IPs. Server hosts just grabbed the first list they saw and blocked with it.
It was years before the notion of Exit != Bridge became understood but everyone had moved on. We're at the entropic 'No One Cares Anymore' phase now.
- https://github.com/mikeperry-tor/vanguards/blob/master/READM...
- https://github.com/mikeperry-tor/vanguards/blob/master/READM...
- https://spec.torproject.org/proposals/344-protocol-info-leak...
Don't install addons in this browser. Don't resize the browser window. All tor browsers instances have the same default window size, which prevents websites from tracking you. Obviously don't login into websites with your regular email or provide websites with your PII.
If you are in a country or on a network that blocks the basic Tor network, the FAQ explains how to get around this by using Tor bridges or other techniques [2].
That's pretty much all you need to know.
Is that true?
If there are a million servers, and I control ten of them, and everyone else who has control of servers controls only nine each (so I have the largest number of servers, as you say), surely I will be missing out on almost all the traffic?
Do you suppose all entities able and willing to do this would cooperate with each other?
Arpanet: How a military project gutted personal privacy, destabilized self esteem and strangled attention spans
Just setup a vpn.