Skip to main content

State of Surveillance

  • News
  • Articles
  • Guides
    • Know Your Adversary
    • The Individual
    • The Organized Group
    • The Corporation
    • The Nation-State
    • Browser Privacy Audit
    • Browser Fingerprint Tool
    • Webcam & Mic Test
    • Email Header Analyzer
    • EXIF Tool
  • Reviews
  • Talk to Us Support Us
  • Free Privacy Plan

Technical

50 pages, listed in full.

  1. Home
  2. Articles
  3. Technical
  • AI Deblurring: How Machines Undo Your Censorship

    From consumer apps to forensic tools, AI can now reverse blur and pixelation. Here\'s what exists, who has access, and what it means for privacy.

  • AI Detection Tools

    We tested the claims. Commercial deepfake detectors promise 96-99% accuracy, but real-world benchmarks show 78% at best. Here\'s what AI detection can and can\'t do.

  • AI-Generated Malware

    ChatGPT can create polymorphic malware that mutates to evade detection. WormGPT, FraudGPT, and jailbroken chatbots are arming attackers with AI. Here\'s what you need to know.

  • Audio Redaction Failures: When Beeps Reveal Secrets

    Silencing audio isn\'t enough. From spectrogram analysis recovering "muted" speech to vibrations in video turning potato chips into microphones, here is how audio redaction fails.

  • Baseband Processor Attacks

    Your phone\'s cellular modem runs proprietary code with full system access. Researchers keep finding remote code execution bugs. Here\'s how baseband attacks work.

  • Digital Sovereignty: Proving Authenticity in the Age of Synthetic Media

    In the deepfake era, prove your content is real. C2PA content credentials, blockchain notarization, and cryptographic authenticity for videos and documents.

  • Your Crypto Is a Public Ledger

    Bitcoin is perfectly traceable. How Chainalysis and chain analysis works. Which cryptocurrencies actually provide privacy vs surveillance coins.

  • Blur and Pixelation: The False Security of Visual Censorship

    Blurring and pixelating images doesn\'t delete information. It just hides it badly. Learn why these methods fail, when they\'re reversible, and what actually works.

  • C2PA Content Credentials: The Digital Passport for Your Photos

    The new C2PA standard creates a tamper-evident history for digital media. It fights deepfakes, but also creates a permanent surveillance trail for creators.

  • Camera Sensor Fingerprinting: Every Photo Has a Signature

    Your camera has a unique fingerprint embedded in every photo. PRNU analysis lets forensic investigators trace images back to specific devices. Here\'s how it works and what it means for privacy.

  • Dark Web OSINT: Finding Leaked Data

    Learn how to monitor the dark web for leaked credentials, stolen data, and breached accounts. Tools like Have I Been Pwned, DeHashed, and Intelligence X explained.

  • Digital Witness: How Metadata Trapped Criminals

    True crime cases solved by metadata: from the BTK killer\'s floppy disk to John McAfee\'s accidental geolocation. See how hidden digital footprints lead to arrests.

  • Document Redaction: How Courts and Governments Hide Information

    Modern redaction methods explained. How courts, government agencies, and intelligence services redact sensitive information, and why they keep failing.

  • Email OSINT Investigation

    How investigators trace email addresses to identities. HIBP breach checking, Hunter.io, social media linking, email header analysis, and protection strategies.

  • Facial Recognition OSINT

    How investigators use facial recognition for OSINT. Clearview AI\'s 60 billion photos, Bellingcat war crimes investigations, PimEyes, FindFace, and the ethics of face search.

  • Firmware Update Security

    Firmware updates fix vulnerabilities. They also introduce them. Unsigned updates, compromised signing keys, and malicious patches make firmware updates both essential and dangerous.

  • Geolocation OSINT: Finding Where Photos Were Taken

    EXIF metadata, shadow analysis, satellite imagery, visual clues. Investigators can pinpoint exactly where a photo was taken. Here\'s how they do it, and how to protect yourself.

  • Hardware 2FA in 2026

    FIDO2 security keys beat SMS and TOTP against phishing. Why a Trezor derives its 2FA from your recovery seed, where passkeys fit, and how YubiKey, Nitrokey, Token2 and OnlyKey compare in 2026.

  • How Governments Actually Track Tor Users

    The truth about Tor vulnerabilities. Traffic analysis, correlation attacks, and how NSA and FBI actually identify Tor users. What works, what doesn\'t.

  • How Leakers Get Caught: The OPSEC Failures Behind Every Exposure

    From Reality Winner to the Pentagon leaker to the Signal chat disaster, how whistleblowers and leakers get identified through operational security failures, not just forensic technology.

  • Intel Management Engine

    Intel ME runs on its own processor below your OS, with full memory access and network capabilities. It boots before your CPU and can\'t be disabled. What is it doing?

  • Invisible Watermarks and Printer Tracking Dots

    Your printer marks every page with invisible tracking dots. AI-generated images contain hidden watermarks. Learn how this invisible surveillance works and what it reveals.

  • Lightning Network Privacy: Better Than Bitcoin, Still Not Private

    Lightning Network improves Bitcoin privacy but has surveillance vulnerabilities. Routing surveillance, channel analysis, and privacy best practices.

  • Linux Phones and Open Hardware

    Complete 2025 guide to Linux phones with hardware kill switches. PinePhone, Librem 5, FLX1s, HIROH, Jolla compared. Prices, specs, and which to buy.

  • Mesh Networks and Disaster Communications: Building Surveillance-Resistant Infrastructure

    Build mesh networks with LoRa, Meshtastic, and amateur radio. Surveillance-resistant infrastructure that bypasses traditional internet.

  • Metadata Forensics: What Your Documents Reveal About You

    Every photo, document, and file contains hidden metadata that can expose your location, identity, and editing history. Learn what metadata reveals and how to remove it.

  • How Monero Works: The Only Truly Private Cryptocurrency

    Deep dive into Monero privacy: ring signatures, stealth addresses, RingCT. Why Monero is the only cryptocurrency that actually protects privacy.

  • Namecoin: Blueprint for a Censorship-Resistant Internet

    Namecoin was Bitcoin\'s first fork. How its censorship-resistant DNS tech works, why adoption failed, and its lasting legacy for decentralized naming.

  • Namecoin: Decentralized DNS and Digital Identity

    Namecoin provides censorship-resistant domain names outside government control. How blockchain DNS works and why .bit domains matter.

  • OSINT Tools: The Investigator\'s Arsenal

    Maltego, Shodan, SpiderFoot, and other open source intelligence tools used by journalists, investigators, and hackers. What they can find about you.

  • OSINT Tools: How They Find You

    Maltego, Shodan, SpiderFoot, Sherlock, theHarvester. These are the tools investigators use to find people. Here\'s how they work, and why you should know about them.

  • Phone Number OSINT

    How investigators trace phone numbers to identities. Reverse lookup tools, carrier identification, VoIP detection, social media linking, and HLR lookups explained.

  • Your Phone vs. ICE: A Technical Analysis of Mobile Surveillance

    How Paragon spyware infects phones. What Stingrays intercept. Why airplane mode isn't enough. Technical reality of mobile surveillance.

  • Photo Metadata: The Hidden Tracking in Your Images

    Every photo you take contains hidden data that can expose your location, device, and identity. EXIF metadata is a privacy nightmare. Here\'s how to protect yourself.

  • The Black Boxes in Your Devices

    Your phone and computer run code you can\'t see. Baseband processors, Intel ME, AMD PSP, and firmware blobs have full system access. What\'s actually running?

  • The Quantum Cryptocalypse Is Coming

    Quantum computers will break current encryption. NSA harvests encrypted data now to decrypt later. The cryptocalypse timeline and how to prepare.

  • Reverse Image Search OSINT Guide

    Complete guide to reverse image search for OSINT. PimEyes, Yandex, TinEye, FaceCheck compared. Find people by photo, verify identities, and protect yourself.

  • Room 641A and the Backbone Taps

    In 2006, AT&T technician Mark Klein revealed that the NSA had installed fiber-optic splitters to copy all internet traffic flowing through AT&T\'s San Francisco facility. Room 641A was just one of many. Here\'s how backbone surveillance works.

  • Screenshot Forensics: What Your Screenshots Reveal About You

    Screenshots contain hidden fingerprints: fonts, rendering, screen resolution, and more. Investigators use these details to identify devices and users.

  • Signal & WhatsApp Tracking Flaw: 3 Billion Users Exposed

    Unpatched vulnerability lets attackers track Signal and WhatsApp users in real-time using delivery receipts. Drain batteries, consume data. Researchers warned in 2024. Still not fixed.

  • SSD Hardware Encryption Failures

    Researchers cracked Samsung and Crucial SSDs by pressing Enter. Self-encrypting drives had empty master passwords, unbound keys, and recoverable secrets. Here\'s what went wrong.

  • Steganography: The Invisible Messages in Plain Sight

    Data hidden inside ordinary images, audio, and video. How steganography works, how it\'s used for malware and covert communication, and how to detect it.

  • Stylometry: How Your Writing Style Identifies You

    Your writing has a fingerprint. Word choice, punctuation, sentence structure: these patterns can identify you even when you\'re anonymous. Here\'s how stylometry works.

  • Synthetic Media Detection: Can We Still Spot Fakes?

    AI-powered deepfake detection tools, biological signals, metadata analysis, and content credentials. How to spot synthetic media in 2026, and the limits of detection.

  • Tornado Cash: The War on Crypto Privacy

    Tornado Cash developer sentenced to 64 months. Samourai founders got 5 years. North Korea stole $1.34B. The crypto mixer crackdown.

  • TPM Explained

    TPM chips secure encryption keys and verify boot integrity. They also have vulnerabilities, can be sniffed over the bus, and don\'t stop physical attackers. Here\'s what TPM really does.

  • UEFI and Secure Boot

    Secure Boot promises to stop malware. In practice, it locks you into Microsoft\'s trust chain, gets bypassed regularly, and blocks open source firmware. Here\'s how it actually works.

  • Unredaction Techniques: How Failed Redactions Get Exposed

    When document redactions fail, here\'s how researchers, journalists, and the public extract the hidden information. A technical guide to identifying and bypassing faulty redactions.

  • What is a VPN Concentrator?

    A VPN concentrator handles hundreds or thousands of VPN connections simultaneously. Learn how they work, when you need one, and why Fortune 500 companies use them.

  • What is VPN Passthrough?

    VPN passthrough lets older VPN protocols work through your router. Learn what it does, when you need it, and why modern VPNs like WireGuard don\'t require it.

© 2026 State of Surveillance. SYSTEM_VERSION_2.0

// SOURCED AGAINST PRIMARY RECORDS. SPOT AN ERROR? REPORT IT.

ABOUT | CORRECTIONS | METHODOLOGY | SECURITY AUDIT SERVICES | PRIVACY POLICY | TERMS | SUPPORT US | SPONSOR

Support Independent Investigations

FUND THE MISSION