Hi everyone! Please read this as it is incredibly important!
Over the past few days Iâve been harassed via anonymous asks from someone who is attempting to dox me. In addition to revealing personal information about other people, they have been hinting at my location, my browser, and tried multiple ways to try and grab my IP address.
I know talking about Internet security isnât fun by any means, but I urge you all to listen and ensure youâre keeping your information safe. Please be wary of what you share on this site and on discord, with people youâve met, with friends youâve made online. It is unfortunate to say, but you truly donât know who is on the other side of the screen.
IF YOU ARE BEING THREATENED AND HARASSED VIA ANON DO NOT DELETE THE ASKS. DO NOT ANSWER. SCREENSHOT THEM AND SEND THEM AS PROOF TO TUMBLR STAFF. Let staff know that you are unable to flag the message like they suggest as it is on anon. Hopefully theyâll be able to help you out, or at the very least if enough messages like this crop up they will look to protect our information and data better than they are now.
AFTER YOU HAVE MESSAGED STAFF FILE A REPORT WITH YOUR GOVERNMENT AND APPROPRIATE LEGAL ENFORCEMENT ESTABLISHMENTS ACCORDING TO YOUR JURISDICTION. The screenshots will come in handy here as well!
GOVERNMENT OF CANADA - YOU WILL HAVE TO CALL YOUR LOCAL POLICE TO FILE A REPORT IN ADDITION TO SUBMITTING THIS FORM
APPROPRIATE USA FEDERAL INVESTIGATIVE BUREAUS TO CONTACT
FOR USA: REPORT THE CYBERCRIME TO CISA
HOW TO REPORT A CYBERCRIME IN THE UK - THEY PROVIDE A NUMBER YOU CAN CALL IF YOU ARE CURRENTLY EXPERIENCING IT
Hereâs a few methods that you can take to protect yourself and the people around you as they did allude to being able to do so through people theyâve already hacked.
1. USE A VPN. Proton VPN is free, and you can download browsers such as Opera and TorBrowser to protect yourself. Ensure that if you have a VPN downloaded that you have the option to run as soon as you turn on your laptop, and to automatically connect! If youâre like me and tend to forget, this is a lifesaver. You may have to submit captchas more frequently, but in my opinion itâs a small price to pay for peace of mind!
Keep it running when you send asks, DMs, go on discord, whatever.
EDIT 11/5/2021: If somebody has your IP address they only have your general location within about 30 miles!
2. Try to limit use on Tumblr to desktop with the VPN and private browser running - the doxxer was able to see the system my phone was running on as well as my IP.
EDIT 11/5/2021: Look into downloading an app to protect your phone such as BitDefender Mobile Security which will provide a VPN and web security protection for ~$14/month!
3. Download an AntiVirus program! It will help detect any malicious spyware - Google to find a reputable program that works for you and your budget. Bitdefender and Norton are two great options.
EDIT 11/5/2021: If youâre worried your computer has been compromised, you can do a hard factory reset!
4. Enable Two Factor Authentication on everything. There are a bunch of free authenticator apps you can download onto your phone (Google, Microsoft, etc). You also have the option of using your phone or email - whatever works for you! For an extra level of security, make sure to end any existing/currently running sessions before you set it up.
5. Change your passwords and make sure you write them down in a physical location, not saved on your phone or computer! Again - end any running sessions before you do so!
6. Donât click any suspicious links! Donât click links in asks! I mentioned this before, but this or another person tried to grab my IP through a hyperlink in an ask - copy and paste it into your notes to see what the actual URL is before you click! If itâs a shortened link (bit. ly, etc.) ask them to resend with the full link. Better to be annoyed with a long string of letters and numbers than to have your IP tracked.
EDIT 11/5/2021: If you are concerned about the legitimacy of a link you can always type in https://google.com/safebrowsing/diagnostic?site= into your search bar followed by the link provided!Â
If they sent a shortened URL, check it at checkshorturl.com
If they sent an encoded URL, check it at urldecoder.com
7. DO NOT POST PHOTOS YOU TOOK DIRECTLY FROM YOUR PHONE. There will be data attached that can pinpoint your location! Same with videos! Please be careful! If you absolutely want to post a personal photo, screenshot the picture and then post it! You can pop it into a draft on your phone and then switch to desktop to finish up, or Google how to scrub data from photos and videos before posting!!
EDIT 11/5/2021: Make sure that your social media is PRIVATE or at the very least is not associated with the email address you have for your tumblr! Try not to post photos that have been also posted on your social media!Â
8. USE A PSEUDONYM. They might be addressing you, but if itâs not even close to your real name it will give you an extra layer of comfort. NEVER give out personal information no matter how much they harass you. You might confirm something theyâre only speculating on or give them information they didnât have - do your best to ignore, block, and report when possible.
9. BE AWARE OF WHAT STILL HOLDS YOUR DATA. Are you sending a TikTok link? Make sure your username isnât attached to it! Copy and paste the URL into a browser and then delete everything after the videoâs ID (a string of numbers). Are you sharing a Google doc with your online friend? Make sure itâs not off your personal account!
Are you sending a photo of your license to someone? Blur out your photo, address, ID number, and middle and last names! Legitimate discord server owners should only be asking for proof of your DOB! Are you talking about school? Hobbies? Landmarks? Know that these can provide an idea of where youâre currently residing! Taking a photo of your car for some reason? Blur the license plate! Street signs! If there are signs from political canvassing in the area, blur those out too! I would say never post a photo of the area you live in or your neighbourhood - there are too many things that can appear in the background that people can use to find you. Donât describe yourself if there are distinctive attributes in your appearance!
10. USE A DIFFERENT EMAIL WHEN SIGNING UP FOR SITES/ACCOUNTS ASSOCIATED TO YOUR PSEUDONYM. Create a new one for writing. Donât put your personal name on there. If you end up having to change pseuds, you can easily alter it to reflect whatever name you would like to be called! Using your personal email address gives doxxers another potential avenue. Similarly with kofi - as a content creator when you tip it will reveal your first and last name if you donât have a separate paypal account set up! IF YOU CHOOSE TO TIP ON KOFI MAKE SURE THE PERSON YOU ARE TIPPING IS SOMEONE THAT YOU TRUST. I know thatâs a little strange to say after everything I just wrote, but use your gut.
11. If they are bothering you about âunencrypted portsâ on your router donât worry. This information is accessible if they have your IP address as they can run a network scan to determine this. You can fix this by ensuring that your wifi encryption is either WPA2 or WPA2-PSK with AES encryption (not TKIF) by logging into your router settings!
Please share this and ensure youâre taking care of yourself and your data! You might never do something like this, but there are people out there who will take advantage of this. These are also great habits to have for your life outside of tumblr and social media; preventative measures will help a lot! Whether youâre reading, writing, vibing, keep yourself safe!!