<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom">   
  <channel>  
    <title>IntelTechniques by Michael Bazzell</title>
    <link>https://inteltechniques.com/blog/</link>
    <description>IntelTechniques by Michael Bazzell</description>
    <atom:link href="https://inteltechniques.com/blog/rss.xml" rel="self" type="application/rss+xml" />   
    
    <item>
      <title>Blog Archive</title>
      <link>https://inteltechniques.com/blog/posts/blogarchive.html</link>
      <description>Blog Archive</description>
      <pubDate>Sat, 29 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/blogarchive.html</guid>
      <content:encoded><![CDATA[
      Today we uploaded the entire blog archive from 2020 to present, excluding a few severely outdated posts. Most of these are notifications of new books, magazines, and podcast episodes, but there may be some minor value buried in there somewhere. Several people asked specifically for the podcast shows notes, so we dug those up from episodes 151-306. Everything before that has been lost for a long time, when the show was on a different host. Full details at <a href="https://inteltechniques.com/blog/">https://inteltechniques.com/blog/</a>
      ]]></content:encoded>
    </item>

    <item>
      <title>Free PDF Self-Publishing Guide</title>
      <link>https://inteltechniques.com/publishing.html</link>
      <description>Free PDF Self-Publishing Guide</description>
      <pubDate>Thu, 20 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/publishing.html</guid>
      <content:encoded><![CDATA[
      In 2020, I published a book called <a href="https://inteltechniques.com/book8.html">This Book Was Self-Published</a>. I wanted to share my experiences self-publishing several books, and it also served as my own documentation of the steps I had taken up to that point. It included a chapter on digital publishing focused on the Amazon Kindle platform, but in 2023, I expanded that section to include native PDF publishing. At that time, I had chosen a service called SendOwl for PDF distribution, which worked well for several years. They offered a fair price, but more importantly they offered the option for us to send unlimited free updates to customers who had purchased digital books. This worked great for two years, but then it all collapsed.<br><br>
      In 2025, SendOwl notified us that they would no longer allow us to send out free updates to customers, and they were increasing our prices ten-fold (plus fees for all download bandwidth). This is not an exaggeration; you can read the public outrage at <a href="https://www.trustpilot.com/review/www.sendowl.com" target="_blank">https://www.trustpilot.com/review/www.sendowl.com</a>. All legacy accounts would be switched to their new limited platform, which was unsustainable for us. Fortunately, we found a new service called <a href="https://payhip.com/?fp_ref=michael76" target="_blank">Payhip (https://payhip.com/?fp_ref=michael76)</a>. I recently updated the section of the book about PDF distribution in order to reflect these changes and the purpose of this guide is three-fold. First, it is to share our experiences with Payhip after a year of their services, which may encourage readers to launch their own self-published project. Second, those who may have purchased older print or PDF versions of the book can have this updated content for free. Finally, it serves as a warning to stay away from SendOwl, a service we had previously recommended.<br><br>
      <a href="https://payhip.com/?fp_ref=michael76" target="_blank">Payhip</a> is now my preferred digital book purchase and delivery service. It is the most affordable option with the most robust features for our use. It also puts the most money in your pocket from sales. If you legitimately purchased any PDF from us over the past year, you purchased through Payhip.
      Payhip is not a completely free service. At the time of this writing, the "free" tier had no monthly fee, but Payhip takes 5% of every sale. On top of that, you will pay a 2.9% credit card transaction fee on every purchase. The next tier is $29 per month plus a 2% fee per sale and the "Pro" tier is $99 per month with no fee per sale. All paid tiers still pay the 2.9% credit card transaction fee.<br><br>
      This is where you must consider your predicted sales. While the cheaper (or free) monthly fee may seem like a better deal, those 5% and 2% fees may be more than moving to a different tier. Let's do the math. Assume you will sell 100 books per month at $20 per book. The following outlines the three basic tiers.<br><br>
      $0 (Monthly) + $100 (5% of sales) = $100 (Payhip Fee)<br>
      $29 (Monthly) + $40 (2% of sales) = $69 (Payhip Fee)<br>
      $99 (Monthly) + $0 (0% of sales) = $99 (Payhip Fee)<br><br>
      In that scenario, the middle plan is best. Let's assume you will sell 500 books monthly.<br><br>
      $0 (Monthly) + $500 (5% of sales) = $500 (Payhip Fee)<br>
      $29 (Monthly) + $200 (2% of sales) = $229 (Payhip Fee)<br>
      $99 (Monthly) + $0 (0% of sales) = $99 (Payhip Fee)<br><br>
      In that scenario, the "Pro" plan is best financially. This can be confusing since we never know how many books we will sell. I recommend testing with the free plan. If your sales are too much to justify this plan, you can always raise the tier before the monthly fee kicks in. In fact, you can switch tiers in either direction at any time. Always pay attention to the math for your own sales. As I write this, the "Pro" plan is ideal for my sales.<br><br>
      Once you have established an account with Payhip, the following explains the process to sell your book.<br><br>
      •	Click "Products" in the menu then "Add new product".<br>
      •	Select the "Digital Product" or "e-book" option.<br>
      •	Provide the title of your book and the price.<br>
      •	Click the "Upload product file" link and select your book PDF.<br>
      •	Click the "Upload a product image" link and select your book cover image.<br>
      •	Provide a description of your book and choose your desired visibility.<br>
      •	Click "Add Product".<br><br>
      You can now click on "Products" in the menu and see your book. However, it is not available for purchase just yet. You must connect some type of payment processor in order to accept credit cards and deliver your product. I prefer Stripe for this, but PayPal is simpler. You will need to create an account at Stripe or PayPal, and then connect the account within Payhip by navigating to "Account" > "Settings" > "Payment Details". Select the appropriate option and follow the steps to associate the account. Once this is complete, you are ready to sell your book.<br><br>
      Return to "Products" and click the "Share/Embed" button next to your item. This presents several options. I no longer prefer to only sell through my website code, so I focus on the "Share" option. It presents the following URL for this book.<br><br>
      <a href="https://payhip.com/b/k5Zuy">https://payhip.com/b/k5Zuy</a><br><br>
      I can now link to this URL on my site and forward people to purchase directly through the Payhip site. I do this for a few reasons. First, by purchasing through Payhip instead of my site, readers can place multiple items from my Payhip store into a "cart" and checkout later. If I had embedded code onto my own site, that could fail. Additionally, it does not require me to store any cookies from users on my site. Finally, purchasing with a credit card on Payhip's site is likely to work better than embedding code or an iFrame on my own site. I do not want to create any purchasing friction. The most likely way to complete the sale without Stripe being fussy about the purchase is on Payhip's site. The following displays the purchase and checkout pages.<br><br>     
      <img src="https://inteltechniques.com/blog/images/tb01.png" class="img-fluid"><br><br>      
      The customer can provide any name, email and credit card information, then pay for the purchase. Payhip will immediately present the customer with a download link within their browser, and also email them a receipt with additional copy of the link. This all happens without any input from you. <br><br>
      <img src="https://inteltechniques.com/blog/images/tb02.png" class="img-fluid"><br><br> 
      Notice that it requests a country and state with zip code. This is for state sales taxes. Payhip will collect and distribute the taxes on your behalf. Some states require it while other do not. The tax rate varies between states. If a state is not selected, the tax will be based on the IP address of the reader. Again, these are all details I want done on Payhip's site and not mine. I highly recommend that you test all of these settings several times before sharing the purchase option publicly. <br><br>
      Regardless of how you facilitate sales, Payhip hosts your PDF on their servers and delivers the product without your input.  However, we are far from pushing PDFs into people's inboxes. There are many additional options to configure in "Account" > "Settings > "Advanced Settings".<br><br>
      Protect your PDF files: With this option, the PDF is watermarked with the purchaser’s email address in small letters in the top left every page of the document. If I find a pirated copy of a book floating around the internet, I can look for this data and learn more about the culprit. I can also disable updates and downloads for that reader if desired. This eliminates SOME risk of the buyer pirating the PDF to the world. However, there are problems with this. The watermarks can be removed. Anyone who plans to upload your content to book piracy websites will know how to remove any evidence of the purchase.<br><br>
      Download Limit: The default download attempts of a purchased book are five. I find this to be acceptable. That should be plenty of attempts for someone to download their book. If they still have trouble, you have the option to reset any individual purchase by searching for the order and clicking "Increase download attempts" option.<br><br>
      Gifting: Enabling this option allows people to purchase the book from you on another's person's behalf. They can include the recipients email address so that they receive the book instead of the purchaser. I like this option.<br><br>
      Pricing: Previously, I chose $14.03 for printed copies of the original version of this book. I kept the price low to encourage sales, and I did not have to be involved in any phase of the purchasing process. For digital PDFs of this updated revision, I chose $20. This may seem high and counterintuitive to the print pricing, but I have reasons for this choice.<br><br>
      First and foremost, I provide free updates to this PDF digital guide (as seen here). You are not purchasing a one-time document, and later asked to buy the updates. I believe $20 justifies the purchase. I have also found that my audience responds better to an even price, such as $20, over a detailed price, such as $14.03 or $18.99. $20 per guide has worked well for my strategy.<br><br>
      Free Orders: You may want to issue a free book to someone as a gift or for a review. This can be done under the "Marketing" menu. you can create a coupon code and give it to someone to obtain the book for free. You do not pay an additional fee to Payhip for these orders. <br><br>
      Updated Files: This is the biggest benefit of this service. You can update your book from your word processor; generate a new PDF; upload the new PDF to replace the prior PDF on Payhip; and send an email to all purchasers notifying them of the update. You must do this at "Customers" > "Email Updates" > "New email update". As long as you include the following line at the end of your message, they will receive a link to the latest file. Below it is an example.<br><br>
      [download_link] <br><br>
      <img src="https://inteltechniques.com/blog/images/tb03.png" class="img-fluid"><br><br> 
      I am unable to successfully use this feature because many of our orders were placed through SendOwl in previous years, and our legacy account has since been terminated with them. Generating an updated email blast on Payhip would miss most orders. However, if you started with Payhip, you could use this feature at any time.<br><br> 
      Additional Features: You can also sell bundles, allow items to be placed in a cart, and generate discount codes. <br><br>
      Why should you consider this over Kindle books? Two reasons: convenience and income. You already have a PDF, so your hard work is done. Payhip handles all of the rest. You receive the entire purchase price, minus the credit card fees. If you have a technical manual at a cost of $20.00, your take is $19.40. That is a 97% royalty! As long as you sell enough copies to justify the "Pro" monthly fee, this can be an option for some writers. If not, the free tier would still pay much more than Amazon. All of the transactions happen behind the scenes, and you are not responsible for delivering the goods. <br><br>
      Prior to 2023, I focused only on KDP print books. In late 2022, many people complained that print books were dead and digital files were the only way I should release technical manuals. I began offering numerous technical titles as PDF releases, and the response was mixed. Many people loved the new format, while many others complained because there were no print options. The lesson here is that you will never make everyone happy.<br><br>
      As I continued to release more PDFs, I made sure to update them often. Almost every month, I modified the content of each PDF to match various changes with the technologies discussed. This was a huge hit with my readers, and they appreciated the constantly updated material. When SendOwl terminated the legacy accounts, we had to switch to Payhip and the ability to send all of those customers free updates vanished. Again, if you sign up with Payhip and only rely on them, you could make it work. <br><br>
      Offering free updates to a $20 PDF may seem unsustainable. That may sound like a lot of work if you only have a few sales. I was fortunate to have a large audience, and the work was justified. Every time I issued updates to my books, I posted details of the updates on my blog and social media accounts. These posts generated a spike in new sales every time. The free updates were working well from a marketing view. Digital PDFs are much easier to create. However, this worked well because I have already established an audience. Your first book(s) may rely on Amazon sales to get going.<br><br>
      Overall, only you can choose whether PDF delivery is appropriate for your audience. While it is the easiest distribution option, PDFs do not transfer well to a Kindle or other E-book devices. Reference manuals, such as my OSINT and privacy books, opened on a laptop may work well, but a fictional novel in PDF is not desired by most. The majority of your readers will not want a PDF from you unless it is a large trim size with technical content. If you want to reach the largest audience possible, you might create a Kindle version of your book, which brings along many nuisances, as explained in the book.<br><br>
      Today, we rely solely on Payhip for all digital orders and I could not be happier. We pay them less per month than any month we were on SendOwl, even before the huge price increases. All of the paid issues of UNREDACTED Magazine were through Payhip and the current PDF books are too. After I wrote this update, I noticed Payhip had an affiliate program, so I signed up. If you want to let them know we referred you, which gives us a few bucks, please sign up through <a href="https://payhip.com/?fp_ref=michael76" target="_blank">Payhip (https://payhip.com/?fp_ref=michael76)</a>. Our affiliate programs greatly help support this whole thing. If you want to read about all of my experiences self-publishing print books, digital books, and a podcast, consider my book <a href="https://inteltechniques.com/book8.html">This Book Was Self-Published</a><br><br>
      OK, what do you want to write about? Please create something from which the world will benefit, generate some income during the process, and share it with us when you make it!
      ]]></content:encoded>
    </item>

    <item>
      <title>OS Telemetry Update</title>
      <link>https://inteltechniques.com/blog/posts/telemetryupdate.html</link>
      <description>OS Telemetry Update</description>
      <pubDate>Wed, 19 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/telemetryupdate.html</guid>
      <content:encoded><![CDATA[
      Shortly after publishing the <a href="https://inteltechniques.com/2026.telemetry.html">OS Telemetry Guide</a>, we received a lot of feedback. A lot. There were two concerns. First, when enabling telemetry in order to update, would all of the locally-stored telemetry be delivered, making the protections useless? Second, many people asked why we excluded Linux from our guide. Let's tackle both. <br><br>
      The Linux response is easy. Linux does not natively collect much telemetry. Many distributions collect none at all. There is no central repository snooping on your daily activity. Therefore, we have no recommended DNS block list for Linux in general. If you are concerned, we recommend a software firewall such as Open Snitch instead of DNS filtering.<br><br>
      The other concern is more complicated. Yes, enabling all connections to Apple or Microsoft does open the flood gates for telemetry delivery, but not the way you might think. If you never use Apple's Music, News, Photos, or other stock applications, there is no telemetry to deliver. If you use those apps but have not opened them since the last reboot, much of the logs have been purged. If you are following our previous guides on purging logs, even less is stored (and transmitted). This is why I insist on only applying updates after a reboot with everything closed. Also, if you have no Apple account associated with the macOS device, there is no account to store all of the details. The general idea was to block the non-stop sending of data every minute to Apple or Microsoft and only allow connection when we need something from them. However, I respect the concerns and agree that opening the flood gates is not ideal.<br><br>
      Therefore, let's modify things a bit. When attempting to update macOS with DNS filtering set to block all connections, I can see in the DNS logs that things are working as desired.<br><br>
      <img src="https://inteltechniques.com/blog/images/te01.png" class="img-fluid"><br><br>
      I can also see that the updates were blocked.<br><br>
      <img src="https://inteltechniques.com/blog/images/te02.png" class="img-fluid"><br><br>
      If I disabled all blocking, it should all work fine but would leak out too much data. Instead, I applied the following to my "Allowlist" within NextDNS.<br><br>
      <img src="https://inteltechniques.com/blog/images/te03.png" class="img-fluid"><br><br>
      These are the bare minimum connections required to allow Apple to update macOS without openeing every connection on the domain. We are blocking every connection to apple.com but allowing swdist.apple.com (software distribution). These specific domains are related to updates and would not send telemetry based on applications such as News, Photos, Music, etc. After enabling these, I attempted updates again.
      <br><br>
      <img src="https://inteltechniques.com/blog/images/te04.png" class="img-fluid"><br><br>
      Everything worked and I allowed my machine to update. When complete, I simply disabled each rule but left them in the Allowlist for future use.
      <img src="https://inteltechniques.com/blog/images/te05.png" class="img-fluid"><br><br>
      This could be replicated for Windows by watching your NextDNS logs while attempting an update. It takes a bit of trial and error, but should be straight-forward. However, both Apple and Microsoft constantly tweak these connections so expect failure at some point. When that happens, simply repeat the process and see what changed, adding the new domain to your Allowlist.
      ]]></content:encoded>
    </item>

    <item>
      <title>New OS Telemetry Guide</title>
      <link>https://inteltechniques.com/2026.telemetry.html</link>
      <description>New OS Telemetry Guide</description>
      <pubDate>Tue, 18 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/2026.telemetry.html</guid>
      <content:encoded><![CDATA[
      In <a href="https://inteltechniques.com/book7">Extreme Privacy, 5th Edition</a> I explained how I use a software firewall to prevent my computers from sending out details about my usage to the companies which create the applications and operating systems powering them. In <a href="https://payhip.com/b/6teIq">Issue 011 of UNREDACTED Magazine</a>, I explained how the Apple operating system now bypasses the software firewall to send data about your actions back to their servers without any notification. This generated a lot of feedback. Some wanted to know exactly what they should block for their own macOS machines while others wanted an updated list for Microsoft. Others were curious if this would apply to Windows virtual machines (yes, it does). <br><br>
      The purpose of this guide is to allow you to create a DNS filtering block list which can be used without a software firewall to prevent all telemetry from being sent to either Apple or Microsoft (or both if using a VM). You will need a free <a href="https://nextdns.io/NextDNS">NextDNS</a> account and your host operating system must be using this specific account for it all to work, as explained in <a href="https://inteltechniques.com/book7">Extreme Privacy, 5th Edition</a>. Once you have that working, the following block lists block all telemetry by placing each option in the "denylist" within your NextDNS profile.<br><br>
      <img src="https://inteltechniques.com/img/nextdns.png" class="img-fluid"><br><br>
      <h4 class="card-title">Apple Block List</h4>
      <hr/>
      apple.com<br>
      icloud.com<br>
      itunes.com<br>
      apple-dns.net<br>
      apple.news<br>
      apple-relay.cloudflare.com<br>
      apple-relay.fastly-edge.com<br>
      cdn-apple.com<br>
      aaplimg.com<br>
      akadns.net<br>
      dsce9.akamaiedge.net<br>
      sentry.io<br>
      demdex.net<br>
      mgr.gcsp.cddbp.net<br>
      safebrowsing.googleapis.com<br>
      ohttp-relay1.fastly-edge.com<br><br>        
      <h4 class="card-title">Microsoft Block List</h4>
      <hr/>
      microsoft.com<br>
      microsoft.net<br>
      windows.com<br>
      windowsupdate.com<br>
      bing.com<br>
      live.com<br>
      msedge.net<br>
      office.com<br>
      skype.com<br>
      msn.com<br>
      office.net<br>
      xboxservices.com<br>
      cloud.microsoft<br>
      msftconnecttest.com<br>
      msftncsi.com<br>
      nelreports.net<br>
      t.ssl.ak.dynamic.tiles.virtualearth.net<br>
      img-s-msn-com.akamaized.net<br>
      edge-consumer-static.azureedge.net<br>
      prod-video-cms-amp-microsoft-com.akamaized.net<br>
      sentry.io<br>
      demdex.net<br>
      safebrowsing.googleapis.com<br><br>
      Once these are applied and activated, your system can no longer send data about your usage back to the motherships. However, that also means your systems can no longer receive updates or scan files and programs for suspicious behavior. This can be a serious risk for those who need that protection. I would never recommend this for a non-tech-savvy user. I also insist that I disable the DNS filtering at least once a week to download and apply system updates. During this time, I have no other apps open and I re-apply the DNS filtering upon a reboot.<br><br>
      I believe macOS users should still use a software firewall such as Little Snitch or Lulu in order to block telemetry of software applications (unless you want to constantly modify your denylist in NextDNS with their domains). It is also vital to change your time server to a nuetral provider (not Apple or Microsoft), as explained in the book. This keeps your time synchronized without allowing Apple or Microsoft to suck up everything else about your usage.<br><br>
      <b>Overall, please do not apply any of this unless you understand the risks and benefits.</b><br><br>
      <h4 class="card-title">Results</h4>
      <hr/>
      Within a few seconds of booting my Apple computer, the following is only a partial output of the connections being blocked. This was without opening a single application.<br><br>
      <img src="https://inteltechniques.com/img/apple.png" class="img-fluid"><br><br>
      Within a few seconds of booting my Windows computer, the following is only a partial output of the connections being blocked. Notice that a connection to Proton was allowed since it was not on the denylist. Also notice that a connection to Apple popped in because many people with Windows systems may also use Apple-related applications. There is no harm in applying both block lists to any computer. The unused domains won't harm anything.<br><br>
      <img src="https://inteltechniques.com/img/windows.png" class="img-fluid"><br><br>
      I want to say one last time that you should use caution when blocking system connections. In theory, it sounds great. You are preventing your host from snooping on you and documenting a lot about your activity, including your IP address, machine identifiers, accounts, programs you use, and when (and how) you use them. You are also preventing your system from protecting you. Only you can decide if you need their protection. If you have good digital hygiene, understand how cyber threats come into systems, and have the discipline to manually apply updates, you should be fine. If you are prone to viruses, this is not for you. Always understand how to reverse your DNS provider before making the switch. See <a href="https://inteltechniques.com/book7">Extreme Privacy, 5th Edition</a> for more details.
      ]]></content:encoded>
    </item>

    <item>
      <title>New Firewall Guide</title>
      <link>https://inteltechniques.com/firewall/</link>
      <description>New Firewall Guide</description>
      <pubDate>Mon, 17 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/firewall/</guid>
      <content:encoded><![CDATA[
      We have released a brand new Firewall Guide at <a href="https://inteltechniques.com/firewall/">https://inteltechniques.com/firewall/</a>. This guide walks through every step of creating your own pfSense firewall with <a href="https://go.getproton.me/aff_c?offer_id=26&aff_id=1519">Proton VPN</a> and Wireguard.
      ]]></content:encoded>
    </item>

    <item>
      <title>The New Blog</title>
      <link>https://inteltechniques.com/blog/posts/newblog.html</link>
      <description>The New Blog</description>
      <pubDate>Sat, 15 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/newblog.html</guid>
      <content:encoded><![CDATA[
      I have hosted a WordPress blog on this site for almost 20 years. I don't any more. <br><br>
      WordPress was great. Type what you want to say; click a few buttons; and poof, your post is available to the world while your RSS feed is auto generated. It was so easy. It also brought a lot of trouble. <br><br>
      Even though we self-hosted the blog, WordPress continued to add various tracking capabilities. We would remove them as they emerged, but tracking was still possible. We try to prevent us from knowing the IP addresses of our visitors whenever possible. This gives you more privacy and us deniability if we were to receive a court order for traffic. The feds were not knocking down our door, but we like to practice what we preach.<br><br>
      We use Cloudflare as our CDN and full caching prevented our web host from receiving the requests for pages. This eliminated both our host and us from seeing your specific traffic and IP address. However, searches on the blog would generate a direct hit to the host and bypass the protection. We disabled search but that did not stop all logging when an un-cached page was accessed.<br><br>
      My main beef with having WordPress on our site was the attacks. Thousands of bots brute-force and scrape WordPress installations looking for content and vulnerabilities. This can result in hundreds of thousands of page loads every day, sometimes millions. Our CDN stops some of it, but most gets by.<br><br>
      I also just don’t like having a large amount of code and a database on my site just to deliver text content and a few images. WordPress is very excessive for our needs. So we killed it. Doing this left us with an entire site existing of only HTML and JS. This allowed us to stop using our web host (Namecheap) and simply cache the static pages on a Cloudflare worker. The entire site is under 100 MB and our old host is no longer logging your activity. Cloudflare is now the only server which can see the data and traffic, and they do not share IP address or traffic logs with us, outside of temporary security logs when attacked. That is not to say THEY don't store the data, but they could do that as our CDN anyway. We have just eliminated one of two middle-men (Namecheap). We updated our Privacy Policy to reflect these new benefits at <a href="https://inteltechniques.com/privacy">https://inteltechniques.com/privacy</a>.<br><br>
      Today, we offer a pure HTML with Javacript Blog at <a href="https://inteltechniques.com/blog/">https://inteltechniques.com/blog/</a>. There is no database or bloat. Images only load if you expand a post in order to keep bandwidth down for you and us. We created an RSS feed to continue supplying updates to those who rely on RSS readers for content. We even forward the old feed to the new so that your existing configurations should just work. <br><br>
      We have already posted new content and pruned the old and outdated material so be sure to take a look and subscribe to the RSS feed. We have many big things planned.
      ]]></content:encoded>
    </item>

    <item>
      <title>OSINT Tools Update</title>
      <link>https://inteltechniques.com/blog/posts/osinttools.html</link>
      <description>OSINT Tools Update</description>
      <pubDate>Fri, 14 Aug 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/osinttools.html</guid>
      <content:encoded><![CDATA[
      We have update our online OSINT Tools at <a href="https://inteltechniques.com/tools/">https://inteltechniques.com/tools/</a>. They now allow automated query of an X (Twitter) username across XCancel for data retrieval without being logged into a X (Twitter) account including filtration by year.<br><br>
      <img class="aligncenter size-large wp-image-4328" data-src="https://inteltechniques.com/blog/images/xcancel.png" width="100%"/>
      ]]></content:encoded>
    </item>

    <item>
      <title>Online Training: Updates and Membership Discounts</title>
      <link>https://inteltechniques.com/blog/posts/trainingdiscounts.html</link>
      <description>Online Training: Updates and Membership Discounts</description>
      <pubDate>Mon, 10 Aug 2026 09:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/trainingdiscounts.html</guid>
      <content:encoded><![CDATA[
      Periodically, we like to share some of the tactics, tools, and topics that we’ve been tackling recently in our online training program. If it has been a while since you last visited the training, the summary below will bring you up to speed on what has been added recently. We continue to add new lessons every month, along with the tools, templates, and resources that you have come to expect from your IntelTechniques membership.<br><br>
      We also wanted to remind former training members that, although training costs have risen in recent years, you are always welcome to renew your membership at your original discounted price point. Contact Jason at <strong>training@inteltechniques.net</strong> directly to reactivate your account or if you have any questions. No chatbots, no AI agents, and no call centers. Laura or I will assist you directly because we think you deserve proper support from real humans.<br><br>
      <h4><strong>New Lessons and Updates</strong></h4>
      The training currently includes more than 130 hours of video content, 1,000+ pages of digital guides, a custom OSINT virtual machine, specialized scripts, and report templates, with new content added every month. Below is a sample of recent lessons, tools, and resources added to the program and you can view the full curriculum at <a href="https://www.inteltechniques.net/courses/open-source-intelligence">inteltechniques.net</a>.<br><br>
      <strong>Triaging Leads</strong>
      Best practices for deciding which leads to pursue early in an investigation, with an optional real-world practical exercise.<br><br>
      <strong>Event Threat Assessments</strong>
      A scenario-based lesson on researching events, related issues, and online discussions to support safety planning and tactical decision-making.<br><br>
      <strong>Privacy Assessments</strong>
      A workflow for conducting vulnerability assessments on cooperating targets. New Excel and Obsidian templates are provided.<br><br>
      <strong>Developer Tools: Removing Page Elements</strong>
      A demonstration on using browser developer tools to remove overlays and reveal hidden page content during online investigations.<br><br>
      <strong>Cultural Intelligence</strong>
      Guidance on interpreting interests, beliefs, online behavior, photos, videos, usernames, and cultural context to improve investigative analysis.<br><br>
      <strong>Investigating a Scam Email – Exercise and Demo</strong>
      A practical attribution exercise using a real-world scam email, followed by a walkthrough of the investigative workflow.<br><br>
      <strong>Domains, IP Addresses, and DNS</strong>
      A foundational overview of how domains, IP addresses, and DNS work in the context of web traffic.<br><br>
      <strong>How Packets Work</strong>
      A companion write-up to the Domains, IP Addresses, and DNS lesson, explaining what happens at the packet level when a browser requests a website.<br><br>
      <strong>APIs</strong>
      An overview of application programming interfaces appropriate for OSINT work and how to add them to your workflow.<br><br>
      <strong>Due Diligence Reports</strong>
      An overview of core components, templates, and best practices for professional due diligence reporting.<br><br>
      <strong>Updated Tools Dashboard</strong>
      An updated set of custom OSINT tools available only to training members, including hosted and self-hosted options.<br><br>
      <strong>Client Expectations: Bug Sweep Scenario</strong>
      A real-world counter-surveillance scenario used to discuss best practices for managing challenging client expectations.<br><br>
      <strong>Sanctions Evasion Report and Resources</strong>
      A sample report and resources focused on business-entity research in the context of a sanctions-evasion investigation.<br><br>
      <strong>Address Verification Demo</strong>
      A demonstration combining search engines, people-search results, and government databases to locate and verify a target residential address.<br><br>
      <strong>Premium Breach Data Services</strong>
      A comparison spreadsheet covering popular premium breach-data services. This supplements our lesson series on building and self-hosting your own breach-data collections.<br><br>
      <strong>Triaging a Personal Data Security Incident</strong>
      Actionable steps to take in the first 24 hours after a cyber incident to stop the bleeding and mitigate damage.<br><br>
      <strong>OSINT Case Study: “Call to Arms”</strong>
      This case study was shared by one of our members and walks through their approach to an OSINT investigation.<br><br>
      <strong>Investigative Pivots</strong>
      Best practices for identifying new leads and uncovering new investigative paths.<br><br>
      <strong>PDF Editors and Utilities</strong>
      Alternative PDF readers, editors, and utilities for preparing OSINT reports. This is a useful lesson for anyone interested in moving away from Adobe products and unfriendly subscription fees.<br><br>
      <strong>Transitioning to Linux from Windows</strong>
      Tips and considerations for moving away from Windows and over to Linux as a primary operating system.<br><br>
      <strong>Cloudflare Tunnels</strong>
      A practical introduction to using Cloudflare Tunnels for low-cost remote access to infrastructure and self-hosted tools.<br><br>
      <strong>Note-taking Templates in Excel Format</strong>
      Two new Excel templates for collecting, organizing, and reusing investigative findings.<br><br>
      <strong>Telegram Scraping with Python, Part 1</strong>
      The first lesson in a series using Python scripts to automate collection of Telegram content.<br><br>
      <strong>GitHub</strong>
      A walkthrough of GitHub navigation, search options, and profile research.<br><br>
      <strong>Images and Photographs</strong>
      An updated lesson on tactics and tools for processing digital images during OSINT investigations.<br><br>
      <strong>10-Day Security</strong>
      An updated digital-security guide with tips for coaching others through a 10-step digital security makeover.<br><br>
      <strong>Regular Expressions</strong>
      This lesson explains how to use regex for locating and filtering patterned data in large files, such as breach data.<br><br>
      <strong>Executive Summaries</strong>
      An example-driven lesson on writing stronger executive summaries.<br><br>
      <strong>Linux Terminal</strong>
      A beginner-friendly guide to the Linux terminal and common command-line tools.<br><br>
      <strong>Infiltration</strong>
      Tactics and guidelines for online infiltration work, with discussion of policy, risk, and the importance of professional judgment.<br><br>
      <h4><strong>What Makes IntelTechniques Training Different</strong></h4>
      <ul>
      <li>IntelTechniques instructors are active-duty professionals from the U.S. intelligence community with decades of real-world experience. When evaluating OSINT training, we believe that instructor qualifications matter. You should know whether the people teaching the material have actual experience using these tactics at a professional level. When we are not teaching you about intelligence work, we are actively working real cases and operations in the intelligence field.</li>
      <li>Our training format is demonstration-based and uses real-world targets. This is not “death by PowerPoint.” The program is built around practical tools, repeatable workflows, investigative tradecraft, and the full intelligence process from triage through report writing.</li>
      <li>We write our own curriculum. Our materials have become the foundation that many other OSINT training programs, instructors, and academic courses use as a reference point.</li>
      <li>The program is designed to provide substantial value at a practical price point. We encourage you to compare programs carefully and look at the details: depth of content, instructor experience, student support, templates, tools, updates, and practical application.</li>
      <li>We focus our time and resources on curriculum and student support rather than marketing. Our growth has relied largely on word of mouth, and we are proud that the program is known for the strength of its content. This is why you do not hear from us often about the program. We want to respect your time and inbox.</li>
      <li>Support is direct and personal. Michael, Laura, or Jason will assist you directly; you will not be routed to a call center, support bot, or random staff member.</li>
      </ul>
      <h4><strong>Certification Considerations</strong></h4>
      Many certification programs rely primarily on academic testing and recurring fees. We believe a written test alone does not prove that someone can perform intelligence work, so our certification process is different.<br><br>
      <ul>
      <li>Candidates complete a 10-day real-world OSINT mission resulting in a professional intelligence report that can serve as a meaningful portfolio sample.</li>
      <li>The process is challenging and not for everyone, but successful candidates clear a high bar for OSINT certification.</li>
      <li>IntelTechniques certifies your work directly. We do not charge additional fees for a third-party logo, and we do not believe you should have to pay recurring maintenance fees to keep a certification you earned.</li>
      </ul>
      Our certification is tough and requires a significant time commitment, but if you pass, you will have achieved something that sets you apart from most intelligence professionals.<br><br>
      <strong>Reactivating Your Membership</strong>
      Former IntelTechniques online training members are always welcome back at their previous rate. If you would like to reactivate your account at your previous discounted rate, please contact Jason directly at <a href="mailto:training@inteltechniques.net"><strong>training@inteltechniques.net</strong></a>, and we will provide a payment link at your discounted membership rate. There is no deadline, no strings attached, and no hoops to jump through. You are welcome to reach out any time with questions or to regain access to our new content.<br><br>
      ]]></content:encoded>
    </item>

    <item>
      <title>UNREDACTED Magazine 012</title>
      <link>https://inteltechniques.com/blog/posts/unredacted012.html</link>
      <description>OSINT Tools Update</description>
      <pubDate>Sun, 21 Jun 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/unredacted012.html</guid>
      <content:encoded><![CDATA[
      Issue #012 is now available (18 Articles - 66 Pages) by the IntelTechniques team for $10!<br><br>
      <a href="https://unredactedmagazine.com">https://unredactedmagazine.com</a><br>
      <a href="https://payhip.com/b/fS2NA">https://payhip.com/b/fS2NA</a>
      Contents:<br><br>
      "../../News & Updates<br><br>
      Hardware TOTP: Revolving 2FA Codes Without an App<br>
      Placing Telephone Orders to Avoid VPN Flags: Bypass IP Blocklists<br>
      Minimal Android Emulation: Terminal-Based Mobile VMs<br>
      The ID.me Challenge: Create Accounts with the Least Invasion Possible<br>
      The Photocopied ID Strategy: Copies of Copies of Copies...<br>
      Access Full Terminal History: Never Lose Another Command<br>
      Fun with AppleScripts: Daily Convenience and Productivity on macOS<br>
      Your Health Records are Leaking: Any Office Can Access Your Data<br>
      Repurpose Hard Drives with TrueNAS: Merge Smaller Drives for Backups<br>
      Self-Hosted Genealogy: Research Without Compromising Control<br>
      Deleting Un-Deletable Accounts: Bending the Truth to Force Removal<br>
      Security.txt is Broken: Abuse by Spammers, Scammers, & Wannabe Hackers<br>
      Drive Specifications Matter II: 80Gbps Enclosures<br>
      SDRTrunk: Avoid Expensive Police Scanners with Software<br>
      Q&A<br><br>
      No third-party ads.<br>
      No outside sponsors.<br>
      No A.I. slop<br>
      No conflicts of interest.<br>
      No fluff.<br>
      No filler.<br>
      No agenda.<br>
      Only detailed information.<br><br>
      We anticipate #013 will be released in Autumn or Winter of 2026.<br><br>
      <img src="https://inteltechniques.com/blog/images/012-616x800.png"/>
      ]]></content:encoded>
    </item>

    <item>
      <title>Updated OSINT VM</title>
      <link>https://inteltechniques.com/blog/posts/osintvm.html</link>
      <description>OSINT Tools Update</description>
      <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/blog/posts/osintvm.html</guid>
      <content:encoded><![CDATA[
      We just pushed several updates to the OSINT VM:<br><br>
      Updated linux.txt and install.sh to reflect changes within several applications.<br><br>
      Modified user.sh to reflect change with Maigret.<br><br>
      We highly recommend building a new VM to take advantage of the modifications, which bring back full function to several dead applications. Log into the OSINT portal from the book to see everything.
      ]]></content:encoded>
    </item>

    <item>
      <title>Updated GrapheneOS Settings</title>
      <link>https://inteltechniques.com/2026.grapheneos.html</link>
      <description>Updated GrapheneOS Settings</description>
      <pubDate>Mon, 05 Jan 2026 03:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/2026.grapheneos.html</guid>
      <content:encoded><![CDATA[
      The 2026 macOS and iOS guides deviated substantially from the content within <strong><em>Extreme Privacy, 5th Edition</em></strong>. This is because Apple added many new invasions to your privacy with their latest offering. While Apple devices are extremely secure, even more so than most Android devices in my opinion, this comes at a privacy risk. The settings presented in the previous articles eliminate much of the concern for Apple users, but we have to always be watching for the next embedded data collection utility.<br><br>
      With GrapheneOS, there is not as much to discuss, as it has always been a bare-bones mobile operating system allowing you to add what you want instead of being force-fed new features. However, much like Apple, many things have changed over the past two years. Let's revisit the entire content for GrapheneOS customization to match their latest release.<br><br>
      I suspect that most of these settings will already be applied to your device. However, new features are now available and it is always good practice to confirm your desired settings annually. While GrapheneOS does not typically revert any modified system settings after an update like iOS does, individual apps may have encouraged you to disable some of the overall protection.<br><br>
      The following represents how I set up my own device. Some of these settings may be too restrictive for your needs. As I stated in the previous articles, do your own research and understand what these modifications change. Only then can you make the most informed choice for your needs.<br><br>
      Again, the following is simply a supplement to the content within the book.<br>
      <ul>
      <li>Settings &gt; Network & internet &gt; Private DNS &gt; (Enter your preferred DNS)</li>
      <li>Settings &gt; Network & internet &gt; Internet connectivity checks &gt; GrapheneOS server</li>
      <li>Settings &gt; Network & internet &gt; Attestation key provisioning &gt; GrapheneOS proxy</li>
      <li>Settings &gt; Network & internet &gt; Widevine provisioning &gt; GrapheneOS proxy</li>
      <li>Settings &gt; Apps &gt; Contacts storage &gt; Device only</li>
      <li>Settings &gt; Notifications &gt; App notifications &gt; All apps &gt; Disable undesired</li>
      <li>Settings &gt; Notifications &gt; Notification history &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Bubbles &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Notifications on lock screen &gt; Don't show any notifications</li>
      <li>Settings &gt; Notifications &gt; Notification cooldown &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Flash notifications &gt; Camera Flash &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Flash notifications &gt; Screen Flash &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Wireless emergency alerts &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Enhanced notifications &gt; Disabled</li>
      <li>Settings &gt; Sound & vibration &gt; Media volume &gt; Lowest</li>
      <li>Settings &gt; Sound & vibration &gt; Notification volume &gt; Lowest</li>
      <li>Settings &gt; Sound & vibration &gt; Media &gt; Pin media player &gt; Disabled</li>
      <li>Settings &gt; Sound & vibration &gt; Media &gt; Show media on lock screen &gt; Disabled</li>
      <li>Settings &gt; Sound & vibration &gt; Default notification sound &gt; None</li>
      <li>Settings &gt; Sound & vibration &gt; Dial pad tones &gt; Disabled</li>
      <li>Settings &gt; Sound & vibration &gt; Screen locking sound &gt; Disabled</li>
      <li>Settings &gt; Sound & vibration &gt; Charging sounds and vibration &gt; Disabled</li>
      <li>Settings &gt; Display &gt; Screen timeout &gt; Low</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Pin</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Settings &gt; Scramble PIN &gt; Enabled</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Settings &gt; Enhanced PIN privacy &gt; Enabled</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Settings &gt; Lock screen timeout &gt; 5 seconds</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Settings &gt; Power button locks &gt; Enabled</li>
      <li>Settings &gt; Security & privacy &gt; Device unlock &gt; Screen lock &gt; Settings &gt; Allow camera access &gt; Disabled</li>
      <li>Settings &gt; Security & privacy &gt; Privacy controls &gt; Show passwords &gt; Disabled</li>
      <li>Settings &gt; Security & privacy &gt; Privacy controls &gt; Location access &gt; Disabled (until needed)</li>
      <li>Settings &gt; Security & privacy &gt; Exploit protection &gt; Auto reboot &gt; 18-24 hours</li>
      <li>Settings &gt; Security & privacy &gt; Exploit protection &gt; USB-C port &gt; Charging-only</li>
      <li>Settings &gt; Security & privacy &gt; Exploit protection &gt; Turn off Wi-Fi automatically &gt; 1 minute</li>
      <li>Settings &gt; Security & privacy &gt; Exploit protection &gt; Turn off Bluetooth automatically &gt; 1 minute</li>
      <li>Settings &gt; Security & privacy &gt; Exploit protection &gt; Secure app spawning &gt; Enabled</li>
      </ul>
      These settings provide a more hardened Android system while taking advantage of GrapheneOS's robust security features. Modify your device as needed and never let our fascination with privacy completely break the functionality of technology.
      
      ]]></content:encoded>
    </item>

    <item>
      <title>Updated iOS 26 Settings</title>
      <link>https://inteltechniques.com/2026.ios.html</link>
      <description>Updated iOS 26 Settings</description>
      <pubDate>Mon, 05 Jan 2026 02:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/2026.ios.html</guid>
      <content:encoded><![CDATA[
      Much like the macOS guide, <strong><em>Extreme Privacy, 5th Edition</em></strong> also offered many privacy and security considerations for previous versions of iOS. That content is also pushing two years old now, so I am again overdue for an update.  This article revisits that entire section for the recent changes within iOS 26.<br><br>
      The following assumes you are on iOS 26.1, which was the latest version at the time of writing. Now that we have let Apple offer the first major update to that OS, the menu settings should be fairly locked in. I always prefer to wait for a ".1" update before documenting specific menu settings. This guide also assumes you have already purchased and booted the mobile device, created your Apple ID, and configuring any personal customizations as explained in the book.<br><br>
      The purpose of this article is to revisit all of the System Settings for optimal iOS privacy and security. While everything here will work if you logged in to an iCloud account, which is different than an Apple account, some menus may appear differently. Consider it a supplement to the content within the book.<br><br>
      Once you can access the system on the device, the following configurations should be considered through the Settings menu. Note that some of these settings may disable features which you find desirable, and some options here might not be present within your device. Research any modifications and apply settings which are most appropriate for your usage. Never blindly accept my opinions, understand why you want the change.<br>
      <ul>
      <li>Settings &gt; Apple Account &gt; Personal Information &gt; Name and Photo Sharing &gt; Disabled</li>
      <li>Settings &gt; Apple Account &gt; Personal Information &gt; Communication Preferences &gt; Disable all</li>
      <li>Settings &gt; Apple Account &gt; Media & Purchases &gt; View Account &gt; Personalized... &gt; Disabled</li>
      <li>Settings &gt; Bluetooth &gt; Off (If not used)</li>
      <li>Settings &gt; Cellular &gt; Disable as desired</li>
      <li>Settings &gt; General &gt; Software Update &gt; Automatic Updates &gt; Off</li>
      <li>Settings &gt; General &gt; AirDrop &gt; Receiving Off</li>
      <li>Settings &gt; General &gt; AirDrop &gt; Bringing Devices Together &gt; Disabled</li>
      <li>Settings &gt; General &gt; AirDrop &gt; Use Cellular Data &gt; Disabled</li>
      <li>Settings &gt; General &gt; AirPlay & Continuity &gt; Disable all</li>
      <li>Settings &gt; General &gt; Picture in Picture &gt; Disabled</li>
      <li>Settings &gt; General &gt; AutoFill & Passwords &gt; Disable all</li>
      <li>Settings &gt; General &gt; Background App Refresh &gt; Apple Store &gt; Disabled</li>
      <li>Settings &gt; General &gt; Background App Refresh &gt; Shortcuts &gt; Disabled</li>
      <li>Settings &gt; General &gt; Background App Refresh &gt; Voice Memos &gt; Disabled</li>
      <li>Settings &gt; General &gt; Keyboard &gt; Auto-Correction &gt; Disabled</li>
      <li>Settings &gt; General &gt; Keyboard &gt; Enable Dictation &gt; Disabled</li>
      <li>Settings &gt; General &gt; Keyboard &gt; Stickers &gt; Disabled</li>
      <li>Settings &gt; Battery &gt; Battery Percentage &gt; Enabled</li>
      <li>Settings &gt; Passwords &gt; Password Options &gt; Autofill Passwords &gt; Disabled</li>
      <li>Settings &gt; Camera &gt; Scan QR Codes &gt; Disabled</li>
      <li>Settings &gt; Search &gt; Show Recent Searches &gt; Disabled</li>
      <li>Settings &gt; Search &gt; Show Recent Searches &gt; Show Related Content &gt; Disabled</li>
      <li>Settings &gt; Search &gt; Show Recent Searches &gt; Help Improve Search &gt; Disabled</li>
      <li>Settings &gt; Search &gt; Each App &gt; Disable all</li>
      <li>Settings &gt; Siri &gt; Disable all</li>
      <li>Settings &gt; Standby &gt; Standby &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Scheduled Summary &gt; Off</li>
      <li>Settings &gt; Notifications &gt; Show previews &gt; Never</li>
      <li>Settings &gt; Notifications &gt; Screen Sharing &gt; Notifications Off</li>
      <li>Settings &gt; Notifications &gt; Siri Suggestions &gt; Disable all</li>
      <li>Settings &gt; Notifications &gt; Disable notifications on sensitive apps</li>
      <li>Settings &gt; Notifications &gt; If desired, disable all Government Alerts</li>
      <li>Settings &gt; Sounds & Haptics &gt; Keyboard Feedback &gt; Sound &gt; Disabled</li>
      <li>Settings &gt; Sounds & Haptics &gt; Keyboard Feedback &gt; Haptic &gt; Enabled</li>
      <li>Settings &gt; Sounds & Haptics &gt; Lock Sound &gt; Disabled</li>
      <li>Settings &gt; Face ID & Passcode &gt; Password AutoFill &gt; Disabled</li>
      <li>Settings &gt; Face ID & Passcode &gt; Allow Access When Locked &gt; Disable undesired</li>
      <li>Settings &gt; Privacy & Security &gt; Location services &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Tracking &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Motion & Fitness &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Nearby Interactions &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Paired Devices &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Research Sensor & Usage Data &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Journaling Suggestions &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Sensitive Content Warning &gt; Disabled</li>
      <li>Settings &gt; Privacy & Security &gt; Analytics & Improvements &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Apple Advertising &gt; Personalized Ads &gt; Disabled</li>
      <li>Settings &gt; Privacy & Security &gt; App Privacy Report &gt; Off</li>
      <li>Settings &gt; Privacy & Security &gt; Wired Accessories &gt; Automatically Allow When Unlocked</li>
      <li>Settings &gt; Game Center &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; App Store &gt; Automatic Downloads &gt; Disable all</li>
      <li>Settings &gt; Apps &gt; App Store &gt; Video Autoplay &gt; Off</li>
      <li>Settings &gt; Apps &gt; App Store &gt; In-App Ratings & Reviews &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; App Store &gt; Offload Unused Apps &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Apple Store &gt; Video Autoplay &gt; Off</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Share ETA &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Air Quality Index &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Weather Conditions &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Ratings and Photos &gt; Disabled (If Present)</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Show Ratings and Photos Suggestion &gt; Disabled (If present)</li>
      <li>Settings &gt; Apps &gt; Maps &gt; Follow Up by Email &gt; Disabled (If Present)</li>
      <li>Settings &gt; Apps &gt; Photos &gt; Shared Albums &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Photos &gt; Show Hidden Album &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Photos &gt; Show Recently Viewed & Shared &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Photos &gt; Show Featured Content &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Photos &gt; Enhanced Visual Search &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Siri & Search &gt; Disable All</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Search Engine &gt; DuckDuckGo</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Search Engine Suggestions &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Safari Suggestions &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Show Recent Searches &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Quick Website Search &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Preload Top Hit &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; AutoFill &gt; Disable All</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Prevent Cross-Site Tracking &gt; Enabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Fraudulent Website Warning &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Highlights &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Camera &gt; Deny</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Microphone &gt; Deny</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Location &gt; Deny</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Advanced &gt; Privacy Preserving Ad... &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Safari &gt; Advanced &gt; Check for Apple Pay &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Shortcuts &gt; iCloud Sync &gt; Disabled</li>
      <li>Settings &gt; Apps &gt; Shortcuts &gt; Private Sharing &gt; Disabled</li>
      </ul>
      These settings provide more privacy from Apple while taking advantage of their secure mobile operating system. Modify your device as needed and never let our fascination with privacy completely break the functionality of technology.
      ]]></content:encoded>
    </item>

    <item>
      <title>Updated macOS 26 Settings</title>
      <link>https://inteltechniques.com/2026.macos.html</link>
      <description>Updated macOS 26 Settings</description>
      <pubDate>Mon, 05 Jan 2026 01:00:00 GMT</pubDate>
      <guid>https://inteltechniques.com/2026.macos.html</guid>
      <content:encoded><![CDATA[
      In <strong><em>Extreme Privacy, 5th Edition</em></strong>, I offered many privacy and security considerations for macOS. That content is pushing two years old now, so I am probably overdue for an update.  This article revisits that entire section for the recent changes within macOS 26.<br><br>
      The following assumes you are on macOS 26.1, which was the latest version at the time of writing. Now that we have let Apple offer the first major update to that OS, the menu settings should be fairly locked in. I always prefer to wait for a ".1" update before documenting specific menu settings. This guide also assumes you have already purchased and booted the device, skipping the request for an Apple ID, and configuring things such as Wi-Fi, application firewall, Spotlight, Gatekeeper, FileVault, and any personal customizations as explained in the book. Consider this a supplement to that information.<br><br>
      The purpose of this article is to revisit all of the System Settings for optimal macOS privacy and security. Major updates are known to re-enable undesired settings, so this is a good time to check everything. While everything here will work if you logged in to an Apple account, some menus may appear differently. The following was conducted within System Settings from the Applications menu.<br>
      <ul>
      <li>Settings &gt; Wi-Fi &gt; Ask to join networks &gt; Off</li>
      <li>Settings &gt; Wi-Fi &gt; Ask to join hotspots &gt; Never</li>
      <li>Settings &gt; Bluetooth &gt; Disabled (if not used)</li>
      <li>Settings &gt; Network &gt; Firewall &gt; Enabled</li>
      <li>Settings &gt; Network &gt; Firewall &gt; Options &gt; Automatically allow built-in... &gt; Disabled</li>
      <li>Settings &gt; Network &gt; Firewall &gt; Options &gt; Automatically allow downloaded... &gt; Disabled</li>
      <li>Settings &gt; Network &gt; Firewall &gt; Options &gt; Stealth mode &gt; Enabled</li>
      <li>Settings &gt; Battery &gt; Options &gt; Wake for network access &gt; Never</li>
      <li>Settings &gt; General &gt; Automatic Updates &gt; i &gt; Disable All</li>
      <li>Settings &gt; General &gt; AirDrop & Handoff &gt; Allow Handoff &gt; Disabled</li>
      <li>Settings &gt; General &gt; AirDrop & Handoff &gt; AirDrop &gt; No One</li>
      <li>Settings &gt; General &gt; AirDrop & Handoff &gt; AirPlay Receiver &gt; Disabled</li>
      <li>Settings &gt; General &gt; AirDrop & Handoff &gt; Allow Airplay for &gt; Current User</li>
      <li>Settings &gt; General &gt; AirDrop & Handoff &gt; Require password &gt; Enabled</li>
      <li>Settings &gt; General &gt; AutoFill & Passwords &gt; All Your Password... &gt; (Close "x")</li>
      <li>Settings &gt; General &gt; AutoFill & Passwords &gt; AutoFill Passwords and Passkeys &gt; Disabled</li>
      <li>Settings &gt; General &gt; Date & Time &gt; Source &gt; Set &gt; pool.ntp.org &gt; Set</li>
      <li>Settings &gt; General &gt; Date & Time &gt; Set time zone automatically... &gt; Disabled</li>
      <li>Settings &gt; General &gt; Date & Time &gt; Time zone &gt; Desired location</li>
      <li>Settings &gt; General &gt; Date & Time &gt; Closest City &gt; Desired location</li>
      <li>Settings &gt; General &gt; Login Items & Extensions &gt; Remove or disable those desired</li>
      <li>Settings &gt; General &gt; Sharing &gt; Disable all</li>
      <li>Settings &gt; Accessibility &gt; Siri &gt; Type to Siri &gt; Disabled</li>
      <li>Settings &gt; Accessibility &gt; Siri &gt; Listen for atypical speech &gt; Disabled</li>
      <li>Settings &gt; Apple Intelligence & Siri &gt; Apple Intelligence &gt; Disabled</li>
      <li>Settings &gt; Apple Intelligence & Siri &gt; Siri &gt; Disabled</li>
      <li>Settings &gt; Apple Intelligence & Siri &gt; Siri History &gt; Delete Siri & Dictation History &gt; Delete</li>
      <li>Settings &gt; Apple Intelligence & Siri &gt; Siri Suggestions & Privacy &gt; Disable all</li>
      <li>Settings &gt; Desktop & Dock &gt; Show suggested and recent apps in Dock &gt; Disabled</li>
      <li>Settings &gt; Desktop & Dock &gt; Show recent apps in Stage Manager &gt; Disabled</li>
      <li>Settings &gt; Desktop & Dock &gt; Automatically rearrange Spaces... &gt; Disabled</li>
      <li>Settings &gt; Spotlight &gt; Show Related Content &gt; Disabled</li>
      <li>Settings &gt; Spotlight &gt; Spotlight Search History &gt; Delete Search History</li>
      <li>Settings &gt; Spotlight &gt; Help Apple Improve Search &gt; Disabled</li>
      <li>Settings &gt; Spotlight &gt; Results from Apps &gt; Disable all</li>
      <li>Settings &gt; Spotlight &gt; Results from System &gt; Disable all</li>
      <li>Settings &gt; Spotlight &gt; Results from Clipboard &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Show previews &gt; Never</li>
      <li>Settings &gt; Notifications &gt; Allow notifications when the device is sleeping &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Allow notifications when the screen is locked &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Allow notifications when mirroring or sharing the display &gt; Disabled</li>
      <li>Settings &gt; Notifications &gt; Application Notifications &gt; Disable undesired</li>
      <li>Settings &gt; Sound &gt; Alert volume &gt; Minimum</li>
      <li>Settings &gt; Sound &gt; Play sound on startup &gt; Disabled</li>
      <li>Settings &gt; Sound &gt; Play user interface sound effects &gt; Disabled</li>
      <li>Settings &gt; Sound &gt; Play feedback when volume is changed &gt; Disabled</li>
      <li>Settings &gt; Focus &gt; Share across devices &gt; Disabled</li>
      <li>Settings &gt; Focus &gt; Focus status &gt; Off</li>
      <li>Settings &gt; Lock Screen &gt; Turn display off on battery when inactive &gt; For 1 hour</li>
      <li>Settings &gt; Lock Screen &gt; Turn display off on power adapter when inactive &gt; For 1 hour</li>
      <li>Settings &gt; Lock Screen &gt; Require password after... &gt; Immediately</li>
      <li>Settings &gt; Lock Screen &gt; Show password hints &gt; Disabled</li>
      <li>Settings &gt; Lock Screen &gt; Show message when locked &gt; Disabled</li>
      <li>Settings &gt; Privacy & Security &gt; Location Services &gt; Off</li>
      <li>Settings &gt; Privacy & Security &gt; Confirm app access</li>
      <li>Settings &gt; Privacy & Security &gt; Sensitive Content Warning &gt; Off</li>
      <li>Settings &gt; Privacy & Security &gt; Analytics & Improvements &gt; Disable all</li>
      <li>Settings &gt; Privacy & Security &gt; Apple Advertising &gt; Personalized Ads &gt; Disabled</li>
      <li>Settings &gt; Privacy & Security &gt; Apple Intelligence Report &gt; Off</li>
      <li>Settings &gt; Privacy & Security &gt; FileVault &gt; Enabled</li>
      <li>Settings &gt; Privacy & Security &gt; Accessories &gt; Always ask</li>
      <li>Settings &gt; Privacy & Security &gt; Background Security Improvements &gt; Enabled (if desired)</li>
      <li>Settings &gt; Touch ID & Password &gt; Use Touch ID for Apple Pay &gt; Disabled</li>
      <li>Settings &gt; Touch ID & Password &gt; Use Touch ID for purchases... &gt; Disabled</li>
      <li>Settings &gt; Touch ID & Password &gt; Use Touch ID for autofilling passwords &gt; Disabled</li>
      <li>Settings &gt; Internet Accounts &gt; None</li>
      <li>Settings &gt; Game Center &gt; Disabled</li>
      <li>Settings &gt; iCloud &gt; None</li>
      <li>Settings &gt; Wallet & Apple Pay &gt; Autofill Cards &gt; 0</li>
      <li>Settings &gt; Wallet & Apple Pay &gt; Shipping Address &gt; None</li>
      <li>Settings &gt; Wallet & Apple Pay &gt; Email &gt; None</li>
      <li>Settings &gt; Wallet & Apple Pay &gt; Phone &gt; None</li>
      <li>Settings &gt; Wallet & Apple Pay &gt; Add Orders to Wallet &gt; Disabled</li>
      </ul>
      These basic privacy and security settings plus a properly-configured software firewall such as Little Snitch or Lulu will provide the optimal macOS setup. Most telemetry and overall Apple invasions will be eliminated and you can simply enjoy a secure operating system.
      ]]></content:encoded>
    </item>
    
  </channel>
</rss>