Part 1 is Tutorial - Practical Baby Guide Bakit Anonymous Ang TOR (nandito na lahat, become anonymous with TOR) codes+screenshots+examples PART 1
Sa part 1 we discussed TOR in nutshell and some information related to using TOR when connecting sa server. In this guide, sa website naman tayo magfocus. Don't worry very simple lang siya.
So para malaman kung anong information usually ang nakukuha ng website kailngan natin gumawa ng sarili natin. So nag code ako ng simple website (API) na ang respond lang ay yung information ng request mo using NodeJS

After hosting ko sa vercel. Gi modify ko yung client with little improvement for this case, instead of api.ipify.org nag migrate nalang me sa my-ip dahil sa ratelimit atsaka medyo detailed siya.

Result:

Now the thing about this, sa website you have the power sa client mo before masend at ma encrypt yung request. Means to say pwede mo siya ma spoof. So let's try it:


As you can see, it's changed. PERO how about the other headers but wala? Kasi preload siya (not a full rendered website) at API type, in actual, all the vercel metadata will be removed but this API respond gives us a mas detailed information about sa request natin where mismo sa provider siya. Anyways yun lang, and if you noticed most of the frontend analysis or mag backtrack from the destination ng source is theoritically impossible to uncover the identity of someone sa TOR, you need to get into TOR network mismo.
Sa part 1 we discussed TOR in nutshell and some information related to using TOR when connecting sa server. In this guide, sa website naman tayo magfocus. Don't worry very simple lang siya.
So para malaman kung anong information usually ang nakukuha ng website kailngan natin gumawa ng sarili natin. So nag code ako ng simple website (API) na ang respond lang ay yung information ng request mo using NodeJS

After hosting ko sa vercel. Gi modify ko yung client with little improvement for this case, instead of api.ipify.org nag migrate nalang me sa my-ip dahil sa ratelimit atsaka medyo detailed siya.

Result:

Now the thing about this, sa website you have the power sa client mo before masend at ma encrypt yung request. Means to say pwede mo siya ma spoof. So let's try it:


As you can see, it's changed. PERO how about the other headers but wala? Kasi preload siya (not a full rendered website) at API type, in actual, all the vercel metadata will be removed but this API respond gives us a mas detailed information about sa request natin where mismo sa provider siya. Anyways yun lang, and if you noticed most of the frontend analysis or mag backtrack from the destination ng source is theoritically impossible to uncover the identity of someone sa TOR, you need to get into TOR network mismo.