You are missing the point, you should try reading the thread, but looks like you failed at that so I’ll repeat myself for the 10th time. This device is not intended to be ‘neckbeard’ secure (as you would put it) from any hacker or security exploit while running any more than the average windows machine is on the regular internet with standard a/v protection.
I hope everyone can see that you are a total retard. Windows XP doesn't have any modern OS security features you are far better off using the most recent version of Windows if you want security. Using Windows XP for security is a fucking joke and using it in a ful hardware virtualization environment, further reducing security, is an even bigger joke. Your entire "product" is a security death trap and anyone who uses it is retarded. Also earlier you claimed to have done intelligence work and to know so much about the NSA and DEA, despite the fact that you are clearly talking out of the asshole that a random mutation put on your mouth, I would love to know the specific type of intelligence work you did. Certainly nothing related to computer security, and almost certainly nothing related to the NSA if you don't know how to program.
Standard A/V and spyware scanners are essentially entirely worthless at providing you security from an even half competent attacker who targets you. These programs (poorly) protect you from dragnet attacks where "any computer" is the target not "your computer".
It’s intended to be a windows machine (you know that OS over %80 of the world uses? Yea I am interested in a piece of that vast majority customer base)
Just because Windows has 80% of the customer base for personal computers doesn't mean that it is right to market it as a fucking airplane. Marketing windows XP full hardware VM with some garbage open source spyware scanners on it as a secure solution is about as honest as calling it a fucking dinosaur and justifying yourself based on its market share.
that has all the tools necessary to buy (primarily) and sell (secondarily) on SR.
No, it doesn't. Windows XP doesn't even have ASLR for fucks sake. You know nothing about computer security. You downloaded a bunch of fucking freeware after searching google for security software and installed a bunch of it to a Windows guest. Whoa, welcome to entry level security, about a step above grandma level security.
It also has various precautions/software in place that would prevent LE from extracting any data from it in the event it is confiscated, or quickly and easily discarded (and thus discarding of any useful data) to serve the same purpose. Let me repeat that for you in simpler terms. This device is intended to thwart LE forensic data recovery capability, not some uber ‘leet hacker like your ego indicates from somehow exploiting some security hole known to exist in windows. If you are using it only for SR then spybot isn’t even necessary, this was something that was simply added because it was requested and it is small enough to not impact the overall size of the vm or cost or time to build significantly. This isn’t supposed to be a rock solid hard core un-hackable vm. Never was, and never will be, after all it is windows (as you were so astute to point out).
Spybot is never needed and if you are using Spybot for anything security related its already a huge indication that you failed at computer security. Also, if you are using an anti virus program it is also a huge indication that you have failed at computer security. This doesn't mean I suggest against using an anti virus or anti spyware software if you run Windows, it just means that if you run Windows you already failed at computer security.
LE forensic data recovery capability, not some uber ‘leet hacker
What are you going to do when LE hacks your shit and steals the encryption key from RAM? You are saying the (limited, although important) security benefit you get from using a single open source freeware system that you had absolutely nothing to do with creating, not the security benefit of using your death trap of a security distro.
You say people are far far far better off using liberte, while there is some truth to this (just about any linux is more secure from a hacking standpoint than windows)
There is only truth to saying that people are far far far better off using liberte, liberte isn't anywhere near the ideal configuration but it is light years ahead of this shit you are trying to sell.
the problem I’ve found with the linux distro’s is for the average user they are a pain and unfamiliar to use.
Firefox is firefox
I support it as part of my irl job so I’m very painfully aware of the gain in security by using a distro like tails/liberte etc. However the customers I am seeking don’t want to learn a new OS, they want to click a few links, order their drug of choice with some level of impunity because they know someone who knows technology far better than them set it up to secure and encrypt their data so as soon as they are done doing their business on SR and turn off the VM it would be exceptionally difficult (and it’s my contention that for local/state LE this would be impossible) to extract any incriminating data from the drive without the proper encryption key and/or password. That’s it, nothing more, nothing less.
The people who use Death Trap VM are not getting any level of security they would be better off to use an operating system that uses modern security technology. From what I can tell your level of technical security knowledge would be gained by searching for Windows security software with google. And once again you are attributing the security benefits of using a freeware open source system you had nothing to do with creating to the (entirely not real) security benefits of paying you for Death Trap VM.
What I have no intention of doing is creating a device that’s so secure your fantasy lover Theo de Raadt would have a hardon for. Why? It’s simple because nobody would want to use it and it would be so user unfriendly that I would never sell a single one except to someone like you who is not my target audience. So this being said the only failure here is your own as you fail to see what it’s attempting to accomplish, which is not anywhere near what you would want.
You wouldn't sell one to me either because I know to be really secure you need to configure and audit things yourself. You are just trying to make money, you don't know squat about computer security and you have even pretty much yourself admited that making money is more important to you than providing security to your customers, if you even had the technical skill required to provide security to anyone in the first place which you obviously don't. You are selling a steaming pile of shit and anyone who buys it and uses it is both retarded and highly insecure.