    <?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CSIS &#8211; Mark E. Jeftovic is The Bombthrower</title>
	<atom:link href="https://bombthrower.com/tag/csis/feed/" rel="self" type="application/rss+xml" />
	<link>https://bombthrower.com</link>
	<description>Blowing up the Clown World.</description>
	<lastBuildDate>Sun, 05 Jul 2026 00:01:20 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://bombthrower.com/wp-content/uploads/2021/01/favicon.jpg</url>
	<title>CSIS &#8211; Mark E. Jeftovic is The Bombthrower</title>
	<link>https://bombthrower.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Zersetzung in the Digital Age: The Silent Assassination of Equibit and the Return of Stasi Tactics in the West</title>
		<link>https://bombthrower.com/zersetzung-in-the-digital-age/</link>
					<comments>https://bombthrower.com/zersetzung-in-the-digital-age/#respond</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 16 Jun 2026 09:00:47 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[Zeitgeist]]></category>
		<category><![CDATA[Canada]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[gang stalking]]></category>
		<category><![CDATA[human rights]]></category>
		<category><![CDATA[targeted individual]]></category>
		<category><![CDATA[torture]]></category>
		<category><![CDATA[zersetzung]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12386</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. When the Berlin Wall fell in November 1989, the world celebrated the end of one of history’s most oppressive regimes. East Germans stormed the headquarters of the Ministry for State Security — the infamous Stasi — desperate to [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div><p><img fetchpriority="high" decoding="async" class="alignnone size-full wp-image-12388" src="https://bombthrower.com/wp-content/uploads/2026/05/zersetzung.gif" alt="" width="1155" height="475" /> <em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023. </em></p>
<p class="wp-block-paragraph"></p>
<p class="wp-block-paragraph">When the Berlin Wall fell in November 1989, the world celebrated the end of one of history’s most oppressive regimes. East Germans stormed the headquarters of the Ministry for State Security — the infamous Stasi — desperate to seize and protect the mountains of files that documented decades of tyranny. What they uncovered was more horrifying than most could have imagined.</p>
<p class="wp-block-paragraph">

<div class="wp-block-image"></p>
<figure class="aligncenter size-full is-resized"><a href="https://www.stasi-mediathek.de/medien/richtlinie-176-zur-bearbeitung-operativer-vorgaenge/blatt/307/" target="_blank" rel="noreferrer noopener"><img decoding="async" class="wp-image-1886 aligncenter" src="https://equibitlawsuit.com/wp-content/uploads/2026/06/Stasi_richtlinie1_76-1.jpg" alt="" /></a></figure>
<p class="wp-block-paragraph">Among the archives was Directive 1/76, issued in 1976 by Stasi chief Erich Mielke. This document formalized <em>Zersetzung</em> — “decomposition” or “corrosion” — a systematic program of psychological warfare designed to destroy “hostile-negative” individuals and groups without the messiness of arrests, trials, or overt violence. The goal was simple and demonic: fragment, paralyze, disorganize, and isolate the target so completely that they could no longer function as a threat — all while maintaining the appearance of normal life.</p>
<h3 class="wp-block-heading">The Sheer Evil of Zersetzung</h3>
<p class="wp-block-paragraph">Historian Hubertus Knabe, one of the foremost experts on the Stasi, described it chillingly: “The Stasi didn’t try to arrest every dissident. It preferred to paralyze them… by damaging their reputation, by organizing failures in their work, and by destroying their personal relationships.”</p>
<p class="wp-block-paragraph">Tactics included:</p>
<ul class="wp-block-list">
<li>Covert home invasions to move furniture, change alarm clocks, or swap everyday items (classic gaslighting)</li>
<li>Systematic smear campaigns using true, false, and twisted information</li>
<li>Engineered professional and social failures</li>
<li>Provocation, anonymous threats, and orchestrated “coincidences”</li>
<li>Destruction of marriages, friendships, and family ties through rumors and planted evidence</li>
<li>Sabotage of careers, vehicles, and medical care</li>
</ul>
<p class="wp-block-paragraph">Victims often had no idea the Stasi was responsible. Many believed they were losing their minds. Mental breakdowns and suicides were common outcomes.</p>
<p class="wp-block-paragraph">One victim, Jürgen Fuchs, a writer and dissident, called it “psychosocial crime” and “an assault on the human soul.” Many survivors suffered lifelong trauma, paranoia, depression, and shattered trust. Some received modest compensation decades later, but for most, the damage was irreparable. Families were torn apart. Careers evaporated. Lives were slowly, methodically erased from within.</p>
<p class="wp-block-paragraph">The Stasi built an enormous network of civilian informants — the <em>Inoffizielle Mitarbeiter</em> (IMs). By 1989, there were roughly 91,000 full-time Stasi employees and between 173,000 and 189,000 unofficial informants. This meant roughly <strong>one in every 50 to 60 East German citizens</strong> was actively collaborating with the secret police — an astonishing level of societal penetration. Some estimates, including occasional informants, run as high as one in six or seven adults.</p>
<p class="wp-block-paragraph">These informants came from every walk of life: neighbors, colleagues, friends, even family members. Recruitment methods ranged from ideological appeal and bribes to blackmail and threats against loved ones. Once enlisted, they were used to spread rumors, provoke conflicts, sabotage opportunities, and report intimate details for the creation of detailed “psychograms” — psychological profiles used to exploit every weakness.</p>
<h3 class="wp-block-heading">From East Germany to Canada: The Equibit Case</h3>
<p class="wp-block-paragraph">What happened to Chris Horlacher and Equibit Group bears unmistakable hallmarks of this same strategy — updated with 21st-century digital tools and operating within a Five Eyes democracy.</p>
<p class="wp-block-paragraph">As documented across the Equibit Factum, technical forensic reports, live videos, court filings, and interviews on equibitlawsuit.com, the campaign against Horlacher and his company included:</p>
<ul class="wp-block-list">
<li>Prolonged surveillance and contact by prime-suspect Marc Godard beginning as early as <strong>2010</strong> — when Chris was engaged in online liberty activism.</li>
<li>What appears to be the recruitment and corruption of Sergei Sachkov, lead Core developer at Equibit Group, by CSIS.</li>
<li>Intense and malicious harassment by the Ontario Securities Commission, and demonstrable entrapment efforts.</li>
<li>Marc’s attempts to involve Chris with questionable individuals post-Equibit, more entrapment schemes via financial crimes.</li>
<li>Router compromises via the TR-069 protocol, with logs showing impossible 1981 timestamps and persistent remote access.</li>
<li>DNS man-in-the-middle attacks rerouting traffic through U.S. servers.</li>
<li>Microsoft ecosystem intrusions where private memos were observed copying themselves in real time.</li>
<li>De-banking, institutional pressure, and coordinated defamation campaigns.</li>
<li>Insider betrayal, code forking, rebranding (OCEAN → Tesseract), a coordinated effort to dismantle Equibit Group from within.</li>
</ul>
<p class="wp-block-paragraph">Marc Godard’s background in Cognitive Science would have been particularly useful in constructing the kind of detailed psychograms the Stasi relied upon — mapping personality weaknesses, relationships, and pressure points for maximum psychological effect.</p>
<p class="wp-block-paragraph">This was not random crime or bad luck. It was a sustained, multi-vector operation designed to isolate, financially ruin, discredit, and psychologically break a founder who dared to become a fierce advocate for limited, constitutional government.</p>
<h3 class="wp-block-heading">Zersetzung Has Gone Global</h3>
<p class="wp-block-paragraph">The Stasi needed a vast human network because they lacked today’s digital omnipresence. In the Five Eyes countries (Canada, USA, UK, Australia, New Zealand), agencies no longer need millions of informants on the ground. They have tools that allow remote, deniable, scalable decomposition: compromised routers, operating system-level access, financial system cooperation, and institutional capture.</p>
<p class="wp-block-paragraph">What Horlacher has experienced — and meticulously documented — strongly suggests that modern Zersetzung is not only possible in Canada and its allies, but is likely already being deployed against innovators, dissidents, and threats to the established order throughout the country.</p>
<h3 class="wp-block-heading">A Call to Global Conscience</h3>
<p class="wp-block-paragraph">This is cruel, inhuman, and degrading treatment. It is extrajudicial psychological torture dressed up in the language of national security. It violates every principle of human dignity and the rule of law.</p>
<p class="wp-block-paragraph">We call on readers to take immediate action:</p>
<ol class="wp-block-list">
<li>Visit <a href="https://equibitlawsuit.com"><strong>https://equibitlawsuit.com</strong></a> — read the evidence, watch the videos, review the technical reports.</li>
<li><a href="https://equibitlawsuit.com/action#action-05">Submit a detailed complaint</a> to the <strong>UN Special Rapporteur on Torture</strong> (<a href="mailto:sr-torture@ohchr.org">sr-torture@ohchr.org</a>), including all available documentation and requesting an urgent inquiry into the use of modern Zersetzung-style tactics by intelligence agencies in democratic nations.</li>
<li><a href="https://equibitlawsuit.com/action#action-06">Contact appropriate NGOs</a> and oversight bodies:  <a id="https://www.amnesty.org/en/" href="https://www.amnesty.org/en/">Amnesty International</a>, <a id="https://www.hrw.org/" href="https://www.hrw.org/">Human Rights Watch</a>, the <a id="https://ccla.org/" href="https://ccla.org/">Canadian Civil Liberties Association</a>, <a id="https://privacyinternational.org/" href="https://privacyinternational.org/">Privacy International</a>, and the <a id="https://nsira-ossnr.gc.ca/en/home/" href="https://nsira-ossnr.gc.ca/en/home/">National Security and Intelligence Review Agency</a>.</li>
<li><strong>Share this story relentlessly.</strong> Public awareness is the greatest threat to these shadow operations.</li>
</ol>
<p class="wp-block-paragraph">What was done to Equibit and Chris Horlacher must not be allowed to become the new normal. If governments in the West can wage silent war on their own citizens — innovators, thinkers, builders — using the refined cruelty of the Stasi, then none of us are safe.</p>
<p class="wp-block-paragraph">The Berlin Wall fell. The files were opened. The world saw the evil and recoiled in horror.</p>
<p class="wp-block-paragraph">Today, new walls are being built in the digital realm — invisible, pervasive, and far more sophisticated. We must tear them down with the same courage and determination.</p>
<p class="wp-block-paragraph">The time for silence is over. The time for exposure, outrage, and accountability is now.</p>
<p class="wp-block-paragraph"><strong>Demand an international inquiry. Demand justice for the victims of digital Zersetzung. Demand that this hideous violation of human rights ends.</strong></p>
<p class="wp-block-paragraph">Because if we do not act, the decomposition will spread — until freedom itself is nothing but a memory.</p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com/">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors</em></p>
</div>]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/zersetzung-in-the-digital-age/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>De-Banking and Institutional Pressure: The Systematic Financial Sabotage of Chris Horlacher</title>
		<link>https://bombthrower.com/de-banking-and-institutional-pressure-the-systematic-financial-sabotage-of-chris-horlacher/</link>
					<comments>https://bombthrower.com/de-banking-and-institutional-pressure-the-systematic-financial-sabotage-of-chris-horlacher/#respond</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 09 Jun 2026 09:00:20 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[cibc]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[de-banking]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[revolut]]></category>
		<category><![CDATA[sabotage]]></category>
		<category><![CDATA[td canada trust]]></category>
		<category><![CDATA[zersetzung]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12383</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. A recurring and particularly damaging element in the campaign against Equibit Group founder Chris Horlacher has been the repeated disruption of his access to banking and payment systems — commonly referred to as de-banking. These incidents have not only [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<p><img decoding="async" class="alignnone size-full wp-image-12372" src="https://bombthrower.com/wp-content/uploads/2026/05/de-banking.jpg" alt="" width="1168" height="784" srcset="https://bombthrower.com/wp-content/uploads/2026/05/de-banking.jpg 1168w, https://bombthrower.com/wp-content/uploads/2026/05/de-banking-300x201.jpg 300w, https://bombthrower.com/wp-content/uploads/2026/05/de-banking-1024x687.jpg 1024w, https://bombthrower.com/wp-content/uploads/2026/05/de-banking-768x516.jpg 768w, https://bombthrower.com/wp-content/uploads/2026/05/de-banking-600x403.jpg 600w" sizes="(max-width: 1168px) 100vw, 1168px" /></p>
<p><em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023.</em></p>
<p>A recurring and particularly damaging element in the campaign against Equibit Group founder Chris Horlacher has been the repeated disruption of his access to banking and payment systems — commonly referred to as <strong>de-banking</strong>. These incidents have not only created severe operational challenges but also appear designed to isolate him financially while he pursues justice in the Canadian courts.</p>
<h2 class="wp-block-heading">Major Incidents of Financial Interference</h2>
<p><strong>Revolut / Lead Bank (2025–2026)</strong></p>
<p>Chris maintained two U.S. business accounts with the fintech platform Revolut. After months of normal activity, both accounts were frozen without any notice being provided to Chris. One suspension occurred shortly after Revolut had upgraded the account to a custom “Enterprise” plan based on the company’s foreign exchange volumes. Despite multiple support inquiries, Revolut provided almost no meaningful explanation, citing only a vague “security review.” Both accounts were ultimately terminated with no right of appeal, causing significant disruption to business operations.</p>
<p><strong>TD Canada Trust – The Norm Bailey Case</strong></p>
<p>In early 2026 Norm Bailey, a hopeful member of one of Chris’s clients, attempted to send a legitimate payment for a membership fee. TD Bank blocked the transaction and subjected Norm to aggressive interrogation by a senior representative who only identified himself as “Phil.” Norm later described the ordeal in an email to Chris, whom he had recently met at the <a href="https://anarchapulco.com/">Anarchapulco 2026</a> conference:</p>
<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow"><p>“Subsequently, three days later we were contacted by a mystery figure in the TD organization who only identified himself by his first name… He proceeded to drill us on what the wire transfer was for… After a lengthy question period and listening to his repeated accusations that we were taking part in a scam he suddenly said he was closing all my accounts at TD… We were in serious shock. Ive been with them for 65 years… We were both very close to having a heart attack.”</p></blockquote>
<p>Under extreme duress, Norm and his wife were pressured into admitting the payment might be related to a “scam” and promising never to do business with the Horlacher-linked entity again. Only then were their accounts restored. Norm explicitly stated that <strong>“our lives were in danger due to the stress we were under.”</strong></p>
<p><strong>CIBC – Suspicious Inquiries</strong></p>
<p>Chris has received multiple calls from individuals expressing interest in his client’s services but who refused to provide their full names or the name of their employer. One such call originated from the CIBC toll-free number <strong>1-866-639-5014</strong>, which was recorded by Chris. These interactions appeared structured to entice Chris into performing regulated money transmitter activities without proper licensing — a potential entrapment scenario.</p>
<h2 class="wp-block-heading">Broader Pattern</h2>
<p>These events are not isolated. They form part of a sustained pattern of financial and institutional pressure that has intensified around key milestones in the Equibit lawsuits. Clients and business associates have reported unusual scrutiny whenever Horlacher’s name or associated entities are involved. Traditional banking relationships have become unreliable, forcing Chris to operate with reduced access to essential financial infrastructure.</p>
<p>This type of economic isolation is a hallmark of <strong>Zersetzung </strong>— the Stasi’s strategy of quietly undermining a target’s ability to function normally so that their struggles appear self-inflicted.</p>
<h2 class="wp-block-heading">Why This Is So Concerning</h2>
<p>Access to banking and payment systems is fundamental in a modern economy. When financial institutions appear to act in coordination — or at minimum show unusual responsiveness — to pressure someone engaged in litigation against intelligence agencies, it raises profound questions about:</p>
<ul class="wp-block-list">
<li>The independence of Canada’s financial sector</li>
<li>Potential weaponization of “risk management” and “compliance” processes as tools of retaliation</li>
<li>The practical ability of citizens to challenge powerful state actors without facing extralegal consequences</li>
</ul>
<p>Chris has been personally out-of-pocket hundreds of thousands of dollars in legal costs while simultaneously fighting to maintain basic financial functionality.</p>
<p><strong>Further Reading &amp; Evidence:</strong></p>
<ul class="wp-block-list">
<li><a href="https://equibitlawsuit.com/router-sabotage-exposed/">Router Sabotage via TR-069 Protocol</a></li>
<li><a href="https://equibitlawsuit.com/dns-man-in-the-middle-attack-exposed/">DNS Man-in-the-Middle Attack</a></li>
<li><a href="https://equibitlawsuit.com/microsoft-under-fire/">Microsoft Unauthorized Access Incidents</a></li>
<li><a href="https://equibitlawsuit.com/nasa-caught-in-honeypot/">NASA HPCC Honeypot Probe</a></li>
</ul>
<p>The combination of technical surveillance, financial de-banking, and institutional obstacles paints a disturbing picture of alleged multi-domain harassment.</p>
<p>If you believe financial institutions should remain neutral and that litigants deserve protection from economic retaliation, please share this post and help bring greater awareness to these issues.</p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com/">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors.</em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/de-banking-and-institutional-pressure-the-systematic-financial-sabotage-of-chris-horlacher/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Honeypot Probes: Government-Linked Network Activity, Link-Local Addresses, and Immediate Suspicious Reactions</title>
		<link>https://bombthrower.com/honeypot-probes-government-linked-network/</link>
					<comments>https://bombthrower.com/honeypot-probes-government-linked-network/#respond</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 02 Jun 2026 09:00:48 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[honeypot]]></category>
		<category><![CDATA[nasa]]></category>
		<category><![CDATA[surveillance]]></category>
		<category><![CDATA[zersetzung]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12380</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. By December 2020 CSIS was deep in default of filing its defense, and Chris Horlacher suspected they would attempt to undermine the lawsuits via other means. After experiencing persistent and strange internet behaviors Horlacher deployed a honeypot named “Equibit-Dev” on [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<p><img decoding="async" class="alignnone wp-image-12413 size-full" src="https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes.jpg" alt="" width="1168" height="784" srcset="https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes.jpg 1168w, https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes-300x201.jpg 300w, https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes-1024x687.jpg 1024w, https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes-768x516.jpg 768w, https://bombthrower.com/wp-content/uploads/2026/06/honeypot-probes-600x403.jpg 600w" sizes="(max-width: 1168px) 100vw, 1168px" /></p>
<p><em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023.</em></p>
<p class="wp-block-paragraph">By December 2020 CSIS was deep in default of filing its defense, and Chris Horlacher suspected they would attempt to undermine the lawsuits via other means. After experiencing persistent and strange internet behaviors Horlacher <a href="https://github.com/mattymcfatty/HoneyPi">deployed a honeypot</a> named “Equibit-Dev” on his home network while still residing in Canada on a Rogers internet connection. The purpose was straightforward: to observe and document any targeted probing of his systems.</p>
<p class="wp-block-paragraph">What followed was a series of events that remain among the most technically and behaviorally revealing in the Equibit case.</p>
<h1 class="wp-block-heading">Chronology of Events</h1>
<p class="wp-block-paragraph"><strong>December 2020 – Initial Probe</strong></p>
<p class="wp-block-paragraph">Shortly after the honeypot was activated, it received an immediate probe from the link-local IP address <strong>169.254.15.240</strong>. This address returned several times over the ensuing weeks and eventually self-identified on the local network as “<strong>Equibit-Dev.local</strong>” — using the exact naming convention of Horlacher’s honeypot.</p>
<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" class="wp-image-1850 aligncenter" src="https://equibitlawsuit.com/wp-content/uploads/2026/06/image-1.png" alt="" width="579" height="445" /></figure>
</div>
<p class="wp-block-paragraph">Link-local addresses (169.254.0.0/16 range) are not publicly routable and are typically used for automatic communication within a local network segment. In this context, the appearance of such a probe strongly suggests activity originating from within the local network — most plausibly the router itself, which Chris already suspected had been subjected to ISP-level interception under a Federal Court warrant.</p>
<p class="wp-block-paragraph"><strong>Controlled Disclosure</strong></p>
<p class="wp-block-paragraph">Horlacher performed a controlled disclosure, informing Marc Godard (long-time friend, former CTO and CEO of Equibit Group, and primary suspect for being a CSIS Officer) and IT-security professional George Plytas (a highly-accomplished CISO whom Chris had worked with at several companies) about the probe. For the purpose of the test, he referred to it as the “NASA” probe (the actual address was one digit off from a known NASA range, 169.154.15.240).</p>
<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" class="wp-image-1199 aligncenter" src="https://equibitlawsuit.com/wp-content/uploads/2026/05/image.png" alt="" width="976" height="183" /></figure>
</div>
<p class="wp-block-paragraph">Marc Godard quickly downplayed the finding. George Plytas, a seasoned cybersecurity expert with whom Horlacher had a long professional relationship, immediately ceased all communication and has not been heard from since.</p>
<p class="wp-block-paragraph"><strong>January 3, 2021 &amp; May 30, 2021 – Confirmed Government-Linked Probes</strong></p>
<p class="wp-block-paragraph">Several weeks after the initial link-local probe, the honeypot was contacted by the IP address <strong>168.254.7.38</strong>. This address belongs to <strong>ASN BHN-33363</strong>, officially registered to <strong>Charter Communications, Inc.</strong> (formerly Bright House Networks). Charter is one of the largest cable and internet service providers in the United States, operating under the Spectrum brand in many regions.</p>
<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" class="wp-image-1851 aligncenter" src="https://equibitlawsuit.com/wp-content/uploads/2026/06/image-2.png" alt="" width="575" height="454" /></figure>
</div>
<div class="wp-block-image">
<figure class="aligncenter size-full"><img loading="lazy" decoding="async" class="wp-image-1849 aligncenter" src="https://equibitlawsuit.com/wp-content/uploads/2026/06/image.png" alt="" width="954" height="170" /></figure>
</div>
<p class="wp-block-paragraph">Sources:</p>
<ul class="wp-block-list">
<li><a href="https://search.arin.net/rdap/?query=AS33363" target="_blank" rel="noreferrer noopener">ARIN WHOIS Record for AS33363</a></li>
<li><a href="https://bgp.tools/as/33363" target="_blank" rel="noreferrer noopener">BGP.tools ASN Details</a></li>
</ul>
<p class="wp-block-paragraph">While Charter Communications is a commercial ISP, large U.S. telecommunications providers like Charter are frequently used by government agencies for data interception, handoffs, and operational cover. IP ranges from major carriers are commonly seen in government and law enforcement activity due to warrants served on the ISP.</p>
<p class="wp-block-paragraph">The 168.254.7.38 address probed the honeypot once on January 3, 2021, and then three separate times on May 30, 2021. The repetition on May 30 is particularly noteworthy, as it suggests deliberate, targeted reconnaissance rather than random scanning.</p>
<h1 class="wp-block-heading">Analysis and Implications</h1>
<p class="wp-block-paragraph">The combination of these probes is significant:</p>
<ul class="wp-block-list">
<li>The <strong>link-local probe</strong> (169.254.15.240) suggests local network compromise or router-level monitoring, consistent with lawful interception authorized by a Federal Court warrant served on Rogers.</li>
<li>The <strong>BHN-33363 probes</strong> represent <strong>external interest</strong> from a major U.S. telecommunications ASN with documented government ties. The timing of these probes — shortly after honeypot deployment and again during sensitive litigation periods — strengthens the pattern of coordinated surveillance.</li>
</ul>
<p class="wp-block-paragraph">Together, they indicate targeted technical surveillance during a period when Horlacher was actively preparing to confront CSIS in discovery.</p>
<p class="wp-block-paragraph">The behavioral reactions remain particularly telling. Marc Godard’s rapid dismissal and George Plytas’s complete withdrawal of contact occurred immediately after disclosure. In intelligence and counter-intelligence contexts, such abrupt changes in behavior are often interpreted as signs of recognition or operational sensitivity.</p>
<h2 class="wp-block-heading">Conclusion</h2>
<p class="wp-block-paragraph">While the most dramatic initial probe was link-local rather than a direct external NASA connection, the overall pattern — local router-level activity combined with probes from a major government-linked ASN, timed with litigation milestones, and followed by highly suspicious reactions from key individuals — remains deeply concerning.</p>
<p class="wp-block-paragraph">This incident forms part of a broader technical surveillance picture that has been meticulously documented and will be included in the full Factum of Equibit Group.</p>
<p class="wp-block-paragraph"><em>The watchers were active.</em></p>
<p class="wp-block-paragraph"><strong>Some of their reactions suggested they did not appreciate being watched in return.</strong></p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com/">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors.</em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/honeypot-probes-government-linked-network/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>DNS Man-in-the-Middle Attack Exposed: Targeted Internet Surveillance on Chris Horlacher’s Network</title>
		<link>https://bombthrower.com/dns-man-in-the-middle-attack-exposed-targeted-internet-surveillance-on-chris-horlachers-network/</link>
					<comments>https://bombthrower.com/dns-man-in-the-middle-attack-exposed-targeted-internet-surveillance-on-chris-horlachers-network/#respond</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 26 May 2026 09:00:04 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[dns mitm]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[surveillance]]></category>
		<category><![CDATA[zersetzung]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12376</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. In one of the clearest examples of technical surveillance in his case, Chris Horlacher discovered and documented a DNS-based Man-in-the-Middle (MITM) attack that was intercepting and potentially monitoring his internet traffic. Discovery of the DNS Hijack While investigating persistent [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<p><img loading="lazy" decoding="async" class="alignnone wp-image-12374 size-full" src="https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm.jpg" alt="" width="1168" height="784" srcset="https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm.jpg 1168w, https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm-300x201.jpg 300w, https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm-1024x687.jpg 1024w, https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm-768x516.jpg 768w, https://bombthrower.com/wp-content/uploads/2026/05/dns-mitm-600x403.jpg 600w" sizes="auto, (max-width: 1168px) 100vw, 1168px" /></p>
<p><em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023.</em></p>
<p>In one of the clearest examples of technical surveillance in his case, Chris Horlacher discovered and documented a DNS-based <a href="https://en.wikipedia.org/wiki/Man-in-the-middle_attack">Man-in-the-Middle</a> (MITM) attack that was intercepting and potentially monitoring his internet traffic.</p>
<h2 class="wp-block-heading">Discovery of the DNS Hijack</h2>
<p>While investigating persistent connectivity problems and router compromises in 2025, Chris noticed that DNS queries were resolving through unexpected Akamai servers located in the United States, even when he manually configured trusted public resolvers such as Cloudflare (1.1.1.1).</p>
<p>He engaged an independent, experienced cybersecurity professional to conduct a thorough forensic investigation. The expert worked directly with Chris as he performed extensive testing across multiple devices, configurations, and networks. The results confirmed anomalous DNS behavior consistent with interception or manipulation, primarily affecting the home Telmex network.</p>
<h2 class="wp-block-heading">Controlled Disclosure Test</h2>
<p>At the time the DNS MITM was still active, Chris made a deliberate controlled disclosure. He shared specific details about discovering and isolating the attack with only one person — Ilya Fadeev, a minor shareholder and former lead wallet developer at Equibit Group — who was known to be in communication with Marc Godard, a co-founder, former CTO, and lead suspect in Chris’s investigation of the sabotage and entrapment efforts that had been levelled against him.</p>
<p>Within hours of this limited disclosure, the most obvious signs of the DNS manipulation disappeared. Follow-up testing confirmed that DNS queries were now resolving normally through trusted servers.</p>
<h2 class="wp-block-heading">Expert Analysis and Evidence</h2>
<p>The cybersecurity specialist produced a detailed report documenting the investigation, test methodology, and findings. This report included extensive DNS leak tests, nslookup results, and comparative analysis across networks.</p>
<p><strong>Download: <a href="https://equibitlawsuit.com/wp-content/uploads/2026/05/Fiverr_Chris_18August2025.pdf">Expert Report (August 18, 2025)</a></strong></p>
<p>Screenshots of the DNS tracing tests are available upon request to competent researchers or journalists.</p>
<p>Notably, this was the same expert report that Chris later witnessed being <strong>spontaneously moved to his desktop</strong> through apparent remote access via his Microsoft OneDrive account.</p>
<h2 class="wp-block-heading">Strategic Context: “Control the Battlefield”</h2>
<p>Had Chris remained in Canada, such a MITM attack might have been unnecessary. Canadian authorities could simply serve a warrant directly to the ISP for full traffic access. By relocating to Mexico, Chris deliberately removed one of the most powerful tools from his adversaries’ arsenal — forcing them to resort to more complex technical attacks like router compromises via TR-069 and DNS manipulation.</p>
<p>This forms part of Chris’s broader “Control the Battlefield” strategy, which comes from Sun Tzu’s <em>Art of War</em>: denying easy institutional access and forcing any surveillance into more detectable, and legally questionable methods.</p>
<h2 class="wp-block-heading">Implications</h2>
<p>A DNS Man-in-the-Middle attack at the router or ISP level is extremely invasive. It enables:</p>
<ul class="wp-block-list">
<li>Logging of every website visited</li>
<li>Undetectable traffic redirection to spoofed websites</li>
<li>Monitoring of communications (even HTTPS to a limited degree)</li>
</ul>
<p>The precision, persistence, and rapid response to the controlled disclosure strongly suggest a targeted operation by sophisticated actors.</p>
<p>This incident adds to the growing body of technical evidence of digital harassment that includes router compromises, Microsoft ecosystem intrusions, and other documented attacks.</p>
<p><strong>Further Reading:</strong></p>
<ul class="wp-block-list">
<li><a href="https://equibitlawsuit.com/router-sabotage-exposed/">Router Sabotage</a> via TR-069</li>
<li><a href="https://equibitlawsuit.com/microsoft-under-fire/">Microsoft Unauthorized Access</a> Incidents</li>
<li>Complete <a href="https://equibitlawsuit.com/category/media/">Media section</a></li>
</ul>
<p>These attacks highlight the vulnerabilities of modern connected infrastructure and the challenges faced by individuals seeking accountability from powerful institutions.</p>
<p>If you value digital privacy and the right to due process, please share this post.</p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com/">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors.</em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/dns-man-in-the-middle-attack-exposed-targeted-internet-surveillance-on-chris-horlachers-network/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Microsoft Under Fire: Evidence of Unauthorized Access, Mass Updates, and Potential Intelligence Agency Exploitation</title>
		<link>https://bombthrower.com/microsoft-under-fire-evidence-of-unauthorized-access-mass-updates-and-potential-intelligence-agency-exploitation/</link>
					<comments>https://bombthrower.com/microsoft-under-fire-evidence-of-unauthorized-access-mass-updates-and-potential-intelligence-agency-exploitation/#comments</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 19 May 2026 15:04:27 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[Zeitgeist]]></category>
		<category><![CDATA[bill c-22]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[windows]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12369</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. Chris Horlacher has documented multiple sophisticated intrusions through his Microsoft ecosystem. These incidents go well beyond ordinary malware and align with key moments in his legal activities. They indicate a close collaboration between Microsoft and the Five Eyes [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<p><img decoding="async" src="https://equibitlawsuit.com/wp-content/uploads/2026/05/microsoft_danger.jpg" /></p>
<p><em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023.</em></p>
<p>Chris Horlacher has documented multiple sophisticated intrusions through his Microsoft ecosystem. These incidents go well beyond ordinary malware and align with key moments in his legal activities. They indicate a close collaboration between Microsoft and the Five Eyes to deliver undetectable spyware onto targeted devices in order to steal information and interfere with the normal functions of the computer.</p>
<h2 class="wp-block-heading">Key Incidents of Unauthorized Access</h2>
<ul class="wp-block-list">
<li><strong>July 19, 2025 – Unauthorized Sharing of Sensitive Memo<br />
</strong>A confidential memo was suddenly made publicly shareable via OneDrive using Chris’s own Microsoft account. He did not perform this action. During the event, his computer’s built-in screen recorder was disabled. Luckily Chris was able to capture the event with his cell phone’s camera.</li>
</ul>
<p><strong>Watch the incident:</strong></p>
<p><iframe loading="lazy" title="MS OneDrive Hacking 1" width="500" height="281" src="https://www.youtube.com/embed/YVTAubIGWGY?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<ul class="wp-block-list">
<li><strong>August 27, 2025 – Spontaneous File Movement<br />
</strong>A critical security report analyzing router compromises was mysteriously moved to the desktop.</li>
<li><strong>October 27, 2025 – Camera Roll Breach<br />
</strong>OneDrive logs showed someone browsing the Camera Roll folder containing images taken directly by the device, as well as two files related to psychology that provide insight as to the hacker’s identity (more on that in later posts!)</li>
</ul>
<p><strong>Watch the Camera Roll intrusion:</strong></p>
<p><iframe loading="lazy" title="MS OneDrive Hacking 2" width="422" height="750" src="https://www.youtube.com/embed/C78HfMvJT7Q?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<h2 class="wp-block-heading">Mass Windows &amp; BIOS Updates – Highly Suspicious Timing</h2>
<p>On August 18, 2025, immediately before a strategy call with his lawyers about upcoming discovery sessions, Chris’s computer began installing an unusually large wave of updates — including Windows, BIOS, and more than a dozen other components. He described it as one of the largest simultaneous update pushes he had ever experienced. Call quality then rapidly deteriorated and the connection was terminated exactly when the discussion turned to sensitive topics.</p>
<p>This event is especially concerning in the context of Bill C-22, Canada’s proposed Lawful Access Act. Part 2 of the bill would require electronic service providers (including software and operating system vendors) to build and maintain technical capabilities to facilitate authorized access to information by law enforcement and CSIS. Critics argue this could effectively compel companies like Microsoft to enable mechanisms for delivering signed updates or payloads that Windows would trust by default. Because Microsoft-signed updates are automatically trusted by the operating system, they represent a powerful and nearly undetectable vector for delivering targeted tools to specific users.</p>
<p><strong>For more on Bill C-22:</strong></p>
<ul class="wp-block-list">
<li><a href="https://www.justice.gc.ca/eng/csj-sjc/pl/c22/" target="_blank" rel="noreferrer noopener">Department of Justice Backgrounder</a></li>
<li><a href="https://www.michaelgeist.ca/2026/05/the-lawful-access-two-headed-surveillance-monster-how-bill-c-22-went-off-the-rails/" target="_blank" rel="noreferrer noopener">Michael Geist Analysis</a></li>
</ul>
<h2 class="wp-block-heading">Nightmare Eclipse Zero-Days and Browsergate</h2>
<p>These incidents occurred against the backdrop of major Microsoft security controversies. In 2026, researcher <strong>Nightmare-Eclipse</strong> (also known as Chaotic Eclipse) publicly released several high-impact Windows zero-days, including exploits targeting Windows Defender and privilege escalation mechanisms. Some researchers have speculated that certain vulnerabilities may have been known internally for extended periods before public disclosure.</p>
<p>Additionally, <strong>Browsergate </strong>exposed serious allegations against LinkedIn (owned by Microsoft). According to a detailed report by Fairlinked e.V.:</p>
<ul class="wp-block-list">
<li>LinkedIn allegedly injected JavaScript that scanned users’ browsers for over <strong>6,000 Chrome extensions</strong>.</li>
<li>The script reportedly collected detailed device telemetry and extension data without clear user consent or prominent disclosure in the privacy policy.</li>
<li>This allowed LinkedIn to build extensive user profiles, potentially identifying competitors, corporate tools, and other sensitive software.</li>
</ul>
<p>The revelations led to privacy lawsuits and widespread criticism. You can read the original report here: <a href="https://browsergate.eu/" target="_blank" rel="noreferrer noopener">BrowserGate.eu</a></p>
<h2 class="wp-block-heading">Broader Implications</h2>
<p>These events demonstrate deep access into Chris’s systems, precise timing aligned with legal activities, and the ability to manipulate core operating system functions. When combined with other documented technical attacks, they highlight growing risks around proprietary platforms and the potential for state-level exploitation.</p>
<p><strong>Further Reading &amp; Updates:</strong></p>
<ul class="wp-block-list">
<li>Additional technical evidence and interviews in the Media section</li>
<li>Ongoing lawsuit developments at equibitlawsuit.com</li>
</ul>
<p>This case raises important questions about digital privacy, corporate responsibilities, and the balance between security and individual rights. Share this post if you believe these issues deserve greater public scrutiny.</p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com/">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors.</em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/microsoft-under-fire-evidence-of-unauthorized-access-mass-updates-and-potential-intelligence-agency-exploitation/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
		<item>
		<title>Router Sabotage Exposed: Clear Evidence of Targeted Attacks via TR-069 on Equibit Founder’s Network</title>
		<link>https://bombthrower.com/router-sabotage-exposed-clear-evidence-of-targeted-attacks-via-tr-069-on-equibit-founders-network/</link>
					<comments>https://bombthrower.com/router-sabotage-exposed-clear-evidence-of-targeted-attacks-via-tr-069-on-equibit-founders-network/#comments</comments>
		
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Tue, 12 May 2026 09:00:49 +0000</pubDate>
				<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Business]]></category>
		<category><![CDATA[CBDCs]]></category>
		<category><![CDATA[Clown World]]></category>
		<category><![CDATA[Cryptocurrencies]]></category>
		<category><![CDATA[Disruption]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[Transhumanism]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[Equibit]]></category>
		<category><![CDATA[Five Eyes]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[tr-069]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=12358</guid>

					<description><![CDATA[If you are new to the Equibit story, please read The Assassination of Equibit, originally released in 2023. In the ongoing campaign of digital harassment and sabotage documented by Chris Horlacher, one of the most technical and intrusive episodes involves repeated compromises of his home routers in Mexico. These incidents directly affected Chris Horlacher’s ability [&#8230;]]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<p><img loading="lazy" decoding="async" class="alignnone wp-image-12360 size-large" src="https://bombthrower.com/wp-content/uploads/2026/05/router-1024x687.jpg" alt="" width="1024" height="687" srcset="https://bombthrower.com/wp-content/uploads/2026/05/router-1024x687.jpg 1024w, https://bombthrower.com/wp-content/uploads/2026/05/router-300x201.jpg 300w, https://bombthrower.com/wp-content/uploads/2026/05/router-768x516.jpg 768w, https://bombthrower.com/wp-content/uploads/2026/05/router-600x403.jpg 600w, https://bombthrower.com/wp-content/uploads/2026/05/router.jpg 1168w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></p>
<p><em>If you are new to the Equibit story, please read <a href="https://bombthrower.com/the-assassination-of-equibit/">The Assassination of Equibit</a>, originally released in 2023.</em></p>
<p>In the ongoing campaign of digital harassment and sabotage documented by Chris Horlacher, one of the most technical and intrusive episodes involves repeated compromises of his home routers in Mexico. These incidents directly affected Chris Horlacher’s ability to work, communicate securely, and access the internet—targeting only specific devices while sparing others on the same network.</p>
<p>This pattern aligns with advanced persistent threats, often linked to state-level or ISP-enabled capabilities.</p>
<h2 class="wp-block-heading">Background: Part of a Broader Pattern</h2>
<p>After fleeing Canada due to chronic digital intrusions and other events stemming from what he believed to be the lawsuits he just filed, Chris continued facing disruptions. VPN instability, selective device blocking, and unexplained connectivity issues prompted deeper investigation. Factory resets provided temporary relief, but problems returned rapidly—classic behavior of persistent malware or remote management exploits</p>
<h2 class="wp-block-heading">The Attacks: Huawei HG8145V5V3 and ZTE F670L Routers</h2>
<p><strong>Key Anomalies Observed:</strong></p>
<ul class="wp-block-list">
<li><strong>1981 Timestamps:</strong> Multiple log entries show dates like 1981-01-01. This is a strong indicator of Real-Time Clock (RTC) reset or deliberate log tampering/manipulation, often seen when firmware is altered or during boot-level interference. Security analysis reports explicitly flag these as “Backdated logs to 1981 (RTC reset or tampering).”</li>
<li><strong>Custom Firewall Rules &amp; Selective Blocking:</strong> Firewall settings changed to “user defined.” Specific devices (Chris’s and his wife’s) lost internet access while others worked, consistent with targeted rules or a Remote Access Trojan (RAT).</li>
<li><strong>Rapid Re-infection Post-Reset:</strong> Issues returned within hours, even on a replacement router from the ISP (Telmex).</li>
</ul>
<p><strong>From the ZTE Log (August 2025, post-reset):</strong></p>
<pre class="wp-block-code"><code>2025-08-04T16:16:01Z [Error] |dnsmasq| bind interface socket failed 99
2025-08-04T16:16:01Z [Error] !!!!!![high Alert for send msg in POWERON]...
[Warning] RunPCB process[omci] Event[0x3e81]...</code></pre>
<p>High-priority OMCI/GPON messages immediately after boot, IPv6 route injections before full WAN negotiation, and MultiAPD errors point to remote provisioning activity.</p>
<p><strong>From Huawei Logs (July 2025):</strong></p>
<p>Numerous <code>1981-01-01</code> entries alongside PPPoE renegotiations, deprecated SSL methods, and DHCP NAKs (potential MAC spoofing or rogue activity). Frequent PPPoE sessions suggest possible DoS or disruption attempts.</p>
<h2 class="wp-block-heading">Expert Security Analysis</h2>
<p>Independent analysis by a professional (using SIEM-style detection) on both routers confirmed:</p>
<ul class="wp-block-list">
<li><a id="https://en.wikipedia.org/wiki/TR-069" href="https://en.wikipedia.org/wiki/TR-069">TR-069/OMCI</a> remote provisioning activity.</li>
<li>Backdated logs and tampering indicators.</li>
<li>Potential RAT presence and DoS patterns.</li>
<li>Recommendations: Replace/reflash router, disable TR-069, scan devices, and isolate vulnerable hardware (e.g., older Smart TV).</li>
</ul>
<p><a href="https://equibitlawsuit.com/wp-content/uploads/2026/05/Huawei_Router_Security_Analysis_Report_Detailed_Final.pdf">Huawei Router Analysis Report (PDF)</a></p>
<p><a href="https://equibitlawsuit.com/wp-content/uploads/2026/05/Huawei_Router_Security_Analysis_Report_Detailed_Final.pdf">ZTE Router Analysis Report (PDF)</a></p>
<p><strong>TR-069 (CWMP) Vulnerabilities:</strong> This Broadband Forum protocol enables ISPs to remotely manage Customer Premises Equipment (CPE) like routers via an Auto-Configuration Server (ACS), often over port 7547. While intended for legitimate management, it is notoriously exploitable. Compromised ACS servers or weak implementations allow attackers full remote control, DNS redirection, firmware backdoors, and persistent access. It has been weaponized in botnets (e.g., Mirai variants) and enables exactly the selective targeting and re-infection seen here. Many ISPs do not allow users to fully disable it.</p>
<h2 class="wp-block-heading">Video Evidence: Router Investigations</h2>
<p>Watch Chris document the issues in real-time:</p>
<p>Part 1: Initial router access and strange behavior.</p>
<p><iframe loading="lazy" title="Router Investigation - Part 1" width="500" height="375" src="https://www.youtube.com/embed/QoV4TvfRjV4?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<p>Part 2: Firewall changes, selective blocking, and admin interface interference.</p>
<p><iframe loading="lazy" title="Router Investigation - Part 2" width="500" height="375" src="https://www.youtube.com/embed/53DDBxaPsT0?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<p>Part 3: Factory reset, log downloads, and post-reset observations.</p>
<p><iframe loading="lazy" title="Router Investigation - Part 3" width="500" height="375" src="https://www.youtube.com/embed/Y71k7Nb67sA?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<p>Part 4 (Short): Post-reset functionality vs. actual device connectivity failure.</p>
<p><iframe loading="lazy" title="Router Investigation - Part 4" width="422" height="750" src="https://www.youtube.com/embed/TAnkcbMdYDc?feature=oembed" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe></p>
<h2 class="wp-block-heading">Implications</h2>
<p>These attacks go beyond typical criminal hacking. The precision (device-specific blocking), persistence across hardware swaps, use of ISP-managed protocols, and alignment with other documented sabotage (e.g., Microsoft OneDrive tampering, email spoofing, bank disruptions) point to sophisticated actors with significant resources—potentially leveraging intelligence or ISP cooperation.</p>
<p>Combined with the broader evidence in the Factum (honeypot hits from government networks, Keybase anomalies, etc.), this leaves little doubt that Chris Horlacher’s infrastructure was under targeted surveillance and disruption.</p>
<p><strong>What You Can Do:</strong></p>
<ul class="wp-block-list">
<li>Demand transparency from ISPs on remote management (TR-069/OMCI).</li>
<li>Support calls for accountability in intelligence oversight.</li>
<li>Share this post—stories like this highlight risks to innovators and due process.</li>
</ul>
<p>Full logs and analysis reports (Huawei and ZTE PDFs) are available for review upon request for credible researchers/journalists.</p>
<p>This is not paranoia. This is documented technical evidence of invasive digital warfare against a Canadian entrepreneur and litigant, across national boundaries, violating the property of a foreign ISP.</p>
<p><em>Stay tuned to <a href="http://equibitlawsuit.com">equibitlawsuit.com</a> for more updates on the Equibit lawsuits against CSIS and related actors.</em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/router-sabotage-exposed-clear-evidence-of-targeted-attacks-via-tr-069-on-equibit-founders-network/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
			</item>
		<item>
		<title>Let&#8217;s talk foreign interference in Canadian democracy &#8211; CCP edition.</title>
		<link>https://bombthrower.com/lets-talk-foreign-interference-in-canadian-democracy-ccp-edition/</link>
					<comments>https://bombthrower.com/lets-talk-foreign-interference-in-canadian-democracy-ccp-edition/#comments</comments>
		
		<dc:creator><![CDATA[Mark E. Jeftovic]]></dc:creator>
		<pubDate>Tue, 21 Feb 2023 13:49:10 +0000</pubDate>
				<category><![CDATA[Politics]]></category>
		<category><![CDATA[Bill Blair]]></category>
		<category><![CDATA[CCP]]></category>
		<category><![CDATA[CSIS]]></category>
		<category><![CDATA[FreedomConvoy]]></category>
		<guid isPermaLink="false">https://bombthrower.com/?p=7062</guid>

					<description><![CDATA[The government and media endlessly repeated the falsehood that the #FreedomConvoy was funded by foreign actors who sought to destabilize our democracy - now it turns out the CCP really did interfere in the 2021 election, in favour of Justin Trudeau. Imagine that.]]></description>
										<content:encoded><![CDATA[<div style="margin-top: 0px; margin-bottom: 0px;" class="sharethis-inline-share-buttons" ></div>
<h2></h2>
<h2><img loading="lazy" decoding="async" class="wp-image-7075 size-full aligncenter" src="https://bombthrower.com/wp-content/uploads/2023/02/mao-trudeau2-e1676986834788.png" alt="" width="700" height="467" srcset="https://bombthrower.com/wp-content/uploads/2023/02/mao-trudeau2-e1676986834788.png 700w, https://bombthrower.com/wp-content/uploads/2023/02/mao-trudeau2-e1676986834788-600x400.png 600w, https://bombthrower.com/wp-content/uploads/2023/02/mao-trudeau2-e1676986834788-300x200.png 300w" sizes="auto, (max-width: 700px) 100vw, 700px" /></h2>
<h2>Trudeau Libs gaslight Canadians on foreign interference (except when it actually happens)</h2>
<blockquote><p><em>“We will not let any foreign entities that seek to do harm to Canada or Canadians, erode trust in our democratic institutions, or question the legitimacy of our democracy.”</em><br />
&#8212; Bill Blair, Minister of Public Safety</p></blockquote>
<p>Bombshell revelations over the weekend (although perhaps not entirely surprising) that the Chinese Communist Party actively interfered in the 2021 Federal Election in Canada to tip the scales in favour of another Trudeau minority government and the defeat of certain Conservative Party MPs who were seen as critical of the Chinese regime.</p>
<blockquote><p><em>&#8220;China employed a sophisticated strategy to disrupt Canada’s democracy in the 2021 federal election campaign as Chinese diplomats and their proxies backed the re-election of Justin Trudeau’s Liberals – but only to another minority government – and worked to defeat Conservative politicians considered to be unfriendly to Beijing.&#8221;</em></p></blockquote>
<p>The details emerged in leaked CSIS documents which were reported <a href="https://www.theglobeandmail.com/politics/article-china-influence-2021-federal-election-csis-documents/">by the Globe and Mail.</a></p>
<p>Ironically, the opening quote from Bill Blair was not about China interfering in a Canadian election. Blair said that almost exactly a year ago, about the Canadian #FreedomConvoy. It was among numerous claims made by the Trudeau Liberals , the NDP to vilify the truckers &#8211; and which were endlessly repeated and amplified by the corporate press. <em>All of which were found to be false in the ensuing inquiry into Trudeau&#8217;s invocation <a href="https://bombthrower.com/martial-law-in-canada-its-never-been-riskier-to-not-own-bitcoin/">of the Emergency Act on Feb 14, 2022.</a></em></p>
<h2>The #FreedomConvoy myths perpetuated included:</h2>
<ul>
<li><strong>MYTH:</strong> <em>The convoy was being funded by foreign entities seeking to &#8220;destabilize our democracy&#8221; and &#8220;fund terrorism&#8221;<br />
</em><br />
<strong>REALITY:</strong> Upon examination it was found that nearly all funding to the convoy came from Canadian citizens (over 88%) and <em>&#8220;a federal anti-terror agency in an internal memo said it saw no evidence millions raised by the Freedom Convoy were intended to bankroll terrorism&#8221;.</em> That memo actually came out  <a href="https://www.blacklocks.ca/rated-convoy-cash-harmless/">three weeks <em>before</em></a> the Emergency Act was invoked.</li>
<li><strong>MYTH: </strong>The Emergency Act was enacted in response to pleas from the Ottawa Police force who feared an insurgency<strong>REALITY: </strong>During the hearings  <a href="https://www.blacklocks.ca/more-police-contradict-feds/">it emerged</a>  that nobody in the Ottawa Police, including then-chief Peter Sloly nor his successor Steve Bell, asked Ottawa to invoke the act.</li>
<li><strong>MYTH: </strong>The convoy was an insurgency that violently occupied Ottawa, setting fire to apartment buildings, desecrating the Unknown Soldier Memorial statue, and sporting swastikas and confederate flags.<strong>REALITY: </strong>The person who desecrated the Unknown Soldier memorial was <em>&#8220;a woman [who] was not from Western Canada and had nothing to do with the convoy&#8221;</em> <a href="https://www.blacklocks.ca/convoy-allegation-disproven/">police said.</a>
<p>The people who barricaded an apartment building door and were attempting to light a fire turned <a href="https://www.blacklocks.ca/false-convoy-claim-repeated/">out to also be locals</a> (*cough* Antifa? *cough*) with no connection to the convoy.</p>
<p>That <em>one guy </em>with the confederate flag and <em>the one other guy </em>with the swastika turned out to be the only two people at the protest wearing masks (the latter seemingly accompanied by a professional photographer). They were run out of the area by the other protesters. Speculation abounds that both were agents provocateurs, and <a href="https://www.blacklocks.ca/claim-nazi-was-liberal-trick/">one was named by a Freedom Convoy lawyer</a> who <a href="https://www.blacklocks.ca/claim-flag-man-was-publicist/">accused a former Toronto Star manager and Liberal Party publicist</a>  &#8211; although there is no mention of those allegations in the final report (the person named <a href="https://www.blacklocks.ca/swastika-flag-case-in-court/">is suing the lawyer</a> for defamation).</li>
</ul>
<p>The list goes on. <a href="https://publicorderemergencycommission.ca/final-report/">The final report on the Emergencies Act Inquiry</a> dropped over the weekend, and was a compendium of softballs and cherry-picked testimony. While Bill Blair is taking another victory lap, saying the report finds the government was justified in invoking the act, the nuance is that it did so &#8220;reluctantly&#8221; and because of the <em>failures in every level of government</em> and <em>not </em>because the convoy itself posed a threat to our democracy.</p>
<p>Yet, Canadian leaders, like Jagmeet Singh, the junior partner in Canada&#8217;s ruling Liberal/Socialist coalition, pushed all of these myths and still routinely refers to the protest as a foreign funded insurrection that sought to overthrow the government and install a fascist  dictatorship.</p>
<blockquote class="twitter-tweet">
<p dir="ltr" lang="en">The convoy is occupying our nation&#8217;s capital.</p>
<p>Donald Trump and members of the Alt-right have endorsed them.</p>
<p>Foreign money is financing them.</p>
<p>And, a stated goal is to overthrow our democratically elected govt.</p>
<p>This is a clear threat to our democracy.<a href="https://t.co/z3MxvU3Kww">https://t.co/z3MxvU3Kww</a></p>
<p>— Jagmeet Singh (@theJagmeetSingh) <a href="https://twitter.com/theJagmeetSingh/status/1490823007845195780?ref_src=twsrc%5Etfw">February 7, 2022</a></p></blockquote>
<p><script async src="https://platform.twitter.com/widgets.js" charset="utf-8"></script></p>
<p>&nbsp;</p>
<h2>Chinese Interference should be the elephant in the room&#8230;</h2>
<p>So given all the hysteria from our federal leaders around foreign interference in our democracy, it&#8217;s rich that Canada&#8217;s own intelligence apparatus found that the ChiComms <em>really did </em>interfere in the 2021 election &#8211; and they put their thumb on the scale in favour Justin Trudeau.</p>
<p>In the hours after the report emerged, Trudeau appeared dismissive,</p>
<blockquote><p><em>“This is not a new phenomenon. This is something that countries around the world have been grappling with for a long time and Canada is no exception.”</em></p></blockquote>
<p>(The PM stopped short of seizing the bank accounts of Chinese nationals with ties to Beijing. )</p>
<p>All we need now is for the CBC to reframe the CSIS findings as a &#8220;conspiracy theory&#8221; and we can get back to the hyper-normality that defines our age.</p>
<p><em>Subscribe <a href="https://bombthrower.com/join">to the Bombthrower mailing list</a> to get new articles as they come out. You can also follow me on me <a href="https://bombthrower.com/.well-known/nostr.json?name=markjr">on Nostr</a> , <a href="https://gettr.com/user/bombthrower">Gettr</a>, or <a href="https://twitter.com/StuntPope">Twitter</a>. My premium letter <strong>The Bitcoin Capitalist</strong> covers <a href="https://thebitcoincapitalist.com/">Bitcoin, the digital assset space and crypto stocks.</a></em></p>
]]></content:encoded>
					
					<wfw:commentRss>https://bombthrower.com/lets-talk-foreign-interference-in-canadian-democracy-ccp-edition/feed/</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
			</item>
	</channel>
</rss>
