2 ms·
Moreover it lazily conflates the exploits (javascript/http/websocket unmasking) and implies it was an intentional vulnerability in the protocol itself.
by _red 8y ago
Moreover it lazily conflates the exploits (javascript/http/websocket unmasking) and implies it was an intentional vulnerability in the protocol itself.
- SCHiM 8y agoIndeed, a number of examples cited are not vulnerabilities in TOR. The example of the bomb threat is one such, that person was unmasked by looking at the means, motive and opportunity of all suspects. TOR wont help you if the initial suspect pool is already very small (people that took that exam at that time) (motive). And only one student connected to TOR on premise during the time of the threat (opportunity, means).