5 ms·
The article explicitly does mention "EgotisticalGiraffe" (the Firefox TBB exploit). But the point is that the exploit was dropped on all websites that Freedom H
by searcher1 7y ago
The article explicitly does mention "EgotisticalGiraffe" (the Firefox TBB exploit). But the point is that the exploit was dropped on all websites that Freedom Hosting was running, which raises the question that the article is really about, "how did they know where the hidden services were?"
- deleted 7y ago[deleted]
- jascii 7y agoI have searched and reread the article to find this "explicit mention" and have come up empty. Can you be more specific?
- iffyspectrum 7y agoCtrl+F Firefox in the article, there are a few paragraphs on that vulnerability and its role in the article. But that exploit, as I understand it, is not responsible for the first unmasking of Freedom Hosting which is the central question here.
- jascii 7y agoFound it, thanks!
- hooch 7y agoCould they not purchase some “Freedom hosting” and upload a website with backdoor?
- noident 7y agoThis seems like the easiest way to do it, so I would speculate that this is how it was done. All you have to do is put a website up and make the server phone home, revealing the hidden IP address. Some more speculation: the government is hiding this fact in order to deter criminal use of Tor. Of course, I would still assume that other ways of discovering the location of hidden services have been found. I'm not convinced that onions can be hidden from an adversary with the resources of a US government agency, particularly in light of some of the posts that appeared on Hacker Factor recently.
- freedrock87 7y agoHow would they FBI know to purchase "Freedom hosting"?