3 ms·
For context, here's the NDR report: https://www.ndr.de/fernsehen/sendungen/panorama/aktuell/Investigations-in-the-so-called-darknet-Law-enforcement-agencies-und
by roetlich 2y ago
For context, here's the NDR report: https://www.ndr.de/fernsehen/sendungen/panorama/aktuell/Investigations-in-the-so-called-darknet-Law-enforcement-agencies-undermine-Tor-anonymisation,toreng100.html https://www.ndr.de/fernsehen/sendungen/panorama/aktuell/Inve...
And more info here: https://lists.torproject.org/pipermail/tor-relays/2024-September/021855.html https://lists.torproject.org/pipermail/tor-relays/2024-Septe...
Edit: The NDR alleges a timing attack (no further explanation) that allows "to identify so-called ‘entry servers’" Very little information is actually available on the nature of the attack. The NDR claims this method has already lead to an arrest.
- LinuxBender 2y agoMight one mitigating possibility be to use a VPN that uses padded and rate limited packets, so that it is always sending and receiving user_defined bit rate and your real traffic would be traffic shaped to take priority but not exceed the padded streams? Maybe this assumes one is running their own tor daemon on a server somewhere and the vpn terminates on that node. I assume this could be done with tc sch_htb class shaping or perhaps sch_cake and tagging packets with iptables mangle rules and two never-ending bi-directional rsync streams reading /dev/urandom or big random files. e.g. Port 873 (native rsync) bulk traffic, low priority Port 3128 (squid mitm ssl-bump proxy) high priority
- cubefox 2y agoThis should be the article linked at the top.
- trustno2 2y agoAlso relevant - wikipedia for Boystown, the pedo site in question https://en.wikipedia.org/wiki/Boystown_(website) https://en.wikipedia.org/wiki/Boystown_(website)