Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

One exit node out of 1110 is hardly a "guarantee", and I wonder what percentage of binary downloads are actually done over plaintext HTTP. "Out of over 1110 exit nodes on the Tor network, this is the only node that I found patching binaries, ... This does not mean that other nodes on the Tor network are not patching binaries;"


There's also a danger of MitM:

"In 32 days I've found 15 instances where a node is sniffing and using my credentials and over 650 uniqe pagevisits which means that others also sniffs."

https://chloe.re/2015/06/20/a-month-with-badonions/


Again though, how many sites do you use that have login forms that don't use SSL.

I don't know the actual numbers and it might be very high, but I suspect many people do not use any, which makes this point not very important (unlike the one about hidden services)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: