Загрузка...

ALL Onion Services Vulnerable, and Tor can't patch it

Thanks for watching ❤️
JOIN THE DISCORD! 👉 https://discord.gg/WYqqp7DXbm

A group of security researchers just developed a new family of attacks dubbed OnionFlation, that turn tors denial of service defense mechanism against its own users. This enables attackers to essentially bring down any onion service of their choosing. This class of attacks actually takes advantage of an asymmetry in onion routing, which reveals a persistent issue facing the tor network. As a result, these types of attacks are difficult to properly patch or defend against. I use my own Onion Service to demonstrate the principals of this attack in real time.

Onions Got Puzzled Paper & Presentation:
https://www.usenix.org/conference/usenixsecurity25/presentation/lee

Sources:
https://blog.torproject.org/introducing-proof-of-work-defense-for-onion-services/
https://blog.torproject.org/tor-network-ddos-attack/
https://onionservices.torproject.org/technology/security/pow/
https://spec.torproject.org/proposals/362-update-pow-control-loop.html
https://spec.torproject.org/proposals/327-pow-over-intro.html
0:00 – Intro
1:00 – Background
3:14 – Clearnet Onion Routing
4:51 – DEMO 1: Clearnet Circuit
5:13 – Onion Service Routing
10:26 – DEMO 2: Onion Service Circuits
13:38 – Regular DoS Attacks
15:29 – PoW Puzzles
18:49 – OnionFlation Attacks
26:11 – DEMO 3: ONIONFLATION ATTACK
39:52 – Patched? Not Yet...
MUSIC CREDITS:
LEMMiNO - Cipher
https://www.youtube.com/watch?v=b0q5PR1xpA0
CC BY-SA 4.0

LEMMiNO - Firecracker
https://www.youtube.com/watch?v=ulfoU2MziOc
CC BY-SA 4.0

LEMMiNO - Nocturnal
https://www.youtube.com/watch?v=epmoV2HRs9U
CC BY-SA 4.0

LEMMiNO - Siberian
https://www.youtube.com/watch?v=5py6E6yo7wk
CC BY-SA 4.0

LEMMiNO - Encounters
https://www.youtube.com/watch?v=xdwWCl_5x2s
CC BY-SA 4.0

LEMMiNO - Aloft
https://www.youtube.com/watch?v=XNEKdkB_kdc
CC BY-SA 4.0

LEMMiNO - Blackout
https://www.youtube.com/watch?v=RsVVcsVDt-s
CC BY-SA 4.0
#software #computerscience #code #hacking #cybersecurity #exploit #vulnerability #pentesting #privacy #malware #cyber #cybersecurity #backdoor #hacked #cyberattack #tor #torbrowser #onionrouting #deanonymize #darknet #torrelay #censorship #surveillance #tracking #firewall #networking #leak #digitalID #onionflation #deepweb #darkweb #kali #linux

Видео ALL Onion Services Vulnerable, and Tor can't patch it канала Daniel Boctor
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять