|
|
|
|
|
by russell_sears
3602 days ago
|
|
I read this explanation a few times, and am afraid I still don't understand why Tor is not vulnerable to this attack. Let's say I'm an attacker that provides enough bandwidth to compromise N% of client circuts, and I can disrupt non-compromised circuits at will. Casuing clients to repeatedly renegotiate non-compromised circuits lets me compromise >>N% of circuits, right? For small N, the chance of getting a compromised circuit is roughly linear in the number of circuit disruptions, right? Unless I'm missing something, this vulnerability provides a significant multiplier to existing Sybil attacks against Tor. A quick search suggests there have been Sybil attacks in the past. Am I missing something obvious here? |
|
If this attack was deployed against Tor, this would appear as a general DDOS attack against Tor and degrade most users experience.
It would not help an attacker direct circuits towards a malicious exit as described in the paper.