|
|
|
|
|
by zmanian
3603 days ago
|
|
This attack is a general amplifier on denial of service attacks on Linux server. If this attack was deployed against Tor, this would appear as a general DDOS attack against Tor and degrade most users experience. It would not help an attacker direct circuits towards a malicious exit as described in the paper. |
|
The bolded text in the blog post reads "the middle relay will pick a different exit relay", and should read "the client will pick a new circuit at random using the same bandwidth-proportional weights."
The security properties of the corrected description aren't very comforting: the attack is no longer guaranteed to work, just like there is no guarantee I will ever roll a one with a fair die.