Hacker News new | ask | show | jobs
by belorn 3155 days ago
From a IT Security Assessment, what would those be and their associated risk and impact factors?

One would naturally be the onion address. If they could break the 1024 bit RSA key, they could hijack the name. Risk of this happening: very low. Impact: massive especially outside the realm of tor.

Any additional risks you were thinking about? Backdoors in tor project? Hardware malware specifically designed for tor (rather than than being general)?

1 comments

I believe the main concern would be vulnerabilities in the Tor software itself.

That said, I don't think there's any reason to believe Tor is any more likely to be vulnerable than any other software in your stack. The project is open source, and is very much written with a focus on security and privacy.