Proof-of-Work Defense for Onion Services
blog.torproject.org
Proof-of-Work Defense for Onion Services
1–10 of 159 posts
Re: Proof-of-Work Defense for Onion Services
#2Edit: looks like PoW is set per "service" that's under attack rather than client?
Re: Proof-of-Work Defense for Onion Services
#3Re: Proof-of-Work Defense for Onion Services
#4What's preventing abusers from getting new identities when the PoW kicks in and continuing the DDoS? Edit: looks like PoW is set per "service" that's under attack rather than client?
Re: Proof-of-Work Defense for Onion Services
#5I though that its the last hop that operators control and they can intercept the traffic thats the problem. but this only saves them money and costs the users more when energy is expensive
With Onion Services however, there is no exit relay. Services are encrypted end to end between the client and the hidden service.
Re: Proof-of-Work Defense for Onion Services
#6Re: Proof-of-Work Defense for Onion Services
#7I though that its the last hop that operators control and they can intercept the traffic thats the problem. but this only saves them money and costs the users more when energy is expensive
Re: Proof-of-Work Defense for Onion Services
#8I'm wondering how much this will decrease load on the service being proxied vs the nodes themselves though, I assume it'll have more benefit to services since access is spread out between multiple nodes.
[0]: https://gitlab.torproject.org/tpo/core/torspec/-/blob/main/p...
Re: Proof-of-Work Defense for Onion Services
#9Hold on you just made DoS more expensive, but a hell of alot more effective. If I need a RTX4090 to access your site now, the attacker has succeeded.
Re: Proof-of-Work Defense for Onion Services
#10Hold on you just made DoS more expensive, but a hell of alot more effective. If I need a RTX4090 to access your site now, the attacker has succeeded.