I have problems even logging in on ycombinator with tor. Not to mention any site with anti-spam protection.
Tor and HTTPS
71–80 of 135 posts
Re: Tor and HTTPS
#72The important part of the diagram for Tor is the first NSA character, as you can see it still shows "Location" before you are routed through the Tor relay. With the location information it is possible to correlate the exit information via pattern matching, though it would take considerable analysis, this can be done by logging volume and timing information on the two sides. I am sure there are even better techniques…
> With the location information it is possible to correlate the exit information via pattern matching, though it would take considerable analysis, this can be done by logging volume and timing information on the two sides. I am sure there are even better techniques to analyze exit/entry correlations, especially if you're not using a secure browser. I've thought the same. But I've also thought that if this is indeed p…
Re: Tor and HTTPS
#73Earlier quoted context omitted.
Do they really need to fake it? It surely might be a part of the famous indirectly accessed data.
This has been my question in this whole mess, if we assume NSA can and does subpoena the keys and certs as opposed to the direct data (and the NSA were copying data en masse, which now seems likely) would that not make HTTPS essentially useless?
Re: Tor and HTTPS
#74Re: Tor and HTTPS
#75How about using Tor > VPN (Note: Not VPN > Tor) ?
Re: Tor and HTTPS
#76Why does the graphic portray police as mean angry people. Police are good people who provide a valuable service. They do a good thing. They are not the enemy.
Re: Tor and HTTPS
#77Why does the graphic portray police as mean angry people. Police are good people who provide a valuable service. They do a good thing. They are not the enemy.
Re: Tor and HTTPS
#78Earlier quoted context omitted.
Security professionals have hypothesized many attacks against the anonymity of the tor onion and what you describe is pretty close to one of them. If the NSA was to create tons Tor nodes (enter, exit, and relay), the onion may be broken. Tor is by no means perfect. It is only obfuscating. It is easy to see how this is broken if you click the TOR button on this thing and then imagine the TOR nodes say NSA on them. I t…
There isn't really such category as a tor 'enter' node. Any node can be the first node of the chain, but it has no idea whether it is the first or one in the middle of the chain. Essentially, it's as if the 'entrance node' is running on your computer. That means that no node knows the source of the traffic, and only the exit node knows the destination. For the NSA to effectively monitor Tor, they'd need to run a larg…
Re: Tor and HTTPS
#79Earlier quoted context omitted.
It could circumvent VPN censorship/supression or DPI since VPN is not a secure end to end communication. That way you would obfuscate your endpoint against your vpn endpoint/provider. It would add no further benefit to location obfuscation with Tor, since your VPN-provider will always snitch on you when opposed with lethal force.
They can know your location, but at least no one will know what you're doing.
Re: Tor and HTTPS
#80I have problems even logging in on ycombinator with tor. Not to mention any site with anti-spam protection.