Re: [tor-talk] Tor DNS Deanonymization

2016-10-15 Thread Nick Mathewson
On Fri, Oct 14, 2016 at 11:09 AM, Philipp Winter  wrote:
 [...]
> There are two ways to mitigate the issue.  First, we need better
> defences against website fingerprinting, so an attacker learns less by
> observing the connection to your guard relay.  Second, we need to
> improve the DNS setup of exit relays.  I would like to see less relays
> use Google's resolver, and we need to move towards encrypted DNS.

Thanks, Philipp!

Could you comment at all about whether our current exit side dns
caching approach makes the attack harder, easier, or doesn't matter?

Best wishes,
-- 
Nick
-- 
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


[tor-talk] Did Hackers got hacked with "tor nodes for MitM Jabber servers" ?

2016-10-15 Thread bancfc

Did Hackers got hacked with "tor nodes for MitM Jabber servers" ?


No. It seems they had very shitty opsec.

* re-connecting to an anonymous account directly over clearnet.
* using their voice over the phone to social engineer.
* dox themselves to some reporter.
--
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


[tor-talk] Quote Line Prefixes in Linux Text Editors

2016-10-15 Thread bancfc

Found answer for my own question:

sed 's/^/> /' original > reply
--
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


[tor-talk] Quote Line Prefixes in Linux Text Editors

2016-10-15 Thread bancfc
For security its recommended to compose messages outside the e-mail 
client. There were at least two incidents where plaintext was leaked 
(claws mail saving drafts unencrypted and Enigmail sending unencrypted 
messages).


Does anyone know how to add quoted line prefixes [1] to messages 
composed in a Linux text editor?


[1] https://en.wikipedia.org/wiki/Posting_style#Quoted_line_prefix
--
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


[tor-talk] Did Hackers got hacked with "tor nodes for MitM Jabber servers" ?

2016-10-15 Thread tortalk
Hi Torusers,

this might be of interest:

"Liverman does not believe that was the case however, and that the FBI used 
illegal tactics to aid in their arrests. The method he believes that they 
employed are in line with the highly controversial amendments to Rule 41, which 
would allow for the agency to hack and surveil an unlimited number of computers 
and devices globally, without a warrant. These amendments are not currently 
law, as the deadline for Congress to strike it down is December 1.

“They mentioned something about me and Cracka using similar tor nodes, so it’s 
possible that they utilized their malicious tor nodes for MitM Jabber servers 
which we mostly used to communicate,” Liverman detailed.

The amendments also remove jurisdiction limitations, allowing the FBI to obtain 
a search warrant in, for instance, Virginia and then hack computers across the 
country using Network Investigative Techniques (NITs). "
http://wearechange.org/wikileaks-sources-face-serious-charges-following-cia-fbi-dhs-hacks/

Aloha,
Toruser
-- 
tor-talk mailing list - tor-talk@lists.torproject.org
To unsubscribe or change other settings go to
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk