Jump to content

Mysterious group hijacking TOR to redirect cryptocurrency transactions


Recommended Posts

Posted

ZDNet article

 

A mysterious group has hijacked Tor exit nodes to perform SSL stripping attacks (link)
At one point, the group ran almost a quarter of all Tor exit nodes. Group still controls 10% of all Tor exit nodes today.

By Catalin Cimpanu for Zero Day | August 10, 2020 -- 19:18 GMT

 

"The goal of the person-in-the-middle attack is to execute "SSL stripping" attacks by downgrading the user's web traffic from HTTPS URLs to less secure HTTP alternatives.

Based on their investigation, Nusenu said the primary goal of these SSL stripping attacks was to allow the group to replace Bitcoin addresses inside HTTP traffic going to Bitcoin mixing services."

Posted

Interesting, exit nodes are not to be trusted at the best of times.

 

For something to remain 'fully secure' - best to use an actual onion service, that way there is no exit from the network.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.



×
×
  • Create New...