Ho lokolloa ha Tor Browser 11.0.2. Katoloso ea ho thibela Tor. Litlhaselo tse ka bang teng ho Tor

Tor Browser 11.0.2, sebatli se inehetseng se shebaneng le ho se tsejoe, polokeho le lekunutu, se lokollotsoe. Ha u sebelisa Tor Browser, sephethephethe sohle se tsamaisoa feela ka marang-rang a Tor, 'me ho ke ke ha khoneha ho fihlella ka ho toba ka marang-rang a tloaelehileng a tsamaiso ea hona joale, e sa lumelleng ho latela aterese ea IP ea sebele ea mosebedisi ho thibela ho lutla ho ka khonehang, o lokela ho sebelisa lihlahisoa. joalo ka Whonix). Lihahi tsa Tor Browser li lokiselitsoe Linux, Windows le macOS.

Bakeng sa ts'ireletso e eketsehileng, Tor Browser e kenyelletsa kenyelletso ea HTTPS Hohle, e u lumellang ho sebelisa encryption ea sephethephethe libakeng tsohle moo ho khonehang. Ho fokotsa ts'okelo ea litlhaselo tsa JavaScript le ho thibela plugin ka boiketsetso, kenyelletso ea NoScript e kenyelelitsoe. Lipalangoang tse ling li sebelisetsoa ho loantša ho thibela le ho hlahloba sephethephethe. Ho itšireletsa khahlanong le ho totobatsa likarolo tse khethehileng tsa moeti, WebGL, WebGL2, WebAudio, Social, SpeechSynthesis, Touch, AudioContext, HTMLMediaElement, Mediastream, Canvas, SharedWorker, WebAudio, Permissions, MediaDevices.enumerateDevices, le li-API tse thibetsoeng tsa skrine li haneloa, le moromeli oa telemetry ea holofetseng, Pocket, Reader View, HTTP Alternative-Services, MozTCPSocket, "link rel=preconnect", libmdns tse fetotsoeng.

Phetolelo e ncha e hokahantsoe le codebase ea tokollo ea Firefox 91.4.0, e lokisang bofokoli ba 15, bao 10 ea bona e tšoailoeng e le kotsi. 7 bofokoli bo bakoa ke mathata a memori, joalo ka buffer overflows le phihlello ea libaka tsa memori tse seng li lokolotsoe, 'me li ka lebisa ho phethisoeng ha khoutu e mpe ha u bula maqephe a etselitsoeng ka ho khetheha. Litlhaku tse ling tsa ttf li ne li qheletsoe ka thoko kopanong bakeng sa sethala sa Linux, ts'ebeliso ea eona e lebisitseng tlolong ea tokiso ea mongolo ho likarolo tsa interface ho Fedora Linux. E emisitse "network.proxy.allow_bypass", e laolang ts'ebetso ea ts'ireletso khahlano le ts'ebeliso e fosahetseng ea Proxy API ho li-add-on. Bakeng sa lipalangoang tsa obfs4, heke e ncha ea "deusexmachina" e nolofalloa ka ho sa feleng.

Ho sa le joalo, pale e ntse e tsoela pele ka ho thibela Tor ho Russia Federation. Roskomnadzor e fetotse mask a libaka tse koetsoeng ho ngoliso ea libaka tse thibetsoeng ho tloha ho "www.torproject.org" ho ea ho "*.torproject.org" mme a atolosa lethathamo la liaterese tsa IP tse lokelang ho thibeloa. Phetoho e thibetse boholo ba libaka tse nyane tsa morero oa Tor, ho kenyeletsoa blog.torproject.org, gettor.torproject.org, le support.torproject.org. Forum.torproject.net e ntse e fumaneha, e amohetsoe ka har'a lisebelisoa tsa Puisano. Karolo e 'ngoe e fumanehang ke gitlab.torproject.org le lists.torproject.org, eo mokhoa oa ho kena o neng o lahlehile qalong, empa o ile oa tsosolosoa, mohlomong ka mor'a ho fetola liaterese tsa IP (hona joale gitlab e lebisitsoe ho moamoheli gitlab-02.torproject.org).

Ka nako e ts'oanang, ho thibela liheke le li-node tsa marang-rang a Tor, hammoho le moamoheli oa ajax.aspnetcdn.com (Microsoft CDN) e sebelisitsoeng ho lipalangoang tse bonolo, e ne e se e sa hlokomeloe. Kamoo ho bonahalang kateng, liteko tsa ho thibela li-node tsa marang-rang a Tor ka mor'a ho thibela sebaka sa Tor ho emisa. Boemo bo thata bo ntse bo tsoela pele ka seipone sa tor.eff.org, se ntseng se tsoela pele ho sebetsa. 'Nete ke hore seipone sa tor.eff.org se tlameletsoe atereseng e tšoanang ea IP e sebelisetsoang sebaka sa eff.org sa EFF (Electronic Frontier Foundation), kahoo ho thibela tor.eff.org ho tla lebisa ho thibela karolo e itseng ea sebaka sa mokgatlo o tsebahalang wa ditokelo tsa botho.

Ho lokolloa ha Tor Browser 11.0.2. Katoloso ea ho thibela Tor. Litlhaselo tse ka bang teng ho Tor

Ho feta moo, re ka hlokomela ho phatlalatsoa ha tlaleho e ncha mabapi le liteko tse ka bang teng tsa ho etsa litlhaselo tsa ho hlakisa basebelisi ba Tor ba amanang le sehlopha sa KAX17, ba khetholloang ka li-imeile tse iqapetsoeng tse iqapetsoeng ka har'a li-node. Ka Loetse le Mphalane, li-node tse ka bang kotsi tse 570 li ne li koetsoe ke morero oa Tor. Sehlohlolong sa eona, sehlopha sa KAX17 se khonne ho tlisa palo ea li-node tse laoloang marang-rang a Tor ho 900 e tsamaisoang ke bafani ba 50 ba fapaneng, e lumellanang le hoo e ka bang 14% ea palo eohle ea li-relays (ha ho bapisoa, ka 2014 bahlaseli ba khonne ho fumana taolo. hoo e ka bang halofo ea li-relay tsa Tor, 'me ka 2020 ho feta 23.95% ea libaka tsa ho tsoa).

Ho lokolloa ha Tor Browser 11.0.2. Katoloso ea ho thibela Tor. Litlhaselo tse ka bang teng ho Tor

Ho beha palo e kholo ea li-node tse laoloang ke opereishene e le 'ngoe ho etsa hore ho khonehe ho tsebahatsa basebelisi ba sebelisa tlhaselo ea sehlopha sa Sybil, e ka etsoang haeba bahlaseli ba e-na le taolo holim'a li-node tsa pele le tsa ho qetela ka ketane ea ho se tsejoe. Node ea pele ho ketane ea Tor e tseba aterese ea IP ea mosebedisi, 'me ea ho qetela e tseba aterese ea IP ea mohloli o kōptjoang, e leng se etsang hore ho khonehe ho hlakola kopo ka ho eketsa lengolo le itseng le patiloeng lihloohong tsa lipakete ka lehlakoreng la ho kenya letsoho. node, e lulang e sa fetohe ho pholletsa le ketane ea ho se tsebahale, le ho sekaseka leibole ena lehlakoreng la node ea ho tsoa. Ka li-node tse laoloang tsa ho tsoa, ​​bahlaseli ba ka boela ba etsa liphetoho ho sephethephethe se sa ngolisoang, joalo ka ho tlosa li-redirect ho mefuta e fapaneng ea HTTPS ea libaka le ho thibela litaba tse sa ngolisoang.

Ho ea ka baemeli ba marang-rang a Tor, boholo ba li-node tse tlositsoeng nakong ea hoetla li ne li sebelisoa feela e le li-node tse bohareng, tse sa sebelisetsoeng ho sebetsana le likopo tse kenang le tse tsoang. Bafuputsi ba bang ba hlokomela hore li-node e ne e le tsa lihlopha tsohle 'me monyetla oa ho fihla node ea ho kenya e laoloang ke sehlopha sa KAX17 e ne e le 16%, le ho node ea tlhahiso - 5%. Empa leha sena e le 'nete, joale monyetla oa kakaretso oa hore mosebelisi a otle likarolo tse peli tsa ho kenya le ho tsoa sehlopheng sa li-node tse 900 tse laoloang ke KAX17 e hakanyetsoa ho 0.8%. Ha ho na bopaki bo tobileng ba tšebeliso ea li-node tsa KAX17 ho etsa litlhaselo, empa mohlomong litlhaselo tse joalo ha li hlakoloe.

Source: opennet.ru

Eketsa ka tlhaloso