Feds are Suspects in New Malware That Attacks Tor Anonymity

Feds are Suspects in New Malware That Attacks Tor Anonymity

Photo: Andrewfhart / Flickr

Security researchers tonight are poring over a piece of malicious software that takes advantage of a Firefox security vulnerability to identify some users of the privacy-protecting Tor anonymity network.

The malware showed up Sunday morning on multiple websites hosted by the anonymous hosting company Freedom Hosting. That would normally be considered a blatantly criminal “drive-by” hack attack, but nobody’s calling in the FBI this time. The FBI is the prime suspect.

“It just sends identifying information to some IP in Reston, Virginia,” says reverse-engineer Vlad Tsrklevich. “It’s pretty clear that it’s FBI or it’s some other law enforcement agency that’s U.S.-based.”

If Tsrklevich and other researchers are right, the code is likely the first sample captured in the wild of the FBI’s “computer and internet protocol address verifier,” or CIPAV, the law enforcement spyware first reported by WIRED in 2007.

http://www.wired.com/threatlevel/2013/08/freedom-hosting/

Check out the member blogs, videos, and discussions @ http://12160.info

Comment

You need to be a member of 12160 Social Network to add comments!

Join 12160 Social Network

Comment by scotty michele brown on August 5, 2013 at 12:40pm

I had posted a link about this yesterday. I don't use TOR but I figured others here do.

Comment by truth on August 5, 2013 at 12:30pm

Tor users targeted with spyware following anonymous Web-host shutdown

The news that the alleged owner of Freedom Hosting, the internet host for a great number of Tor hidden services, has been arrested and is accused of distributing and promoting child pornography has resounded across the Internet and has explained why in the last few days there were mass outages of Tor hidden services.

But that was not the end of it, because it has been discovered that the pages hosted by Freedom Hosting have been modified to include a specially crafted malicious JavaScript. It's only purpose is to exploit a flaw in Firefox 17 so that the IP address of the user is revealed and sent to a server in Virginia believed to be operated by the FBI.

The 28-year-old Eric Eoin Marques was arrested in Dublin on Thursday on the basis of an extradition warrant issued by a US court on July 29, and has been denied bail until the Irish High Court has had time to review the case. He is scheduled to appear before the court again later this week.

http://www.net-security.org/secworld.php?id=15355

"Destroying the New World Order"

TOP CONTENT THIS WEEK

THANK YOU FOR SUPPORTING THE SITE!

mobile page

12160.info/m

12160 Administrators

 

Latest Activity

Less Prone posted a video

A teacher exposes the LGBT agenda coming into in elementary schools

At the Teens4Truth Conference at the Southwestern Baptist Theological Seminary, Nov.18, 2017. A teacher warns that parents have no idea how bad it is, and ev...
22 hours ago
Less Prone commented on Doc Vega's photo
Thumbnail

main-qimg-c0f46f334984bf2d4642651a38db08ca

"This is sick. What about learning something useful like, reading, mathematics, literature, science…"
22 hours ago
Burbia posted a blog post

How much money makes anyone have a god complex?

Trump makes a meme of himself as Jesus Christ. Soros says he fancied himself a sort of god.In 2004,…See More
yesterday
Sandy posted a photo
Saturday
Doc Vega posted a photo

main-qimg-c0f46f334984bf2d4642651a38db08ca

Hate children< then put them in a classroom where Lebians teach them how to use dildos, where…
Friday
Doc Vega commented on Doc Vega's blog post Why Was The TV Show “The Outer Limits” Such a Threat?
"Gordon thanks for your support."
Thursday
Doc Vega posted a blog post

What If origins on Our Planet are Different Than we Think?

 For a long time now there has been a theory that would fit into both creationism and the simulated…See More
Thursday
honeygirl posted a video

All Bases Erased, Air Defense Shattered ! Iranian Missiles Massacre U.S. FORCES | Douglas Macgregor

Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.
Thursday
Less Prone favorited Sandy's video
Thursday
Less Prone favorited Doc Vega's blog post The Escape
Thursday
Less Prone posted a photo

Same Package - Different Label

This way or that way, we get to the same place. It's time to take another road.
Thursday
Less Prone favorited Sandy's video
Thursday
agen Dadu is now a member of 12160 Social Network
Thursday
Less Prone commented on tjdavis's photo
Thumbnail

TRIVIA OF THE DAY Kier means “Penis” in Persian

"Nomen est omen. A political dick destroying his own country."
Thursday
tjdavis's blog post was featured
Thursday
Doc Vega's 2 blog posts were featured
Thursday
tjdavis favorited honeygirl's video
Thursday
Doc Vega posted blog posts
Wednesday
Doc Vega commented on cheeki kea's blog post IN ITS OWN WORDS: CHAT GPT LAYS OUT THE AGENDA.
"Wow! The final progressive steps to the government run matrix. Now just fine tuning it. I…"
Wednesday
cheeki kea commented on Doc Vega's blog post The Escape
"That's a great poem it's a good time for writing being national poetry month in America…"
Wednesday

© 2026   Created by truth.   Powered by

Badges  |  Report an Issue  |  Terms of Service

content and site copyright 12160.info 2007-2019 - all rights reserved. unless otherwise noted