[tor-bugs] #18121 [Quality Assurance and Testing]: anti-conformational attack (theory)

Tor Bug Tracker & Wiki blackhole at torproject.org
Thu Jan 21 21:21:52 UTC 2016


#18121: anti-conformational attack (theory)
-------------------------------------+-------------------------------------
     Reporter:  bo0od                |      Owner:  cypherpunks
         Type:  enhancement          |     Status:  new
     Priority:  Medium               |  Milestone:  Upgrade Tor's VM
    Component:  Quality Assurance    |  Infrastructure
  and Testing                        |    Version:  Tor: unspecified
     Severity:  Normal               |   Keywords:
Actual Points:                       |  Parent ID:
       Points:                       |    Sponsor:
-------------------------------------+-------------------------------------
 The design is simple inside this image:-

 [[Image(https://forums.whonix.org/uploads/default/original/1X/258fdf25ca73641ee3610de4a6893ee6e001b60b.png)]]


 with this design if im getting it correctly , it will be very hard to make
 a conformational attack or at least very hard also to compromise the GW
 (Whonix GateWay = medified debian + Tor).

 Note:- this design is very possible to happen inside Qubes OS + Whonix OS

 The explanation:-

 there will be for e.g. five DisposableVM (amnesic VM) which they are
 connected to the WS (Whonix workstation = medified debian + TBB) , but in
 fact they wont be working together how?

 if u c the refresh icon  it means the DisposableVM is turning OFF and
 going to be ON again after few minutes. while others r still working , and
 by this we get:-

 continuing connection to workstation (working area) , and anti-
 compromisation to Tor , because the disposableVM will keep shutting
 shutdown itself and start again from point 0.

 the green lines means the disposableVM is working, and red lines means
 disposableVM is refreshing itself by turning on/off itself from time to
 time (automatic off/on switcher).

 i dunno if my guess is right or wrong. hope i c some activity to this
 idea.

 for more info visit:-

 - [https://www.qubes-os.org/]

 - [https://www.qubes-os.org/doc/dispvm/]

 - [https://www.whonix.org/]

 - [https://www.whonix.org/wiki/Dev/Design-Gateway]

 - [https://www.whonix.org/wiki/Dev/Design-Workstation]

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18121>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list