[tor-bugs] #30981 [Applications/TorBirdy]: Torbrowser/Torbirdy insecure settings

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Jun 26 11:01:48 UTC 2019


#30981: Torbrowser/Torbirdy insecure settings
-----------------------------------+-------------------------
 Reporter:  cypherpunks            |          Owner:  sukhbir
     Type:  enhancement            |         Status:  new
 Priority:  Medium                 |      Milestone:
Component:  Applications/TorBirdy  |        Version:
 Severity:  Normal                 |     Resolution:
 Keywords:  certificates, history  |  Actual Points:
Parent ID:                         |         Points:
 Reviewer:                         |        Sponsor:
-----------------------------------+-------------------------
Changes (by gk):

 * owner:  (none) => sukhbir
 * priority:  High => Medium
 * component:  Applications => Applications/TorBirdy
 * severity:  Critical => Normal


Comment:

 I don't think we need to disabled OCSP as OCSP is first-party isolated in
 Tor Browser. Thus, this mechanism can't be used to track anyone across
 domains. Moving the ticket to Torbirdy to address the (remaining) issues
 there.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/30981#comment:1>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list