Ssh MITM attack when using tor

P Jones deerfieldtech at gmail.com
Fri Feb 2 21:12:05 UTC 2007


On 2/2/07, Bryan Fordham <bfordham at gmail.com> wrote:
>
>
> On 2/2/07, James Muir <jamuir at scs.carleton.ca> wrote:
> >
> > Just curious -- how does ssh inform you that a man-in-the-middle (i.e.
> > the exit node) is trying to victimize you?
>
> ssh complains that the server's key has changed. I've had it happen a few
> times

If someone were to upgrade/change their server OS or generate a new
key for purely non-malicious reasons, this could happen, no?



More information about the tor-talk mailing list