[tor-talk] wget - secure?

Robert Ransom rransom.8774 at gmail.com
Wed Apr 18 08:37:43 UTC 2012


On 2012-04-18, Maxim Kammerer <mk at dee.su> wrote:

> TL;DR: wget is 100% safe to use with Tor and it does not leak DNS
> (also true for curl, by the way).

Which version of wget did you audit?  What information leaks did you
check for during your audit?

Which SSL library did you configure wget to use?  Which version of
that SSL library did you audit?

Based on your knowledge of the protocols that wget supports, where did
you most expect to find information leaks in wget's source?  (Since
you claim that ‘wget is 100% safe to use with Tor’, clearly you didn't
find any information leaks.)

Which configuration of wget makes it use Tor ‘100% safe’ly?


Robert Ransom


More information about the tor-talk mailing list