[tor-talk] "EVIL bug" Linux Tor Browser Bundle (2.2.35-8)

Sebastian Hahn mail at sebastianhahn.net
Tue Mar 20 09:19:56 UTC 2012

On Mar 19, 2012, at 7:11 PM, clarissabryant wrote:

> On Mon, 19 Mar 2012 14:51:17 -0000, ming at tormail.net wrote:
>> Wow, Anonymous! Wow, what an amazing, "bug".
> Drama. Clearly exposing your own browsing on your own file system on your own computer is a conspiracy of epic proportions. If the existence of vidalia debug log is a risk to your anonymity, you are already owned.
> Did you know tor, vidalia, and firefox talk over localhost? Google localhost and you will find a HUGE conspiracy affecting BILLIONS of computers. Billions of people are exposed to the localhost peer to peer network and infestation.

The bug in TBB is quite severe, and it is against its stated goals and
design principles (one of which is leaving no/as little traces as
possible on disk for later forensics). This bug was severe, it was fixed
quickly, and hopefully nobody was impacted too much. Time to move on.

More information about the tor-talk mailing list