[tor-talk] Facebook brute forcing hidden services

Virilha tor at cheiraminhavirilha.com
Fri Oct 31 12:52:51 UTC 2014


This is scaring. Can someone calculate how much computer power they  
used to generate the 11 chars?

----- Message from Sam Pizzey <sam at pizzey.me> ---------
     Date: Fri, 31 Oct 2014 12:47:32 +0000
     From: Sam Pizzey <sam at pizzey.me>
Reply-To: tor-talk at lists.torproject.org
  Subject: Re: [tor-talk] Facebook brute forcing hidden services
       To: tor-talk at lists.torproject.org


> So called 'vanity' addresses are essentially a brute force - generating
> tons of keys until you get one that starts with the prefix you want. The
> difference is that 'bob1d8rhdu2h.onion' is a lot less specific than
> facebookwwwi.onion - if Facebook can brute force arbitrary strings like
> that, they can instead brute force, say, <address of silk road>, or
> <address of David's hidden service> and then impersonate it.
> --
> tor-talk mailing list - tor-talk at lists.torproject.org
> To unsubscribe or change other settings go to
> https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


----- End message from Sam Pizzey <sam at pizzey.me> -----





More information about the tor-talk mailing list