Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

the reason I decided to implement this as a hidden service and not expose it to the regular internet (except through things like onion.to) is that my server sees every request as coming from localhost; all requests are processed through Tor so no matter what you search, as long as you aren't coming in through a Tor mirror, nobody can tell who you are


Thats not true, its specifically the attacks where they have many nodes, and if they can get on the entry and exit, the've identified that person.


There is no exit to a hidden service...


He ways saying if they breached his box, they still wouldn't be able to identify persons. But they can if they have his box (the exit) and the entry node.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: