Slashdot Mirror


Lizard Squad Targets Tor

mrspoonsi tips news that Lizard Squad, the hacker group who knocked Xbox Live and the PlayStation Network offline on Christmas morning, has now turned its attention to Tor. After tweeting that they were targeting a Tor-related zero-day flaw, the group is now in control of 3,000 exit nodes — almost half of them. "If one group is controlling the majority of the nodes, it could be able to eavesdrop on a substantial number of vulnerable users. Which means Lizard Squad could gain the power to track Tor users if it infiltrates enough of the network."

5 of 83 comments (clear)

  1. The TOR Project was well aware of this a while ago by muphin · · Score: 4, Informative

    As reported by /. http://tech.slashdot.org/story...
    so i believe they are working on a fix.

    --
    It's not a typo if you understood the meaning!
  2. Not really an 0day exploit by El_Muerte_TDS · · Score: 5, Informative

    Either way, @LizardMafia's Tor relay attack isn't new. There's a paper on how Tor loses anonymity if over 50% of relays are compromised.

    https://twitter.com/kaepora/st...

    I was going to go with botnet, but many LizardNSA relay IPs appear to route back to Google Cloud. Thousands of tiny VMs at low bandwidth?

    https://twitter.com/kaepora/st...

    You can see this whole list of tor nodes here: https://torstatus.blutmagie.de...
    All Lizard nodes resolve to *.bc.googleusercontent.com

  3. Re:The TOR Project was well aware of this a while by OverlordQ · · Score: 4, Informative

    Not the same issue at all. All this is is IdiotSquad starting up a bunch of Google Compute VMs as tor exit nodes.

    --
    Your hair look like poop, Bob! - Wanker.
  4. Headline is wrong and sensationalistic by carlhaagen · · Score: 5, Informative

    They haven't taken over 3000 Tor relays - they have set up 3000 new relays of their own, thus having control of over 50% of the available relays.

  5. Re:Wonder what 0 days are in use... by carlhaagen · · Score: 4, Informative

    They haven't been kicked down. LQ set up 3000 new rogue nodes.