- Joined
- Dec 16, 2023
How does Europol de-anonymize these services? Do they just leave ToR nodes up long enough to collect enough traffic statistics to make an educated guess?
That shouldn't work, all the known de-anonymizing flaws in the TOR protocol have been patched, as far as I am aware. Plus, a suspicious node would be noticed fairly quickly and quarantined off of TOR proper if it was acting suspicious. However, they may be using 0-day flaws no one else knows about that aren't patched. That is always a possibility and a risk. The world governments are well known for paying top dollar for 0-day flaws to hackers (black or white hat, they don't give a shit) that they then exploit for their various nefarious purposes.