{"id":66527,"date":"2013-09-07T05:00:05","date_gmt":"2013-09-07T04:00:05","guid":{"rendered":"http:\/\/rinf.com\/alt-news\/breaking-news\/tor-anonymity-network-could-be-easily-compromised-researcher-says\/66527\/"},"modified":"2013-09-07T05:00:05","modified_gmt":"2013-09-07T04:00:05","slug":"tor-anonymity-network-could-be-easily-compromised-researcher-says","status":"publish","type":"post","link":"http:\/\/rinf.com\/alt-news\/breaking-news\/tor-anonymity-network-could-be-easily-compromised-researcher-says\/","title":{"rendered":"Tor anonymity network could be \u2018easily compromised,\u2019 researcher says"},"content":{"rendered":"<div class=\"ftpimagefix\" style=\"float:left\"><a target=\"_blank\" href=\"http:\/\/rt.com\/usa\/tor-anonymity-easily-compromised-researcher-537\/\"><img decoding=\"async\" width=\"150\" src=\"http:\/\/rt.com\/files\/news\/20\/5b\/90\/00\/server.jpg\"\/><\/a><\/div>\n<div class=\"cont-wp-mid max_width\">\n<div class=\"acticle_clock\">\n\t\t\t\t\t\t<!-- time --><br \/>\n                        <span class=\"time\"><br \/>\n                            Published time: September 07, 2013 03:52                                                    <\/span><br \/>\n                        <!--\/\/ time --><\/p><\/div>\n<div class=\"article_img\">\n<p class=\"article_img_footer\">Reuters\/ Valentin Flauraud<\/p>\n<\/p><\/div>\n<\/p><\/div>\n<p>Following revelations of mass online surveillance and encryption backdoors installed by the National Security Agency, some users have flocked to the Tor router service \u2014 although experts warn that it may not be as secure as once thought.<\/p>\n<p>\n  Tor, short for \u201cThe Onion Router,\u201d has experienced a major uptick<br \/>\n  in subscribers since former NSA contractor Edward Snowden leaked<br \/>\n  details about the US government\u2019s vast internet surveillance<br \/>\n  programs.\n<\/p>\n<p>\n  The service &#8211; which for years accepted funding from US government<br \/>\n  entities &#8211; has doubled its customer base, thanks to a growing<br \/>\n  number of people who wish to conceal their online communication,<br \/>\n  search queries, and home location from the government.\n<\/p>\n<p>\n  The most recent Snowden leak, which disclosed that the NSA uses<br \/>\n  backdoors to crack web encryption, may have alarmed Tor users by<br \/>\n  revealing that US and British intelligence agencies have also<br \/>\n  targeted the very anonymity services that Tor counts itself<br \/>\n  among. The NSA has allegedly spent hundreds of millions of<br \/>\n  dollars annually to \u201ccovertly influence\u201d tech companies, and even<br \/>\n  planted undercover agents within major corporations. \u00a0\n<\/p>\n<p>\n  Unfortunately for the thousands of people who rely on Tor, many<br \/>\n  of the devices they use to connect to its servers could still be<br \/>\n  infiltrated by the NSA. This is partly due to only 10 percent of<br \/>\n  Tor servers using its latest iteration which boasts stronger<br \/>\n  cryptography.\n<\/p>\n<p>\n  Rob Graham, the CEO of penetration testing firm Errata Security,<br \/>\n  told Ars Technica that he ran a \u201c<i>hostile<\/i>\u201d exit node on Tor<br \/>\n  and found that 76 percent of the nearly 23,000 connections he<br \/>\n  tracked used a form of the 1024-bit Diffie-Hellman key.\n<\/p>\n<p>\n  The NSA\u2019s exact capabilities have yet to be made public, but most<br \/>\n  security experts assume the agency could easily crack the key<br \/>\n  Graham observed.\n<\/p>\n<p>\n  \u201c<i>Everyone seems to agree that if anything, the NSA can break<br \/>\n  1024 RSA\/DH keys<\/i>,\u201d Graham wrote in a blog post. \u201c<i>Assuming<br \/>\n  no \u2018breakthroughs,\u2019 the NSA can spend $1 billion on custom chips<br \/>\n  that can break such a key in a few hours. We know the NSA builds<br \/>\n  custom chips, they\u2019ve got fairly public deals with IBM foundries<br \/>\n  to build chips<\/i>.\u201d\n<\/p>\n<p>\n  He also advised users to take responsibility for themselves by<br \/>\n  consistently updating their Tor software package and thoroughly<br \/>\n  reading through NSA documents that have been made public.\n<\/p>\n<p>\n  \u201c<i>Of course, this is just guessing about the NSA\u2019s<br \/>\n  capabilities<\/i>,\u201d Graham continued. \u201c<i>As it turns out, the<br \/>\n  newer elliptical keys may turn out to be relatively easier to<br \/>\n  crack than people thought, meaning that older software may in<br \/>\n  fact be more secure<\/i>.\u201d\n<\/p>\n<p>\n  It has been made public that the Department of Defense provided<br \/>\n  Tor with $876,099 in 2012 \u2014 a sum large enough to make up 40<br \/>\n  percent of the project\u2019s $2 million budget. Other government<br \/>\n  donors included the US State Department and the National Science<br \/>\n  Foundation.\n<\/p>\n<p>\n  Though the NSA itself is housed under the Department of Defense,<br \/>\n  Tor\u2019s executive director Andrew Lewman has said that the<br \/>\n  intelligence agency has not requested a backdoor into the system.\n<\/p>\n<p>\n  \u201c<i>The parts of the US and Swedish governments that fund us<br \/>\n  through contracts want to see strong privacy and anonymity exist<br \/>\n  on the Internet in the future<\/i>,\u201d Lewman explain in an email to<br \/>\n  customers, as quoted by The Washington Post. \u201c<i>Don\u2019t assume<br \/>\n  that \u2018the government\u2019 is one coherent entity with one<br \/>\n  mindset<\/i>.\u201d\n<\/p>\n<p>Republished from: <a href=\"http:\/\/rt.com\/usa\/tor-anonymity-easily-compromised-researcher-537\/\" target=\"_blank\" title=\"Tor anonymity network could be \u2018easily compromised,\u2019 researcher says\">RT<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Published time: September 07, 2013 03:52 Reuters\/ Valentin Flauraud Following revelations of mass online surveillance and encryption backdoors installed by the National Security Agency, some users have flocked to the Tor router service \u2014 although experts warn that it may not be as secure as once thought. Tor, short for \u201cThe Onion Router,\u201d has experienced [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":66528,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[487],"tags":[],"class_list":{"0":"post-66527","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-breaking-news"},"_links":{"self":[{"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/posts\/66527","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/comments?post=66527"}],"version-history":[{"count":0,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/posts\/66527\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/media\/66528"}],"wp:attachment":[{"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/media?parent=66527"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/categories?post=66527"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/rinf.com\/alt-news\/wp-json\/wp\/v2\/tags?post=66527"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}