Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It would also be useful to point out limitations and vulnerabilities. Tor browser has no protection against malware that hits the Internet directly, bypassing Tor circuits. But Tor Project does not prominently warn users about that on its website. While Tor Project does acknowledge Tor's vulnerability to global adversaries, there's also no prominent warning about that. If you run Tor in a terminal, you see "This is experimental software. Do not rely on it for strong anonymity." But how many users will ever see that warning?


That's FUD and untrue.

The first thing you see in Tor Browser is a tab explaining that you got properly connected to Tor, but that Tor in itself is not a complete solution to online privacy and suggests you follow a link to an informative document written by the Tor Project.


Even worse is that javascript is default enabled, making the security as strong as the Firefox sandbox.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: