Umbhali weprojekthi yeOrNetRadar, ebeka iliso kunxibelelwano lwamaqela amatsha enethiwekhi kwinethiwekhi kaTor engaziwayo, upapashe ingxelo Ekuchongeni indawo yokusebenza enkulu yokuphuma Ithuba elibi, elizama ukukhohlisa ukugcwala kwabantu.
Ngokwala manani, nge-22 yamaNdilungise unxibelelwano kwinethiwekhi yeTor yeqela elikhulu lemikhosi enobungozi, apho umhlaseli afumana khona ulawulo lwezithuthi, wagubungela i-23,95% yazo zonke iifowuni ngeendlela zokuphuma.
NgoDisemba ngo-2019 ndibhale malunga nengxaki ekhulayo yokudluliselwa ngolunya kwinethiwekhi yeTor ngenkuthazo yokwazisa kunye nokuphucula imeko ekuhambeni kwexesha. Ngelishwa, endaweni yokuphucula, izinto ziye zanda ngakumbi, ngokukodwa xa kuziwa kwimisebenzi enobungozi yokuthunyelwa kweTor.
Kwincopho yayo, Iqela elikhohlakeleyo lalinama-380 node. Ngokudibanisa iindawo ngokubhekisele kwii-imeyile zonxibelelwano ezidweliswe kwiiseva ezinomsebenzi wobubi, abaphandi Bakwazile ukufumanisa ubuncinci amaqela ali-9 ahlukeneyo eendawo zokuphuma ezinobungozi ezisebenze kangangeenyanga ezisixhenxe.
Abaphuhlisi beTor bazamile ukuvimba iinginginya ezinobungozi, kodwa abahlaseli bawubuyisa ngokukhawuleza umsebenzi wabo. Okwangoku, inani leendawo ezinobungozi liye lehla, kodwa ngaphezulu kwe-10% yezithuthi zisadlula kuzo.
Kukho amanyathelo amiselweyo, njengokulayishwa kwangaphambili kwe-HSTS kunye ne-HTTPS yonke indawo, kodwa ngokwenza, Abasebenzisi abaninzi bewebhusayithi abazenzi kwaye bashiya abasebenzisi babo besengozini kolu hlobo lokuhlaselwa.
Olu hlobo lokuhlaselwa aluchazwanga ngqo kwisikhangeli seTor. Ukudluliselwa ngolunya kusetyenziselwa kuphela ukufikelela kutrafikhi yomsebenzisi kunye nokwenza ukuba kube nzima ukufumanisa, into enobungozi ayizange ihlasele zonke iiwebhusayithi ngokulinganayo.
Kubonakala ngathi bajonge ikakhulu iiwebhusayithi ezinxulumene ne-cryptocurrencyOko kukuthi iinkonzo ezininzi zokuxuba i-bitcoin.
Bathathe indawo yeedilesi ze-bitcoin kutrafikhi ye-HTTP ukuhambisa ukuthengiselana kwizipaji zabo endaweni yedilesi ye-bitcoin enikezwe ngumsebenzisi. Idilesi yeBitcoin yokuhlaselwa kwakhona ayisiyonto intsha, kodwa inqanaba lokusebenza kwabo. Akunakwenzeka ukufumanisa ukuba bayathatha inxaxheba kwezinye iintlobo zokuhlaselwa.
Ukususwa ekujoliswe kuko kokuphinda kuthunyelwe kwi-HTTPS ezahlukileyo zeendawo zomsebenzi ezingene kwiindawo ezinobungozi ezibonakalayo kubonelelo kufikelelo lokuqala lwezixhobo ezingabhalwanga ngaphezulu kwe-HTTP, ivumela abahlaseli ukuba bafumane umxholo weseshoni ngaphandle kokwenza izatifikethi ze-TLS (uhlaselo "lwe-SSL").
Indlela efanayo isebenza kubasebenzisi abachwetheza idilesi yesiza ngaphandle kokubonisa ngokucacileyo "https: //" phambi kwesizinda, kwaye emva kokuvula iphepha musa ukugxila kwigama lomgaqo-nkqubo kwibar yedilesi yesikhangeli. Ukukhusela ekuthinteleni ukuhanjiswa kwakhona kweendawo ze-HTTPS, kuyacetyiswa ukuba kusetyenziswe ukulayishwa kwangaphambili kwe-HSTS.
Ndifikelele kwezinye iindawo ezaziwayo ezichaphazelekayo ze-bitcoin, ukuze bakwazi ukunciphisa oku kwinqanaba lobuchwephesha besebenzisa ukulayishwa kwangaphambili kwe-HSTS. Omnye umntu uthumele i-HTTPS-Yonke indawo imigaqo yemimandla eyaziwayo echaphazelekayo (i-HTTPS Yonke indawo ifakwe ngokungagqibekanga kwisikhangeli seTor). Ngelishwa, akukho nanye kwezi ndawo eyayine-HSTS yokulayishwa kwangaphambili okwenziwe ngelo xesha. Ubuncinane iwebhusayithi enye echaphazelekayo i-HSTS ilayishe kuqala emva kokufunda kwezi ziganeko.
Emva kweposti yebhlog kaDisemba 2019, IProjekthi Tor inezicwangciso ezithembisayo ze-2020 nomntu ozinikele kuphuculo lokuqhuba kule ndawo, kodwa ngenxa yokudendwa kwangoko okunxulumene ne-COVID19, loo mntu wabelwa kwenye indawo.
Ngaphezulu kwalonto, abasemagunyeni kulawulo lweTor kubonakala ukuba abasakususi ukudluliselwa ababekade bekususa iiveki ezimbalwa.
Akucaci ukuba yintoni ebangele olu tshintsho lomgaqo-nkqubo, kodwa kuyabonakala ukuba umntu othile uyayithanda kwaye wongeza amaqela angadweliswanga.
Okokugqibela, ukuba ufuna ukwazi ngakumbi ngayo, ungajonga iinkcukacha kwi ukulandela ikhonkco.