Hacker News new | past | comments | ask | show | jobs | submit login

You are right. The lack of details or time window when this happened make it difficult to know what the actual compromise was, or if it is still something that can be used. However, if they compromised a Ricochet user, then this attack was a long time ago, and from what Tor's blog says that client didn't have the defenses that would have prevented the attack they think it is. Without the actual details, it seems like this attack was mitigated some time ago and is no longer something that can be done in the same way.



We have a rough timeframe: "To the best of our knowledge, the attacks happened between 2019–2021."

The hidden service targeted[0] had completely ceased to exist by April 2021, so that time range makes sense.

[0]: https://www.ndr.de/fernsehen/sendungen/panorama/aktuell/Inve...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: