9 VulnerabilitiesInTheToxOnion
emdee edited this page 2022-10-27 06:56:21 +00:00

Up: SecurityVulnerabilities

Chatting with JF (Aug 2022) makes me think that these are still open: Known vulnerabilities in the tox onion:

algor1th created a formal model that shows that announcements are linkable, and note trace equivalent to searches. It can be found at https://github.com/algor1th/tox-verification/blob/master/dht.dps.

Linkability here means that a public key of a node can be linked to it's ip adress when announcing.