Description: Lasse Overlier and Paul Syverson have reported a weakness in Tor, which can be exploited by malicious people to disclose certain sensitive information.
The weakness is caused due to a design error in Tor. This can be exploited to reveal the location of a hidden service more quickly than was previously thought by setting up a malicious Tor server and accessing the hidden service repeatedly while keeping track of who builds circuits through the malicious server shortly after each access.
The weakness has been reported in all stable versions and all experimental versions through 0.1.1.10-alpha.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.