Rocksolid Light

Welcome to novaBBS (click a section below)

mail  files  register  nodelist  faq  login

So this is what it feels like to be potato salad


rocksolid / Security / Sidechannel attack via js

SubjectAuthor
* Sidechannel attack via jsanon
+* Re: Sidechannel attack via jsanon
|`- Re: Sidechannel attack via jsGuest
`- Re: Sidechannel attack via jsAnonUser

1
Subject: Re: Sidechannel attack via js
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Fri, 23 Nov 2018 10:36 UTC
References: 1
Path: i2pn2.org!rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <23e9465f2ee22079d9f6699d625a53f6@def4.com>
Subject: Re: Sidechannel attack via js
Date: Fri, 23 Nov 2018 10:36:38+0000
Organization: def4
In-Reply-To: <89f6f4d28afd9a02e68b4d8709d674b8@def4.com>
References: <89f6f4d28afd9a02e68b4d8709d674b8@def4.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers

different browser for banking and similar than one for just screwing around online.

I think for this it is best to use different physical devices.

Posted on def4.i2p


Subject: Re: Sidechannel attack via js
From: Guest
Newsgroups: rocksolid.shared.security
Organization: Dancing elephants
Date: Sun, 16 Dec 2018 17:00 UTC
References: 1
Path: i2pn2.org!rocksolid2!def3!.POSTED!not-for-mail
From: gue...@retrobbs.rocksolidbbs.com (Guest)
Newsgroups: rocksolid.shared.security
Subject: Re: Sidechannel attack via js
Date: Sun, 16 Dec 2018 12:00:23 -0500
Organization: Dancing elephants
Lines: 2
Message-ID: <pv5vpp$qb6$1@def3.retrobbs.com>
References: <23e9465f2ee22079d9f6699d625a53f6@def4.com>
Reply-To: Guest <guest@retrobbs.rocksolidbbs.com>
NNTP-Posting-Host: 10.0.2.2
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
X-Trace: def3.retrobbs.com 1544979065 26982 10.0.2.2 (16 Dec 2018 16:51:05 GMT)
X-Complaints-To: usenet@def3.retrobbs.com
NNTP-Posting-Date: Sun, 16 Dec 2018 16:51:05 +0000 (UTC)
User-Agent: FUDforum 3.0.7
X-FUDforum: e4062714e2d275bd0cc7c3ee636428b0 <4800>
View all headers
Switch to IceCat or Links and configure Searxes addon.
Posted on: def3.i2p


Subject: Sidechannel attack via js
From: anon
Newsgroups: rocksolid.shared.security
Organization: def4
Date: Thu, 22 Nov 2018 23:43 UTC
References: 1
Path: rocksolid2!def3!.POSTED.localhost!not-for-mail
From: ano...@anon.com (anon)
Newsgroups: rocksolid.shared.security
Message-ID: <89f6f4d28afd9a02e68b4d8709d674b8@def4.com>
Subject: Sidechannel attack via js
Date: Thu, 22 Nov 2018 23:43:21+0000
Organization: def4
In-Reply-To:
References:
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
View all headers

Quote:

In  this  work  we  show  that  cache  website  fingerprinting
attacks  in  JavaScript  are  highly  feasible,  even  when  they are  run  from  highly  restrictive  environments,  such  as  the Tor  Browser.

/Quote

So, if you have js enabled, each website can check what other sites you visit atm.

Full paper here:
https://arxiv.org/pdf/1811.07153.pdf

Posted on def4.i2p


Subject: Re: Sidechannel attack via js
From: AnonUser
Newsgroups: rocksolid.shared.security
Organization: RetroBBS
Date: Fri, 23 Nov 2018 03:27 UTC
References: 1
Path: rocksolid2!.POSTED.retrobbs!not-for-mail
From: anonu...@retrobbs.rocksolidbbs.com.remove-4lh-this (AnonUser)
Newsgroups: rocksolid.shared.security
Subject: Re: Sidechannel attack via js
Date: Fri, 23 Nov 2018 03:27:18 +0000
Organization: RetroBBS
Message-ID: <a8c23f17e1d82e7cf730d38988ae6ce0$1@retrobbs.rocksolidbbs.com>
References: <89f6f4d28afd9a02e68b4d8709d674b8@def4.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Transfer-Encoding: 8bit
Injection-Info: novabbs.com; posting-host="retrobbs:10.128.3.129";
logging-data="648"; mail-complaints-to="usenet@novabbs.com"
To: anon
X-Comment-To: anon
In-Reply-To: <89f6f4d28afd9a02e68b4d8709d674b8@def4.com>
X-FTN-PID: Synchronet 3.17a-Linux Feb 20 2018 GCC 6.3.0
X-Gateway: retrobbs.rocksolidbbs.com [Synchronet 3.17a-Linux NewsLink 1.108]
View all headers
  To: anon
Another reason to use different browsers for different purposes.

Not just different networks, I use a different browser for banking and similar than one for just screwing around online.

--
Posted on RetroBBS
--- Synchronet 3.17a-Linux NewsLink 1.108
Posted on RetroBBS


1
rocksolid light 0.7.2
clearneti2ptor