Two new Tor security updates have been published recently, stable version 2.9.9.9 and development release 0.3.0.2 Alpha, patching a few important vulnerabilities discovered lately.
The most important bug fixed in the Tor 0.2.9.9 and Tor 0.3.0.2 Alpha versions is a denial-of-service (DoS) vulnerability that could allow an attacker to crash relays and clients, even if these weren't compiled with the "--enable-expensive-hardening" option. Tor 0.2.9.x and 0.3.0.1-alpha builds are affected by the issue.
It is recommended to update to Tor 0.2.9.9, which is the current stable release of the software for enabling anonymous communication, as soon as possible. Also, if you're using the development branch, make sure that you're running at least version 0.3.0.2-alpha, which is now available for download, for testing purposes only.
"Downgrade ...
Intelligence View
⚡ tsecurity.de Intelligence
New Tor Security Updates Patch DoS Bug That Let Attackers Crash Relays, Clients
Two new Tor security updates have been published recently, stable version 2.9.9.9 and development release 0.3.0.2 Alpha, patching a few important…
2. Cyber Threat Intelligence & Forensik
IoC Intelligence (4 Indikatoren)
2[.]9[.]9[.]90[.]3[.]0[.]20[.]2[.]9[.]90[.]3[.]0[.]1
CTI Threat Relationship Graph7 Knoten / 6 Relationen
MITRE ATT&CK Matrix Navigator 14 Taktiken
1 belegte TechnikenLive-Mapping
Reconnaissance
–
Resource Development
–
Initial Access
–
Execution
–
Persistence
–
Privilege Escalation
–
Defense Evasion
–
Credential Access
–
Discovery
–
Lateral Movement
–
Collection
–
Command and Control
–
Exfiltration
–
Impact