FINDING · DEFENSE

DeTorOS's security relies on the honest-but-curious model: if the onion service refuses to participate or lies about its circuit, the client receives no avoidance guarantee. The paper explicitly flags this as an open limitation and notes it cannot be closed without either requiring a TEE on the onion service side or fundamental protocol changes.

From 2023-arora-detor-onionProvably Avoiding Geographic Regions for Tor's Onion Services · §6 · 2023 · Financial Cryptography and Data Security

Implications

Tags

censors
generic
techniques
active-probing
defenses
tormeta-resistance

Extracted by claude-sonnet-4-6 — review before relying.