Somehow I do not believe this thing, because I assume it to be an unlikely
decision for a site with commercial interests to block a range like whole /16
subnets (if you want to block the changing addresses of dial up exit nodes) or
a multitude of them from accessing their site. Unless forced to.
Not only, as repeatedly mentioned by the Tor developers and others, is it
pretty easy to block access originating from Tor nodes to a server by the the
servers' operators.
Also an adversary with much power might block a particular server of interest
(like e-gold) ONLY for Tor nodes without knowledge of the servers'
operators, maybe only necessary for those with distance 9 or higher, but
permits access for the rest of the world.
It should then be trivial to analyze the servers' traffic.
Call it an attack to anonymity software via social hacking, aiming at creating
panic under those who believe their assets are about to be lost.
Someone in this "panic" situation just might unfold his identity by trying to
save his money/assets. And bingo...
Now not every Toruser is a mad computer scientist or cares about things like
referrers, user-agents, javascript, flashy blinky animations or else ("I rarely
eat cookies when I use my computer").
So a machine accessing the blocked server "naked" might be recognized as the
one doing this and that before with Tor, but this time with the real IP.
Further on, this machine could later be identified even if using Tor after
Tornodes are unblocked again.
All the "nat" -ed machines finally can be associated with a real ID.
(Correct me if I'm wrong, especially about reading the IP
with whatsoever on "nat" -ed machines.)
For e-gold all the usual save-the-world-from-the-apocalypse
legitimation for doing anything a professionally paranoid brain might wish, are
listed in the indictment against e-golds' owners, see
http://www.theregister.co.uk/2007/05/01/e-gold_indictment/
or the "real thing", also linked from the above article
http://www.usdoj.gov/opa/pr/2007/April/07_crm_301.html
and, it's for money, meaning that is generally enough reason for any
prosecution.
Even if none of the accusations against e-gold might succeed, it might
seriously damage or destroy this particular business, and worse, harvest data
for the ever growing databases of so called "evildoers".
And has cracked Tor.
-------- Original Message --------
From: KT <[EMAIL PROTECTED]>
Apparently from: [EMAIL PROTECTED]
To: [email protected]
Subject: Re: Tor nodes blocked by e-gold
Date: Wed, 2 May 2007 04:57:40 +0100
> On 4/27/07, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote:
>
> > ...Since 24 hours, e-gold has decided to block all TOR nodes...<snip>
>
> Didn't do them much good[1], did it?
>
> [1] http://www.e-gold.com/letter3.html