
ASan is used in a hardened version of Tor Browser for test purposes. Moreover, we collaborated closely with the Tor Project to ensure that selfrando is fully compatible with AddressSanitizer (ASan), a compiler feature to detect memory corruption. Our solution significantly improves security over standard address space layout randomization (ASLR) techniques currently used by Firefox and other mainstream browsers. In this paper, we present selfrando-an enhanced and practical load-time randomization technique for the Tor Browser that defends against exploits, such as the one FBI allegedly used against Tor users. Therefore, Firefox vulnerabilities (even patched ones) are highly valuable to attackers trying to monitor users of the Tor Browser. The Tor Browser shares a large part of its attack surface with the Firefox browser. Exploiting software vulnerabilities in general, and browser vulnerabilities in particular, constitutes a clear and present threat to the Tor software. However, many government organizations are actively trying to compromise Tor not only in regions with repressive regimes but also in the free world, as the recent FBI incidents clearly demonstrate. The Tor Browser gives non-technical users an easy way to access the Tor Network. You can check out the technical specifications here.Tor is a well-known anonymous communication system used by millions of users, including journalists and civil rights activists all over the world. We are planning to take it slow, since there is lots to do and many bugs to squash.

Development is still ongoing but the team promises cryptographic and protocol improvements, and support for yet-to-be-implemented features such as offline service keys, advanced client authorization, or blockchain support.Īs the current code stabilizes further, we plan to add features like offline service keys, advanced client authorization, a control port interface, improved guard algorithms, secure naming systems, statistics, mixed-latency routing, blockchain support, AI logic and a VR interface (j/k about some of these). Support for updates to onion services has been added to Tor Browser 7.5. The proxy option has a new help page associated with it to help new users understand what it is used for.The configure settings offer information on what a bridge is and make it easier to use one at the same time.The team improved the welcome message to help users understand what they should do next.A launcher opens when you run Tor Browser you may use it to run the browser or configure it.


Tor Browser users who run the program for the first time on a computer may notice interface improvements when they do so.
