Reducing java leakage in windows

James Muir jamuir at cs.smu.ca
Mon Dec 3 04:01:03 UTC 2007


Arrakis wrote:
> It appears that Java attacks for causing external IP data to be leaked
> can be mitigated to some good degree. The upshot is that you can now run
> Java applets that even when attempting to phone home directly (revealing
> your IP), they are routed through the socks port and thus Tor or any
> other socks speaking application. What we are doing is changing the
> proxy settings of the Java Control Panel in windows.

Some time ago, I conducted several tests that demonstrated that Java 
Applets have the ability to disregard proxy settings in the Java Control 
and open direct non-proxied connections.  I do not think what you have 
described will work.

-James



More information about the tor-talk mailing list