[tor-talk] Firefox vs. Tor Browser Bundle release cycles

Al Billings albill at openbuddha.com
Wed Dec 11 23:28:47 UTC 2013


Yes but good luck with that. Mozilla and Tor are both aware of the possibilities involving looking at checkins, code changes, and binary diffs.

From: bm-2d9whbg2vekslcsgbtplgwdlqypizsqs85 at bitmessage.ch bm-2d9whbg2vekslcsgbtplgwdlqypizsqs85 at bitmessage.ch

An adversary could potentially dig through current Firefox release code, 
diff it against relevant portions of the code base used to build the Tor 
Browser Bundle, and then infer potentially exploitable vulnerabilities 
that TBB users might also be vulnerable to. 
-- 
Al Billings
http://makehacklearn.org



More information about the tor-talk mailing list