Misconfigured Tor hidden services leak IP addresses and server data

A new report reveals that many Tor hidden services are being de-anonymized due to simple server configuration errors rather than flaws in the Tor network itself. Common mistakes include exposing diagnostic endpoints and reusing SSL certificates.
Why it matters
This underscores the importance of operational security for users and operators relying on anonymity networks.
X LinkedIn Reddit Facebook Share Tor hidden services are designed to conceal a website's real location and IP address, allowing operators to remain anonymous while serving content through the Tor network.
The report provides technical findings based on cybersecurity research.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in