Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Privacy Guides
@privacyguides@mastodon.neat.computer  ·  activity timestamp 7 months ago

PSA: The Tor Browser Security Level slider cannot be relied upon without a full browser restart (per an anonymous community report and confirmed by Privacy Guides staff) - Make sure you are aware of this if you rely on this feature for your safety.

https://www.privacyguides.org/articles/2025/05/02/tor-security-slider-flaw/

#TorBrowser #Security #MullvadBrowser #Privacy #PrivacyGuides #Article

Privacy Guides

A Flaw With the Security Level Slider in Tor Browser

PSA: The security level slider in Tor Browser (and Mullvad Browser) does not fully apply until restarting the browser. This presents a high risk to people who switch from Standard to Safer security during a browsing session in order to protect themselves from browser exploits.
  • Copy link
  • Flag this post
  • Block
Jonah Aragon
@jonah@mastodon.neat.computer  ·  activity timestamp 7 months ago

🚨 Tor Browser opsec discovery: The security level slider cannot be relied upon without a full browser restart: https://www.privacyguides.org/articles/2025/05/02/tor-security-slider-flaw/

If you frequently switch between security levels in Tor Browser (or Mullvad Browser!), make sure you are fully restarting the browser every time, otherwise you could still unexpectedly have dangerous JS features enabled!

This requirement is not publicly documented anywhere. Hopefully @torproject will add a prompt to restart after modifying this setting in a future Tor Browser release.

#Opsec #TorBrowser #Security #MullvadBrowser #Privacy #PrivacyGuides #PSA

Privacy Guides

A Flaw With the Security Level Slider in Tor Browser

PSA: The security level slider in Tor Browser (and Mullvad Browser) does not fully apply until restarting the browser. This presents a high risk to people who switch from Standard to Safer security during a browsing session in order to protect themselves from browser exploits.
  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.1-alpha.8 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login