# Understanding a threat is key in choosing appropriate counteractions to take.  In my opinion I2P is a bit more interesting than Tor since in theory I2P should be more difficult to attack than Tor. In reality Tor has a larger community and has been reviewed and inspected more than I2P. This is part of a white-paper I wrote on tracing users in an "anonymous" DHT network. For the following attack on I2P users the attacker will use multiple nodes and it's assumed the attacker has no previous idea who or where the victim is. # Attacking I2P users The attackers router A keeps a fixed location in keyspace and router B moves closer to the source with every intercepted insert or request by the victim. The attackers routers will have to wait until they are the final hop of an inbound or outbound tunnel of the victim's insert of a lease set before they will be able to determine a closer location of the victim's source in order to track eepsites. When running I2P-Bote an attacker can log and trace insert's and request's for a Bote ID. The attacker can recognize if a final hop was in the path of a victim since it will show a lease-set that can be associated with the victim's eepsite or Bote key. ## Only 1 out of 3 times the attacker participates in the correct tunnel will it become the last hop since average tunnels are 3 hops. Becoming the final hop in a request's or insert's tunnel is necessary to recognize a destination and requires very high connectivity as the attackers chances of being part of a tunnel are lower the further away in keyspace the attacker is. ## By using "floodfill routers" for this attack on eepsites the required time will be reduced greatly since the attacker will be able to intercept newly inserted or requested lease sets By intercepting new lease set inserts to the netBD the attacker will be able to move significantly closer in the network before needing to worry about being the final hop in a tunnel. Only after the attacker has narrowed the victims keyspace down to a small enough area will he have to eventually become part of every hop in a relevant tunnel to be sure that the victim is located at a certain keyspace and IP. # I am not trying to bash I2P at all By explaining how I2P can be attacked I hope I can point out how safe it actually is and convince more users to join the network. I2P works on desktops, servers and Android devices. Take a look if you are interested. https://geti2p.net  Bottom line: I think I2p is pretty hard to attack. ## Good luck out there friends. @camb
author | camb |
---|---|
permlink | de-anonymizing-i2p-users |
category | privacy |
json_metadata | {"tags":["privacy","security","i2p","anarchy","anonymous"],"users":["camb"],"image":["https://steemitimages.com/DQmV2N6HvGd4MBazvauTRhWXTDte2beps5mhuVrHVFhx1yq/itoopie.png","https://steemitimages.com/DQmW1WReihNGhbuaFuFgyem7yVjQWXCDovbbqy3SVvLjPGW/routerconsole-light.png"],"links":["https://geti2p.net"],"app":"steemit/0.1","format":"markdown"} |
created | 2017-02-26 00:21:18 |
last_update | 2017-02-26 03:50:54 |
depth | 0 |
children | 5 |
last_payout | 2017-03-29 11:42:57 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 33.056 HBD |
curator_payout_value | 10.988 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 2,786 |
author_reputation | 2,733,578,557,743 |
root_title | "De-anonymizing I2P users" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 0 |
post_id | 2,594,038 |
net_rshares | 78,025,660,422,712 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
blocktrades | 0 | 64,558,637,361,257 | 100% | ||
abit | 0 | 622,024,850,337 | 1% | ||
pairmike | 0 | 3,727,015,615 | 1% | ||
proctologic | 0 | 4,490,975,477 | 1% | ||
abcd | 0 | 116,786,944 | 1% | ||
konelectric | 0 | 812,160,489 | 1% | ||
jamtaylor | 0 | 72,166,691,987 | 100% | ||
idealist | 0 | 213,552,478,120 | 100% | ||
forrestwillie | 0 | 646,585,854 | 1% | ||
teamsteem | 0 | 419,733,313,454 | 100% | ||
oholiab | 0 | 12,751,792,223 | 100% | ||
will-zewe | 0 | 72,985,137,992 | 100% | ||
andrei | 0 | 248,908,166 | 1% | ||
grey580 | 0 | 373,850,061 | 1% | ||
ffane | 0 | 3,839,495,559 | 100% | ||
chamviet | 0 | 506,063,025 | 100% | ||
ausbitbank | 0 | 133,518,429,531 | 100% | ||
jamesjarman | 0 | 1,703,113,676 | 1% | ||
transisto | 0 | 10,216,290,837,957 | 100% | ||
karenmckersie | 0 | 1,892,584,097 | 1% | ||
ubg | 0 | 587,493,740 | 1% | ||
sokal | 0 | 2,880,685,815 | 100% | ||
crazymumzysa | 0 | 18,485,335,224 | 100% | ||
sergey44 | 0 | 543,720,475 | 100% | ||
marius19 | 0 | 92,152,952,290 | 100% | ||
dirty.hera | 0 | 143,101,623 | 100% | ||
felixxx | 0 | 54,374,513,720 | 100% | ||
toxichan | 0 | 162,288,585 | 1% | ||
timelapse | 0 | 462,654,920 | 1% | ||
tannukas6 | 0 | 63,576,844 | 1% | ||
randyclemens | 0 | 5,510,074,090 | 100% | ||
darthnava | 0 | 379,504,445 | 1% | ||
quitothewalrus | 0 | 333,379,891 | 100% | ||
matrixdweller | 0 | 22,480,231,550 | 100% | ||
lamech-m | 0 | 4,840,687,416 | 100% | ||
mindfreak | 0 | 47,266,071,468 | 100% | ||
stevescoins | 0 | 45,751,799,787 | 100% | ||
craigwilliamz | 0 | 18,130,025,541 | 100% | ||
barrydutton | 0 | 1,237,222,169 | 1% | ||
stephenkendal | 0 | 32,754,567,174 | 100% | ||
ashleywilliamz | 0 | 7,520,799,046 | 100% | ||
steemitguide | 0 | 629,068,017 | 1% | ||
richardcrill | 0 | 1,439,936,368 | 1% | ||
doitvoluntarily | 0 | 146,982,147,352 | 100% | ||
jacobts | 0 | 229,277,401 | 1% | ||
patelincho | 0 | 110,995,105 | 1% | ||
ssekulji | 0 | 7,894,835,130 | 100% | ||
awesomenyl | 0 | 28,311,852,834 | 100% | ||
steemitawards | 0 | 2,944,558,481 | 100% | ||
gamer00 | 0 | 4,457,095,563 | 1% | ||
unhorsepower777 | 0 | 16,945,120,168 | 100% | ||
revostrike | 0 | 115,663,685 | 1% | ||
giantbear | 0 | 1,238,218,406 | 1% | ||
stray | 0 | 422,858,639 | 1% | ||
sochul | 0 | 983,447,156,482 | 100% | ||
daisyd | 0 | 255,670,224 | 1% | ||
steemland.com | 0 | 528,094,441 | 10% | ||
angel76 | 0 | 11,215,559,947 | 100% | ||
sqube | 0 | 2,968,338,880 | 1% | ||
whatageek | 0 | 691,835,158 | 1% | ||
breezin | 0 | 6,606,212,753 | 100% | ||
jonathanxvi | 0 | 3,600,706,113 | 100% | ||
steemprentice | 0 | 15,973,747,167 | 30% | ||
ixindamix | 0 | 12,070,524,122 | 100% | ||
irawandedy | 0 | 978,854,280 | 100% | ||
seablue | 0 | 342,988,728 | 1% | ||
gildar | 0 | 2,674,352,264 | 100% | ||
qubes | 0 | 19,763,143,906 | 100% | ||
meysam | 0 | 507,704,580 | 1% | ||
kyra-kristian | 0 | 77,542,766 | 100% | ||
madlenfox | 0 | 1,896,483,475 | 100% | ||
jphenderson | 0 | 487,600,150 | 30% | ||
johnthehoan | 0 | 302,275,107 | 1% | ||
alexandergomez | 0 | 24,873,181,545 | 100% | ||
driptorchpress | 0 | 76,912,960 | 1% | ||
nik69 | 0 | 124,158,152 | 100% | ||
fisteganos | 0 | 3,418,318,114 | 40% | ||
thedeplorable1 | 0 | 527,297,228 | 1% | ||
neogia | 0 | 19,667,228,245 | 100% | ||
tonylondon | 0 | 758,112,862 | 100% | ||
denmarkguy | 0 | 251,872,805 | 1% | ||
mestyz | 0 | 87,109,563 | 100% | ||
vegaiq | 0 | 125,469,416 | 100% | ||
camb | 0 | 366,157,617 | 100% | ||
ambyr00 | 0 | 63,645,203 | 30% | ||
developpsoft | 0 | 382,973,600 | 100% | ||
kamidela | 0 | 51,025,493 | 100% | ||
glie | 0 | 2,041,501,657 | 100% | ||
poksinblog | 0 | 291,523,942 | 100% | ||
hagbardceline | 0 | 364,398,984 | 100% |
Very interesting article. Have you already contacted the I2P developers about this issue?
author | hagbardceline |
---|---|
permlink | re-camb-de-anonymizing-i2p-users-20170226t113436079z |
category | privacy |
json_metadata | {"tags":["privacy"],"app":"steemit/0.1"} |
created | 2017-02-26 11:34:36 |
last_update | 2017-02-26 11:34:36 |
depth | 1 |
children | 4 |
last_payout | 2017-03-29 11:42:57 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 89 |
author_reputation | 9,539,931,063,329 |
root_title | "De-anonymizing I2P users" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 2,596,812 |
net_rshares | 0 |
Thank you. I think the I2P devs are well aware of this threat, but I will post a link to this article in the I2P forum. The I2P threat models are described in great detail here: https://geti2p.net/en/docs/how/threat-model I had to write this article for myself to understand what it would take to de-anonymize an I2P user. At first it was all very confusing to me, but after I finally got my head wrapped around it I felt more confident about the security of the I2P network.
author | camb |
---|---|
permlink | re-hagbardceline-re-camb-de-anonymizing-i2p-users-20170226t190512415z |
category | privacy |
json_metadata | {"tags":["privacy"],"links":["https://geti2p.net/en/docs/how/threat-model"],"app":"steemit/0.1"} |
created | 2017-02-26 19:05:12 |
last_update | 2017-02-26 19:05:12 |
depth | 2 |
children | 3 |
last_payout | 2017-03-29 11:42:57 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 4.073 HBD |
curator_payout_value | 1.357 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 475 |
author_reputation | 2,733,578,557,743 |
root_title | "De-anonymizing I2P users" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 2,599,235 |
net_rshares | 26,129,288,570,586 |
author_curate_reward | "" |
voter | weight | wgt% | rshares | pct | time |
---|---|---|---|---|---|
abit | 0 | 26,125,043,714,192 | 100% | ||
abcd | 0 | 3,386,821,395 | 100% | ||
escrow | 0 | 500,923,995 | 100% | ||
camb | 0 | 0 | 0% | ||
hagbardceline | 0 | 357,111,004 | 100% |
Good idea. If possible, could you please also provide a link to the complete white-paper?
author | hagbardceline |
---|---|
permlink | re-camb-re-hagbardceline-re-camb-de-anonymizing-i2p-users-20170226t194100962z |
category | privacy |
json_metadata | {"tags":["privacy"],"app":"steemit/0.1"} |
created | 2017-02-26 19:41:00 |
last_update | 2017-02-26 19:41:00 |
depth | 3 |
children | 2 |
last_payout | 2017-03-29 11:42:57 |
cashout_time | 1969-12-31 23:59:59 |
total_payout_value | 0.000 HBD |
curator_payout_value | 0.000 HBD |
pending_payout_value | 0.000 HBD |
promoted | 0.000 HBD |
body_length | 89 |
author_reputation | 9,539,931,063,329 |
root_title | "De-anonymizing I2P users" |
beneficiaries | [] |
max_accepted_payout | 1,000,000.000 HBD |
percent_hbd | 10,000 |
post_id | 2,599,484 |
net_rshares | 0 |