from Hacker News

Uncovering Tor Hidden Service with Etag

by kofejnik on 6/15/23, 11:22 AM with 1 comments

  • by brookst on 6/15/23, 12:50 PM

    Serving the same unique etag over both public internet and Tor is a catastrophic fail.

    Probably good opsec to never even have the same machine serving both worlds, let alone the same web server and site config.