... |
... |
@@ -18,9 +18,7 @@ |
18
|
18
|
### Type of Issue: What are we dealing with?
|
19
|
19
|
|
20
|
20
|
- [ ] Security (sandbox escape, remote code execution, etc)
|
21
|
|
-- [ ] Proxy Bypass (traffic contents becoming MITM'able)
|
22
|
|
-- [ ] De-Anonymization (otherwise identifying which website a user is visiting)
|
23
|
|
-- [ ] Cross-Site Linkability (correlating sessions across circuits and websites)
|
|
21
|
+- [ ] Cross-Site Linkability (correlating sessions across websites)
|
24
|
22
|
- [ ] Disk Leak (persisting session information to disk)
|
25
|
23
|
- [ ] Other (please explain)
|
26
|
24
|
|
... |
... |
@@ -36,16 +34,11 @@ |
36
|
34
|
- [ ] **richard** : signing, release
|
37
|
35
|
- [ ] **thorin** : fingerprinting
|
38
|
36
|
- [ ] Other Engineering Teams
|
39
|
|
- - [ ] Networking (**ahf**, **dgoulet**)
|
40
|
|
- - [ ] Anti-Censorship (**meskio**, **cohosh**)
|
41
|
37
|
- [ ] UX (**donuts**)
|
42
|
38
|
- [ ] TPA (**anarcat**, **lavamind**)
|
43
|
39
|
- [ ] External Tor Partners
|
44
|
|
- - [ ] Mozilla
|
45
|
|
- - [ ] Mullvad
|
46
|
|
- - [ ] Brave
|
47
|
|
- - [ ] Guardian Project (Orbot, Onion Browser)
|
48
|
|
- - [ ] Tails
|
|
40
|
+ - [ ] Mozilla (**tjr**)
|
|
41
|
+ - [ ] Mullvad (**ruihildt**)
|
49
|
42
|
- [ ] Other (please list)
|
50
|
43
|
|
51
|
44
|
### Urgency: When do we need to act?
|
... |
... |
@@ -72,6 +65,7 @@ Sometimes fixes have side-effects: users lose their data, roadmaps need to be ad |
72
|
65
|
|
73
|
66
|
- [ ] Start an initial email thread with the following people:
|
74
|
67
|
- [ ] **bella**
|
|
68
|
+ - [ ] **ruihildt**, **support@xxxxxxxxxxxxxx**
|
75
|
69
|
- [ ] Relevant Applications Developers
|
76
|
70
|
- [ ] **(Optional)** **micah**
|
77
|
71
|
- if there are considerations or asks outside the Applications Team
|
... |
... |
@@ -84,6 +78,7 @@ Sometimes fixes have side-effects: users lose their data, roadmaps need to be ad |
84
|
78
|
/cc @ma1
|
85
|
79
|
/cc @micah
|
86
|
80
|
/cc @richard
|
|
81
|
+/cc @ruihildt
|
87
|
82
|
|
88
|
83
|
/confidential
|
89
|
84
|
|