it can be used for both fingerprinting (different users use different OS setups or different Tor versions) and exploiting software vulnerabilities because when attacker don’t know your OS or browser version they don’t know what payload can do the thing that if be used incorrectly will show a download warning that compromises their valuable malware to citizenlab like groups.
