Anonymous ID: 000000 Sept. 17, 2020, 3:14 p.m. No.10686707   🗄️.is 🔗kun

Voice from the dark side: They are fucking with the MITM font injection bullshit again

8kun loads a webfont on every page load

http://jthnx5wyvjvzsxtu.onion/stylesheets/font-awesome/fonts/fontawesome-webfont.woff2?v=4.3.0

 

Protect your Tor Browser NOW

 

If you're using Tor Browser, do this:

 

Enter "about:config" in the url bar, accept warning

 

Search for these, then double click on it to turn them to false:

'''gfx.downloadable_fonts.enabled false'''

'''gfx.downloadable_fonts.woff2.enabled false'''

 

They were busted before

MFSA2016-37 Firefox: Font vulnerabilities in the Graphite 2 library (CVE-2016-2801)

https://www.rapid7.com/db/vulnerabilities/mfsa2016-37-cve-2016-2801

 

A/T