A vulnerability has been discovered in GoBalance, a tool used by numerous dark web platforms to maintain accessibility during cyber assaults. This flaw allows attackers to deduce the secret key controlling a site’s .onion address using publicly available data, potentially leading to address hijacking.
Understanding the GoBalance Vulnerability
Searchlight Cyber reported the flaw on October 8, noting that attackers could redirect users to a duplicate site under their control by recovering the key. While this takeover does not compromise the site’s servers or user data, it poses significant security concerns.
The core of the issue lies in the signing process of the .onion address, essentially a public key. The private key, essential for address control, is compromised during the signing. GoBalance mistakenly uses only the first 32 bytes of the 64-byte Tor private key, omitting the critical section that ensures the secret value’s confidentiality. As a result, the key becomes a constant number, allowing attackers to derive the site’s private key from a public descriptor.
Potential Impact and Sites at Risk
GoBalance, a version of Tor’s Onionbalance load balancer crafted in Go, is included in the EndGame toolkit, frequently used to keep dark web sites operational during denial-of-service attacks. This flaw is specific to GoBalance’s rewrite and does not impact the original Onionbalance or Tor itself.
Sites with master keys stored in Tor’s key format are vulnerable, whereas those using GoBalance’s safer key format remain secure. The vulnerability became widely known after Dread, a prominent dark web forum, experienced address takeovers between October 5 and 7, redirecting users to a competitor site.
Response and Recommendations
Dread’s administrators initially attributed this to an error, but later acknowledged the GoBalance flaw after a second address was compromised. The forum has since relocated to a new address, advising users to update passwords. Other dark web markets, like Omega, have also confirmed similar issues and have transitioned to new addresses.
As of now, there is no official fix from the Tor Project or GoBalance maintainers. An independent researcher has developed a patch and demonstrated a master key recovery from a public descriptor, although this is yet to be officially verified or adopted.
Site operators are advised to generate new .onion addresses and migrate, as previously exposed keys cannot be secured retrospectively. Users should change passwords and verify any new addresses through signed announcements to ensure safety.
This situation highlights the importance of robust security measures and timely updates to mitigate vulnerabilities in essential tools like GoBalance.
