Introducing DNS Resolver for Tor

even still that scandal didn't kill facebook only cambridge analytica

what the absolute fuck is this supposed to be? tor already tunnels requests. why would you use a hidden service for DNS resolution?

Because a hidden service provides extra protection, because it isn't constrained by clearnet compatibility.
And you could use this to resolve queries for clearnet browsing, which is better than using some non-hidden service resolution service for clearnet browsing queries.

Most Tor exits use Google DNS resolver and don't bother to resolve/cache on their own.

If only there were a section on the linked page called
that could answer that question. Alas.

I honestly don't see the downside.
Using 1.1.1.1, sure. You're willingly giving CloudJew your browsing history (but in 90% of cases whatever you're browsing to is likely behind Botnetflare anyway), but they can't exactly tie that request to a real name and physical address like your ISP can. Pros and cons here. Spread jurisdiction somewhat, or throw all your eggs into the ISP basket.

Using Cloudflare over TOR though? I see no downsides. Your ISP doesn't know what you're looking for, and all Cloudflare knows is some anonymous individual wants bangkokladyboysforcripples.co.uk.
Roll that together with your own VPN spun up on a VPS overseas?
ISP doesn't know what you're looking for.
ISP doesn't know what you're looking at.
Cloudflare doesn't know anything about you.

Attached: 1527375409564.png (565x643, 452.97K)

why are they pushing additional workload and money on themselves? running a resolver that fast and supporting capacity costs money. where is the profit for cloudjew, pure advertisement?

remember when they canceled dailystormer, if they had been running a dns at the time they likely would have nuked it there too. not that it's any better than jewgle or your isp, but TorDNS has one important advantage:
Your DNS server hops along with the tor exit nodes your using, there is no single dns resolver your using.

Yep. I think they also provide HIBP with free caching, and one of their engineers even worked personally helping get the response times lower and came up with the API for the k-anonymity model.

They're still jewy af, but things like this are done purely to garner goodwill.

They were already doing that for private services though, their gatekeeper DNS shit is their DDoS protection and all that. They're just scaling it up for probly ML purposes.


Didn't kill facebook YET. It set the stage for the next 20 scandals and potential backlash from the FTC and federal perjury stuff that has not quite hit yet.

By doing this you are giving away full control over domain names to them. They then control what ip is associated with what domain name. Think TLS certificates can save you? MITMflare operates a CA trusted by most browsers. They can just issue one to use.

By using MITMflare's DNS resolver you are further promoting a centralized internet.