Do passwords/page refreshing compromise Tor security? : Tor | Torhoo darknet markets
Hi all. I am using Tor (javascript disabled and safest level) on Tails (default settings). When looking up how to get to a basic set up, I came across something that said Tor security can be compromised when a) entering a password, b) refreshing a page, or c) both, basically making you vulnerable to attackers or allowing your ISP to view your activity. Sadly I don't remember where I saw that so that I can look into it more. Could someone enlighten me regarding the validity of above claims?
Now, using HTTP (Non secure sites) and putting in your password, the exit node would see your information. Very few sites are HTTP only anymore that require logins, but is something to keep in mind. .onion are not affected, this is with a clearnet HTTP (NOT HTTPS site) over Tor.
Beyond that, no, I'm not sure what you are referring to.