So I’ve read the SAFE Network primer and FAQs but I have a concern about a potential attack vector.
Say I’m living in Turkey, and I decide to publicly host a mirror for various media outlets on SAFE to bypass government censorship. Whats stoping the government from finding file hashes unique to my website, setting up a bunch of malicious proxy nodes and then logging all the IP’s that request the hashes associated with ‘illegal’ content?
Surely using an attack like this it’d be fairly easy for an agency like the NSA to apply a broad brush approach by finding a hash relevant to each webpage, setting up a large number of proxy nodes and then tracking our movement across the web.
They do not choose the proxy’s address in the SAFE network, nor the clients they proxy. So even if what you suggest was possible they maybe logging English, USA, Australian clients. And maybe one from Turkey.
Now can they even do the search for the hash. NOPE. The data flowing through a proxy is encrypted from the last hop node to the client. The proxy does not get to know the data or hashes or anything because it is encrypted to the proxy.