Trezor Desktop App with Tor Leaks DNS Queries

E-currency exchange

I'm testing Tor features for the Trezor Desktop App for macOS with Little Snitch. It is leaking DNS queries.

By the way, Brave Browser had a similar issue.

This leak is detected by Little Snitch whether “Open trezor.io links as .onion links” is activated or not.

https://preview.redd.it/s1t2v9bwtcva1.png?width=1570&format=png&auto=webp&v=enabled&s=f88a9d0f21926b29181e83ed4fef78cb75194bfe

https://preview.redd.it/qpgmu4pjtcva1.png?width=1102&format=png&auto=webp&v=enabled&s=bd144f2fd1d044f2e571e5e95b61314cbb789b74

https://preview.redd.it/evq4n4pjtcva1.png?width=1654&format=png&auto=webp&v=enabled&s=bb1a7dabd3efb98d0213733f776aa3f22426e1a2

3 thoughts on “Trezor Desktop App with Tor Leaks DNS Queries”

  1. Please bear in mind that no one from the Trezor team would send you a private message first.
    If you want to discuss a sensitive issue, we suggest contacting our Support team via the Troubleshooter: https://trezor.io/support/

    No one from the Trezor team (Reddit mods, Support agents, etc) would ever ask for your recovery seed!
    Beware of scams and phishings: https://blog.trezor.io/recognize-and-avoid-phishing-ef0948698aec

    I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

  2. Open the issue. Likely culprits:

    • https://github.com/trezor/trezor-suite/blob/v23.4.2/yarn.lock#L15196
    • https://github.com/mafintosh/dns-packet/tree/v5.2.2

    Great find!

Comments are closed.