tari-project/tari

Need defence-in-depth when streaming new peers

Opened this issue · 0 comments

This is more defence-in-depth than anything else, closing a potential attack vector. I will remove it, but we should actually ban the peer for offences in UnvalidatedPeerInfo::from_peer_limited_claims as well as providing invalid signatures. What is your opinion?

Originally posted by @hansieodendaal in #6284 (comment)