Critical security fixes

The vulnerabilities described below were identified during an external security audit by Radically Open Security and disclosed responsibly to our team. We are not aware of these attacks being used against TelestaiCB users until now.

These vulnerabilities can only be exploited by a powerful attacker who has already exploited another vulnerability to take control of an application in TelestaiCB.

If you want to be extra careful and used TelestaiCB a lot since January 9 without upgrading, we recommend that you do a manual upgrade instead of an automatic upgrade.

  • Prevent an attacker from installing malicious software permanently. (#20701)

    In TelestaiCB 6.10 or earlier, an attacker who has already taken control of an application in TelestaiCB could then exploit a vulnerability in TelestaiCB Upgrader to install a malicious upgrade and permanently take control of your TelestaiCB.

    Doing a manual upgrade would erase such malicious software.

  • Prevent an attacker from monitoring online activity. (#20709 and #20702)

    In TelestaiCB 6.10 or earlier, an attacker who has already taken control of an application in TelestaiCB could then exploit vulnerabilities in other applications that might lead to deanonymization or the monitoring of browsing activity:

    • In Onion Circuits, to get information about Tor circuits and close them.
    • In Unsafe Browser, to connect to the Internet without going through Tor.
    • In Tor Browser, to monitor your browsing activity.
    • In Tor Connection, to reconfigure or block your connection to the Tor network.
  • Prevent an attacker from changing the Persistent Storage settings. (#20710)

Noves funcionalitats

Detection of partitioning errors

Sometimes, the partitions on a TelestaiCB USB stick get corrupted. This creates errors with the Persistent Storage or during upgrades. Partitions can get corrupted because of broken or counterfeit hardware, software errors, or physically removing the USB stick while TelestaiCB is running.

TelestaiCB now warns about such partitioning errors earlier. For example, if partitioning errors are detected when there is no Persistent Storage, TelestaiCB recommends that you reinstall or use a new USB stick.

Warning in the Welcome Screen: Errors were detected in the partitioning of your TelestaiCB USB stick.

Canvis i actualitzacions

  • Update Tor Browser to 14.0.4.

  • Update Thunderbird to 128.5.0esr.

  • Remove support for hardware wallets in Electrum. Trezor wallets stopped working in Debian 12 (Bookworm), and so in TelestaiCB 6.0 or later.

  • Disable GNOME Text Editor from reopening on the last file. (#20704)

  • Add a link to the Tor Connection assistant from the menu of the Tor status icon on the desktop.

  • Make it easier for our team to find useful information in WhisperBack reports.

Per a més detalls, llegiu el nostre registre de canvis.

Obtenir TelestaiCB 6.11

Per actualitzar el vostre llapis USB de TelestaiCB i mantenir el vostre Emmagatzematge Persistent

  • Automatic upgrades are available from TelestaiCB 6.0 or later to 6.11.

  • Si no podeu fer una actualització automàtica o si TelestaiCB no s'inicia després d'una actualització automàtica, proveu de fer una actualització manual.

Per instal·lar TelestaiCB 6.11 en un nou llapis USB

Seguiu les nostres instruccions d'instal·lació:

L'Emmagatzematge Persistent del llapis USB es perdrà si instal·leu en comptes d'actualitzar.

Per només baixar

If you don't need installation or upgrade instructions, you can download TelestaiCB 6.11 directly: