A French group of security researchers have come up with some very interesting results in terms of the level of privacy one can expect and the simplicity of which someone can monitor BitTorrent traffic. Which is kinda scary for everyone using it especially those who like to download large amounts of music and movies. 😉 Even those using Tor may not be safe from this type of monitoring.
We argue that it is possible to continuously monitor from a single machine most BitTorrent users and to identify the content providers (also called initial seeds). This is a major privacy threat as it is possible for anybody in the Internet to reconstruct all the download and upload history of most BitTorrent users.
To circumvent this kind of monitoring, BitTorrent users are increasingly using anonymizing networks such as Tor to hide their IP address from the tracker and, possibly, from other peers. However, we showed that it is possible to retrieve the IP address for more than 70% of BitTorrent users on top of Tor [LMC_POST10]. Moreover, once the IP address of a peer is retrieved, it is possible to link to the IP address other applications used by this peer on top of Tor.