https://blog.erratasec.com/2013/09/tor-is-still-dhe-1024-nsa-crackable.html
After more revelations, and expert analysis, we still aren't precisely sure what crypto the NSA can break. But everyone seems to agree that if anything, the NSA can break 1024 RSA/DH keys. Assuming no «breakthroughs», the NSA can spend $1 billion on custom chips that can break such a key in a few hours. We know the NSA builds custom chips, they've got fairly public deals with IBM foundries to build chips.
Оказывается тор довольно просто ломается тупым перебором. Как известно в торе повсеместно используется 1024 битный ключ. И это новость 2013 года