Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.
Reconnecting to live updates…

OnionAccelerator: multi-circuit / chunked download acceleration over Tor

0
Medium
Published: Wed Jun 03 2026 (06/03/2026, 17:56:58 UTC)
Source: Reddit BlueTeam

Description

OnionAccelerator is a Python tool designed to accelerate downloads over the Tor network by splitting downloads across multiple Tor circuits or SOCKS5 proxies. It supports multi-file parallel downloads, chunked downloads of single files across multiple circuits, and proxy speed testing. The tool aims to improve throughput limitations inherent in single Tor circuits, primarily for authorized data collection use cases such as archiving dark web content. There are no indications of vulnerabilities or exploits associated with this tool. It is a utility to enhance download performance over Tor rather than a security threat or vulnerability.

Reddit Discussion

r/blueteamsec·posted by u/UnbufferedCrime
00

Anyone doing dark web collection knows the throughput problem: a single Tor circuit caps out low, and when you need to archive a leak dump, a marketplace mirror, or a few hundred MB off a hidden service before it rotates or disappears, sequential pulls over one circuit are painful.

I built a small Python tool for this, OnionAccelerator, and figured I'd share it here in case it's useful to others doing the same kind of work and because I'd like a second set of eyes on the approach.

What it does: it fans downloads out across multiple SOCKS5 proxies (Tor instances), in three modes:

  • multi — pulls a list of URLs in parallel, one worker per circuit
  • partial — splits a single file into byte-range chunks, fetches each chunk over a different circuit, then merges.
  • speedtest — benchmarks each proxy port so you can drop dead/slow circuits before a run

You can back it with locally Dockerised Tor instances (there's a one-liner in the README that spins up ~20) or an external SOCKS5 list. It also does User-Agent rotation, inline retries, per-host output paths so same-named files don't clobber each other, and per-job logging.

Caveats I'm aware of, and would rather name than hide: it leans on running multiple circuits, so mind the load and your own OPSEC around whatever proxies you route through. It's meant for collection you're authorised to do, not for hammering anything. The code started as a personal utility, so it's rough in places.

Repo

PRs, issues, and "you're doing X wrong" all welcome. Mostly curious whether the byte-range-across-circuits approach lines up with how others handle bulk retrieval over Tor, or if people are solving it differently.

AI-Powered Analysis

Machine-generated threat intelligence

AILast updated: 06/03/2026, 18:03:35 UTC

Technical Analysis

OnionAccelerator is a multi-functional Python script that enables faster downloads over Tor by leveraging multiple SOCKS5 proxies or Tor instances. It operates in three modes: multi-download (parallel downloads of multiple URLs), partial-download (splitting a single file into byte-range chunks downloaded concurrently over different circuits), and speedtest (benchmarking proxy performance). The tool supports local Dockerized Tor proxies or external SOCKS5 proxy lists, includes retry logic, user-agent rotation, and organizes output to avoid filename collisions. It is intended for authorized use cases and emphasizes operational security considerations. No security vulnerabilities or exploits are described in the provided information.

Potential Impact

There is no evidence that OnionAccelerator introduces a security vulnerability or threat. It is a utility designed to improve download speeds over Tor by using multiple circuits in parallel. No known exploits or malicious impacts are reported. The tool may increase load on Tor relays and requires careful operational security by users, but these are usage considerations rather than security impacts.

Mitigation Recommendations

No mitigation is required as this is not a vulnerability or threat. Users should ensure they use OnionAccelerator only for authorized data collection and maintain appropriate operational security practices when using multiple Tor circuits or external proxies. There is no patch or fix applicable.

Pro Console: star threats, build custom feeds, automate alerts via Slack, email & webhooks.Upgrade to Pro

Technical Details

Source Type
reddit
Subreddit
blueteamsec+AskNetsec+Information_Security
Reddit Score
0
Discussion Level
minimal
Content Source
reddit_link_post
Post Type
link
Domain
null
Newsworthiness Assessment
{"score":27,"reasons":["external_link","established_author","very_recent"],"isNewsworthy":true,"foundNewsworthy":[],"foundNonNewsworthy":[]}
Has External Source
true
Trusted Domain
false

Threat ID: 6a206c73e29bf47b50d6b866

Added to database: 6/3/2026, 6:03:31 PM

Last enriched: 6/3/2026, 6:03:35 PM

Last updated: 6/3/2026, 7:15:49 PM

Views: 4

Community Reviews

0 reviews

Crowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.

Sort by
Loading community insights…

Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.

Actions

PRO

Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.

Please log in to the Console to use AI analysis features.

Need more coverage?

Upgrade to Pro Console for AI refresh and higher limits.

For incident response and remediation, OffSeq services can help resolve threats faster.

Latest Threats

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses