FINDING · DETECTION

The paper explicitly flags that BTP's fixed-size b-byte connection tag creates an active-probing oracle: a censor that sends b−1 bytes and observes no close, then sends one more byte and observes a close, can confirm the endpoint is running BTP. Preventing such active-probing attacks is identified as future work.

From 2012-rogers-secureSecure Communication over Diverse Transports · §8 · 2012 · Workshop on Privacy in the Electronic Society

Implications

Tags

censors
generic
techniques
active-probing
defenses
meta-resistance

Extracted by claude-sonnet-4-6 — review before relying.