FINDING · DEFENSE

TCP Window Reduction (Strategy 8)—reducing the SYN+ACK TCP window to 10 bytes and stripping wscale options, forcing the client to segment its request—achieves 100% evasion success against HTTP in India and Kazakhstan, 100% against HTTP and HTTPS in Iran, and 100% against SMTP in China, because none of these censors can reassemble TCP segments. The strategy is compatible with all 17 tested client OS versions when implemented without SYN+ACK payloads, making it the most broadly deployable server-side strategy found.

From 2020-bock-comeCome as You Are: Helping Unmodified Clients Bypass Censorship with Server-side Evasion · §5.1, §5.2, §7, Table 2 · 2020 · SIGCOMM

Implications

Tags

censors
cninirkz
techniques
dpimiddlebox-interference
defenses
geneva

Extracted by claude-sonnet-4-6 — review before relying.