FINDING · EVALUATION

Censys scans of IPv4 HTTPS servers in June 2020 found that over 21% responded to a GET / with 400 Bad Request, 11.19% with 403 Forbidden, 8.62% with 404 Not Found, and 2.91% with 401 Unauthorized. These common error-response distributions provide a statistical baseline that HTTPT servers can match to avoid standing out to active probers.

From 2020-frolov-httptHTTPT: A Probe-Resistant Proxy · §3.2.3 · 2020 · Free and Open Communications on the Internet

Implications

Tags

techniques
active-probingdpi
defenses
mimicry

Extracted by claude-sonnet-4-6 — review before relying.