FINDING · DETECTION

A central finding of the paper is that RFC-compliance in the censor creates evasion opportunities: the more faithfully a censor parses HTTP/DNS per the RFC, the more RFC-permitted variants it will pass that servers also accept, yielding more viable evasion strategies. In contrast, India's Airtel censor was the most brittle (56/77 strategies bypassed it) precisely because it failed on many legitimate RFC variants; China's more sophisticated parser left fewer openings.

From 2022-harrity-getGET /out: Automated Discovery of Application-Layer Censorship Evasion Strategies · §5.1, §7 · 2022 · USENIX Security Symposium

Implications

Tags

censors
cninkz
techniques
dpikeyword-filtering
defenses
geneva

Extracted by claude-sonnet-4-6 — review before relying.