FINDING · EVALUATION

By mapping ML-predicted censored probes back to their DNS response IPs, the authors discovered 748 forged IP addresses used by China's GFW as DNS blocking signatures that OONI's heuristics missed; supervised and unsupervised models also identified several ISP-specific injected IPs absent from even GFWatch's comprehensive signature list, demonstrating that static signature lists substantially undercount active GFW DNS censorship.

From 2023-brown-augmentingAugmenting Rule-based DNS Censorship Detection at Scale with Machine Learning · §4.2, Table 4 · 2023 · Knowledge Discovery And Data Mining

Implications

Tags

censors
cn
techniques
dns-poisoningml-classifiermeasurement-platform

Extracted by claude-sonnet-4-6 — review before relying.