FINDING · EVALUATION

Unsupervised one-class SVM models trained only on clean (uncensored) records detect GFW DNS censorship with 99.1% TPR at 17.4% FPR on Satellite data; over half of apparent false negatives are truly uncensored probes where the GFW transiently failed to inject a forged response, confirming that GFW DNS injection is not perfectly consistent at the individual probe level.

From 2023-brown-augmentingAugmenting Rule-based DNS Censorship Detection at Scale with Machine Learning · §4.1, Table 3 · 2023 · Knowledge Discovery And Data Mining

Implications

Tags

censors
cn
techniques
dns-poisoningml-classifier

Extracted by claude-sonnet-4-6 — review before relying.