FINDING · DEFENSE

Achieving active security (FEP-CCFA) requires that on any AEAD decryption failure a fully encrypted protocol silently return the empty string and keep the channel open indefinitely, never emitting a channel-closure signal. Any observable behavioral difference — including connection termination timing — leaks information about ciphertext-boundary locations to an active adversary.

From 2023-fenske-securitySecurity Notions for Fully Encrypted Protocols · §2.3 · 2023 · Free and Open Communications on the Internet

Implications

Tags

censors
generic
techniques
active-probingfully-encrypted-detect
defenses
obfs4shadowsocksrandomization

Extracted by claude-sonnet-4-6 — review before relying.