▲ | 3abiton 2 days ago | |||||||
Is that a new technique? Shouldn't this be mitigated? | ||||||||
▲ | pabs3 2 days ago | parent | next [-] | |||||||
Encrypted Client Hello is the mitigation to that, IIRC it hasn't rolled out yet, and if it does then the GFW would probably just block connections that use it. | ||||||||
| ||||||||
▲ | lucb1e 2 days ago | parent | prev [-] | |||||||
...parsing SNI to find the server name is like the second-oldest trick in the book, after reverse DNS from the 80s? Maybe I'm not understanding the question |