uicas.blogg.se

Signal messenger
Signal messenger




signal messenger

"Ordinarily, the same domain name appears in all three places.

signal messenger

"In an HTTPS request, the destination domain name appears in three relevant places: in the DNS query, in the TLS Server Name Indication (SNI) extension and in the HTTP Host header," the researchers said in their paper. If done over HTTPS, such redirection would be invisible to someone monitoring the traffic, because the HTTP Host header is sent after the HTTPS connection is negotiated and is therefore part of the encrypted traffic. The technique involves sending requests to a "front domain" and using the HTTP Host header to trigger a redirect to a different domain.

signal messenger

The solution from Signal's developers was to implement a censorship circumvention technique known as domain fronting that was described in a 2015 paper by researchers from University of California, Berkeley, the Brave New Software project and Psiphon.






Signal messenger