TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Domain Fronting with Meterpreter

25 pointsby wolframioover 7 years ago

2 comments

Tepixover 7 years ago
I had a closer look at this technique after reading the article.<p>The cool thing about this hack is that even in the TLS Server Name Indication (SNI) extension, the front domain name shows up, and only the (encrypted) HTTP Host header shows the true covert destination.<p>The paper &quot;Blocking-resistant communication through domain fronting&quot; (<a href="https:&#x2F;&#x2F;www.bamsoftware.com&#x2F;papers&#x2F;fronting&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.bamsoftware.com&#x2F;papers&#x2F;fronting&#x2F;</a>) is very interesting.<p>One thing that I&#x27;m left wondering is if the front domain owners will be at risk being blocked if domain fronting is being done with their domain. If so they may ask the CDN companies to block this routing behaviour.
creebleover 7 years ago
Not sure I understand the point of the article. How is this different from what CloudFlare does (for free)?
评论 #15863625 未加载