TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Snowflake

308 pointsby bcg361almost 2 years ago

13 comments

mike_dalmost 2 years ago
Snowflake uses domain fronting[1] for rendezvous. It is the digital equivalent of a spy having their secret meetings inside an unsuspecting friends house, and it always eventually it goes bad for that friend.<p>The technique is heavily used by bad actors and is being blocked by default[2] by some cloud providers. AWS went as far as sending a nastygram to Signal[3] when they tried to roll it out on a wide basis for fear that countries like Iran and China would just block all of AWS.<p>1. <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Domain_fronting" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Domain_fronting</a> 2. <a href="https:&#x2F;&#x2F;azure.microsoft.com&#x2F;en-us&#x2F;updates&#x2F;generally-available-block-domain-fronting-behavior-on-newly-created-customer-resources&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;azure.microsoft.com&#x2F;en-us&#x2F;updates&#x2F;generally-availabl...</a> 3. <a href="https:&#x2F;&#x2F;signal.org&#x2F;blog&#x2F;looking-back-on-the-front&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;signal.org&#x2F;blog&#x2F;looking-back-on-the-front&#x2F;</a>
评论 #36931154 未加载
评论 #36929404 未加载
评论 #36937887 未加载
评论 #36929059 未加载
Aachenalmost 2 years ago
This is a relay for Tor users to be able to access Tor (when normal guard relays (first hop in a Tor circuit) are blocked), using domain fronting and webrtc.<p>The text is written quite confusingly, at least the German translation it served me by default. I was wondering how this could circumvent censorship, as the target needs to also support webrtc so there&#x27;s no way to access any http(s) website via this in-browser proxy, this still requires another server to accept the webrtc connection and forward your traffic, but the point (which the article doesn&#x27;t mention) is to be able to connect to this other server indirectly.<p>It even goes so far as to claim that you don&#x27;t need any software to visit censored websites:<p>&gt; Im Gegensatz zu VPNs musst du keine separate Anwendung installieren, um dich mit einem Snowflake-Proxy zu verbinden und die Zensur zu umgehen.<p>Except you do. Without Tor client, this snowflake proxy is useless. Clicking through to the technical details (link marked with a warning &quot;this content is in English&quot;):<p>&gt; 1. User in the filtered region wishes to access the free and open internet. They open Tor Browser, selecting snowflake as the Pluggable Transport.<p>The article said &quot;contrary to VPNs, you don&#x27;t need to install separate software to circumvent censorship&quot; and the technical overview says the literal opposite: you need to install a Tor client to make use of a snowflake proxy.
评论 #36933005 未加载
batch12almost 2 years ago
If Tor is illegal in your country, it seems pretty risky to try to use it. Since anyone can run a snowflake proxy, it would be a trivial exercise to just log connecting IP addresses. Then it&#x27;s a gamble with vanishing odds of staying safe each time you connect.
评论 #36927472 未加载
评论 #36933174 未加载
评论 #36928971 未加载
anyfactoralmost 2 years ago
&gt; If you switch on the Snowflake below and leave the browser tab open, a user can connect through your new proxy!<p>I am not even sure, if I am getting this right. If I embed an iframe in my website, traffic from Tor users will get tunneled through my user visitor&#x27;s IP? How does consent works with relay.love? Does my website vistor&#x27;s IP show up as TOR exit node?
评论 #36927024 未加载
评论 #36931193 未加载
评论 #36928212 未加载
batch12almost 2 years ago
So, I&#x27;m reminded of the old &#x27;store your files on youtube&#x27; thing[0] and I wonder how much bandwidth one could get using the same concept on one of the widely used voice conferencing solutions (like zoom) to further blend in. Bonus if you can do some kind of video steganography to transfer the data and have a &#x27;real&#x27; call.<p>[0] <a href="https:&#x2F;&#x2F;github.com&#x2F;DvorakDwarf&#x2F;Infinite-Storage-Glitch">https:&#x2F;&#x2F;github.com&#x2F;DvorakDwarf&#x2F;Infinite-Storage-Glitch</a>
评论 #36927100 未加载
评论 #36928851 未加载
Egrodoalmost 2 years ago
Not sure how new this is but very cool that users can host a node simply by toggling an iframe or installing a browser extension. I wonder if these methods have much lower bandwidth limitations than the CLI version
bauruinealmost 2 years ago
There is also a standalone (go) version [0] that can be deployed on a server. &quot;one of the main advantages of standalone Snowflake proxies is that they can be installed on servers and offer a higher bandwidth and more reliable option for users behind restrictive NATs and firewalls.&quot;<p>[0] <a href="https:&#x2F;&#x2F;community.torproject.org&#x2F;relay&#x2F;setup&#x2F;snowflake&#x2F;standalone&#x2F;" rel="nofollow noreferrer">https:&#x2F;&#x2F;community.torproject.org&#x2F;relay&#x2F;setup&#x2F;snowflake&#x2F;stand...</a>
rejectfinitealmost 2 years ago
I have it installed and like seeing the number go up. NUMBER BIGGER = DOPAMINE!!<p>I&#x27;m lucky to be born in Scandinavia, so there is really 0 internet censor, for now.
评论 #36929822 未加载
评论 #36929988 未加载
PathfinderBotalmost 2 years ago
I&#x27;m surprised by how easy and literally one-click it was to use that. Bravo, Tor Project team.
VWWHFSfQalmost 2 years ago
We block every Tor IP we can find because we don&#x27;t have the time nor patience to deal with the 99% burpsuite spam originating from these servers. Very cheap and effective solution.
评论 #36931361 未加载
jdthedisciplealmost 2 years ago
What&#x27;s my incentive to run a snowflake node?
评论 #36931744 未加载
评论 #36930835 未加载
archoalmost 2 years ago
Snowflake (software) : <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Snowflake_(software)" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Snowflake_(software)</a><p>Tor (network) : <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Tor_(network)" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Tor_(network)</a><p>The Tor Project : <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;The_Tor_Project" rel="nofollow noreferrer">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;The_Tor_Project</a>
ChrisArchitectalmost 2 years ago
Anything new here from last year?