• 1 Post
  • 160 Comments
Joined 1 year ago
cake
Cake day: August 24th, 2023

help-circle












  • While this is true it’s still good to add nuance.

    There is a difference between judiciary and intelligence context in these kind of things, if you use a tool in a judiciary context you burn it (as with the FBI malware on Playpen). So it’s probably better to keep it low, even avoid to use some of the information gathered, so you keep the intelligence source.

    I’m not saying that’s what’s going on, just that this is not an absolute proof.




  • But this seems easy to automatically block, no? If a client is querying an unknown domain check for some Matrix related data in /.well-known/ and add it to the block list if there is. And since the servers are publicly advertising the port used you just need to periodically check the list of known matrix domains you are creating in the first step.

    Russia is already doing DPI and blocking ESNI so that seems easy. A more widespread usage of ECH would help everyone, as is Signal advocating, but that’s not the case yet.