DEFENSES
1 paper on file
2 findings tagged here
WireGuard connections are blackholed by Iranian infrastructure immediately after the initial WireGuard handshake completes — clients stop receiving server packets — indicating the Iranian DPI identifies WireGuard by its distinct UDP handshake pattern and applies IP-level blocking at that point.
2026-pooribitwise-iran-advanced-dpi Issue body — Other Observations §3 detection
NymVPN experienced a 387% increase in demand during the June 2025 Iran blackout but was itself caught by protocol-level UDP restrictions and could not function as a reliable circumvention tool because TCP fallback and other censorship-resistance countermeasures had not yet shipped.
2025-piotrowska-nym-iran-blackout So does NymVPN work in Iran? deployment