FINDING · DETECTION
Snowflake exclusively uses WebRTC data channels (on-wire protocol: DTLS), whereas the majority of WebRTC applications use media channels (DTLS-SRTP or SRTP/SDES); a censor can therefore block Snowflake by filtering data-channel flows alone without blocking WebRTC media applications, incurring minimal collateral damage and reducing the overblocking deterrent.
From 2016-fifield-fingerprintability — Fingerprintability of WebRTC · §6 · 2016 · University of California, Berkeley
Implications
- Explore encoding circumvention data over media channels (e.g., modulating a binary stream into an acoustic or video signal as Freewave did over VoIP) to remove the DTLS-only data-channel distinguisher.
- Accept the added reliability-layer complexity of abusing media channels rather than leaving a cheap, low-collateral targeted-block vector open to censors.
Tags
Extracted by claude-sonnet-4-6 — review before relying.