FINDING · DETECTION

The whitelist enforcement drops TLS ClientHello packets to non-whitelisted destination IPs while still accepting the TCP SYN, meaning the block occurs at or after the TCP handshake completes but before application-layer data is processed. This behavior is consistent with TSPU-level in-path interception rather than BGP null-routing.

From 2025-its0ka-mobile-network-websiteMobile network website whitelist · Issue body (its0ka, Sep 7 2025) · 2025 · net4people/bbs

Implications

Tags

censors
ru
techniques
dpiip-blocking

Extracted by claude-sonnet-4-6 — review before relying.