FINDING · DETECTION

BGP hijacking remains a practical threat to circumvention infrastructure: BGPWatch reported 5,673 possible hijack events in 2024 alone, and approximately 43% of ASes currently do not enforce route origin validation, leaving RPKI-covered prefixes still vulnerable. An attacker can statistically divert 50% of traffic by announcing an equally specific prefix with the genuine origin and itself prepended as next hop.

From 2026-doumanidis-howlr-client-driven-approachHOWLR: A Client-Driven Approach to BGP Hijack Detection · §2.2 · 2026 · arXiv preprint

Implications

Tags

censors
generic
techniques
bgp-hijackip-blocking
defenses
torbridges

Extracted by claude-sonnet-4-6 — review before relying.