Wallbleed vulnerability unearths secrets of China's Great Firewall 125 bytes at a time
ID: daa9c2f0-64b7-54b5-bb60-8013a8c76553
STIX ID: report--daa9c2f0-64b7-54b5-bb60-8013a8c76553
Feed Name: The Register (Security)
The article summarizes research on “Wallbleed,” an out‑of‑bounds read vulnerability in the Great Firewall (GFW) DNS injection subsystem that allowed crafted DNS queries to retrieve up to 125 bytes of memory from censorship middleboxes. Researchers used the flaw between October 2021 and March 2024 to study the GFW’s internals, observe patch attempts, infer CPU architecture, and demonstrate that the vulnerability posed a significant privacy risk affecting traffic from across China before it was finally patched.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
