Researchers discovered Wallbleed, a buffer over-read vulnerability in China's Great Firewall DNS injection system that leaked up to 125 bytes of memory when processing crafted DNS queries. Through two years of measurements starting October 2021, they reverse-engineered the censorship infrastructure, analyzed leaked data affecting users globally, and tracked patching attempts. The vulnerability exposed internal architecture details, memory management mechanisms, and load-balancing systems. An incorrect patch was deployed in November 2023, with full remediation completed in March 2024. The research demonstrates how poorly implemented censorship systems create privacy and confidentiality risks beyond their intended purpose of restricting information access.

2m read timeFrom securityboulevard.com
Post cover image

Sort: