20 रिपॉजिटरी
Techniques for masking network traffic to bypass deep packet inspection and restrictive firewalls.
Distinguishing note: Focuses on packet header modification for connectivity rather than general encryption.
Explore 20 awesome GitHub repositories matching networking & communication · Traffic Obfuscation. Refine with filters or upvote what's useful.
ShadowsocksX-NG is a macOS application that functions as a Shadowsocks proxy client to establish encrypted tunnels for bypassing network censorship. It operates as an encrypted tunnel manager that allows for the configuration of secure ciphers and the import of proxy server profiles. The client includes a proxy converter that transforms SOCKS5 traffic into HTTP proxy traffic to provide compatibility for applications that do not support SOCKS. It also integrates a traffic steering system using Proxy Auto-Configuration files to automatically determine which network requests bypass the proxy. T
Supports traffic obfuscation plugins to mask encrypted data and evade deep packet inspection.
This project provides a self-hosted, containerized WireGuard VPN server that simplifies network administration through a web-based management interface. It allows users to deploy and manage VPN tunnels, configure peer identities, and monitor connection status without the need for manual configuration file editing. By bundling the VPN stack into a portable container, it ensures consistent deployment and persistent state management across diverse host environments. A key differentiator is the built-in support for traffic obfuscation, which modifies packet headers and handshake patterns to help
Implements traffic obfuscation to bypass deep packet inspection and restrictive network filtering.
Streisand is an orchestration system for deploying multi-protocol tunneling services and traffic obfuscation tools designed to circumvent regional network restrictions. It functions as a deployment utility and manager for various VPN and proxy services on remote cloud servers. The system distinguishes itself through a network obfuscation toolkit that wraps traffic in layers to evade deep packet inspection and bandwidth throttling. It automates the setup of multiple protocols, including WireGuard, OpenVPN, Shadowsocks, OpenConnect, OpenSSH, and Tor bridges. The project also includes utilities
Masks network traffic to bypass deep packet inspection and prevent bandwidth throttling.
gost is a multi-protocol proxy tunnel and secure tunneling server designed to route network traffic through encrypted connections. It functions as a traffic obfuscation gateway and a transparent proxy server capable of intercepting TCP and UDP traffic at the IP level. The project also includes a virtual network interface manager for creating TUN and TAP devices to intercept operating system packets. The system distinguishes itself through a chain-based request routing model, allowing traffic to pass through an ordered sequence of proxy nodes. It provides extensive transport-layer encapsulatio
Masks network traffic using WebSocket, HTTP/2, and QUIC to bypass firewalls and deep packet inspection.
Signal-Desktop is a cross-platform messaging application that provides end-to-end encrypted communication. It implements the Signal Protocol to secure messages and voice calls, ensuring that only intended recipients can access content. The application manages asynchronous key exchange and session initialization to maintain secure communication channels between parties who are not online simultaneously. The project distinguishes itself through advanced cryptographic protections, including hybrid post-quantum security that combines classical elliptic curve cryptography with lattice-based algori
Protects message metadata by encrypting packet headers with rotating keys to prevent traffic analysis.
Zapret is a deep packet inspection bypass tool and packet manipulation framework designed to circumvent network censorship. It operates as a transparent network proxy and TCP traffic obfuscator that modifies packets to deceive network inspection systems. The project distinguishes itself through advanced desynchronization strategies, including the modification of TLS client hello handshakes and the use of fake packet injection. It utilizes a combination of TCP stream segmentation, sequence overlapping, and TTL adjustment to hide prohibited requests from firewalls while ensuring the destination
Hides prohibited requests from network firewalls using TCP segmentation and fragmentation.
Lantern is a network utility designed to provide access to restricted internet content by tunneling traffic through encrypted connections. It functions as a censorship circumvention tool that enables private web browsing and ensures reliable connectivity in environments where standard network access is blocked or monitored. The application employs a decentralized infrastructure that routes data through a network of distributed proxy nodes. To maintain connectivity in the face of interference, it utilizes dynamic proxy discovery and adaptive fallback mechanisms that automatically switch betwee
Implements traffic obfuscation techniques to hide network patterns from deep packet inspection and firewalls.
BPB-Worker-Panel is a control panel designed for deploying and managing VLESS and Trojan proxies hosted on Cloudflare Workers. It functions as a proxy subscription generator and a manager for secure DNS over HTTPS servers and WireGuard configuration provisioning. The project distinguishes itself through network traffic obfuscation capabilities, utilizing packet fragmentation and SNI spoofing to evade detection. It provides specialized administration for Cloudflare Warp and Warp Pro connections, including the ability to optimize endpoints and export WireGuard configurations. The system covers
Modifies data packet fragments and injects noise strings to disguise proxy traffic and bypass deep packet inspection.
Amnezia Client is a cross-platform VPN client application and server orchestrator designed to manage secure tunnels and automate the deployment of containerized VPN services on remote self-hosted servers. It functions as a multi-protocol VPN manager that supports various tunneling standards to ensure connectivity across restrictive network environments. The project distinguishes itself through network traffic obfuscation, which disguises VPN traffic as common web protocols or DNS requests to bypass deep packet inspection and censorship. It further enables the automation of remote server admin
Hides encrypted tunnel signatures by mimicking common network protocols to bypass deep packet inspection.
Trojan-go is a network proxy implementation that uses the Trojan protocol to disguise internet traffic as standard TLS to bypass censorship and deep packet inspection. It functions as a tunneling gateway that encapsulates network data within encrypted tunnels to mimic ordinary web browsing. The project distinguishes itself through advanced obfuscation techniques, including TLS fingerprint mimicry to avoid detection by client signature identification and the use of WebSockets to relay encrypted traffic through content delivery networks. It also supports UDP forwarding through the Trojan protoc
Wraps protocol traffic in WebSockets to relay encrypted data through content delivery networks for obfuscation.
REALITY is a censorship circumvention tool and network traffic obfuscator designed to bypass internet filters. It functions as a secure tunneling protocol that masks connection patterns and identity by mimicking the TLS handshakes of legitimate target websites. The system removes server-side TLS fingerprints to hide encrypted traffic from network monitoring tools and deep packet inspection. It employs a website mimicking proxy to present valid handshakes and forward traffic to destination servers, masquerading the connection as a legitimate site visit. The project incorporates a quantum-resi
Eliminates server-side TLS fingerprints to hide encrypted tunnels from deep packet inspection and network monitoring tools.
ByeDPIAndroid is a deep packet inspection bypass tool for Android that functions as a local SOCKS5 proxy. It modifies TCP packets to evade network censorship and bypass regional internet restrictions on mobile devices. The project operates as a network traffic obfuscator and TCP packet fragmenter. It splits network data into smaller pieces and hides the nature of internet requests to prevent automated blocking and traffic shaping by internet service providers. The system covers a range of capabilities including host-based traffic interception and dynamic packet modification. It utilizes non-
Masks network requests to prevent automated censorship blocks and traffic shaping by ISPs.
SpoofDPI एक नेटवर्क एप्लिकेशन और लोकल प्रॉक्सी सर्वर है जिसे एंटी-सेंसरशिप टूल के रूप में डिज़ाइन किया गया है। यह एक डीप पैकेट इंस्पेक्शन सरकमवेंशन प्रॉक्सी के रूप में कार्य करता है जो नेटवर्क फिल्टर्स और सेंसरशिप से बचने के लिए आउटबाउंड HTTP रिक्वेस्ट्स को फ्रैगमेंट और मॉडिफाई करता है। यह प्रोजेक्ट HTTP रिक्वेस्ट फ्रैगमेंटेशन को लागू करके इसे प्राप्त करता है, फायरवॉल को भ्रमित करने के लिए एकल रिक्वेस्ट्स को कई छोटे पैकेट्स में विभाजित करता है। यह वेब रिक्वेस्ट्स की प्रकृति को छिपाने और क्षेत्रीय कंटेंट ब्लॉक्स को बायपास करने के लिए TCP स्ट्रीम मैनिपुलेशन और नेटवर्क ट्रैफिक ऑबफस्केशन भी करता है। इस सिस्टम में पारदर्शी नेटवर्क फॉरवर्डिंग और फाइल-आधारित कॉन्फ़िगरेशन मैनेजमेंट की क्षमताएं शामिल हैं ताकि यह समन्वय किया जा सके कि नेटवर्क ट्रैफिक को कैसे संभाला जाए।
Masks network traffic patterns to prevent firewalls from identifying and blocking specific web requests.
This project is a collection of technical resources, blueprints, and guides for building resilient and stealthy red team infrastructure. It provides a comprehensive framework for designing offensive security environments that resist detection and remain operational throughout security engagements. The repository distinguishes itself through detailed playbooks for adversary simulation and hardening manuals. It covers advanced obfuscation techniques such as domain fronting, the use of platform-as-a-service redirectors, and the leveraging of third-party content sites to inherit domain reputation
Hides command and control communications using redirectors and domain fronting to blend into network traffic.
Shadowsocks-rss is an RSS feed generator and version tracker designed to automate the distribution of update notifications and download links for ShadowsocksR clients. It functions as a distribution system that monitors specific software branches to ensure encrypted proxy clients can track the latest stable releases. The project focuses on automated release tracking for network obfuscation software, publishing structured XML feeds that provide version notifications and direct download links for various client versions. The system supports software release monitoring and the distribution of u
Masks encrypted communication patterns by mimicking standard web traffic to bypass deep packet inspection.
This project is a toolset for automated VPN installation, proxy server management, and server-side network throughput optimization. It provides a Shadowsocks proxy server manager used to deploy and configure proxy servers on virtual private servers. The system utilizes automated deployment scripts to handle the installation of encryption methods, ports, and passwords on remote servers. It includes a VPS network optimizer that activates BBR congestion control to reduce latency and increase throughput for high-bandwidth streaming. The software covers remote proxy configuration and client confi
Wraps payload data in ciphers like AES-256-GCM to prevent deep packet inspection and censorship detection.
Godzilla is a post-exploitation toolkit and webshell management framework designed for remote administration, credential extraction, and memory shell injection. It provides a centralized platform to deploy, control, and monitor encrypted remote access scripts across multiple server environments. The project differentiates itself through a memory shell injector that loads binaries and shellcode directly into server memory to avoid disk-based detection. It also employs polyglot payload injection, deploying encrypted scripts across various language environments to maintain persistent connections
Encodes traffic between operator and injected payloads using AES or XOR ciphers to evade network detection.
यह प्रोजेक्ट एक सेंसरशिप बायपास टूल और पारदर्शी प्रॉक्सी गेटवे है जिसे स्थानीय नेटवर्क प्रतिबंधों को बायपास करने के लिए डिज़ाइन किया गया है। यह उपयोगकर्ताओं को ब्लॉक की गई वेबसाइटों तक पहुंचने में मदद करने के लिए एक SOCKS5 प्रॉक्सी सर्वर, एक DNS टनलिंग टूल और एक नेटवर्क ट्रैफ़िक ऑब्फ्यूसेटर के रूप में कार्य करता है। यह सॉफ्टवेयर प्रतिबंधात्मक फायरवॉल से बचने के लिए डेटा के मूल और गंतव्य को छिपाने के लिए मास्किंग प्रोटोकॉल लागू करता है। यह नेटवर्क गोपनीयता की रक्षा करने और ब्लॉक किए गए डोमेन को हल करने के लिए नेटवर्क ट्रैफ़िक ऑब्फ्यूसेशन और सुरक्षित DNS टनलिंग के लिए क्षमताएं प्रदान करता है। यह सिस्टम फायरवॉल नियमों और IP टेबल रूपांतरण के माध्यम से सिस्टम नेटवर्क ट्रैफ़िक को इंटरसेप्ट करके बड़े पैमाने पर ट्रैफ़िक प्रबंधन को संभालता है। इसमें विशेष रूटिंग नियमों को परिभाषित करने के लिए कस्टम प्रॉक्सी प्लगइन्स विकसित करने के लिए एक मॉड्यूलर आर्किटेक्चर शामिल है।
Implements masking protocols to hide data origin and destination to evade deep packet inspection.
Cloak is a set of censorship circumvention tools designed for secure proxy tunneling and internet traffic obfuscation. It focuses on bypassing restrictive firewalls and state surveillance by disguising proxy connections as standard web browsing. The project utilizes HTTP fingerprint masquerading to imitate common browser signatures and routes traffic through content delivery networks to mask the identity of the origin server. To further hide the server's purpose, it includes a mechanism to redirect unauthenticated connection requests to a third-party website. The system implements transport
Masks network traffic by disguising proxy connections as standard web browsing to bypass deep packet inspection.
Hoaxshell is a command and control system for Windows remote command execution. It provides a framework for generating and managing reverse shell payloads that utilize an HTTP beaconing protocol, where victim clients periodically poll a handler to receive and execute instructions. The project distinguishes itself through its ability to bypass PowerShell Constrained Language Mode using specialized payload generation. It supports encrypted command and control via TLS certificate injection and provides mechanisms for remote session recovery, allowing a handler to reestablish control over active
Disguises session traffic by using custom HTTP header names to bypass antivirus traffic analysis.