Skip to content

iPhone緊急警示提示xx公安局提醒youtube是詐騙網站請問是什麼情況 #2211

Answered by RPRX
reply2future asked this question in Q&A
Discussion options

You must be logged in to vote

报 YouTube 似乎是新情况,今天 Project X 群里有两张安卓的截图:https://t.me/projectXray/2476790https://t.me/projectXray/2476819

两张安卓的截图


分析你的情况:

  1. 从你的配置来看,通向 UDP/53 端口的流量会被路由至 DNS 出站,但有两处小坑:一,由于 FullCone,如果第一个包已被路由,相同来源二元组的后续包也会跟着,不活跃清理约为五分钟,但 YouTube APP 即使复用端口,路由也都非 direct,有可能是它的 DNS 撞上了已被路由为 direct 的来源二元组,但概率极低,下个版本会对目标为 UDP/53 端口的流量强制 Symmetric。二,DNS 出站会直接放行非 A / AAAA 的查询,需分析 YouTube APP 是否有此类查询,同样,下个版本我打算改成默认拦截非 A / AAAA 的查询,加选项放行。
  2. 你使用的是裸 VMess,其实 GFW 拿到你的客户端配置就能解密,详见 net4people/bbs#254 ,手机最易泄露,我猜你的手机上有节点信息。若有人使用裸 SS / VMess,电脑设代理模式(无需预查 DNS),手机有节点信息但不用,若仍收到短信,大概率是流量被解密或分析了。
  3. 安卓的第二张截图显示的是反诈,有可能是反诈直接把他手机访问的域名给上传了,不过国行 iPhone 有没有内置反诈?需要调查。其实针对“反诈”,也应当做 GeoSite 和 GeoIP,但若把它 block 了,它是能发现的。最好是不购买、使用内置反诈的手机,…

Replies: 8 comments 25 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@reply2future
Comment options

@kilvn
Comment options

Comment options

You must be logged in to vote
8 replies
@lhbdhr
Comment options

@reply2future
Comment options

@RPRX
Comment options

@nursery01
Comment options

@RPRX
Comment options

Answer selected by RPRX
Comment options

You must be logged in to vote
4 replies
@katayaburi
Comment options

@reply2future
Comment options

@MFWT
Comment options

@reply2future
Comment options

Comment options

You must be logged in to vote
2 replies
@reply2future
Comment options

@xqzr
Comment options

Comment options

You must be logged in to vote
3 replies
@reply2future
Comment options

@chika0801
Comment options

@reply2future
Comment options

Comment options

You must be logged in to vote
5 replies
@chika0801
Comment options

@nursery01
Comment options

@nursery01
Comment options

@chika0801
Comment options

@chika0801
Comment options

Comment options

You must be logged in to vote
1 reply
@reply2future
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet