Skip to content

Releases: hashcott/ghostline

v0.5.3

Choose a tag to compare

@github-actions github-actions released this 07 Oct 14:47

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.5.3

  • Your internet comes back even if an antivirus deletes Ghostline: Windows Defender can mistake ghostline.exe for malware (Trojan:Win32/Bearfoos.A!ml), kill it while connected, quarantine it and delete the recovery task that points at it. That took out all four recovery layers at once and left DNS on 127.0.0.1. A fifth layer, the Ghostline Network Guard task, runs a small PowerShell script as SYSTEM, using only what ships with Windows: every minute while connected, at boot, and about 10 seconds after Defender acts on a threat. If Ghostline is gone, it puts back each adapter's DNS and the system proxy, then removes itself. If the portable folder was deleted too, adapters still pointing at 127.0.0.1/::1 go back to automatic (DHCP).
  • Portable zip ships a read-first file: ! DOC TRUOC KHI DUNG - READ FIRST.txt (Vietnamese and English) explains how to run it, why you must disconnect before deleting or moving the folder, how to add it to antivirus exclusions, and how to get the internet back by hand.
  • Clearer leak-check failures: when the check after connecting fails, the error now says why (no answer, another resolver answered, ...) and names the adapters whose DNS bypasses Ghostline (VPN, PPPoE, USB 4G...), so you know which one to turn off or select.
  • Better logs for bug reports: errors that were silently dropped are now logged with their cause, crashes are written to ghostline-crash.log, and interface errors reach the log too. Logs still never contain the sites you visit.

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). Since 0.5.3 the Network Guard task restores DNS within about a minute if Ghostline is killed while connected, but Defender can still stop Ghostline itself: add the Ghostline folder to Defender's exclusions (Add-MpPreference -ExclusionPath "<folder>" in an administrator PowerShell).

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.5.3-portable.zip Portable: unzip and read ! DOC TRUOC KHI DUNG - READ FIRST.txt first
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.5.2...v0.5.3

v0.5.2

Choose a tag to compare

@github-actions github-actions released this 07 Oct 13:15

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.5.2

  • DPI bypass starts after a quick reconnect: Connect → Disconnect → Connect no longer fails with DPI engine failed to start: cleanup: The service cannot accept control messages at this time (Windows error 1061). The WinDivert driver of the engine just stopped was still unloading; Ghostline now waits for it (up to 5 seconds) instead of giving up.
  • A clear message when another DPI tool holds the driver: if a standalone GoodbyeDPI or zapret (goodbyedpi.exe, winws.exe, winws2.exe) is running outside Ghostline, they share the same WinDivert driver. Connect now says Another program is using the WinDivert driver and asks you to close that tool and try again, instead of failing with a cryptic error.

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.5.2-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.5.1...v0.5.2

v0.5.1

Choose a tag to compare

@github-actions github-actions released this 07 Oct 03:27

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.5.1

  • One server ranking per network: the first connect on a network scans the whole list once (about 900 servers, 30–60 seconds) and takes the fastest servers that do not filter content, pinned servers first. Later connects take a few seconds from that ranking; when it is more than a day old, Ghostline checks its best servers first and rebuilds the ranking in the background once connected.
  • Server switches without disconnecting: ⟳ scan all and changing the protection level rescan the list and, when connected, move to the fastest servers live. Results show row by row as they arrive. Only one full scan runs at a time: connecting while a level change is scanning waits for that scan and shows its progress.
  • Networks are told apart by the router's hardware address, not this PC's, so each Wi-Fi or LAN keeps its own ranking.
  • Filtering servers are marked not picked: servers that block ads or content (adblock, family) are measured but never chosen automatically; pin one to use it.
  • Protection levels keep auto-tune's result: a level builds on the current settings, so the DPI strategy found by auto-tune is no longer lost. The first-connect auto-tune waits for the site check and shows which strategy it is trying.
  • Several test domains: Settings › test domain takes up to 5 domains, one per line (a warning past two, since each one slows every scan). A domain is checked when you save it: one without an IPv4 address (for example steam.com) is refused, and a domain that later fails on most servers is ignored with a warning instead of failing every server. The Servers page explains what a pass means and what it cannot catch.
  • Simple interface: steps keep their place while connecting, the server scan shows only in step 2, the step hint wraps instead of widening the window, and the panel under the levels grows smoothly so the power button no longer jumps.
  • Releases are built only after the full CI passes on the tagged commit.

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.5.1-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.5.0...v0.5.1

v0.5.0

Choose a tag to compare

@github-actions github-actions released this 06 Oct 22:11

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.5.0

  • Protection levels in the Simple interface: DNS only, DNS + DPI bypass, Maximum (adds the proxy for this PC, with automatic fragmentation on blocked sites) or Custom (your own combination, remembered). Change it any time, also while connected; a line under the levels says what the chosen one does.
  • First connect auto-tunes DPI bypass: the first time you connect after installing, Ghostline checks the test sites and, if some are still blocked, auto-tunes DPI bypass on them as one more connect step, then picks the matching level.
  • First connect on a network checks every server that does not filter content (about 700, plus the ones you pinned or added) and keeps the fastest; the step shows its progress, and later connects use the result. The DNSCrypt list now ships with the app, so a fresh install has every server.
  • New Tools page (with the logs as its first tab):
    • Lookup: ask one domain through several sources at once and see whether the answers agree, are poisoned or just differ by CDN; details prints each answer like dig. The unencrypted ISP DNS source is never ticked for you.
    • Scanner: grade many servers at once — latency over several rounds (median, p90, jitter), packet loss, DNSSEC, ad filtering and poisoning of the test sites. Scan the list with filters or paste addresses (500 servers per scan by default, 50–2000 in options); pin servers, use one, add pasted ones or export a CSV.
    • Cloudflare IP: find Cloudflare addresses that work and are fast on your network (port 443 only, rate-limited, with a download test for the 10 fastest), then copy them or create an ip= rule. Results are kept per network.
    • Stamp: read and build sdns:// stamps, and add them to your servers.
  • Backup and move to another PC (Settings): export settings, rules and lists, your servers, the DPI blacklist and the zapret2 learned list to a .ghostline.json file. It never contains your home Wi-Fi name, adapters, proxy passwords, logs or certificates. Import shows what will change first, asks before sni= / connect= rules, turns off Fake SNI, the DNS server, LAN sharing and start with Windows, and puts every file back if writing fails halfway. Ghostline.exe --export <file> does the same from the command line.
  • Simple | Full switch under the title bar (the advanced interface is now called Full; older settings are migrated). The sidebar is grouped into basic, advanced and diagnostics; Fake SNI moved to a tab of the Proxy page.
  • Guides, READMEs and the release checklist cover the levels, the tools and backup (EN + VI).

Note

The first connect on a network takes 30–60 seconds while Ghostline checks every server; later connects on the same network take a few seconds.

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.5.0-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.4.1...v0.5.0

v0.4.1

Choose a tag to compare

@github-actions github-actions released this 05 Oct 18:52

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.4.1

  • About row in Settings: the version, the author and a GitHub ↗ button that opens the repository.
  • Sharper icon: the ring is anti-aliased, and the tray icon is drawn at the exact size Windows shows it (16, 20 or 24 px depending on display scale) instead of being scaled down from 32 px, so it is no longer blurred.
  • Release builds no longer run CI twice: pushing a tag runs only the release workflow, which tests the build itself.

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.4.1-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.4.0...v0.4.1

v0.4.0

Choose a tag to compare

@github-actions github-actions released this 05 Oct 17:31

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.4.0

  • DNS server for your browsers and other devices: a local DoH endpoint (https://127.0.0.1/dns-query) for browsers on this PC, and, with share on the LAN, plain DNS on port 53 plus DoH on this PC's LAN addresses. Routers, TVs, Android phones and the Steam Deck only need this PC's IP as their DNS, no certificate. LAN sharing works only on networks marked Private; on Public networks a Ghostline Block Public firewall rule keeps other devices out, even if you clicked Allow in Windows' firewall prompt.
  • iPhone / iPad DoH profile: enter your home Wi-Fi name (Ghostline suggests the networks this PC knows, or the phone types it on the page), open the phone setup page and scan the QR code. The page lives 10 minutes, shows the certificate fingerprint to compare, and walks through the required Full Trust step. The encrypted DNS is used only on that Wi-Fi; mobile data and other networks are untouched.
  • Fake SNI (advanced, opt-in after a mandatory warning): for domains with an sni= rule, the proxy decrypts the browser's HTTPS and reconnects with an allowed name (domain fronting), falling back to fragmentation when a server refuses. Only browsers on this PC through the proxy are affected; a violet banner shows while it runs, with counters on the Fake SNI page. A signed Google & YouTube preset group is included.
  • Scoped certificates only: the LAN CA can sign only private addresses and *.ghostline.lan; the Fake SNI CA can sign only the domains in your rules, lives in RAM for the session and is removed on Disconnect, by the watchdog after a crash, and on uninstall. Settings → certificates lists every Ghostline certificate and removes them all.
  • Disconnect asks first (app and tray) when devices on your network used this PC's DNS in the last 10 minutes, because they lose the internet with it. Shutting Windows down and Quit do not ask.
  • Rules: sni= and connect= actions; lists from other sources can carry them only after you mark them trust for Fake SNI.
  • zapret2 strategy list is now signed, so the daily update applies instead of failing the signature check.
  • Guides, READMEs and the release checklist cover the DNS server, Fake SNI, certificates and the iPhone setup (EN + VI).

Note

Devices using this PC's DNS lose the internet when it is off or disconnected. iOS has no fallback: with the DoH profile, choose Automatic in Settings › General › VPN & Device Management › DNS (or remove the profile) to get the iPhone back online at home. If this PC is often off, set the iPhone's DNS manually (Wi-Fi › (i) › Configure DNS › Manual) instead of using the profile.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.4.0-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.3.1...v0.4.0

v0.3.1

Choose a tag to compare

@github-actions github-actions released this 05 Oct 15:04

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.3.1

  • Connect works with Mobile Hotspot on: Windows Mobile Hotspot (svchost, SharedAccess service) holds 0.0.0.0:53, and Ghostline refused to connect with Port 53 is held by svchost even though 127.0.0.1:53 and [::1]:53 were still free. Ghostline now tries the bind itself and only reports port 53 as busy when it really is. Fixes #1.

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.3.1-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.3.0...v0.3.1

v0.3.0

Choose a tag to compare

@github-actions github-actions released this 05 Oct 13:27

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.3.0

  • New DPI engine: zapret2 (bol-van/zapret2 v1.0.5.2, MIT), next to GoodbyeDPI. Stronger than GoodbyeDPI: fake packets with automatic TTL, multisplit/multidisorder, and QUIC/UDP support. It runs for every app, like GoodbyeDPI. Pick the engine on the DPI bypass page.
  • Existing users keep GoodbyeDPI until they switch; new installs start on zapret2.
  • Automatic fallback: if antivirus blocks zapret2 (or its files were changed), Ghostline runs GoodbyeDPI for that session, shows degraded, and tells you which folder to add to Windows Defender's exclusions, with a retry zapret2 button.
  • zapret2 strategies update without a new release: a built-in list plus a signed (ed25519) list fetched daily. Every strategy argument is checked against an allow-list, so a list can never make winws2 run arbitrary Lua.
  • Detect blocked sites automatically (zapret2, blacklist scope): zapret2 adds sites it sees being blocked to a separate list you can review and edit.
  • GoodbyeDPI upgraded to 0.2.3rc3 (WinDivert 2.2); --fake-with-sni and --fake-gen are allowed in custom arguments.
  • Auto-tune works with either engine; a cancelled or fruitless run puts your previous engine back, and a finished run says what it picked.
  • Re-recorded video guide and screenshots (EN + VI).

Warning

Antivirus. Windows Defender may flag Ghostline, zapret2 or WinDivert as malware by mistake (Trojan:Win32/Bearfoos.A!ml, Trojan:Win32/Suschil!rfn). If Ghostline is killed while connected, DNS can stay pointed at 127.0.0.1 until you open Ghostline again (it restores DNS on start). If this happens, add the Ghostline folder to Defender's exclusions.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.3.0-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.2.5...v0.3.0

v0.2.5

Choose a tag to compare

@github-actions github-actions released this 04 Oct 20:10

Important

Responsible use. Ghostline is provided for research and educational purposes. Its main goals are privacy (keeping DNS queries from being read or logged), protection against DNS spoofing and hijacking, and network diagnostics. You are solely responsible for how you use it and for complying with the laws of your country and your network provider's terms. Do not use Ghostline for any unlawful purpose, including:

  • reaching websites, services or content that a competent authority has ordered to be blocked under the law of your country;
  • online gambling, copyright infringement, fraud, or spreading content that is prohibited by law;
  • attacking, disrupting or getting unauthorized access to any network or system.

Ghostline does not ship, recommend or maintain lists of sites blocked by authorities. Lists and rules you add yourself are your own responsibility. The software is provided "as is", without warranty of any kind; the authors are not liable for any damage, data loss, service disruption or legal consequences arising from its use. See the Disclaimer and LICENSE.

What's changed in 0.2.5

  • Removed the Telegram preset: the Telegram community list and the telegram.org default probe site are gone, since Telegram is blocked in Vietnam by government order.
  • Legal note on the DPI page reminding you that you are responsible for lawful use.
  • Expanded disclaimer in the README and user guides (EN + VI); contributors are asked not to add lists of sites blocked by authorities.

Downloads

File What it is
ghostline-amd64-installer.exe Installer (installs WebView2 if missing)
Ghostline-0.2.5-portable.zip Portable: unzip and run
SHA256SUMS Checksums for both

Requires Windows 10/11 x64 and administrator rights. Builds are not code-signed yet: verify the SHA-256, then choose More info → Run anyway in SmartScreen.


Tuyên bố trách nhiệm (Tiếng Việt)

Ghostline được phát triển với mục đích nghiên cứu và học tập về DNS mã hoá, cơ chế lọc mạng và DPI. Mục tiêu chính là bảo vệ quyền riêng tư (truy vấn DNS không bị đọc hay ghi lại), chống giả mạo và chiếm quyền DNS, và chẩn đoán mạng. Người dùng tự chịu hoàn toàn trách nhiệm về cách sử dụng phần mềm, cũng như việc tuân thủ pháp luật nơi mình sinh sống và điều khoản của nhà cung cấp mạng. Không sử dụng Ghostline vào bất kỳ mục đích vi phạm pháp luật nào, bao gồm:

  • truy cập trang web, dịch vụ hay nội dung mà cơ quan có thẩm quyền đã yêu cầu chặn theo quy định của pháp luật;
  • cờ bạc trực tuyến, vi phạm bản quyền, lừa đảo, hoặc phát tán nội dung bị pháp luật cấm;
  • tấn công, gây gián đoạn hoặc truy cập trái phép vào bất kỳ mạng hay hệ thống nào.

Ghostline không đóng gói, không khuyến nghị và không duy trì danh sách các trang bị cơ quan chức năng chặn. Danh sách và rule do người dùng tự thêm thuộc trách nhiệm của người dùng.

Phần mềm được cung cấp "nguyên trạng", không kèm bất kỳ bảo đảm nào. Tác giả không chịu trách nhiệm về bất kỳ thiệt hại, mất mát dữ liệu, gián đoạn dịch vụ hay hệ quả pháp lý nào phát sinh từ việc sử dụng phần mềm.

Full Changelog: v0.2.4...v0.2.5

v0.2.4

Choose a tag to compare

@github-actions github-actions released this 04 Oct 20:01

Better pinning on the Servers page, a simpler DPI blacklist, and lower memory use in the tray.

New

  • Pinned servers are preferred when connecting: every pinned server that passes a check is used first, the remaining slots go to the fastest others.
  • Easier pinning: a ★ pinned chip, pinned rows on top, pin all search results / unpin all, double-click a row to pin or unpin, and a reconnect to apply hint.
  • Right-click menu on server rows: pin/unpin, use only this server, check again, copy address/IP, remove (custom servers).
  • Inline DPI blacklist editor right under the scope chips; saving the list or changing preset/scope restarts a running GoodbyeDPI so the change applies immediately.
  • Connect errors are shown in Advanced mode too, with clear actions (e.g. open servers / turn off pinned-only).

Improvements

  • Closing the window to the tray frees ~150 MB: the WebView is destroyed and recreated from the tray; starting with Windows creates no window at all.

Fixes

  • Partial scans (quick scan on connect, pinned-only connect, cancelled scans) no longer wipe other servers' results.
  • Use pinned servers only can't be turned on with nothing pinned, and saving from the UI never erases pins.
  • Tidier Servers header and search row; search no longer matches inside sdns:// stamps.

Full Changelog: v0.2.3...v0.2.4