What is Nostr?
GrapheneOS /
npub1235…0ht5
2024-04-16 15:02:52
in reply to nevent1q…rzut

GrapheneOS on Nostr: Tracking all connections with conntrack is enough to open up a new denial of service ...

Tracking all connections with conntrack is enough to open up a new denial of service attack vector since the conntrack table can be filled by an attacker. For this reason, we were previously making all inbound connections untracked and are still doing that for both UDP and ICMP.
Author Public Key
npub1235tem4hfn34edqh8hxfja9amty73998f0eagnuu4zm423s9e8ksdg0ht5