Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Entropy and metadata analysis gets you 95% there, and the rest is cat-and-mouse with whatever the latest paper is. Importantly, your adversary doesn't need to extract the payload, only detect that there is one, to perform filtering.

> without massive amount of false positives

China, at the very least, has no problems with this!



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: