Skip to content
#

encrypted-client-hello

Here are 12 public repositories matching this topic...

Network threat detection lab — Encrypted Client Hello, post-quantum TLS, JA4 fingerprinting, DNS tunneling, C2 beaconing, AI/MCP egress. Sigma rules, SOC playbooks, and CI-validated detection-as-code.

  • Updated Jul 29, 2026
  • Shell

Suricata IDS lab — 23 custom detection rules with MITRE ATT&CK metadata, JA4 fingerprinting, Encrypted Client Hello and post-quantum TLS detection, false-positive tuning, and engine-validated detection-as-code CI.

  • Updated Jul 30, 2026
  • Shell

Browser-based ECH demo — draft-ietf-tls-esni. TLS 1.3 protects every byte except the hostname it announces first. Real HPKE seals the ClientHelloInner; a network observer sees only the outer. Tamper the ECHConfig and watch the real open fail. Metadata is the leak encryption doesn't close. No backends. No simulated math.

  • Updated Jul 16, 2026
  • TypeScript

Improve this page

Add a description, image, and links to the encrypted-client-hello topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the encrypted-client-hello topic, visit your repo's landing page and select "manage topics."

Learn more