Nicheloom

Market intelligence for builders — see what's gaining traction before it's crowded.

Gecit

DPI bypass using eBPF sock_ops, no proxy or VPN

Details

External ID
47650894
Source
HN
Company
—
Product
Gecit
Website domain
github.com
Launched
April 5, 2026
Cohort
—
Upvotes
9
Upvotes percentile
0.5501285347043702
Tags
—
Fetched at
Sept. 7, 2026, 9:26 p.m.
Updated at
Sept. 7, 2026, 9:26 p.m.

Enrichment

Theme
security exploits and system hacking tools
Vertical
Security
Function
Dev tools
Audience
Developer
AI stance
Not AI
Project type
Commercial product
Normalized one-liner
dpi bypass using ebpf without proxy or vpn
Manually corrected
False

Could you build this?

No Developing deep packet inspection bypass mechanisms using Linux kernel eBPF sock_ops requires specialized low-level networking, Linux kernel internals, and TCP/IP stack manipulation skills.

What it would actually take: The system requires writing C eBPF programs attached to sock_ops/sk_msg kernel hooks (using libbpf/Cilium) to intercept TCP handshakes and manipulate TCP window sizes, segmentation, or TLS Client Hello packets in-flight. The core difficulty lies in avoiding kernel panics, adhering strictly to the eBPF verifier's safety constraints, and correctly simulating TCP packet fragmentation to evade DPI middleboxes. This requires deep expertise in Linux kernel programming, network protocol security, and eBPF tooling.

Discussion

2 comments analyzed.

Concerns raised: More sophisticated DPI systems like China's GFW can do full TCP reassembly, Doesn't work against stateful/reassembly-capable DPI

Competitors

Other products that read as similar to this one — 266 launches clear the similarity bar, closest 8 shown.

Attention rank: #118 of 267 (itself plus its competitors, highest first — normalized so YC and Product Hunt are compared fairly).

Launched 155 days after the earliest competitor.

Other launches for this product

Same idea, different domain

Nobody's really built a dev tools tool for Sales yet.