Bypassing Little Snitch Firewall with Empty TCP Packets

We discussed this vulnerability during Episode 115 on 31 January 2022

Little Snitch might block connections to some IPs, but only if they send data. Just opening the connection but not sending data is a fun way to get around the blacklist, and while significantly slower, one can still exfiltrate information using only a data-less connection.