All Your Traffic Are Belong To Us

Jun 15, 2011
1,479
17
0
http://www.nytimes.com/2015/04/11/t...l-new-weapon-to-censor-internet.html?src=recg

Mr. Marczak said researchers’ fear is that the state could use its new weapon to attack Internet users, particularly dissidents, without their knowledge. If they make a single request to a server inside China or even visit a non-Chinese website that contains an ad from a Chinese server, the Great Cannon could infect their web communications and those of everyone they communicate with and spy on them.

Why would they pick GitHub though?
 


Cleaver, gotta give props to the Chinese.

Why would they pick GitHub though?

GitHub is a host for a lot of open source repos that allows people to bypass filters.

But this is just flexing, we have this, you have that, lets measure the size of our cocks.

One reason I have never trusted software coming out of china though, 360 for example.
 
The system was used, they said, to intercept web and advertising traffic intended for Baidu — China’s biggest search engine company — and fire it at GitHub, a popular site for programmers, and GreatFire.org, a nonprofit that runs mirror images of sites that are blocked inside China. The attacks against the services continued on Thursday, the researchers said, even though both sites appeared to be operating normally.

The great cannon is nothing special. It's just another DDOS attack that can be neutralized with aggressive DDOS protection. It's a huge waste of resources, but someone who is determined enough can keep their site online.
 
Ultimately, researchers say, the only way for Internet users and companies to protect themselves will be to encrypt their Internet traffic so that it cannot be intercepted and diverted as it travels to its intended target.

Not going to help, you can still MITM an SSL/TLS connection.

Mr. Lewis said. "This is going to hurt Baidu’s chances of becoming a global competitor."

Not sure how much they care, they have a 56.3% market share in a country with 1.4 billion people.

Hell even Google would DDOS GitHub for those numbers.