China: changes Great Firewall to Great Cannon & threatens the world

Η φέρεται να έχει αναβαθμίσει το σύστημα αποκλεισμού ιστοσελίδων, που ονομάζεται από τους ειδικούς Great Firewall, για να μπορεί να εξαπολύει επιθέσεις σε ξένες επιχειρήσεις και οργανισμούς στο through any browser.

Researchers from the University of Toronto, the International Computer Science Institute, the University of Berkeley, and Princeton University, have confirmed the suspicion of too many security researchers: China holds hostage web traffic across the country and neutralizes websites criticism of the authoritarian regime.ddos Great Firewall

Typically, the links to its web servers περνάνε μέσω των συνοριακών δρομολογητών (routers) του κράτους, οι οποίοι μπορούν και πραγματοποιούν έγχυση κακόβουλου JavaScript in the web pages that are loaded. This malicious code causes victims' browsers to silently send multiple requests (DDoS) to selected targets.

So the websites that interest the world end up not working, since they accept a classic Denial of Service attack. In this way, the Chinese government ensures that no one in the world can access it.

Such an attack began last month on the Californian GitHub.com service, which hosts two projects that bypass China's Great Firewall censorship mechanisms.

This aggressive firewall has been named Great ) από τους ερευνητές, και συνήθως λειτουργεί με hijacks στις αιτήσεις από το δίκτυο διαφήμισης Baidu της Κίνας. Όποιος επισκέπτεται μια ιστοσελίδα που σερβίρει τις διαφημίσεις του Baidu, θα μπορούσε να καταλήξει άθελά του να βομβαρδίζει ένα ξένο site που δεν αρέσει στις κινέζικες αρχές.

"In the attack on GitHub and GreatFire.org, the Great Cannon intercepted traffic sent to Baidu infrastructure servers commonly used for analytics, social, or advertising scripts," the researchers said in a blog post.

The researchers point out that Great Cannon and Great Firewall are structured in a very similar way, reports theRegister. They look like downloading traffic from the internet, and how the applications are coming or gone from the country, but also how they are analyzed before any republication or redirection of traffic.

Great Cannon Diagram Great Firewall
Diagram explaining how Great Cannon works. Credit: CitizenLab.org
(Click to enlarge)

Unlike the Great Firewall, however, Great Cannon works with a much closer focus by watching traffic in only a few specific sites (websites) before injecting the malicious JavaScript code to carry out the distributed denial attack attack.

Researchers believe that behind it Great Cannon the Chinese government is hiding. They note that the Great Cannon but also the Great Firewall are located in facilities operated by state-owned ISPs.

"The development of the Great Cannon is a major change in tactics, and it has very visible consequences," they wrote.

Researchers point out that the Great Cannon really bears a striking resemblance to another web-injection platform - the QUANTUM tool of NSA and GCHQ which has been used in the past to attack Telco and other websites.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).