Live data from Hacker News

The Great Cannon has been deployed again

cybersecurity.att.com

101–110 of 470 posts

Re: The Great Cannon has been deployed again

#101
DDoS attacks against business competitors are common and rarely punished in China.

Injecting ads/affiliate or whatever js in webpages, stealing social media tokens to do follower boosting business and selling optic fiber traffic dump is also common for Chinese ISPs.

Re: The Great Cannon has been deployed again

#102

Earlier quoted context omitted.

Don't forget that the power behind the CCP's lies and violence is economic clout, both abroad and domestically.

Yes, absolutely. The economic clout gives them the confidence and means. That needs to be dealt with. Declaw!

Like how the world dealt with the US after Snowden's reveals?

Re: The Great Cannon has been deployed again

#103
post #64

Earlier quoted context omitted.

[flagged]

[flagged]

But wait, we'd get millions sending their hopes and prayers and everyone in power coming on broadcast news TV to talk about how awful the Chinese genocide is.

I can tell because that's how it already went down with the Tibetans and Uhgyrs. Because the CCP has already committed a multiple of genocides including their planned mass famines in 1960 that killed tens of millions of their own citizens.

Re: The Great Cannon has been deployed again

#104

Earlier quoted context omitted.

No. "Behind the Great Firewall" is another way of saying "served from China". Perhaps -- or even most likely -- it is the government. But this is hardly a smoking gun. There are plenty of people on the mainland that hate what's going on in HK, and who are not the government.

This is not true, the traffic for the previous github incident with the great cannon was co located[0] with the great firewall (which is indisputably under the control of the chinese government). [0] https://citizenlab.ca/2015/04/chinas-great-cannon/

Colocated with the Great Firewall is an entirely different claim, and not one that ATT makes. Your citizenlab article provides a possible case for it, but that's a different discussion.

And even then, it could be some third party cache poisoning attack, etc. The citizenlab evidence would look exactly the same.

This is likely China, as I said, but let's not pretend that we know more than we do.

Re: The Great Cannon has been deployed again

#105
post #77
post #61

Earlier quoted context omitted.

This is one of the cyber attacks where the source is proven.

We all know who the attacker is here, but it's not literally "proven" to the standard of evidence that would be required in a US court. The attacker still has plausible deniability.

“Someone else who has the ability to MITM millions of users in China did it” doesn’t sound particularly plausible to me.

Re: The Great Cannon has been deployed again

#107
post #85

Earlier quoted context omitted.

This is not a good counterexample: the attacker is only able to do this because the analytics scripts are being served over HTTP. If you include the analytics on your site over HTTPS this sort of attack is not relevant.

The Chinese government has the root certificates for every Chinese certificate authority. It can MITM traffic for any citizen, even over HTTPS.

What makes this attack powerful is not that sites within China can be shut down (the government can already do that) but that sites outside of China can be tricked into DDOSing other sites outside of China. Which is why this attack only works over HTTP.

Re: The Great Cannon has been deployed again

#108
post #94
post #64

Earlier quoted context omitted.

[flagged]

[flagged]

Some food for thought: In Tibet, people regularly self-immolate themselves to show to the world how desperate the situation of Tibetan is. Imagine in what circumstances you would need to live to see people around you self-immolate. It's not just one person, and just a dozen.

Re: The Great Cannon has been deployed again

#109
post #7

So if the cannon is created using the great firewall, how does the Chinese government establish any sort of plausible argument that this isn't state-sponsored activity? Do they just not care? Some day soon a war will not be started with an assassins bullet but with a tool like this. I wonder when we start looking at them the same way?

According to the article, the attacks are currently ineffective for a number of reasons, one being their js code is bugged. Imagine Gavrillo Princip's gun was prone to jamming consistently.

Wait, didn’t that happen though? I thought the arch duke was originally supposed to be killed in a failed bombing, and the handgun was a second and happenstance scenario.

Re: The Great Cannon has been deployed again

#110
post #2

This is a good counter example for whenever you find yourself in an argument with anti-adblocker folks.

But these folks still have no answer for how free websites they consume daily (e.g. news) are to be funded, they don't pay, and don't want to see ads either. Yet they still expect these websites to exist. I use Firefox's built Enhanced Tracking Prevention, that some sites call "ad blocking" but in reality it is super easy to have ads that don't get blocked by it, just make them non-creepy.

> Yet they still expect these websites to exist.

I for one certainly don't have that expectation. I understand sites have non-zero operating costs, and/or staffing and other expenses in order to create and serve interesting content.

If someone rolls out (without using the word blockchain or any derivative) a way of doing the web equivalent of .99 per track, no middlemen/Elsevier types, just 'pay the originating site for full permanent access to this page', I'll do that in a heartbeat.

I buy paper books and sit and enjoy them thoroughly... web content transparently priced with reasonable, honest rates get at least close to that style.

Post reply on HN