Live data from Hacker News

The Great Cannon has been deployed again

cybersecurity.att.com

231–240 of 470 posts

Re: The Great Cannon has been deployed again

#231

Earlier quoted context omitted.

I don't know who to attribute this to but I've heard a saying: "Countries that trade with each other don't make war with each other." As we isolate countries and disrupt trade we definitely are increasing the risk of conflict.

At best, that has held in limited places and times since WWII. At worst, it was an affirmation repeated, as with most affirmations, in the hopes that the repetition would make it true, which it doesn't, and for the usual reason, that it generally wasn't.

So presumably you have evidence of most countries trading with each other while going to war with each other?

Re: The Great Cannon has been deployed again

#232

Earlier quoted context omitted.

The EU was founded with the explicit goal that increasing trade between European countries would prevent war. It's impossible to prove causality, but Europe has never seen longer and more widespread peace than the last 70 years.

Europeans tend to credit the EU/EEC for the peace, but as an American, I find that totally implausible. The peace was because Europe was divided into two vassal regions and the actual superpowers decided not to go to war because of MAD. Now that the Cold War is over, we've already had a series of wars in the Balkans and various wars in the Russian periphery. True, France and Germany have taken a break from fighting e…

MAD and the cold war prevented war between countries on either side of the iron curtain, sure.

But then you go on to claim that war among countries on the Western side was prevented by memories of war and not the EEC, without any reasoning as to why. I don't buy it. The first World War was already terrible, yet these countries were at each others' throats only a few decades later.

Re: The Great Cannon has been deployed again

#233
post #210
post #194

Earlier quoted context omitted.

It’s coming from a Baidu domain which is one of the biggest sites in the world. That might be a bit difficult...

If you're negligent in securing your site and it gets infected, your site should be blocked. You shouldn't be able say "well it's technically not us, it's the CCP!" whilst not doing anything about it. As for badiu being a major site, that can be resolved by browser vendors displaying a special page explaining to its users of the situation.

Isn't this the firewall itself rewriting request responses that happen to be from http://baidu.com? How is Baidu infected in this case, and what can they do to prevent this on their aside aside from strict HTTPS upgrades?

Re: The Great Cannon has been deployed again

#234

Browsers really have to be a lot more skeptical about the code they run. Running code should not be able to randomly attack any IP address on the internet. Code from non-TLS pages should not be able to run at all. Perhaps that should also apply to code loaded from 3rd party sites. Connecting to a web page should not be consent to allow the operators of that web page to make my computer/phone do whatever they want on…

You do know you’re suggesting that sites not be able to load assets from other sites right?

Re: The Great Cannon has been deployed again

#235

Earlier quoted context omitted.

Don't forget that the power behind the CCP's lies and violence is economic clout, both abroad and domestically.

Yes, absolutely. The economic clout gives them the confidence and means. That needs to be dealt with. Declaw!

How do you "deal" with another country developing economically?

Re: The Great Cannon has been deployed again

#237

> It is unlikely these sites will be seriously impacted. Partly due to LIHKG sitting behind an anti-DDoS service, and partly due to some bugs in the malicious Javascript code that we won’t discuss here. If I get the attack scenario right, valid user IPs from behind the great firewall are driving traffic to the webservers, and so what are some examples of anti-DDoS mitigations that are effective in filtering out the a…

Probably whatever Cloudflare uses, like JavaScript challenges.

Re: The Great Cannon has been deployed again

#238

Earlier quoted context omitted.

According to the article, the attacks are currently ineffective for a number of reasons, one being their js code is bugged. Imagine Gavrillo Princip's gun was prone to jamming consistently.

I’m wondering if there are actual bugs in their code or if AT&T is just saying that to make them spend time looking for something that isn’t there.

That's almost too clever for AT&T

Re: The Great Cannon has been deployed again

#239
post #89

Can/shouldn't the rest of the world create a Greater firewall to block the traffic from China? Let China enjoy it's solitude and we'll enjoy our openness.

Yeah except we will effectively be cutting off _all_ outside information from the Cinese citizens, who already have to face incredible amounts of censorship. Cut them off completely, and we will never find out about all the human rights violations taking place in their country, and their government will be able to brainwash its citizens even more easily.

[deleted]

Re: The Great Cannon has been deployed again

#240
post #107

Earlier quoted context omitted.

The Chinese government has the root certificates for every Chinese certificate authority. It can MITM traffic for any citizen, even over HTTPS.

What makes this attack powerful is not that sites within China can be shut down (the government can already do that) but that sites outside of China can be tricked into DDOSing other sites outside of China. Which is why this attack only works over HTTP.

Right, but the traffic is coming from users in China is past the point that HTTPS would help. The requests are already in flight from people in China who've been served malicious JavaScript.
Post reply on HN