Live data from Hacker News

A report on Chinese digital surveillance and hacking of Uyghurs

volexity.com

11–14 of 14 posts

Re: A report on Chinese digital surveillance and hacking of Uyghurs

#12
post #2

The exploit itself is 22,963 bytes of code and if successful will ultimately result in the forced download of a file name loader to the /data/data/com.android.browser directory of the victim device How can a website force download a file to a device? Seems like a browser vulnerability

Please quote properly, like this:

> The exploit itself is 22,963 bytes of code and if successful will ultimately result in the forced download of a file name loader to the /data/data/com.android.browser directory of the victim device

The way you quoted is unreadable on mobile, and difficult to read on desktop (scrolling). It is meant for max 80 chars blocks of programming text.

Re: A report on Chinese digital surveillance and hacking of Uyghurs

#13
post #6

I am gonna have to call BS on this report. Everyone knows that google including gmail is blocked in China, so why would they try to get a hold of their google oauth? Additionally, I just went onto one of the mentioned websites at random, turkistantimes.com and guess what, the site is hosted in the America, in Houston! So either that Xinjiang province is not behind the great firewall, or that Xinjiang has far greater…

From the article:

> However, as the sites listed in this post are actually blocked in China, it can be seen that the Uyghur diaspora around the world are also primary targets of these digital surveillance operations. These operations can be used to track the movements of Uyghurs outside of China and spy on those they are communicating with.

Re: A report on Chinese digital surveillance and hacking of Uyghurs

#14
post #12
post #2

The exploit itself is 22,963 bytes of code and if successful will ultimately result in the forced download of a file name loader to the /data/data/com.android.browser directory of the victim device How can a website force download a file to a device? Seems like a browser vulnerability

Please quote properly, like this: > The exploit itself is 22,963 bytes of code and if successful will ultimately result in the forced download of a file name loader to the /data/data/com.android.browser directory of the victim device The way you quoted is unreadable on mobile, and difficult to read on desktop (scrolling). It is meant for max 80 chars blocks of programming text.

True but just a quick heads up, HN changed the formatting options. The right angle bracket doesn't italicize quotes like it used to and isn't mentioned in the formatting help guide now. Many new HN posters aren't familiar with the old formatting style.
Post reply on HN