Live data from Hacker News

UC Browser for Android, Desktop Exposes 500M Users to MiTM Attacks

bleepingcomputer.com

61–62 of 62 posts

Re: UC Browser for Android, Desktop Exposes 500M Users to MiTM Attacks

#61
post #50

FWIW UC Browser is prob the most popular web browser used on Android phones in China. Every device ive seen, or owned, has it pre-loaded or is top choice for getting loaded. I have also tried it out myself, but as other posters has written already, its awful. Wondering out loud i would ask if the vulnerability to MiTM is actually required. From reports here in HN 2-3 years ago MiTM is basically what the GFW achieves,…

> and it inserts its own headers to route away from intended(and blocked) servers and to benign local China servers(such as baidu) I was never aware that GFW would route traffic to local China servers such as Baidu's, can you kindly provide some links?

Here you go - happy reading. https://www.tuicool.com/articles/6vqyqan https://www.netresec.com/?page=Blog&month=2015-03&post=China...

Re: UC Browser for Android, Desktop Exposes 500M Users to MiTM Attacks

#62
post #50

Earlier quoted context omitted.

> and it inserts its own headers to route away from intended(and blocked) servers and to benign local China servers(such as baidu) I was never aware that GFW would route traffic to local China servers such as Baidu's, can you kindly provide some links?

Here you go - happy reading. https://www.tuicool.com/articles/6vqyqan https://www.netresec.com/?page=Blog&month=2015-03&post=China...

If I'm reading them correctly, those two posts are the opposite of what the parent post tried to say.

Those DDoS were carried by directing traffic to GitHub while that traffic should go to Baidu.

Did I miss something?

Post reply on HN