Full Disclosure mailing list archives

Fwd: All China, All The Time


From: Christian Sciberras <uuf6429 () gmail com>
Date: Wed, 13 Jan 2010 22:55:52 +0100

Reading your article especially the following:
"What was special about China in regards to Slammer?
Was it true what others have said about China being a festering
cesspool of malicious network activity?
Were the boxes just all unpatched?
Was China just being used as a launching pad for attacks sourced elsewhere?"

That reminded me on China's Green Dam Project (GDYP), for those not
familiar with the name, it was an internet/network filtering software,
a very bad one at that.
Citing reliable sources, it merged irreparably with the guest OS, it
was so badly made that a file named with a restricted (blacklisted)
word/phrase caused the filter to blow up the shell.
Not only that, it had serious security flaws, 2 of which allowed
remote execution.
To top the cake, it was imposed by the government to be used on its
citizens' computers and manufacturers had to install it on their
systems to be sold.

A writeup on the matter can be found here:
http://www.cse.umich.edu/~jhalderm/pub/gd/

Regards,
Chris.

2010/1/13 Thor (Hammer of God) <thor () hammerofgod com>:
With all the hubbub around China yet again, I would like to remind you of the utilities available at Hammer of God 
that allow one to completely block any or all traffic to or from China or any other country in the world via ISA/TMG.

As many of you know, I've been totally blocking China for years, mostly because I'm a Porcelain kind of guy.  Oh, and 
the fact that the entire country's network is a festering cesspool of scum and villainy.

Here's an article I wrote about a 1.5 years ago on the subject if it has any relevance to you.

http://www.securityfocus.com/infocus/1900/1

如果您可以看到这一点,不回答 - 我不会得到它。

t

____________________
Timothy (Thor) Mullen
thor () hammerofgod com
www.hammerofgod.com



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: