lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 13 Jan 2010 22:55:52 +0100
From: Christian Sciberras <uuf6429@...il.com>
To: full-disclosure <full-disclosure@...ts.grok.org.uk>
Subject: Fwd:  All China, All The Time

Reading your article especially the following:
"What was special about China in regards to Slammer?
Was it true what others have said about China being a festering
cesspool of malicious network activity?
Were the boxes just all unpatched?
Was China just being used as a launching pad for attacks sourced elsewhere?"

That reminded me on China's Green Dam Project (GDYP), for those not
familiar with the name, it was an internet/network filtering software,
a very bad one at that.
Citing reliable sources, it merged irreparably with the guest OS, it
was so badly made that a file named with a restricted (blacklisted)
word/phrase caused the filter to blow up the shell.
Not only that, it had serious security flaws, 2 of which allowed
remote execution.
To top the cake, it was imposed by the government to be used on its
citizens' computers and manufacturers had to install it on their
systems to be sold.

A writeup on the matter can be found here:
http://www.cse.umich.edu/~jhalderm/pub/gd/

Regards,
Chris.

2010/1/13 Thor (Hammer of God) <thor@...merofgod.com>:
> With all the hubbub around China yet again, I would like to remind you of the utilities available at Hammer of God that allow one to completely block any or all traffic to or from China or any other country in the world via ISA/TMG.
>
> As many of you know, I've been totally blocking China for years, mostly because I'm a Porcelain kind of guy.  Oh, and the fact that the entire country's network is a festering cesspool of scum and villainy.
>
> Here's an article I wrote about a 1.5 years ago on the subject if it has any relevance to you.
>
> http://www.securityfocus.com/infocus/1900/1
>
> 如果您可以看到这一点,不回答 - 我不会得到它。
>
> t
>
> ____________________
> Timothy (Thor) Mullen
> thor@...merofgod.com
> www.hammerofgod.com
>
>
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ