China anti-censorship projects attract GitHub's largest ever DDoS attacks

Posted: March 30, 2015 at 11:42 am

Home News Security China anti-censorship projects attract GitHub's largest ever DDoS attacks GitHub has halted most of the distributed denial-of-service (DDoS) attacks it has faced from Thursday of last week.

Share

A GitHub service called Gists, which lets people post bits of code, was still affected,the site said yesterday (Sunday 29 March). On Twitter, GitHub said it continued to adapt its defenses.

The attacks appeared to focus specifically on two projects hosted on GitHub, according to a blogger who goes by the nickname of Anthr@Xon a Chinese- and English-language computer security forum.

One project mirrors the content of The New York Times for Chinese users, and the other is run by Greatfire.org, a group that monitors websites censored by the Chinese government and develops ways for Chinese users to access banned services.

China exerts strict control over Internet access through its "Great Firewall," a sophisticated ring of networking equipment and filtering software. The country blocks thousands of websites, including ones such as Facebook and Twitter and media outlets such as The Wall Street Journal, The New York Times and Bloomberg.

Anthr@X wrote that it appeared advertising and tracking code used by many Chinese websites appeared to have been modified in order to attack the GitHub pages of the two software projects.

The tracking code was written by Baidu, but it did not appear the search engine -- the largest in China -- had anything to do with it. Instead, Anthr@X wrote that some device on the border of China's inner network was hijacking HTTP connections to websites within the country.

The Baidu tracking code had been replaced with malicious JavaScript that would load the two GitHub pages every two seconds. In essence, it means the attackers had roped in regular Internet users into their attacks without them knowing.

"In other words, even people outside China are being weaponised to target things the Chinese government does not like, for example, freedom of speech," Anthr@X wrote.

Originally posted here:
China anti-censorship projects attract GitHub's largest ever DDoS attacks

Related Posts