Accidental DDoS? How China's Censorship Machine Can Cause Unintended Web Blackouts
On 20 January, Craig Hockenberry saw a graph that made him utter the words: Holy shit. The data he was looking at showed a massive spike in traffic hitting the email server of his software and graphic design company, Iconfactory. Because the data was coming in at such volume and at high speed, peaking at at 52 Mbps thanks tomillions of requests, the email server was rendered useless.
After the initial shock, an investigation revealed the massive influx was caused by a significant number of requests that were supposed to go to other sites, from Facebook to YouTube, but ended up being routed to Iconfactory. And those requests were all coming from China, home to the Great Firewall censorship machine that decides which pieces of the web the countrys citizens can visit.
Hockenberry wasnt the only one to have suffered as a result. Dynamic Internet Technology, a company that helps people view blocked content, was another victim (though the firms everyday operations might lead one to believe otherwise), the Wall Street Journalreported. According to aReddit post, in one case, Chinese mobile games were making requests for completely unrelated IP addresses, which are basically seeing a DDoS from Chinese mobile devices.
It would appear the Chinese governments use of the Domain Name System (DNS), which converts website nameslike Forbes.com to a numerical IP address so PCs and serverscan talk with one another, had gone awry. China carries out much of its censorship by tweaking DNS to stop people accessing non-approved websites. In security parlance, this is called DNS poisoning ashackers often use it to direct people to malicious sites. But throughout this month, something has gone wrong with Chinas own poisoning efforts. Instead of timing out users connections to banned sites, the DNS system took citizens to seemingly random websites, like those named above. Those online services that werent ready for what would amount to distributed denial of service (DDoS) attacks flatlined.
Heres whats concerning: if Chinas censorship machine either screws up, or is hacked, it could redirect hundreds of millions of connections to online services and subsequently wipe out bits of the web. Hockenberry said the national government could exploit this control over the DNS system to use every machine in China for a massive DDoS attack on innocent sites. As my colleague Sean quipped, They have weaponized their entire population.
But Roland Dobbins, senior analyst at anti-DDoS vendor Arbor Networks, told me it would be unwise to carry out such an attack. For starters, China would start to clog up some of its internet pipes out to the wider world. And such a brazen move would hardly bestealthy. Theres no deniability, Dobbins added. China has never admitted to carrying out any kind of online attack, despite claims it is one of the more active offensive players.
More worrisome, and possibly more likely, would be an attack following a compromise of Chinas censorship machine, Dobbins added. There were some indications this monthsblackouts were actually caused not by a glitch in the Great Firewall, but by an attack on the Domain Name System (DNS) in China, which converts URLs like Forbes.com to a numerical IP address so machines can talk with one another. DNSPod, a DNS provider, said it had suffered an attack, but little more has been forthcoming.
So opaque are Chinas technical efforts to block large chunks of the internet, its impossible to say how vulnerable the Great Firewall is, Dobbins noted. Sometimes the censorship systems themselves arent very secure. Is it possible that someone could find an exploit to do some DNS poisoning to use it as a botnet? We dont really know because those systems are not open to evaluation.
If the outages last week were caused by errors in updating the Great Firewall, it points to another possibility: human mistakes causing serious disruption to the internet. Any administrator of any large DNS service can make a mistake and it can cause significant collateral damage, Dobbins said. According to reports, the Firewall is currently getting a refresh to block VPNs, which offer a way around censorship by routing traffic through different servers and encrypting connections.
The power to cause epic attacks by using DNS poisoning is not unique to China, however. Any country or body with control over the DNS system could abuse their position to launch huge DDoS attacks. But they couldnt take advantage of as many connections as China, which invests vast sums on its web control mechanisms.
See more here:
Accidental DDoS? How China's Censorship Machine Can Cause Unintended Web Blackouts
- The TAKE IT DOWN Act: A Flawed Attempt to Protect Victims That Will Lead to Censorship - EFF - February 12th, 2025 [February 12th, 2025]
- Throttling of YouTube Shows That Russia Is Getting Better at Online Censorship - Carnegie Endowment for International Peace - February 12th, 2025 [February 12th, 2025]
- Trump, GOP pressure Big Tech to split from NewsGuard, squelch censorship of online news - Washington Times - February 12th, 2025 [February 12th, 2025]
- White House Revoked Access to AP for Refusing to Comply With Censorship - Truthout - February 12th, 2025 [February 12th, 2025]
- Institutional Neutrality Is Censorship by Another Name - The Chronicle of Higher Education - February 12th, 2025 [February 12th, 2025]
- Free Press Action's Craig Aaron Testifies About the Dangerous Censorship Threat Posed by Donald Trump, Elon Musk and Brendan Carr - Free Press - February 12th, 2025 [February 12th, 2025]
- Online Censorship Isnt New Neither Are Efforts to Evade It - Center for Democracy and Technology - February 12th, 2025 [February 12th, 2025]
- Cyr Speaks to CLAMS Members About Right to Read Bill - The Provincetown Independent - February 12th, 2025 [February 12th, 2025]
- VOA Mandarin: Chinas DeepSeek banned by several countries out of censorship fear - Voice of America - February 12th, 2025 [February 12th, 2025]
- Librarians Find Themselves on the Frontline Battling Against Censorship - FindLaw - February 12th, 2025 [February 12th, 2025]
- Experts see hallmarks of government censorship in FCCs latest investigation of radio station - The Independent - February 12th, 2025 [February 12th, 2025]
- Q&A: UNC Press warns of increased silencing of scholars amid 'heightened political tensions' - WUNC - February 12th, 2025 [February 12th, 2025]
- Why This Artist Staged a Satirical Romance With Mark Zuckerberg - artnet News - February 12th, 2025 [February 12th, 2025]
- Pakistan: instead of revising legislation that censors dissent, Sharifs government strengthened it - Reporters sans frontires - February 12th, 2025 [February 12th, 2025]
- Ekushey Boi Mela: At the crossroads of freedom and censorship - The Daily Star - February 12th, 2025 [February 12th, 2025]
- House Judiciary Committee Hearing on The Censorship-Industrial Complex - NTD - February 12th, 2025 [February 12th, 2025]
- ACLU sues on behalf of librarian fired after opposing book censorship effort - The Guardian US - February 5th, 2025 [February 5th, 2025]
- How the 'Deep State' Uses Censorship and Disinformation to Surreptitiously Further its Goals - The Wire - February 5th, 2025 [February 5th, 2025]
- This Northeastern researcher has been tracking activists exposing what is happening inside Communist China - Northeastern University - February 5th, 2025 [February 5th, 2025]
- OPINION | The federal TikTok ban is a prime example of internet censorship - The Daily Athenaeum - thedaonline - February 5th, 2025 [February 5th, 2025]
- COMMENTARY: How to resist Trumps order imposing classroom censorship and discrimination - EdSource - February 5th, 2025 [February 5th, 2025]
- Letter to the Editor: Reader Questions if 'Jazz Hands' at Council Meetings is a Form of Censorship - MyBurbank.com - February 5th, 2025 [February 5th, 2025]
- DeepSeek is giving the world a window into Chinese censorship and information control - CNN - February 5th, 2025 [February 5th, 2025]
- Some scientific and medical journal editors vow to resist new government censorship. Will they stand strong? - substack.com - February 5th, 2025 [February 5th, 2025]
- NCAC Alarmed by Mayoral Order to Censor an Art Billboard Associated With Montgomery Museum of Fine Arts - Blogging Censorship - February 5th, 2025 [February 5th, 2025]
- Trump is ordering a sweeping censorship of science, starting with climate and health - ZME Science - February 5th, 2025 [February 5th, 2025]
- Badass Ravi Kumar: Cast, release date, censorship, advance booking and more about Himesh Reshammiya's actioner - MSN - February 5th, 2025 [February 5th, 2025]
- Controversy over censorship of anti-Trump Fence message - The Tartan - February 5th, 2025 [February 5th, 2025]
- DeepSeek AI raises security and censorship concerns: what businesses need to know - Lexology - February 5th, 2025 [February 5th, 2025]
- Inside Russia: Economic struggles and the shadow of censorship - MSN - February 5th, 2025 [February 5th, 2025]
- DeepSeek is giving the world a window into Chinese censorship and information control - CNN International - February 1st, 2025 [February 1st, 2025]
- Executive Order to the State Department Sideswipes Freedom Tools, Threatens Censorship Resistance, Privacy, and Anonymity of Millions - EFF - February 1st, 2025 [February 1st, 2025]
- ADF presses five major universities for records on government censorship - ADF Media - February 1st, 2025 [February 1st, 2025]
- Why We Should Fear Trump Silencing Science and What We Can Do About It - U.S. News & World Report - February 1st, 2025 [February 1st, 2025]
- Researchers are terrified of Trumps freeze on science. The rest of us should be, too. - Vox.com - February 1st, 2025 [February 1st, 2025]
- Conservative law firm launches probe into five major universities for alleged 'censorship regime' - Fox News - February 1st, 2025 [February 1st, 2025]
- Some of the most ingenious ways people are bypassing DeepSeeks censorship: Using emojis might work - AS USA - February 1st, 2025 [February 1st, 2025]
- Comment | Censorship in the US is rearing its ugly head againbut the art world isn't taking it lying down - Art Newspaper - February 1st, 2025 [February 1st, 2025]
- Seizure of Sally Mann photographs in Texas revives old debates about obscenity, free expression - Free Speech Center - February 1st, 2025 [February 1st, 2025]
- Chinese films dodging censors have no place to go. Can they crack into Taiwan? - Los Angeles Times - February 1st, 2025 [February 1st, 2025]
- Meta back in the tent after agreeing to settle Trumps $25M censorship lawsuit - SiliconANGLE News - February 1st, 2025 [February 1st, 2025]
- We tried out DeepSeek. It worked well, until we asked it about Tiananmen Square and Taiwan - The Guardian - February 1st, 2025 [February 1st, 2025]
- Library Director Rachel Winner speaks on the role of libraries, Censorship. - Sullivan Daily Times - February 1st, 2025 [February 1st, 2025]
- Day 3: USC Conference on Censorship in the Sciences - Why Evolution Is True - February 1st, 2025 [February 1st, 2025]
- DeepSeek Starts to Explain Tiananmen Square Massacre, Then Gets Caught by Built-In Censorship System - Futurism - February 1st, 2025 [February 1st, 2025]
- A White House order claims to end 'censorship.' What does that mean? - NPR - January 27th, 2025 [January 27th, 2025]
- DeepSeek is the hottest new AI chatbotbut it comes with Chinese censorship built in - Fortune - January 27th, 2025 [January 27th, 2025]
- Opinion | Conservatives Have No Interest in Censorship - The Wall Street Journal - January 27th, 2025 [January 27th, 2025]
- Donald Trump and Elon Musk appear in Ben & Jerry's censorship lawsuit against Unilever, its parent company. Here's why. - Business Insider - January 27th, 2025 [January 27th, 2025]
- Disinformation experts blast Trumps executive order on government censorship as direct assault on reality - CNN - January 27th, 2025 [January 27th, 2025]
- Ben & Jerry's is accusing its parent company of censorship because it allegedly blocked a post that mentioned Donald Trump - Fortune - January 27th, 2025 [January 27th, 2025]
- 'This is censorship': Trump freeze on communications forces medical journal to pull HHS authors' article - STAT - January 27th, 2025 [January 27th, 2025]
- Analysis | Trumps anti-censorship order has a blind spot - The Washington Post - January 27th, 2025 [January 27th, 2025]
- The TikTok Ban: Foreign Influence Through Censorship, Propaganda, and Espionage - Independent Women's Forum - January 27th, 2025 [January 27th, 2025]
- DeepSeek: This is what live censorship looks like in the Chinese AI chatbot - Trending Topics SEE - January 27th, 2025 [January 27th, 2025]
- Why President Donald Trump signed an executive order banning government 'censorship' - USA TODAY - January 27th, 2025 [January 27th, 2025]
- Government Officials Who Engaged In Censorship Must Be Held Accountable - The Daily Wire - January 27th, 2025 [January 27th, 2025]
- Statement from the Kids Right to Read Project on the U.S. Department of Educations Dismissal of Book Bans as a "Hoax" - Blogging Censorship - January 27th, 2025 [January 27th, 2025]
- JD Vance says big tech firms still very much on notice for censoring conservatives: Face the consequences - New York Post - January 27th, 2025 [January 27th, 2025]
- Trump talks free speech while moving to muzzle those he disagrees with - Los Angeles Times - January 27th, 2025 [January 27th, 2025]
- Trump targets government censorship with new executive order - WXLV - January 27th, 2025 [January 27th, 2025]
- What's behind a White House order ending 'federal censorship' - KUOW News and Information - January 27th, 2025 [January 27th, 2025]
- Trump Takes Aim at Social Media 'Censorship' With Executive Order - CNET - January 27th, 2025 [January 27th, 2025]
- EU doubles down on social media censorship that will not be confined to Europe following concerns about Musks free speech policy on X - ADF... - January 27th, 2025 [January 27th, 2025]
- Is TikTok Turning Into a Censorship Machine? Users Witness New Restrictions After Trump's Order - Benzinga - January 27th, 2025 [January 27th, 2025]
- FIRE to University of Texas at Dallas: Stop censoring the student press - Foundation for Individual Rights and Expression - January 27th, 2025 [January 27th, 2025]
- Students concerned over censorship, career instability in wake of TikTok ban - Daily Free Press - January 27th, 2025 [January 27th, 2025]
- TikTok Users Now On RedNote Are Starting To See One Very Big Problem With the App - Mic - January 27th, 2025 [January 27th, 2025]
- Tweeting the truth: Should social media companies have the right to censor content? - berkeleyhighjacket.com - January 27th, 2025 [January 27th, 2025]
- Kiehl's won't beat around the bush following ad censorship - Marketing Interactive - January 27th, 2025 [January 27th, 2025]
- Press freedom in Turkey declined further in 2024 amid censorship, arrests and intimidation: report - Stockholm Center for Freedom - January 27th, 2025 [January 27th, 2025]
- America Is No Longer the Home of the Free Internet - The Atlantic - January 19th, 2025 [January 19th, 2025]
- Call for censorship culture to end as Unity Mitfords German diary is revealed - The Guardian - January 19th, 2025 [January 19th, 2025]
- Banning TikTok enables online censorship - Freedom of the Press Foundation - January 19th, 2025 [January 19th, 2025]
- Zuckerbergs conservative pivot fogs our understanding of censorship - Kansas Reflector - January 19th, 2025 [January 19th, 2025]
- The TikTok ban isnt about national security its censorship and government control - The Hill - January 19th, 2025 [January 19th, 2025]
- How the Trump administration threatens internet freedoms - Al Jazeera English - January 19th, 2025 [January 19th, 2025]
- Censorship or common sense? - Editor And Publisher Magazine - January 19th, 2025 [January 19th, 2025]
- TikTok refugees flock to another (heavily censored) Chinese app - The Washington Post - January 19th, 2025 [January 19th, 2025]
- Bill Burr on Adapting His Ahole Vibe, Wanting a Hostile Crowd for New Hulu Special and How a Rabbi Changed His Perspective on Censorship (EXCLUSIVE) -... - January 19th, 2025 [January 19th, 2025]