3 ms·
the ddos was achieved by altering the contents of one of the script on a large chinese site (was it baidu? google it). Once every user on that site loaded the t
by mil0 11y ago
the ddos was achieved by altering the contents of one of the script on a large chinese site (was it baidu? google it). Once every user on that site loaded the tampered script, it made sure to send many requests to github.
- therein 11y agoWas the large Chinese site serving traffic over HTTPS?
- dujiulun2006 11y agoSadly, they (Baidu) are not, which is why the script content was easily modified. To clear it up, I said that GFW "can" do (but has not yet done) these. But it tried to MITM some https traffic earlier with a non-trusted certificate as an experiment.
- andreyf 11y agoExperiment? This isn't science. They can ask any engineer what MITM with a non-trusted cert would do, and that's nothing.
- dujiulun2006 11y ago@andreyf: More like a social experiment. See whether people would notice (we did) and what's their reaction.