Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
justDankin
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
29 ms
·
1.
▲
Integration-testing microservices with virtual clusters
(blog.cult.fit)
1 points
by
justDankin
5y ago
|
0 comments
2.
▲
Email alerts for Covid vaccination availability in India
(cowinalert.com)
1 points
by
justDankin
5y ago
|
0 comments
3.
▲
Unblur the page – Firefox addon to unblur Scribd pages
(addons.mozilla.org)
4 points
by
justDankin
6y ago
|
0 comments
4.
▲
Microsoft Windows 1.01 simulation in JavaScript
(pcjs.org)
2 points
by
justDankin
6y ago
|
0 comments
5.
▲
by
justDankin
6y ago
I work as a researcher at the The Centre for Internet and Society (CIS), where we've been actively studying internet censorship in India over the last year. We've built CensorWatch, an android app which crowdsources measurements o
6.
▲
CensorWatch – Help understand internet censorship in India
(play.google.com)
1 points
by
justDankin
6y ago
|
1 comments
7.
▲
by
justDankin
6y ago
We released a subset of the data along with the paper (~5K hostnames), can be accessed at https://github.com/kush789/How-India-Censors-The-Web-Data The app uses a more updated list (roughly 10K hostnames)
8.
▲
by
justDankin
6y ago
Unfortunately we don't have the expertise or bandwidth to make that :/
9.
▲
by
justDankin
6y ago
I'm one of the authors of the paper in the post, we're trying to extend this work by crowdsourcing censorship measurements from different vantage points in India. We've compiled these tests into an android app, please conside
10.
▲
by
justDankin
6y ago
Ah yes, my bad. I meant to say ESNI Read https://gfw.report/blog/gfw_esni_blocking/en/ some time back, recalled it incorrectly
11.
▲
by
justDankin
6y ago
You never know. Could be a mistake where they were trying to block a certain path due to some search result of copyright infringement, but ended up banning the domain itself. One can only guess. Reddit and Github have previously been tempor
12.
▲
by
justDankin
6y ago
Well, they could block TLS1.3 entirely (which would force hosts to drop down to 1.2 for connections) GFC does this, I really hope it doesn't happen here
13.
▲
by
justDankin
6y ago
Haha yeah, I've been procrastinating for the last 5 years now
14.
▲
by
justDankin
6y ago
Yes! That's a great observation However, the reason I went for probing the entire path is because the TTL itself can be spoofed
15.
▲
by
justDankin
6y ago
Yeah there was a huge outcry about it on Twitter some time back. P.S. From the screenshot, it looks like you're trying to connect to [http]://duck.., hence shifting to https works. This also hints towards a mixture of plain o
16.
▲
by
justDankin
6y ago
Yes, that was the case
17.
▲
by
justDankin
6y ago
I haven't been able to test that yet, neither am aware of any research which answers that question. IMO the only way to do that would be to either (i) block the IP (high collateral blocking) or (ii) block TLS 1.3 itself (GFC does this)
18.
▲
by
justDankin
6y ago
Using the TTL, we figured out that the censor kicks in at the kth hop. This kth box belonged to Airtel. If a box was censoring after Airtel, we would have received a clean response (ICMP timeout) at hop k as well. Of course, the TTL itself
19.
▲
Identifying Airtel middleboxes that censor HTTPS traffic
(iamkush.me)
395 points
by
justDankin
6y ago
|
124 comments
20.
▲
by
justDankin
6y ago
Thanks for running it! We are in the data collection stage at this moment, will definitely be publishing our findings and releasing the data publicly. P.S. Our previous paper talks about censorship in India, albeit the data is from just one
21.
▲
by
justDankin
6y ago
I'm new to HN(3 months, low karma). Maybe that's the reason? Not sure what would be the correct way to "fix" this Thanks for vouching!
22.
▲
by
justDankin
6y ago
You can delete it after running. Each run on an (ISP, state) combination gives a new test point. Thanks!
23.
▲
by
justDankin
6y ago
DoH just by itself won't help unfortunately, since it just fetches the DNS (btw, only Airtel, ACT, BSNL, and MTNL bother with DNS censorship). ISPs have been looking at the cleartext hostname in the TLS handshake to block these connect
24.
▲
by
justDankin
6y ago
TLS1.3 + ESNI is a robust solution, Firefox has the option of enabling it. Cloudflare has a great page which allows to check this https://www.cloudflare.com/en-gb/ssl/encrypted-sni/
25.
▲
by
justDankin
6y ago
Pretty much yes, unless ISPs start blocking IPs as well. We haven't seen this in India (at least yet)
26.
▲
by
justDankin
6y ago
I'm one of the authors of the post, we're trying to extend this work by crowdsourcing censorship measurements from different vantage points in India. We've compiled these tests into an android app, please consider running it
27.
▲
by
justDankin
6y ago
A question I have as a fresh graduate in the industry. For a company like Amazon, wouldn't a huge chunk of tech companies be competitors? Does the non compete span the entire product range of Amazon's services, or just the team&#x