CNNIC封杀自己对根证书被撤销的声明

Analyzer是GreatFire的第一个项目,在2011年上线后,它一如以往的为大家提供测试服务直至今日。现在,我们做了一个新的项目叫做"Blocky",欢迎大家试用这个全新的版本!如果您对此有任何意见和建议,请发送邮件到support@greatfire.org

谷歌于2015年4月1日宣布,他们将不再承认CNNIC根和EV证书颁发机构(CAs)。

在第二天,Mozilla也发表博文称:CNNIC给其他公司发行不受约束的中间证书是“令人震惊的做法”,而Mozilla的产品将不再信任由CNNIC根颁发的任何证书。 Mozilla还发表了关于他们的更详细的报告

在谷歌和Mozilla于2015年3月23日曝光了几个谷歌域名使用了未经批准的数字证书之后,CNNIC并未发表任何声明。CNNIC身为证书颁发机构,却一直在实施中国的网络审查。CNNIC不仅曾是,现在也是,并且将来还是会继续实施中国的互联网审查。

不出意外,上述关于4月1日和2日的新闻在中国的社交媒体和传统媒体上被封杀了。

下面是关于这些公告的微博截图。

请注意,在第一篇关于谷歌全面撤销CNNIC的根证书的截图中,下方有三个按钮,而在第二个截图中却有四个按钮,很明显能看出第一篇微博的转发功能消失了,可见中国当局正在如何防止负面信息蔓延上变得越来越有创意!最后这篇微博的命运和往常一样,被当局完全删除了。

即便在传统媒体网站上也有一些详细介绍了CNNIC对此“毫不知情”的报道,也已经被封杀。

网易的报道:“Chrome和Mozilla撤销了CNNIC CA”在发布后2小时之内就被删除。网易是中国最大的互联网服务提供商之一。

URL:http://tech.163.com/15/0403/08/AM8VPOLJ000915BF.html

新浪的报道:“CNNIC认为谷歌的决定是不可理解和不可接受的”被删除。新浪网是中国最大的门户网站之一。

URL: http://tech.sina.com.cn/i/2015-04-02/doc-ichmifpy5387951.shtml

搜狐的报道:“CNNIC谴责谷歌”已被删除。搜狐在全网Alexa排名第44。

URL: http://mt.sohu.com/20150402/n410717100.shtml

开源中国的报道:“谷歌撤销CNNIC和EV根CA”被删除。开源中国是中国最大的开源社区。

URL: http://www.oschina.net/news/61141/maintaining-digital-certificate-security

财经网的报道:“谷歌撤销了CNNIC CA;,CNNIC认为这个决定无法理解“被删除。财经网是一个独立的媒体,涵盖社会,政治和经济问题。

URL: http://tech.caijing.com.cn/20150402/3854320.shtml

caijing.png

 

事实上,几乎所有关于CNNIC的负面报道在中国都被封杀了。这里有上周关于CNNIC CA中谷歌和Mozilla被大规模封杀的报道。

CNNIC发表了一个声明说:“CNNIC对谷歌公司做出的决定表示难以理解和接受,并敦促谷歌公司充分考虑和保障用户权益”。

我们同样可以说,CNNIC和中国网信办(CAC)对谷歌(和Facebook和Twitter,还有更多的网站)做出的决定对中国互联网用户来说是难以理解和接受的。谷歌充分考虑和保障了用户权益—撤销CNNIC是对世界各地用户隐私和安全的一个很大的进步。

CNNIC实施(并试图掩盖)互联网审查,制作恶意软件,并且在安全方面一塌糊涂。中国网信办,它管理着CNNIC,发动了多次恶意的危险的攻击,危及用户的敏感信息,劫持用户执行DDoS攻击。很多精通技术的用户再多年前就把CNNIC从可信证书颁发机构移除了。

我们欢迎谷歌和Mozilla从全球吊销CNNIC的决定。同时我们希望苹果和微软能够效仿谷歌和Mozilla的先见之明,立即撤销CNNIC来保护他们的用户。

FAQ

你觉得微软和苹果会跟风么?

我们不指望苹果能在当下站出来做些事情。苹果向来顺从中国当局的要求,我们估计他们并没有这种觉悟。微软已经采取了重要措施来反击中国当局危险的行为,我们希望他们将继续保持。

 

如果微软和苹果不作为,你会建议人们只使用Chrome和Firefox来浏览么?

 

是的。

 

这是什么意思?CNNIC将继续颁发证书么?

也许吧。至少现在 Internet Explorer和Safari浏览器,以及其他中国的浏览器仍然信任CNNIC CA.

 

谷歌和Mozilla会承认任何新的证书么?

 

不会。

 

如果谷歌,Mozilla,微软和苹果都撤销CNNIC了证书,这是否意味着中国将不能再搞MITM攻击了?

以前所有的大规模MITM攻击都使用自签名证书。 GFW可以继续使用MITM使用自签名CA攻击网站。

 

CNNIC需要多长时间才能找回到这些公司的信任?

谷歌和Mozilla已经要求CNNIC实现证书的透明性。如果CNNIC能够通过,任何人都可以使用CNNIC实时颁发的证书。因此,即使我们可能不信任CNNIC,如果他们实现了证书的透明,我们也不反对。

 

评论

更多博客文章

订阅 email
显示 博客 | Google+ | Twitter | 全部 的消息. 使用 RSS 订阅我们的博客。

星期三, 6月 04, 2025

即时观众项目突破中国防火墙,纪念天安门大屠杀

GreatFire与“六四記憶‧人權博物館”联合宣布,正式启动全新“即时观众”(Instant Audience)项目——一个可扩展的工具,旨在将未被审查的内容传送至高度封锁的信息环境中。

 

“即时观众”项目将在本月展开,以纪念天安门大屠杀36周年,重点推广虚拟博物馆(https://8964museum.com)中的历史资源。

 

借助创新的镜像网站和先进的AI优化页面,该行动成功绕过中国严厉的互联网审查制度,确保数十万用户能够接触到通常被政府删除的重要历史信息和叙述。

 

“在天安门大屠杀36周年之际,‘即时观众’项目旨在揭示1989年天安门抗议的真相,直接挑战官方对历史事实的抹除。”GreatFire联合创始人兼项目负责人查理·史密斯(Charlie Smith)表示。

 

 

此次行动重点推广“六四記憶‧人權博物館”的内容。该虚拟博物馆是一个独特的线上平台,保存了1989年及其后关键的记忆与见证。博物馆由知名记者与作家长平(Chang Ping)策展,记录了中国争取民主与人权的历程,确保反抗的叙述得以延续与传播。

 

长平表示:“守护记忆、重建有关1989年民主运动的论述至关重要。像‘即时观众’这样的合作项目,帮助我们突破审查壁垒,确保我们的历史记忆得以延续。”他补充道:“能够直接向中国大陆的用户展示这些内容,尤其是那些从未听说过此事的年轻一代,是非常有意义的事情。”

 

2020年,随着《港区国安法》的快速实施,六四烛光悼念集会首次被禁止。对此,“香港市民支援爱国民主运动联合会”(HKASM)发起众筹,希望在法律压力下建立一个永久性的数字空间,以保存历史记忆,这也促成了该线上博物馆的诞生。

 

GreatFire此次采用一种不同寻常且创新的方式,不依赖广告宣传就将内容带入中国数字空间,进一步拓展了其反审查工具箱。这一策略并不依赖用户主动寻找内容,而是主动将内容“推送”给他们,在不触发审查机制的情况下将历史信息深入传播到中国网络之中。

 

长平评论道:“我认为这个项目最有意思的一点是,它的目标并不是帮助用户翻墙去寻找被审查的信息,而是让这些内容本身穿墙进入中国。”

 

史密斯进一步指出:“‘即时观众’项目就像是数字时代的‘撒传单’行动——将真相广泛而匿名地传播开来。虽然我们无法确切知道谁在阅读这些内容,但由此产生的涟漪效应可能会显著改变认知,激发更深入的思考。”

 

“即时观众”将在接下来的一个月中密集运作。行动结束后,GreatFire将酌情分享有关其覆盖范围和用户参与度的初步数据与洞察。这种基于数据的透明性将有助于评估项目效果并指导后续行动。

 

“我们的目标远不止天安门屠杀相关内容。”史密斯补充道,“我们希望借助这一渠道,将国际媒体、被审查的中国社交媒体内容和其他对公众利益至关重要的信息直接带到用户面前。这种方式与我们的FreeWeibo和FreeWeChat项目形成互补,我们也在探索将‘即时观众’部署到其他面临强大审查制度的地区。”

"Instant Audience" Breaks Through China's Great Firewall to Commemorate Tiananmen Protests and Massacre

GreatFire, in partnership with the "六四記憶‧人權博物館" (June 4th Memory and Human Rights Museum), today announced the activation of its new "Instant Audience" project, a scalable tool designed to deliver uncensored content into heavily censored environments.

 

“Instant Audience” is being deployed this month to mark the 36th anniversary of the Tiananmen protests and massacre by amplifying access to historical resources from the virtual museum (https://8964museum.com).

 

Leveraging innovative mirror websites and cutting-edge AI-optimized pages, the campaign bypasses China’s stringent internet restrictions, ensuring hundreds of thousands gain access to crucial historical information and narratives typically erased by government censorship.

 

“On the 36th anniversary of the Tiananmen massacre, 'Instant Audience' aims to illuminate the events surrounding the 1989 Tiananmen Square protests, directly challenging the official erasure of historical truths," said Charlie Smith, co-founder of GreatFire and project director.

 

 

The initiative prominently features content from the virtual "June 4th Memory and Human Rights Museum," a unique online museum preserving critical memories and testimonies from 1989 and beyond. Curated by renowned Chinese journalist and writer Chang Ping (長平), the museum documents China's struggle for democracy and human rights, ensuring that narratives of resistance remain alive and accessible.

 

星期一, 4月 28, 2025

Silenced Voices: Digital Censorship During China's Covid-19 Lockdowns

In 2022, China's strict zero-Covid policy created an unprecedented situation where digital censorship intersected with real-world crisis management. With 586 million Weibo users - nearly half of China's population - the platform became both a vital communication tool and a battlefield for information control. FreeWeibo's documentation of 111,906 deleted posts in 2022 represents only the tip of the censorship iceberg.

 

 

"The Voices of April" (四月之声) emerged as perhaps the most powerful symbol of digital resistance during Shanghai's lockdown. This viral video compilation captured the raw human experience of the crisis - from emergency calls to complaints about food shortages. When authorities attempted to scrub it from the internet, citizens responded with remarkable creativity, embedding the video in QR codes hidden within movie posters, demonstrating how technological savvy could circumvent traditional censorship methods.

 

Source: FreeWeibo https://freeweibo.com/weibo/4756664018016915

 

The censored posts from Shanghai reveal a devastating pattern of secondary effects from the lockdown:

 

星期一, 11月 25, 2024

China’s New Effort to Achieve Cyber Sovereignty

How Real-Name Registration policies create an “ideological firewall” that chills dissent by eliminating user anonymity and selectively restricting transnational access to Chinese social media apps.

星期四, 8月 10, 2023

1.4 million people used FreeBrowser to circumvent the Great Firewall of Turkmenistan

Since 2021, the authorities in Turkmenistan have taken exceptional measures to crack down on the use of circumvention tools. Citizens have been forced to swear on the Koran that they will not use a VPN. Circumvention tool websites have been systematically blocked. Arbitrary searches of mobile devices have also taken place and have even targeted school children and teachers.

The government has also blocked servers hosting VPNs which led to “near complete” internet shutdowns on several occasions in 2022. Current reports indicate that 66 hosting providers, 19 social networks and messaging platforms, and 10 leading content delivery networks (CDNs), are blocked in the country. The government presumably is unconcerned about the negative economic impact that such shutdowns can cause.

星期五, 3月 18, 2022

Well-intentioned decisions have just made it easier for Putin to control the Russian Internet

This article is in large part inspired by a recent article from Meduza (in Russian).

Since the beginning of the war in Ukraine, Russian users have had problems accessing government websites and online banking clients. Browsers began to mark these sites as unsafe and drop the connection. The reason is the revocation of digital security certificates by foreign certificate authorities (either as a direct consequence of sanctions or as an independent, good will move); without them, browsers do not trust sites and “protect” their users from them.

However, these actions, caused - or at least triggered by - a desire to punish Russia for their gruesome actions in Ukraine, will have long-lasting consequences for Russian netizens.

Digital certificates are needed to confirm that the site the user wants to visit is not fraudulent. The certificates contain encryption keys to establish a secure connection between the site and the user. It is very easy to understand whether a page on the Internet is protected by a certificate. One need just look at the address bar of the browser. If the address begins with the https:// prefix, and there is a lock symbol next to the address, the page is protected. By clicking on this lock, you can see the status of the connection, the name of the Certification Authority (CA) that issued the certificate, and its validity period.

There are several dozen commercial and non-commercial organizations in the world that have digital root certificates, but 3/4 of all certificates are issued by only five of the largest companies. Four of them are registered in the USA and one is registered in Belgium.

使用 RSS 订阅我们的博客。

评论

http://bit.ly/2jBwDGh < Raees Full Movie

Download caller name announcer from callernameannouncer.uniqsofts.com to read all incoming notifications.

页面

添加新评论

Filtered HTML

  • 自动将网址与电子邮件地址转变为链接。
  • 允许的HTML标签:<a> <em> <strong> <cite> <blockquote> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • 自动断行和分段。

Plain text

  • 不允许HTML标记。
  • 自动将网址与电子邮件地址转变为链接。
  • 自动断行和分段。
By submitting this form, you accept the Mollom privacy policy.