Risk
11/9/2012
05:46 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Google Blocked In China

Google gets gagged as China goes through a leadership change.

10 Best Business Tools In Google+
10 Best Business Tools In Google+
(click image for larger view and for slideshow)
Google's online services were inaccessible in China on Friday, according to Google's Transparency Report and various media reports. News reports said Goolge services were restored to China over the weekend.

In contrast to its more confrontational past, when the company said it had been victimized by cyber attacks from China and implied government involvement, Google was not immediately able to offer an explanation. "We've checked and there's nothing wrong on our end," a company spokeswoman said in an emailed statement.

Internet service outages in China are common during times deemed to be sensitive by the ruling Communist Party. The Chinese Community Party is presently in the midst of a leadership transition in which President Hu Jintao is expected to step down in favor of Vice President Xi Jinping.

The transition has been rockier than Chinese authorities would like, occurring amid the aftermath of the downfall of Chongqing party chief Bo Xilai and his wife, Gu Kailai, who was recently found guilty of murdering a British businessman.

[ Read Apple, Foxconn Labor Promises Questioned. ]

Corruption among party officials continues to stir popular resentment in the country so authorities are quick to censor information they believe highlights the problem. Two week ago, the Chinese government blocked access to the New York Times website after the newspaper ran a story about the wealth accumulated by relatives of prime minister Wen Jiabao. When Bloomberg published a similar article about the holdings of Xi Jinping's family in June, its website in China was also blocked.

Chinese authorities have also been vexed by Tibetans, more than 60 of whom have burned themselves alive this year to protest Chinese rule.

According to GreatFire.org, a website that tracks censorship in China, 35 Google services were blocked, including Gmail, Google Search, Google Docs, Picasa, and Google Plus, to name a few.

GreatFire.org claims that various Google domains were rerouted via DNS poisoning.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Must Reads - September 25, 2014
Dark Reading's new Must Reads is a compendium of our best recent coverage of identity and access management. Learn about access control in the age of HTML5, how to improve authentication, why Active Directory is dead, and more.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2012-5485
Published: 2014-09-30
registerConfiglet.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via unspecified vectors, related to the admin interface.

CVE-2012-5486
Published: 2014-09-30
ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3 beta 1, allows remote attackers to inject arbitrary HTTP headers via a linefeed (LF) character.

CVE-2012-5487
Published: 2014-09-30
The sandbox whitelisting function (allowmodule.py) in Plone before 4.2.3 and 4.3 before beta 1 allows remote authenticated users with certain privileges to bypass the Python sandbox restriction and execute arbitrary Python code via vectors related to importing.

CVE-2012-5488
Published: 2014-09-30
python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via a crafted URL, related to createObject.

CVE-2012-5489
Published: 2014-09-30
The App.Undo.UndoSupport.get_request_var_or_attr function in Zope before 2.12.21 and 3.13.x before 2.13.11, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote authenticated users to gain access to restricted attributes via unspecified vectors.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
In our next Dark Reading Radio broadcast, we’ll take a close look at some of the latest research and practices in application security.