On mySimon: Bacon Soap
BNET Business Network:
BNET
TechRepublic
ZDNet

September 29th, 2009

Hacker ships tool to circumvent China's Green Dam filter

Posted by Ryan Naraine @ 5:22 am

Categories: Anti Virus, Arbitrary Code Execution, Browsers, Denial of Service (DoS), Digital rights management, Exploit code, Locally Running Web Servers, Microsoft, Patch Watch, Pen testing, Phishing, Research, Responsible disclosure

Tags: Researcher, Hacker, Tool, Productivity, Government, Security, Ryan Naraine

A security researcher at the University of Michigan has released a tool that help Chinese computers users disable the censorship functionality of the controversial Green Dam Youth Software.

The Dam Burst utility, created by researcher Jon Oberheide, works by by injecting code into a running application and removing the Green Dam hooks that enable it to monitor and block user activity. This effectively restores the running application to its original uncensored state, Oberheide explained.

Here’s the skinny from the Dam Burst documentation:

Unlike other tools that disable or uninstall the Green Dam software, Dam Burst does not require administrative privileges. Since Dam Burst can be run as an unprivileged user to disable the Green Dam censorware in currently running applications, it is very effective in situations where the user is restricted from obtaining administrator privileges and may wish to avoid censorship (eg. public/internet cafe computers that the user may not own).

As a pleasant side effect, disabling the Green Dam components within a running process actually increases the security of the end host as the vulnerable code paths within the Green Dam software are no longer exploitable by an attacker.

The Chinese government originally mandated that Green Dam be shipped on all new PCs but this pre-installation has been delayed.

A remote code execution vulnerability was discovered on Green Dam a short time after it was released for download.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 13 Talkback(s)
RE: Hacker ships tool to circumvent China's Green Dam filter
Actually, Green Dam met a lot of complaint at China at the first beginning. So the government has stepped back to make a compromise. As a result, Green Dam is not installed widely. And it's free to uninstall it. So there is not necessity to release software to "hack" it.

Richard at sbin.cn... (Read the rest)
Posted by: hi2005 Posted on: 09/30/09 You are currently: a Guest | | Terms of Use
So any bets on how long before the U of M's IT system is attacked...  IT_Guy_z | 09/29/09
Oh Come On, Get Real! haha grin  i2fun@... | 09/29/09
Was thinking the exact same thing.  Keeping Current | 09/29/09
nobody saw that coming, did they?  ca1ic0cat | 09/29/09
Ironic, but...  RealGem | 09/29/09
Don't Underestimate the Nut Jobs  MichP | 09/29/09
U of M Hacker is a White Hat  Dr_Zinj | 09/29/09
800 lb gorilla ...  nottheusual1 | 09/29/09
That's Ridiculous!  i2fun@... | 09/29/09
Not purely capitalist  jrhue@... | 09/30/09
censorship in the UK  The Management consultant | 09/29/09
RE: Hacker ships tool to circumvent China's Green Dam filter  Hamishk | 09/30/09
RE: Hacker ships tool to circumvent China's Green Dam filter  hi2005 | 09/30/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here