Changes

m
Reverted edits by Topkek (talk) to last revision by WPKGSysop
= Overview =
If you're being randomly redirected to sites like ours, www.norwich.edu, opensourcematters.org, www.paramiko.org, but also thousands of other sites[1], it means you are a victim of hacking the [http://wwwen.chinadailywikipedia.com.cnorg/chinawiki/2015-05/01/content_20593546.htmGreat_Firewall Great Firewall of China] (GWF).
China's massive Internet infrastructure is extremely vulnerable Starting in January 2015, the Great Firewall was slightly modified and began to overseas cyberattacks, experts warned use DNS spoofing on Thursday after a server malfunction redirected a large number of requests to wrong pages mass scale - for daysany "censored" DNS names like www. Experts said it will be difficult to trace the source of the attack because it is technically possible to carry it out by remotely controlling the serversyoutube. Page view requests to these sites were hijacked and redirected to two addresses-wpkgcom or www.org, the home page of an open source software, and ptravelerfacebook.com, a travel blog.A senior staff member overseeing Internet operations GWF sends fake DNS replies aimed at the coordination center said: "It was a rather strange case because the hackers were directly targeting the telecom carriers' serversseemingly random IP addresses outside of China[2]. It has rarely happened beforeThis results in massive disruptions for internet users in China and massive overload of random webservers outside of China.
= Why the Government of China is doing it =
Internet censorship in China is a known fact for very long. At least 18,000 websites are blocked from within mainland China, including 12 out of the Top 100 Global Websites.
DNS spoofing allows the Chinese censors to do the following:
* Block access to specific sites.
* It can cause users with specific IP addresses or locations (i.e. neighbourhood, city, district) to connect to "fake" websites and intercept their user credentials. Imagine a fake Facebook or Gmail page which looks identical to the original one, but captures login credentials. With that information, the Chinese censors can access or read your private data, emails, contacts without you noticing.
* Block SSL certificate verification queries sent by the browsers (Online Certificate Status Protocol, OCSP).
* Intercept emails.
* Intercept messages sent by internet communicators.
* Attack websites by directing mass traffic from many Chinese users.
 = Quick help for affected users = == What can I do to waste my time and do absolutely nothing to prevent the Great Firewall of China spoof my DNS requests ==
* Ask your friend why the Government of China is manipulating DNS to block access to websites, obtain your passwords and private data.
* Ask a journalist, a local newspaper, radio or TV station, why the Government of China is manipulating DNS to block access to websites, obtain your passwords and private data.
* Write on your blog how dissatisfied you are with that!
 
 
We realise that the above method won't fix your issue immediately.
The only technical way is to use a reliable DNS server located outside of China (for example, OpenDNS or Google Public DNS) *and* a reliable VPN provider. Please note that GFW can easily intercept DNS queries and fake the replies - this is why using a VPN is so important.
 
== I'm using VPN, but my internet experience is still erratic ==