丢人啊!四千万买了套盗版软件 美软件公司指控绿坝盗用其编码
世界军事网 2009-06-12 20:45:15
一家叫Solid Oak Software的美国软件公司指控绿坝软件盗用其CyberSitter软件的编码."绿坝"的图形界面完全模仿CyberSitter, 更要命的是, 公司CEO Brian Milburn称,"绿坝"的编码使用了和Cybersitter拥有完全知识产权的Dll编码完全一样的名字, 甚至还发回Solid Oak的服务器更新黑名单
China's Filtering Software Contains Pirated Code
Does 'Green Dam' steal code from CyberSitter? And what are PC OEMs to do?
by Mark Hachman
Slideshow | All Shots
The "Green Dam" filtering software that the Chinese government is reportedly requiring for all PCs sold there contains pirated code, a U.S. software manufacturer claimed Friday.
Solid Oak Software, the developer of CyberSitter, claims that the look and feel of the GUI used by Green Dam mimics the style of CyberSitter. But more damning, chief executive Brian Milburn said, was the fact that the Green Dam code uses DLLs identified with the CyberSitter name, and even makes calls back to Solid Oak's servers for updates.
Green Dam is a piece of filtering software that will reportedly be required for all PCs sold inside China. The software is already available in China, although the restrictions go into place on July 1, according to The New York Times.
According to a study by the University of Michigan, the Green Dam software works to identify images, text, and URLs and compares them to a filter, which blocks the offending work. The researchers took the publicly available software and reverse-engineered it, using standard methods. Inside, the study's author, assistant professor of electrical engineering J. Alex Halderman, found evidence that the software uses blacklists compiled by CyberSitter, dating back to 2006. An encrypted news bulletin, which dates back to 2004, was also accidentally included, Halderman wrote.
"We've been talking with them since the report came out yesterday," Halderman said in an interview.
To Halderman, the Green Dam software presents two fundamental problems: one, that the software contains vulnerabilities that would allow others to spy on the activities of those who use it; and second, that it might contain code stolen from another manufacturer. The Chinese developer of the Green Dam software appears to have accidentally created the vulnerabilities, Halderman said, rather than being a deliberate attempt to allow government agencies to monitor its citizens online.
"If we apply reasoning to this, we would conclude that the government wants a backdoor it could access, and others could not," Halderman said.
Version 3.17 of the Green Dam software appears to contain both the references to the blacklists as well as the allegedly stolen code. But the software is also being frequently updated, and the most recent patch, applied Thursday, appears to eliminate many of the blacklist references to Solid Oak, Halderman said.
"I think the bottom line is that the Chinese government is trying to roll out the software without doing their due diligence," Halderman said. "Clearly, there needs to be more time to evaluate the software both in terms of legality and in terms of security before it is rolled out on a widespread basis."
That was small consolation to Solid Oak's Milburn, who said that he had received an anonymous email sent to a broadcast address at the site Friday morning alerting the company that Green Dam was using Solid Oak code. He dismissed it, thinking it was a hoax. But another employee researched it and found that the allegation was indeed true, and that both URLs and other Solid Oak code, including DLL files, were part of Green Dam. After doing a bit of research he found the U. of Michigan paper and contacted Halderman.
"From the stuff they've posted, I'm 100 percent certain they're using our proprietary code," Milburn said, who said he wasn't certain how much of the code was reverse-engineered or simply stolen.
"We're still trying to do the detective work here," Milburn said.
At press time, Solid Oak had determined that the filtering engine or parts of it on lower level had been decompiled, using certain proprietary methods. Solid Oak doesn't ship a Chinese-language version of CyberSitter. But, Milburn said, "the words a user sees on the screen are almost identical to ours."
According to Milburn, the company spent Friday trying to determine what its options were, and what avenues it could pursue to try and prevent its code from being misused.
According to The New York Times, PC OEMs were blindsided by the Green Dam requirement, and have tried to figure out how they could add the software to their production lines just six weeks before the mandate was scheduled to take place. Dell, Hewlett-Packard, and other OEMs would be required to add the software to their PC distributions.
But would they if it contributed to software piracy? "To my mind, [shipping Green Dam] would make the PC manufacturers an accessory after the fact to software piracy," Milburn said. "I would think that the PC manufacturers wouldn't want to do that if I were in their position."
"We haven't had any opportunity to explore our options," Milburn said. "At the very minimum, I believe we would pursue some sort of injunction."
Theoretically, this could place PC OEMs wishing to do business in China with a nearly impossible choice: face the threat of an injunction or suits within the United States, risk angering the Chinese government by removing the Green Dam software, or halt PC sales into China altogether. Representatives at Hewlett-Packard and Dell were unable to be reached for comment by press time.
This isn't the first time Solid Oak's code has been stolen, Milburn said. In the late 1990s, hackers reverse-engineered CyberSitter, which prevents underage children from accessing pornography or other adult content, to allow users to access such content.
The hackers, as well as other detractors, have previously accused Solid Oak and CyberSitter of censoring the Internet. "That's why we don't want to be associated with it," Milburn said of Green Dam.
Moreover, potentially millions of Chinese PC users could hit Solid Oak's servers for updates, causing them huge fees for the additional bandwidth costs the company would be charged for.
One obvious solution to the problem would be to block access to China, a move that would also cut off a number of American schools in China, including missionary schools, that use the software as a legitimate means of preventing children from accessing the adult content. Some organizations with satellite offices in Singapore, Korea, or other South Asian countries might also be affected.
"They're using it legitimately, and we don't want to turn off the entire continent," Milburn said.
Friday, June 12, 2009
Subscribe to:
Post Comments (Atom)
Blog Archive
- 潇潇 发表于2008-11-29 00:59:00 阅读 680 次 评论 18 条 所属文章分类:...
- 犹太犹太人的象征:白色、蓝色、大卫王之星 犹太人历史始于公元前第二个一千年的头五百年,始祖是亚伯...
- 通货紧缩目录[隐藏]通货紧缩——定义通货紧缩——成因通货紧缩——影响通货紧缩——利弊通货紧缩——循环...
- 货币目录[隐藏]货币定义货币概述货币历史货币本位货币种类货币防伪现代货币货币职能中国货币货币类型货币...
- 信用货币目录[隐藏]信用货币简介信用货币的沿革和性质信用货币的特征信用货币的形态 [编辑本段]信用...
- 金融学(Finance)是以融通货币和货币资金的经济活动为研究对象的学科。 金融是货币流通和信用活...
- 金融学目录[隐藏]定义历史分支分类金融学专业 金融[编辑本段]定义 金融学(Finance)是以...
- 宇宙暴涨理论 【宇宙起源的问题】 对于宇宙的起源,我们仍然有很多问题: 第一.为什么宇宙在大尺...
- 暗物质目录[隐藏]暗物质存在的证据美国故事影片《暗物质》(2007)最被看好的暗物质候选者CCDM存...
- 黑洞目录[隐藏]【黑洞简介】【黑洞动力学】【黑洞的特殊】【黑洞的划分】【黑洞的吸积】【黑洞的毁灭】【...
- 侯瀚如:里昂双年展正面临重大自我变革的挑战 作者:侯瀚如 2009-06-26 14:16:3...
- 宋庄:当代艺术的前哨阵地还是一个大型的艺术加工厂? 作者:何桂彦 2007-12-07 14:...
- 心理的距离,还是“他者”的眼光? ——郭锐笔下的都市生存印象作者:何桂彦 2009-03-09...
- 形式主义还是现代主义? ——20世纪80年代的中国抽象绘画作者:何桂彦 2009-03-31 ...
- 中国当代艺术有自身的价值尺度吗? 作者:何桂彦 2009-04-13 09:36:12 ...
- 抽象艺术 原始股还是问题股? 作者:张颖 2008-03-22 15:27:45 来源 ...
- 前卫艺术的文化逻辑及其与抽象绘画的关系 ——兼论格林伯格早期形式主义批评中的理论问题作者:何桂彦 ...
- 谢国忠:美国坐庄做爆了 我来告诉中国怎么坐庄 谢国忠:通涨来临是拐点 ,明年更痛苦谢国忠搜狐博客 h...
- 放款热的黑暗一面 / 謝國忠2009-06-22谢国忠搜狐博客 http://xieguozhong...
- 字号:大 中 小 谢国忠:美国坐庄做爆了 我来告诉中国怎么坐庄 谢国忠:通涨来临是拐点 ,明年更痛苦...
- 谢国忠:A股折腾至少要到明年底来源:新浪财经谢国忠搜狐博客 http://xieguozhong.b...
- 字号:大 中 小 谢国忠:谁将在通胀中获益 2009年06月24日 第一财经日报 通胀只要没有让...
- 谢国忠:全球经济进入沉闷时代 随着流动性的大幅收紧,全球可能出现持久熊市。一些依靠吸引国外资本流...
- 谢国忠:全球经济进入沉闷时代 [原创 2009-06-23 19:41:21] 字号:大 ...
- 宽松投机本文见《财经》杂志 2009年第13期 出版日期2009年06月22日除非中国经济模式发生变...
- 赵云字子龙,常山真定人,三国时期蜀汉名将。追随刘备,功绩卓著,有勇有谋,善始善终,卒于公元229年,...
- 赵云字子龙,常山真定人,三国时期蜀汉名将。追随刘备,功绩卓著,有勇有谋,善始善终,卒于公元229年,...
- 刺激增长还是刺激投机?本文来源于《财经网》 2009年06月19日谢国忠:贷款激增把中国企业从真正...
- Taming the beast / 謝國忠2009-06-17The US could benef...
- Maya Kóvskaya is a Beijing-based writer, art criti...
- People in Dark Times"Even in the darkest of times ...
- 货币武器世界
- 沒有永遠對的價值觀朋友手拿一份報紙說讓我做一個小小的測驗,我欣然同意了。問題一:如果你知道有一個女人...
- 智能本 发表评论(0)编辑词条上网本(netbook)将消失,演变成为智能本(smartbook),...
- • MySpace每况愈下 默多克一世英名将毁于一旦 • Facebook美国用户量首超MySpac...
- 蓝光前景堪忧 发表评论(0)编辑词条目录• Harris调查机构:蓝光播放器及蓝光影碟前景堪忧 • ...
- 拉里·罗伯茨 发表评论(0)编辑词条拉里•罗伯茨(Larry Roberts) (born 1937...
- 约翰·凯默尼 发表评论(0)编辑词条约翰·凯默尼(John George Kemeny)(1926....
- 美国社会主义 发表评论(0)编辑词条目录• 富人的美国社会主义 • 外媒称美国大步迈向美国特色社会主...
- 杰克·基尔比 发表评论(0)编辑词条杰克·基尔比(Jack Kilby,1923年11月8日-200...
- 美国法上的“网络匿名发表言论权”述评编辑本段回目录《美国法上的“网络匿名发表言论权”述评》在所有的自...
- Ward Christensen 发表评论(0)编辑词条BBS大约诞生于1978年。沃德·克里斯滕森...
- Michael Cowpland 发表评论(0)编辑词条Michael Dr. Cowpland (...
- 约翰·巴顿 发表评论(0)编辑词条约翰·巴丁(John Bardeen)(May 23, 1908 ...
- 保罗·布林内德 发表评论(0)编辑词条 保罗·布莱内德(Paul Brainerd):桌面出版之父P...
- 肯·莱维尼 发表评论(0)编辑词条肯·莱维尼(Ken Levine)公司:2K Boston职务:《...
- 罗伯特·科蒂克 发表评论(0)编辑词条罗伯特·科蒂克(Robert Kotick),全名Robert...
- 苹果黑盒文化 发表评论(0)编辑词条目录• 纽约时报:苹果的“黑盒”文化 • 《新闻周刊》:被苹果愚...
- 德国黑客部队 发表评论(0)编辑词条目录• 德国60岁老将组建黑客部队将矛头指向中国 • 德国76人...
- 《第三浪》 发表评论(0)编辑词条目录• 基本信息 • 内容简介 • 图书目录 • 作者简介 • 背...
- 网络集体主义社会 发表评论(0)编辑词条凯文·凯利(Kevin Kelly)在2009年6月号《连线...
- GOOGLE的罪过 GOOGLE是我看到过的最有想象力的公司,想象力难得呀!随便输入一个“妈...
- Cowell's Confession: Simon Says, "I Was Wrong"Post...
- 当代艺术不讲文化 今日看到复旦某大三学生证明了计算几何领域世界级猜想,头一次见到这么凶险的...
- 冯珏 TOM美女副总裁 家世:“外公是哲学家冯友兰,母亲是著名作家宗璞,父亲是大学教授”。光辉...
- 外媒记者:中国须谨防朝鲜战争再起(1) 时间:2009-6-18 9:55:28 世界能源金融网...
- 论世界海军5强攻击核潜艇的威力发布: 2009-6-15 20:17 | 作者: 龙11猫 | ...
- 日本欲引进远程精确攻击导弹引周边国家不安发布: 2009-6-18 20:07 | 作者: 高倚天...
- 美军称十年内中国空军都无法抗衡F-22战机[图]发布: 2009-6-20 11:16 | 作者:...
- LEAP预警:美元违约,三个冲击波将毁灭全球政经体系发布: 2009-6-19 11:53 | 作...
- 依靠皮卡 印度要与中国争霸美汽车市场http://www.huanqiu.com 来源:环球时报 网...
- 朝鲜玩火,中美谁加油,谁救火? 朝鲜自今年5月份以来,接连进行地下核试验和发射短程导弹,...
- 【警惕】谈中国的处境,内忧外患的时代来了!很多人看了会觉得可笑,世界的发达国家和发展中国家都这么巴结...
- 70年来最大规模金融改革 奥巴马被批太激进http://www.huanqiu.com 来源:环球时...
- 朝鲜步入战争后对中国有何影响(1) 时间:2009-6-16 10:43:30 世界能源金融网 ...
- 中国航母的五大秘密同时曝光:把日本和美国吓傻了 秘密一、近三年网上出现“要不要航母”争议的背景折...
- 原油补涨提升大宗商品价值中枢(1) 时间:2009-5-18 16:01:10 世界能源金融网 ...
- 品牌社群的七大迷思苏珊 • 富尼耶(Susan Fournier)拉腊 • 李(Lara Lee) ...
- 美国经济危机中的“艺术赞助政策” elemy 发表于2009-05-23 21:56:01 阅读 4...
- 博物馆在金融危机中的生存战略 elemy 发表于2009-05-23 22:01:08 阅读 484...
- Do you know how to protect yourself? Get the scoop...
- Galleries for emerging artist – 6 pages worthhttp:...
- The Chinese Language, Ever EvolvingBy The Editors(...
- YouTube維基百科,自由的百科全書跳轉到: 導航, 搜尋YouTube {{{company_...
- 透析纽约苏富比亚洲艺术专场拍卖时间:2008-09-27 14:36:40 来源:Arting79...
- 纽约仅仅是等待已久的“确认键”时间:2008-09-27 14:38:13 来源:Arting79...
- 1、世界上总有一半人不理解另一半人的快乐。——《爱玛》 2、什么是权力?当一个人犯了罪,法官依法...
- 猶太觀點。父母經(值得為人父母者一看之文章)1992年,當我輾轉回到以色列的時候,13歲的老大、12...
- 威廉·莎士比亚 顶级专家认为此画主人公是莎士比亚本人莎士比亚(W. William Shakesp...
- 老聃,真吾师也!
- 莎士比亚全集(1-8增订本)(精)放在你的blog里!译者: 朱生豪等作者: 威廉·莎士比亚ISBN...
- 莎士比亚全集(1-8增订本)(精)放在你的blog里!译者: 朱生豪等作者: 威廉·莎士比亚ISBN...
- 形而上学和形而下学都是什么意思? 悬赏分:0 - 解决时间:2006-4-15 10:40 提问者...
- 人类学究竟是什么 ——一门学科的公众形象问题 陈洁:整理 发布时间: 2007-06-19 1...
- 哈耶克简介shunz 于 2004-3-13,08:02 归类于:哲思政论 Tags:hayek ...
- 知识分子反对市场吗?2009-06-12 21:46:25 来自: malingcat (慎思明...
- Jhon Ellerman阅读(21) 评论(0) 发表时间:2007年12月26日 07:33 本...
- 很多企业不懂网络营销 上一篇 / 下一篇 2009-04-10 12:12:36 系统分类:生活 ...
- 毛泽东与孟锦云 Local Access打往中国电话卡1.3¢/分种 来源: 佚名 于 0...
- 毛泽东对习仲勋说:你比诸葛亮还厉害(图) Local Access打往中国电话卡1.3¢/分种 ...
- 养虎为患 日本令美国不敢对朝动武 军事杂谈 2009-06-10 02:49:15 ...
- 乐谈东北亚史十前195年-108年的东北亚人群和族群前文花了较长篇幅,介绍了前195年-108年东北...
- 乐谈东北亚史之前195年-108年的东北亚国际形势 【一】 2009-04-13 08:19:13 ...
- 小日本欲哭无泪 伊朗狠狠"捅了"日本一刀 世界军事网 2009-06-09 19:51:21 ...
- 中国有钱了,该还老百姓的国防债了 陆军论坛 2009-06-10 02:33:09 ...
- (图文)印总理就中国藏南领土放狠话:绝不妥协 陆军论坛 2009-06-09 21:05:43...
- (图文)美军此物一出 我军重机枪又丧失一点优势 陆军论坛 2009-06-10 20:54:0...
- 养虎为患 日本令美国不敢对朝动武 军事杂谈 2009-06-10 02:49:15 ...
- 印度向藏南地区增兵近6万 中国专家称中印可能因藏南地区擦枪走火 世界军事网 2009-06-1...
No comments:
Post a Comment