Slashdot Mirror


Amazon Tells Signal's Creators To Stop Using Anti-Censorship Tool (theverge.com)

An anonymous reader quotes a report from The Verge: The team behind secure messaging app Signal says Amazon has threatened to kick the app off its CloudFront web service unless Signal drops the anti-censorship practice known as domain-fronting. Google recently banned the practice, which lets developers disguise web traffic to look like it's coming from a different source, allowing apps like Signal to evade country-level bans. As a result, Signal moved from Google to the Amazon-owned Souq content delivery network. But Amazon implemented its own ban on Friday. In an email that Moxie Marlinspike -- founder of Signal developer Open Whisper Systems -- posted today, Amazon orders the organization to immediately stop using domain-fronting or find another web services provider. Signal used the system to provide service in Egypt, Oman, and the United Arab Emirates (UAE), where it's officially banned. It got around filters by making traffic appear to come from a huge platform, since countries weren't willing to ban the entirety of a site like Google to shut down Signal. "The idea behind domain fronting was that to block a single site, you'd have to block the rest of the internet as well. In the end, the rest of the internet didn't like that plan," Marlinspike writes. "We are considering ideas for a more robust system, but these ecosystem changes have happened very suddenly. [...] In the meantime, the censors in these countries will have (at least temporarily) achieved their goals. Sadly, they didn't have to do anything but wait."

2 of 99 comments (clear)

  1. move to azure in the meantime by williamyf · · Score: 5, Informative

    Marlinspike writes. "We are considering ideas for a more robust system, but these ecosystem changes have happened very suddenly. [...]

    While you consider and implement these "ideas for a more robust system", move to azure to buy yourselves more time.

    AFAIK, Azure still supports domain fronting. Granted, is a little different than Google's and Amazon's (in that both the fronted domain and the final destination have to be azure hosted), but still, is better than the alternatie of having your app censored while a new solution arrives, which can take, weeks, months or even years...

    --
    *** Suerte a todos y Feliz dia!
  2. Told you... by Anonymous Coward · · Score: 2, Informative

    Nice application you have there, would be a shame if someone were to pull it offline.

    It's simple, company (Amazon, Google) are making billions in pure profit. Locals want a piece of it. Companies are paying little to no taxes.

    Said this before, it started with TPB, Wikileaks, etc. and I'm going to laugh all the way to the bank as people realize how fucked they've become by depending on these companies to the point you've outsourced everything. What exactly did you expect to happen.

    If they gave two shits about you or me, they would put as much effort into making a stink about this as they do bashing Trump.