Tunneling Internet traffic over FB chat
github.com
github.com
>If the average user can only access the mindless corporate money-making machines and not the real internet
They can, but it's not free, and a lot of people have no other option but to use what is free. This corporate money-making machine just provided pure value to a ton of people, there's no downside to having this additional option available.
Sure there's a lot of value in communicating with other Facebook users, but if you can't see the possible downside of having a large group of people's first and only connection being through a corporate-controlled view of the world, you're not using your imagination.
1. http://freakonomics.com/2011/02/15/what-happens-to-all-those...
So not only does it prevent competitor websites, but it stops competitive ISPs, too. It's especially bad if this coporate network is censoring information. No opportunity to even discover non-filtered information outside the info bubble. This triple whammy is the consequence for those involved or not.
This is only an intentional effort to control and shut out competition (e.g. future Facebook competitors) and has the risk of killing local ISPs as a by-product.
tl;dr It only serves Facebook. Wikipedia et al. are just thrown into the mix to make it look like a humanitarian effort.
How on earth are we going to get them innovative/affordable internet solutions if no one can compete to get there?
Find some high traffic site in China and smuggle in content via various site features such as chat, messaging, forums, etc.
The content could be obfuscated to appear benign while embedding hidden data in text, images, or binary attachments.
meek-google: https://trac.torproject.org/projects/tor/wiki/doc/meek#Googl...
meek-amazon: https://trac.torproject.org/projects/tor/wiki/doc/meek#Amazo...
Humanity needs steganography-as-a-service. But think how difficult it is to implement in a regime where all networks are monitored and even Android phones are assumed to be backdoored. Most services will re-encode data during transmission, potentially munging whatever secret happens to be embedded. And more generally, its the metadata that often de-anonymizes, not the data itself. If all the dissidents one day begin communicating via Lutheran Insult memes, its simply becomes a matter of picking one up and applying "rubber-hose" cryptanalysis to put an end to the party.
Its sucks so hard that people cant afford to get knowledge from internet. Especially considering they would benefit greatly as schoolbooks are expensive and in some countries, censored.
I believe asymetric normal connections cost about ~40USD.
A beer is about 4USD, IIRC, if that helps the comparison.
However, these tunnels are going to be relatively low-bandwidth (especially if they start throttling it) and high-latency, so the "unlimited" would in reality be "how much can you transfer continuously in a month?"
It's mentioned in the README that packets are being sent as base64. Let's say I would like to send a GET request to google.com. How does Facebook Chat serve me with google's page?
- They are using virtual network kernel device (TUN/TAP, https://github.com/matiasinsaurralde/facebook-tunnel/blob/ma... )
- encode it as base64
- communicate with the http/web facebook client https://github.com/matiasinsaurralde/facebook-tunnel/blob/ma...
Between that they do authentication things at facebook with "gumbo". And later on everything the other way round at the server side.
So if you GET google.com your traffic goes through a virtual ethernet like device. https://www.kernel.org/doc/Documentation/networking/tuntap.t...
There is no cryptography involved, they could try to use openvpn to enable this feature. https://community.openvpn.net/openvpn/wiki/BridgingAndRoutin...
Very nice hack... its just fun to do something like this.
Reminds me when I used to fiddle w/ "phreaking" when it was really easy. I didn't think about ethical implications - just got a really big thrill when I got a free call.
Also HTTPS packets should be quite safe.
Guess no embedding creative commons university pdfs in wall posts.
No, that is not the case. Instead, Facebook will pay for you to get Internet if that is Internet that only lets you access Facebook. And that is not an Internet at all. The infrastructure, the physical reality, means that if you have any connection, you can have all connections, and in these circumstances only profit hungry greedy monsters would consider effectively blacklisting every site but their own to guarantee them revenues to show to shareholders for providing network connectivity to you - or I guess it should be more appropriately called Facebook connectivity.
The only bad thing they do is call it "internet". It's not internet access. Free access to things like wikipedia is a good thing, as long as it's not taking money away from actual free internet initiatives.
Price gouging actual internet access would also be bad, but that would be someone else doing it, and I don't think it's happening here.
If Facebook wants to pay for that, and the cost is that they also get access to Facebook then my view is that is a net good.
If they wanted you to access those other sites, they'd have given you access to them.
But why would they? As-is, they have no competition. "when there's only one choice, there's only one vote!"
Please add this to your list of reasons why your wrong headed "meta"-data retention plan can not work.
Rory
> Gumbo was initially designed for a product that worked with trusted input files only. We're working to harden this and make sure that it behaves as expected even on malicious input, but for now, Gumbo should only be run on trusted input or within a sandbox.
I tried to find it in google, but the acronym is very ubiquitous.
however there's a good chance you'll cause some infrastructure problems since I'm sure there are assumptions baked in, regarding how often a user will send new messages, queuing, caching, etc. so I'm still not totally sure how I feel about this.
at the end of the day FB is just a php script. i wouldn't be surprised if you break it.
Facebook Chat isn't. It's primarily Erlang/C++.