Skype falls victim to text chat bug
bbc.co.uk
bbc.co.uk
“http://:” (without the quotes) [1]
[1] http://venturebeat.com/2015/06/02/these-8-characters-crash-s...
Clearing local logs does not resolve the issue, you'll redownload the logs from the server on launch, the culprit message needs to be deleted.
My skype is now constantly crashing even though I haven't sent that in at least 10 minutes. Crashes about every three seconds.
Edit: upgraded to skype build 391 and it no longer crashes.
Their ability to do this has been known for a while - see past HN discussions:
- Https URLs posted in private Skype chats visited by Microsoft https://news.ycombinator.com/item?id=5704574
- Skype and Microsoft man-in-the-middle chats to give targeted ads https://news.ycombinator.com/item?id=7369163
People have claimed, without much evidence, that the NSA helped finance the purchase for Microsoft in exchange for making Skype easier to monitor but so far as I said nobody has solid PROOF of that, just speculation.
But I will say what Microsoft did made little logical sense. The whole point of Skype was to make running a network inexpensive and scalable, Microsoft's changes made running Skype much more expensive (and what company WANTS a product to cost more to run?).
That's the official version, anyway. You may choose to ignore reasons giving by the people who made the change, of course. The infrastructure on which Skype was built relied on most clients being PCs with decent internet connections and CPU to spare. Something that's increasingly not true in today's world.
Modern P2P designs often have measures to disable participating in aiding network routing completely for devices with limited network/processing, which effectively only leaves as much traffic/processing as messages you explicitly send/receive.
What about this piece of news from 2008? http://www.nytimes.com/2008/10/02/technology/internet/02skyp...
http://blogs.skype.com/2013/10/04/skype-architecture-update/
http://www.makeuseof.com/tag/skype-enables-synchronization-o...
Anyone who thinks the NSA can't reach MS is unaware how easy it is to turn people. The KGB turned FBI/CIA agents for years, for paltry sums. Said spies claimed their only motivation was money. The USG would be incompetent if they didn't have agents working for all sorts of companies.
Between all their resources, it's possible the NSA has setup some way to copy all Skype messages.
But I would be very surprised if Skype was knowingly sending all data to them voluntarily. MS has denied this, and it'd require a lot of people to be in on it.
Doesn't this suggest that MS were doing something funky with the URLs or had some sort of code to operate on certain URLs differently? Why would simply linkifying break the whole app?
Somehow, I think web browsers' URL parsers might be a little bit more hardened...
https://github.com/servo/rust-url/blob/1f08064eda8c2873bd64e... - has the string http://: in at several places - are you telling me that MS wouldn't be expected to run similar test data against their URL parser in Skype prior to release?