this post was submitted on 09 Sep 2024
124 points (99.2% liked)

Privacy

31850 readers
116 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
 

The Malaysian Communications and Multimedia Commission (MCMC) has instructed Internet Service Providers (ISPs) to redirect Domain Name Service (DNS) traffic that uses third-party DNS servers back to their own DNS servers

MCMC has blocked a total of 24,277 websites between between 2018 to Aug 1, classified into various categories, which are online gambling (39 per cent), pornography/obscene content (31 per cent), copyright infringement (14 per cent), other harmful sites (12 per cent), prostitution (two per cent) and unlawful investments/scams (two per cent).

“It has been falsely claimed that the measure undertaken by MCMC is a draconian measure. We reiterate that Malaysia’s implementation is for the protection of vulnerable groups from harmful online content.

top 28 comments
sorted by: hot top controversial new old
[–] [email protected] 42 points 1 month ago (1 children)

Good luck blocking DNS over https. Doing so would require a lot of work. It is sad to see countries going the authoritarian route. This is just the start and it will get worse.

Maybe Tor would be better

[–] [email protected] 14 points 1 month ago

That's the next step: drop all encrypted traffic.

[–] [email protected] 42 points 1 month ago (2 children)
[–] [email protected] 16 points 1 month ago (1 children)

Canceled like Google Circles? Or canceled like Microsoft Recall?

[–] [email protected] 15 points 1 month ago (1 children)

Recall, because it's definitely coming back.

[–] [email protected] 7 points 1 month ago (1 children)
[–] [email protected] 6 points 1 month ago (1 children)

Bro keep up. They doin' it again.

[–] [email protected] 1 points 1 month ago
[–] [email protected] 37 points 2 months ago* (last edited 1 month ago) (1 children)

Doesn't DoH and DoT completely kill this?

[–] [email protected] 8 points 1 month ago

I have configured my home router to redirect all plaintext DNS traffic through it. I did it because Chromecasts try to sidestep DNS and go straight to Google.

While doing that was a couple of lines of nftables config, blocking DoH would require an actively maintained list. Even then, it would be trivial to host your own by renting some server space.

[–] [email protected] 33 points 1 month ago

Some time ago the Malaysian government denied access to Steam over one religious video game. Yes the whole platform over one game. So this looks like a case of the government being dumb as usual.

[–] [email protected] 24 points 1 month ago

It has been falsely claimed that the measure undertaken by MCMC is a draconian measure

While it may be unclear exactly what kind of Internet traffic laws Draco would've written, allowing only the major landowners to run DNS servers does seem to be in keeping with the spirit of "aiding and legitimizing the political power of the aristocracy and allowing them to consolidate their control of the land and poor" as his laws are said to have done.

[–] [email protected] 22 points 1 month ago

say what you will, but online gambling being the most blocked category is heartening to hear.

[–] [email protected] 21 points 1 month ago (2 children)

Encrypted DNS traffic => oh noed, what now?

[–] [email protected] 4 points 1 month ago

Believe it or not, straight to jail.

[–] [email protected] -4 points 1 month ago (1 children)

pretty sure dns will fail.

[–] refalo 2 points 1 month ago

Screenshotting this for the long troll

[–] [email protected] 14 points 1 month ago

https://docs.pi-hole.net/guides/dns/cloudflared/

I use pihole+cloudflared to translate all DNS requests on my LAN to DoH requests. Regular DNS isn't permitted to leave my network. (port 53 outbound is blocked)

Can't redirect/modify/monitor DoH requests like you can plain DNS.

[–] [email protected] 8 points 1 month ago (1 children)

DoH, DoT, DoQ, DNSCrypt, or just use a VPN

[–] [email protected] 8 points 1 month ago (1 children)

I use VPN, can't be bothered with DNS anymore because i know they will pull this move.

Also it's really just a mask for easier censorship, as Malaysia had tried it before, censoring site like news site that report on government scandals, news site that focus on LGBT reporting, Fanfic, Medium, and even Steam.

[–] [email protected] 6 points 1 month ago

Seems like using a VPN is basically inevitable now

[–] [email protected] 7 points 1 month ago* (last edited 1 month ago)

It has been falsely claimed that the measure undertaken by MCMC is a draconian measure. We reiterate that Malaysia’s implementation is for the protection of vulnerable groups from harmful online content.

You don't need to ban privacy reapecting DNS services to ban specific websites. It's made just for spying.