Page 1 of 1

Comcast DMCA div injection

Posted: Mon Apr 25, 2016 6:17 pm
by terabit
Greets,

Comcast apparently mounts a man-in-the-middle attack against it's users when a DMCA notice is sent against their IP.
Image

Above is a screenshot of their HTTP man in the middle DIV injection.

The following ABP filter blocks this:

###comcast_content

Hope this gets added! cheers :)

--terabit

Re: Comcast DMCA div injection

Posted: Mon Apr 25, 2016 6:31 pm
by terabit
to add on this https://tools.ietf.org/html/rfc6108

Re: Comcast DMCA div injection

Posted: Mon Apr 25, 2016 6:50 pm
by smed79
@terabit submit an issue report when you see the comcast alert message rules#issuereport

Re: Comcast DMCA div injection

Posted: Mon Apr 25, 2016 7:06 pm
by WarFame
Tip: Use HTTPS Everywhere. It should prevent entities like Comcast from modifying pages that support HTTPS like Imgur. It will also prevent them from knowing what you do on those sites.

Re: Comcast DMCA div injection

Posted: Mon Apr 25, 2016 7:52 pm
by terabit
I am using HTTPSeverywhere but some sites just don't use HTTPS since they don't host what they consider "sensitive" content.

Issue report submitted: https://reports.adblockplus.org/c6dc284 ... e6a12ed546

Re: Comcast DMCA div injection

Posted: Mon Apr 25, 2016 9:21 pm
by fanboy
how many sites does it occur on?

Re: Comcast DMCA div injection

Posted: Tue Apr 26, 2016 1:53 am
by terabit
just about every site that's HTTP

httpseverywehre fixes the problem but not every site has HTTPS. they use their position as ISP to inject content into HTTP pages without user consent (this is pretty much worse than ads , this is wiretapping+malware except a very large and powerful corporation is doing it to enforce DMCA)

Re: Comcast DMCA div injection

Posted: Sun Jun 05, 2016 4:12 am
by fanboy