疑似GFW超500GB代码、数据泄露曝光


前言

2025 年 9 月 11 日星期四,中国防火长城(GFW)经历了其历史上最大规模的内部文件泄露事件。超过 500 GB 的源代码、工作日志和内部通信记录被泄露,揭示了 GFW 的研发和运作细节。

此次泄露源自 GFW 背后的一支重要技术力量:积至(海南)信息技术有限公司(Geedge Networks Ltd.) 及中国科学院信息工程研究所(简称:中科院信工所)第二研究室的处理架构组 MESA 实验室。文件显示,该公司不仅为新疆、江苏、福建等地政府提供服务,还在“一带一路”框架下向缅甸、巴基斯坦、埃塞俄比亚、哈萨克斯坦以及一个未被识别的国家输出审查与监控技术。

泄露文件列表

     7206346  mirror/filelist.txt
497103482880  mirror/repo.tar
 14811058515  geedge_docs.tar.zst
  2724387262  geedge_jira.tar.zst
 35024722703  mesalab_docs.tar.zst
 63792097732  mesalab_git.tar.zst
       71382  A HAMSON-EN.docx
       16982  A Hamson.docx
      161765  BRI.docx
       14052  CPEC.docx
     2068705  CTF-AWD.docx
       19288  Schedule.docx
       26536  TSG Solution Review Description-20230208.docx
      704281  TSG-问题.docx
       35040  chat.docx
       27242  ty-Schedule.docx
      111244  待学习整理-23年MOTC-SWG合同草本V.1-2020230320.docx
       52049  打印.docx
      418620  替票证明.docx
      260551  领导修改版-待看Reponse to Customer's Suggestions-2022110-V001--1647350669.docx

总共,这些文件的大小约为 600 GB。

其中 500 GB 在一个文件 mirror/repo.tar 中。

mesalab_git.tar.zst文件大小为 64 GB,似乎包含 Geedge/MESA 源代码库,包括 Git 提交历史记录。目前为止,所有报告均未深入研究过该源代码,因此仍有许多内容需要研究和学习。

mesalab_git.tar.zst 中的文件是Git 包。你可以像从 SSH 或 HTTPS URL 克隆一样从包中克隆。以下是示例:

以下是 mesalab_git.tar.zst 的内容列表:

根据对文件名的浏览,以下是一些我优先查看的存储库:

IPReuse/IPReuse_docs
IPReuse/vpn_access
IPReuse/vpn_install
MESA_Platform/dns
MESA_Platform/gquic
MESA_Platform/http
MESA_Platform/marsio
MESA_Platform/quic
MESA_Platform/sapp
MESA_Platform/ssl
active-defense/houyi-deploy
common_tools/tcp_burst
common_tools/tcpdump_mesa
cuiyiming/lua_sapp
cyber-narrator/cn-web
cyber-narrator/license-admin-api
docs/regulations
dongxiaoyan/gap_tsg_api
galaxy/deployment/k8s
galaxy/tsg_olap/dll-multipoint-aggregation
hezhengjie/videoportaldetection
intelligence-learning-engine/vpn-finder-plugins
liujunpeng/hiredisMESA
liuwentan/maat-rust-binding
nezha/nz-agent
solutions/tsg-scripts
stellar/dns_decoder
stellar/ftp_decoder
stellar/http_decoder
stellar/quic_decoder
stellar/ssl_decoder
stellar/stellar
tango/maat
tango/shaping-engine
tango/tfe
tsg-manual/tsg-admin-guide
tsg/tsg-deploy
tsg/tsg-doc
wangmeiqi/obfs4_meek_snowflake
wangmeiqi/obfs4_verify
zhangshuo1/domain-classification
zhijinghua/mesa-traffic-identification

下载地址

  • https://enlacehacktivista.org/geedge.torrent (BitTorrent)
  • https://files.enlacehacktivista.org/geedge/(直接 HTTPS 下载)

手机扫码阅读

索贝融媒体 /sobey-mchEditor/mch/Jzt/statistics/countJztArticleGroupByChannel2 SQL注入漏洞

利用 Windows Defender 的文件夹重定向与符号链接技术干翻它自己

评 论