Child abuse image content list explained

The child abuse image content list (CAIC List) is a list of URLs and image hashes provided by the Internet Watch Foundation to its partners to enable the blocking of child pornography & criminally obscene adult content in the UK and by major international technology companies.

Launched by BT as Cleanfeed in July 2004, as of 2009 the list covers 98.6%[1] of UK internet connections. Cleanfeed was temporarily extended to block Newzbin[2] until this process was moved to ISP-specific programmes. In October 2013, the UK government announced that as part of anti-terrorist measures it is considering a similar technology to block "extremist" material[3] [4] [5]

History

Cleanfeed is a content blocking system technology implemented in the UK by BT, Britain's largest Internet provider. It was created in 2003 and went live in June 2004.[6] BT spokesman Jon Carter described Cleanfeed's function as "to block access to illegal Web sites that are listed by the Internet Watch Foundation", and described it as essentially a server hosting a filter that checked requested URLs for Web sites on the IWF list, and returning an error message of "Web site not found" for positive matches.[7] [8] [9] Cleanfeed is a silent content filtering system, which means that Internet users cannot ascertain whether they are being regulated by Cleanfeed, facing connection failures, or the page really does not exist.

By the beginning of 2006, Cleanfeed was used by 80% of Internet service providers. By the middle of 2006, the government reported that 90% of domestic broadband connections were either currently blocking or had plans to by the end of the year. Home Office minister Alan Campbell pledged that all ISPs would block access to child abuse websites by the end of 2007[10] and UK Home Office Minister Vernon Coaker instructed all UK ISPs to implement a version of Cleanfeed by the end of 2007 on a voluntary basis, or face legal compulsion.[11] However, no legislation was ever introduced and ISPs are still free to join on a voluntary basis.[12] Despite the target for 100% coverage being set for the end of 2007, by the middle of 2008 the proportion of consumer broadband connections that were covered was only 95%. In February 2009, the Government said that it is looking at ways to cover the final 5%.[13] A report in March 2014 by the Culture, Media and Sport Committee reported 98.6%[14] of domestic broadband lines are subject to blocking arrangements.

The Internet Watch Foundation used to[15] also take reports about racial hatred from the public and IT professionals until 2011. This content is not included in the IWF URL list supplied to the online industry for blocking purposes.

CAIC targets only alleged child sexual abuse content identified by the Internet Watch Foundation. In June 2011 the Motion Picture Association began court proceedings in an attempt to force BT to use Cleanfeed to block access to NewzBin2, a site indexing downloads of copyrighted content.[16] BT was ordered to block access to the site in late July[2] and in a later clarification, BT was given two weeks to implement the block starting at the end of October.[17] The case (Twentieth Century Fox Film Corp & Ors v British Telecommunications Plc [2011])[18] only compels BT's ISP division to implement the block on NewzBin, it remains outside of remit of the IWF URL list which is strictly limited to blocking sites which host child sexual abuse content.[19]

In August 2015 the IWF announced it was to begin sharing the list with tech giants Facebook, Google, Twitter and Yahoo to block contents being distributed through their networks.

Technical implementation

The confidential url hash blacklist contains URLs of pages (not whole sites) to be blocked. A less confidential list of sites potentially containing blocked pages is available to ISPs. Routers on the edge redirect traffic to these sites to special HTTP proxy servers which perform the actual filtering by matching HTTP requests to URLs on the blacklist. Traffic that does not match the specific URL is forwarded through the proxy filter.

Chapter 7 of a research paper by Richard Clayton[20] provides an overview of the Cleanfeed technology.

The routers at an ISP that has implemented Cleanfeed technology check traffic destination against a list of IP addresses of sites that are suspected of hosting filtered traffic. If there is no match, the traffic is directed to the content host:

If the site IP address is found in the list of suspected sources of unwanted material, the traffic is routed to proxies (highlighted as IWF proxies)[21] that check the specific page against a confidential blacklist of pages.

This two-pass implementation reduces the load on the proxy servers by not requiring that all traffic pass through them.

Technical detection

Due to the filtering mechanism, to detect whether a site is being filtered via an individual ISP's connection, one must first capture the filtering servers IPs by running traceroute for the first few hops to some websites known to be blocked[20] [22]

In the example below, the IP addresses in bold are the ISP filtering servers.Filtered Site $ tracert imgur.com Tracing route to imgur.com [103.31.7.33] over a maximum of 30 hops: 1 <1 ms 1 ms 1 ms BTHUB3 [192.168.1.254] 2 35 ms 39 ms 54 ms 217.32.146.175 3 57 ms 63 ms 58 ms 217.32.146.222 4 47 ms 102 ms 73 ms 217.32.147.226 5 60 ms 55 ms 51 ms 217.41.168.245 6 62 ms 35 ms 40 ms 217.41.168.109 ...Filtered Site $ tracert wordpress.com Tracing route to wordpress.com [66.155.11.243] over a maximum of 30 hops: 1 1 ms 1 ms 1 ms BTHUB3 [192.168.1.254] 2 52 ms 67 ms 51 ms 217.32.146.175 3 33 ms 40 ms 39 ms 217.32.146.222 4 63 ms 53 ms 52 ms 217.32.147.226 5 67 ms 61 ms 57 ms 217.41.168.245 6 62 ms 79 ms 55 ms 217.41.168.109 ...Normal Site $ tracert www.google.com Tracing route to www.google.com [173.194.41.83] over a maximum of 30 hops: 1 1 ms 1 ms 1 ms BTHUB3 [192.168.1.254] 2 52 ms 39 ms 58 ms 217.32.146.175 3 59 ms 53 ms 63 ms 217.32.146.238 4 54 ms 66 ms 67 ms 217.32.147.218 5 126 ms 53 ms 169 ms 217.41.168.245 6 57 ms 62 ms 52 ms 217.41.168.109

Demon Internet were the only ISP to notify users routinely when content is blocked and offer the option to intercept and serve filtered content over https connections.[23]

Filtering comparison

The other popular way of blocking content is DNS manipulation. Compared to this, Cleanfeed has the following properties:

Related surveys of opinion

The first UK survey of Internet regulation was carried out in 2007 and 2008.[25] [26] 90.21% of the participants in the limited scale survey were unaware of the existence of CleanFeed; of those who had heard about it, only 14.81% percent understood it completely. 11.1% learned about CleanFeed from UK government statements, and 22.2 percent from BT's statements. 60.87% did not trust BT, and 65.22% did not trust IWF to be responsible for a silent content blocking system in the UK.

A majority of the participants preferred an open content blocking system targeting child abuse content, rather than no Internet regulation. More specifically, 65.2% would prefer to see a message stating that a given site was blocked, 57.3% would like to have access to a form for unblocking a given site, and 68.5% would prefer more frequent briefing by BT, IWF and the UK.

Criticism

One of the criticisms of Cleanfeed is its lack of transparency. This is a consequence of the list of blocked sites being secret. There are no safeguards to stop sites unrelated to child pornography being added to the list as a result of policy changes. It thus has a potential for the censorship of materials outside of its original remit. Indeed, the Home Office in the UK has previously indicated that it has considered requiring ISPs to block access to articles on the web deemed to be "glorifying terrorism", within the meaning of the new Terrorism Act 2006, saying: "our legislation as drafted provides the flexibility to accommodate a change in Government policy should the need ever arise."[27] This has led some to describe Cleanfeed as the most perfectly invisible censorship mechanism ever invented and to liken its powers of censorship to those employed currently by China.[28] However, at present no legislation is in place, and the implementation of the IWF URL list is still a voluntary agreement between ISPs and the IWF.

The measures have also been criticised for being inadequate as they only block accidental viewing and does not prevent content delivered through encrypted systems, file sharing, email and other systems.[29]

Another criticism is that Newzbin claims to have successfully circumvented Cleanfeed following a court order forcing BT to censor the website over copyright infringement claims.[30] [31] This poses the question as to whether websites hosting child pornography could adopt similar measures to allow their users access to blocked content.

Due to the proxy server implementation of the Cleanfeed system, websites that filter users by IP address such as wikis and file lockers will be significantly broken through the system,[32] even if only a tiny proportion of its content is blocked.

Finally, information has surfaced that suggests that Cleanfeed could potentially be manipulated to provide a blacklist of blocked websites.[33] [34] This is problematic as it could allow the dissemination of child pornography, rather than the prevention of access to it. Again this has led some to question Cleanfeed as a successful system for blocking illegal internet content.

See also

External links

Notes and References

  1. McIntyre. TJ. Child Abuse images and Cleanfeeds: Assessing Internet Blocking Systems. Research Handbook on Governance of the Internet. 5. 26 April 2014. 20 January 2022. https://web.archive.org/web/20220120000234/https://www.academia.edu/771272. dead.
  2. News: BT ordered to block links to Newzbin 2 website. BBC News. 28 July 2011.
  3. News: UK.gov's web filtering mission creep . The Register . 29 November 2013.
  4. News: Hansard Oct 23rd 2013 - question 10. Hansard . 13 October 2013.
  5. News: Ministers will order ISPs to block terrorist and extremist websites. The Guardian. 27 November 2013.
  6. News: BT puts block on child porn sites . The Guardian . London . Martin . Bright . 6 June 2004 . 30 April 2010.
  7. "How net providers stop child porn", BBC News, 7 February 2006. Retrieved 29 May 2006.
  8. News: Arnfield . Robin . BT Technology Blocks Online Pornography . NewsFactor Network . 20 July 2004 . dead. https://web.archive.org/web/20081211074650/http://www.newsfactor.com/story.xhtml?story_title=BT-Technology-Blocks-Online-Pornography&story_id=25940&full_skip=1 . 11 December 2008 . dmy-all .
  9. "IWF/BT Project Cleanfeed ", Internet Watch Foundation. Retrieved 29 May 2006.
  10. Web site: Home Office clueless: The transcript. Computer Shopper. 17 March 2009. dead. https://web.archive.org/web/20090321090600/http://blog.computershopper.co.uk/2009/03/home-office-interview-transcript.html. 21 March 2009. dmy-all.
  11. Web site: Government sets deadline for universal network-level content blocking. linx.net. 12 January 2016. https://web.archive.org/web/20160123121019/https://publicaffairs.linx.net/news/?p=497. 23 January 2016. dead.
  12. Internet Watch Foundation - "URL List". Accessed 12 November 2013
  13. News: Online child abuse images warning . BBC News . 23 February 2009 . 5 May 2010.
  14. Web site: Online safety - Page 16. parliament.uk. 19 March 2014.
  15. Web site: Incitement to racial hatred removed from IWF's remit. iwf.org.uk. 12 January 2016. https://web.archive.org/web/20111113005624/http://www.iwf.org.uk/about-iwf/news/post/302-incitement-to-racial-hatred-removed-from-iwfs-remit. 13 November 2011. dead.
  16. News: Film-makers seek injunction to block pirate site . BBC News . 28 June 2011 . 28 June 2011 .
  17. News: UK ISP BT Given 14 Days To Block Newzbin2 . TorrentFreak . 26 October 2011 . 31 October 2011 .
  18. 2012
  19. Internet Watch Foundation. IWF.org.uk. Blocking Good Practice . Accessed 12 November 2013
  20. Web site: Anonymity and traceability in cyberspace. Clayton. Richard. November 2005. Richard Clayton. Richard Clayton. 10 December 2008.
  21. Web site: IWF censors Wikipedia, chaos ensues. Hogge. Becky. Open Rights Group. 2008-12-10. https://web.archive.org/web/20090419072708/http://www.openrightsgroup.org/2008/12/08/iwf-censors-wikipedia-chaos-ensues/. 19 April 2009. dead.
  22. Web site: Check The IWF list. lightning-bolt.net.
  23. Web site: McIntyre. T J. Child Abuse images and Cleanfeeds: Assessing Internet Blocking Systems. 6 May 2014. 20 January 2022. https://web.archive.org/web/20220120000234/https://www.academia.edu/771272. dead.
  24. Web site: Security and Other Technical Concerns Raised by the DNS Filtering Requirements in the PROTECT IP Bill . 2011 . Steve Crocker, Shinkuro, Inc. . David Dagon, Georgia Tech . Dan Kaminsky, DKH . Danny McPherson, Verisign, Inc. . Paul Vixie . Internet Systems Consortium .
  25. Web site: Internet regulation: The need for more transparent Internet filtering systems and improved measurement of public opinion on Internet filtering - Koumartzis - First Monday. firstmonday.org. 12 January 2016. https://web.archive.org/web/20121021063016/http://firstmonday.org/htbin/cgiwrap/bin/ojs/index.php/fm/article/view/3266/3071. 21 October 2012. dead.
  26. Book: BT's Cleanfeed and Online Censorship in UK, N Koumartzis, London College of Communication (University of the Arts London)
  27. "Government sets deadline for universal network-level content blocking ", LINX, 29 May 2006. Retrieved 29 May 2006.
  28. Web site: From child porn to China, in one Cleanfeed. Professor Lilian Edwards, University of Southampton. 26 April 2014. https://web.archive.org/web/20130516015335/http://www.law.ed.ac.uk/ahrc/script-ed/vol3-3/editorial.asp. 16 May 2013. dead.
  29. "Restricting All but the Predators", Dark Reading, 14 June 2006. URL accessed on 24 June 2006.
  30. News: Newzbin claims BT block 'not working'. BBC News. 3 November 2011 . 12 January 2016.
  31. Web site: Banned Piracy Website Expands BT Circumvention Tool to Include The Pirate Bay. Mark Jackson. ispreview.co.uk. 12 January 2016.
  32. Web site: Six UK ISP's block a Wikipedia article locking out Wikipedia edits. bitterwallet.com. 12 January 2016. 2 December 2013. https://web.archive.org/web/20131202223718/http://www.bitterwallet.com/six-uk-isps-block-a-wikipedia-article-locking-out-wikipedia-edits/4194. dead.
  33. http://www.cl.cam.ac.uk/~rnc1/cleanfeed.pdf Failures in a Hybrid Content Blocking System
  34. News: Back door to the black list. SA Mathieson. the Guardian. 26 May 2005 . 12 January 2016.