#webadmin — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #webadmin, aggregated by home.social.
-
seeing a lot of credential scraping (.env, .aws/credentials, secrets.json, .ssh, etc.) coming from google cloud ips with a "GoogleOther" user agent
can't tell if it's actually google's traffic or just malicious bots using their cloud infra and spoofing the user agent :blobfoxglare:
either way i'm blocking the ips as they roll in (the UA already gets a 403 response)
-
seeing a lot of credential scraping (.env, .aws/credentials, secrets.json, .ssh, etc.) coming from google cloud ips with a "GoogleOther" user agent
can't tell if it's actually google's traffic or just malicious bots using their cloud infra and spoofing the user agent :blobfoxglare:
either way i'm blocking the ips as they roll in (the UA already gets a 403 response)
-
got tired of bots scanning the website and just straight up blocked 20.0.0.0/8
nothing of value was lost
-
got tired of bots scanning the website and just straight up blocked 20.0.0.0/8
nothing of value was lost
-
the temptation to put a file named "backup.sql" on the server that just says "sorry we don't run mysql or wordpress"
-
the temptation to put a file named "backup.sql" on the server that just says "sorry we don't run mysql or wordpress"
-
Is it now okay to consider GoogleBot hostile and just 403 them away?
-
Is it now okay to consider GoogleBot hostile and just 403 them away?
-
Immer mehr Nutzer:innen nutzen #AdBlocker im Browser. Diese blocken auch Statistiktools wie #Matomo
Macht es da eigentlich noch Sinn, diese zu nutzen?
-
Immer mehr Nutzer:innen nutzen #AdBlocker im Browser. Diese blocken auch Statistiktools wie #Matomo
Macht es da eigentlich noch Sinn, diese zu nutzen?
-
alright here's a different one, 85.239.144.0/24 spoofing the bingbot user agent
usually i catch them spoofing the googlebot user agent
-
alright here's a different one, 85.239.144.0/24 spoofing the bingbot user agent
usually i catch them spoofing the googlebot user agent
-
Cloudflare Turnstile is garbage. If you use it, you will turn away Safari 26 users.
The troubleshooting process can get Safari users to a page where CF admits that they are requiring browsers to be fingerprintable.
FUCK THAT.
There is NOTHING online that is so critical that I will knowingly give a consistent fingerprint of my browser to Cloudflare. They are not an ethical actor. They absolutely cannot be trusted.
-
Cloudflare Turnstile is garbage. If you use it, you will turn away Safari 26 users.
The troubleshooting process can get Safari users to a page where CF admits that they are requiring browsers to be fingerprintable.
FUCK THAT.
There is NOTHING online that is so critical that I will knowingly give a consistent fingerprint of my browser to Cloudflare. They are not an ethical actor. They absolutely cannot be trusted.
-
started getting a bunch of rapid hits on the site with python user agents, that were only after pdf documents (pretty much guaranteed to be bots.) i check the ip addresses and they all trace back to cloud[.]ru (AS208677)
i just blocked the entire AS because i don't need any of that on the site
-
started getting a bunch of rapid hits on the site with python user agents, that were only after pdf documents (pretty much guaranteed to be bots.) i check the ip addresses and they all trace back to cloud[.]ru (AS208677)
i just blocked the entire AS because i don't need any of that on the site
-
How to regain access to your website with WP-CLI
https://negativepid.blog/how-to-regain-access-to-your-website-with-wp-cli/
#webAdmin #WPCLI #wordpress #websites #websiteAdministration #accessRecovery #commandLine #Cybersecurity #cyberattacks #cyberThreats #onlineSecurity #negativepid
-
How to regain access to your website with WP-CLI
https://negativepid.blog/how-to-regain-access-to-your-website-with-wp-cli/
#webAdmin #WPCLI #wordpress #websites #websiteAdministration #accessRecovery #commandLine #Cybersecurity #cyberattacks #cyberThreats #onlineSecurity #negativepid
-
How to regain access to your website with WP-CLI
https://negativepid.blog/how-to-regain-access-to-your-website-with-wp-cli/
#webAdmin #WPCLI #wordpress #websites #websiteAdministration #accessRecovery #commandLine #Cybersecurity #cyberattacks #cyberThreats #onlineSecurity #negativepid
-
How to regain access to your website with WP-CLI
https://negativepid.blog/how-to-regain-access-to-your-website-with-wp-cli/
#webAdmin #WPCLI #wordpress #websites #websiteAdministration #accessRecovery #commandLine #Cybersecurity #cyberattacks #cyberThreats #onlineSecurity #negativepid
-
EDIT: sorted...at least for now.
Gah! Any nginx gurus online 01:00-11:00UTC willing to help me with regex-based redirect rules?!
Teleconference might work best.
Familiarity with DokuWiki and farms a bonus.
Please boost!
-
EDIT: sorted...at least for now.
Gah! Any nginx gurus online 01:00-11:00UTC willing to help me with regex-based redirect rules?!
Teleconference might work best.
Familiarity with DokuWiki and farms a bonus.
Please boost!
-
Chat, please be sure to serve the Full Chain of TLS certificates or your site will fail TLS verification in some enterprise environments :aru_0130: (and you are technically off-spec).
You can check your configuration using SSL Labs: https://www.ssllabs.com/ssltest/
Or locally with the script testssl, with Linux or WSL: https://github.com/testssl/testssl.sh
#TLS #SSL #webadmin -
reCAPTCHA wird zum braven Auftragsverarbeiter: Google gibt die Datenhoheit ab
#technews #datenschutz #dsgvo #googlecloud #recaptcha #webadmin
-
reCAPTCHA wird zum braven Auftragsverarbeiter: Google gibt die Datenhoheit ab
#technews #datenschutz #dsgvo #googlecloud #recaptcha #webadmin
-
@freebliss I wouldn't be surprised if there's a bad feedback loop in which "trying it with multiple browsers" automatically looks suspicious, i.e. looking like multiple different agents from one IP. #ddos #webadmin
-
@freebliss I wouldn't be surprised if there's a bad feedback loop in which "trying it with multiple browsers" automatically looks suspicious, i.e. looking like multiple different agents from one IP. #ddos #webadmin
-
Ah, the digital era's literary masterpiece: a "403 Forbidden" error, now with a side of #nginx. 📚🚫 Didion's existential musings have clearly transcended into the realm of server permissions, where the only thing slouching is the web admin's competence. 🤦♂️🔒
https://www.saturdayeveningpost.com/2017/06/didion/ #403Forbidden #digitalliterature #webadmin #servererrors #HackerNews #ngated -
Ah, the digital era's literary masterpiece: a "403 Forbidden" error, now with a side of #nginx. 📚🚫 Didion's existential musings have clearly transcended into the realm of server permissions, where the only thing slouching is the web admin's competence. 🤦♂️🔒
https://www.saturdayeveningpost.com/2017/06/didion/ #403Forbidden #digitalliterature #webadmin #servererrors #HackerNews #ngated -
I've realized that I really don't have the patience to fight with existing static site generator config, let alone roll my own themes. My personal site is gonna roll ClassicPress because it's great at Indie Web without being directly owned by Automattic.
Here goes.
#ClassicPress #webadmin #WordPress -
doing a
grep -i '\.ru'on the site's access logs just now finds the most interesting ips to block -
doing a
grep -i '\.ru'on the site's access logs just now finds the most interesting ips to block -
*wow* qa at google is bad, i'm getting hits from google adwords express on the site with the literal strings "[CHROME_VERSION]" and "[WEBKIT_VERSION]" in the user agent
(i did confirm, it's actually originating from google's ip space)
-
*wow* qa at google is bad, i'm getting hits from google adwords express on the site with the literal strings "[CHROME_VERSION]" and "[WEBKIT_VERSION]" in the user agent
(i did confirm, it's actually originating from google's ip space)
-
I'm so so so tempted to block Microsoft at the ASN level
It's just... they have SO many IPs, and I know a lot of corpo spaces run off Microsoft...
Just a tonnnn of abuse from Microsoft hosted IPs.
-
I'm so so so tempted to block Microsoft at the ASN level
It's just... they have SO many IPs, and I know a lot of corpo spaces run off Microsoft...
Just a tonnnn of abuse from Microsoft hosted IPs.
-
-
-
is AS132203 (tencent) just entirely bots constantly scanning everything? it seems like every other time i'm blocking something it's from there
-
is AS132203 (tencent) just entirely bots constantly scanning everything? it seems like every other time i'm blocking something it's from there
-
8gb of "AAAAAAAAAAAAAAAA" compresses nicely into an 8mb gzip file using the command:
yes "AAAAAAAAAAAAAAAA" | tr -d \\n | dd bs=1024 count=8388608 | gzip -9 >8gb.gzuse this information as you will
-
8gb of "AAAAAAAAAAAAAAAA" compresses nicely into an 8mb gzip file using the command:
yes "AAAAAAAAAAAAAAAA" | tr -d \\n | dd bs=1024 count=8388608 | gzip -9 >8gb.gzuse this information as you will
-
psa: "TikTokSpider" does not obey robots.txt if you're looking for something to block today (if you haven't blocked it already)
-
psa: "TikTokSpider" does not obey robots.txt if you're looking for something to block today (if you haven't blocked it already)
-
psa: that "Thinkbot" user agent that you may have seen in your server logs does not obey robots.txt and should be blocked. rather than blocking its ip (it actually uses multiple ip addresses) as its user agent suggests, i would add a rule in your server config to give it a 403 on anything it tries to access
-
psa: that "Thinkbot" user agent that you may have seen in your server logs does not obey robots.txt and should be blocked. rather than blocking its ip (it actually uses multiple ip addresses) as its user agent suggests, i would add a rule in your server config to give it a 403 on anything it tries to access
-
in this house we don't turn off selinux because it's inconvenient, and if i catch you turning it off i will give you a talking to as i turn it back on and configure it properly while scowling profusely
-
in this house we don't turn off selinux because it's inconvenient, and if i catch you turning it off i will give you a talking to as i turn it back on and configure it properly while scowling profusely
-
<IfModule mod_rewrite.c>
RewriteEngine On
RewriteCond %{HTTP:x-firefox-ai} !^$
RewriteRule ^ - [F,L]
</IfModule>:blobfoxthinking:
-
<IfModule mod_rewrite.c>
RewriteEngine On
RewriteCond %{HTTP:x-firefox-ai} !^$
RewriteRule ^ - [F,L]
</IfModule>:blobfoxthinking:
-