Page 1 of 1

Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 7:34 pm
by Vigilant
Thanks for getting things sorted in the fetid basement, you beloved traveling circus freaks!

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 7:38 pm
by Jans Hammer
What happened? DDoS - hmmmmm?

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 7:41 pm
by AndyTheGrump
Yeah, glad to see the forum back. Speculation elsewhere seems to be a DDOS attack from rabid Hindutvaists (Is that a word? It ought to be.) Probably wrong though...

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 7:45 pm
by Midsize Jake
I thought we'd been reasonably fair to the Hindus...? :unsure:

Anyway, this has been kind of nightmarish, I don't mind saying. I posted an explanation here - I'd prefer we also discussed the situation there too, though I guess we'll keep this thread up for a little while.

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 8:09 pm
by Poetlister
I thought the "fetid basement" was where Mr Kohs lives, and he's not running things here any more.

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 8:26 pm
by Vigilant
Poetlister wrote:
Wed Mar 11, 2020 8:09 pm
I thought the "fetid basement" was where Mr Kohs lives, and he's not running things here any more.
Thank you for your contribution, Mr HyperLiteralJokeKiller.

:picard:

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 8:36 pm
by Poetlister
It's always a pleasure to help! :B'

Incidentally, the site seems to be responding pretty slowly at present. Is that due to all the bots? (There seem to be 720 at present.)

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 8:51 pm
by Midsize Jake
Poetlister wrote:
Wed Mar 11, 2020 8:36 pm
Incidentally, the site seems to be responding pretty slowly at present. Is that due to all the bots? (There seem to be 720 at present.)
Well, that, and the fact that the board is creating new session records for them on each visit. I'll check to see how many in a little bit... Maybe I can "weed" that table more selectively from here on out, and then run it every few days as a "cron job."

So much for "semi-retirement" from the IT industry... :hrmph:

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 9:05 pm
by Midsize Jake
Also, I've just blocked a fairly large IP range from "Huawei Mobile Clouds," which will prevent lots of people using smartphones in China and Singapore from viewing the site completely. That's where most of the Chinese bots have been coming from.

I guess that tends to suggest that this isn't some sort of revenge against us specifically, since we don't really know anybody in China or Singapore who would want to do something like this - my guess is that some app-developer or something just screwed up somewhere, and they happened to be using Huawei Mobile Clouds when they were doing it.

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 9:15 pm
by Jans Hammer
Midsize Jake wrote:
Wed Mar 11, 2020 9:05 pm
I guess that tends to suggest that this isn't some sort of revenge against us specifically, since we don't really know anybody in China or Singapore who would want to do something like this
Kudpung is located in Thailand :rotfl:

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 10:53 pm
by Moral Hazard
Nice that the gang has reassembled.

Re: Aaaand, we're BACK! Ba-by!

Posted: Wed Mar 11, 2020 11:25 pm
by Midsize Jake
Midsize Jake wrote:
Wed Mar 11, 2020 9:05 pm
Also, I've just blocked a fairly large IP range from "Huawei Mobile Clouds," which will prevent lots of people using smartphones in China and Singapore from viewing the site completely. That's where most of the Chinese bots have been coming from.
Seems to have worked — our guest counts are back to normal.

I should have figured this out a lot earlier (i.e., the counts started rising a few weeks ago, it just wasn't a huge number like we saw over the weekend). So I apologize for that.

Also, this is my first range-block, so I can no longer say I've never had to impose one before. Oh well! :(

Re: Aaaand, we're BACK! Ba-by!

Posted: Thu Mar 12, 2020 9:21 am
by Poetlister
Can this site survive without all our thousands of contributors from China and Singapore? :XD Of course, if this were an attack aimed at us, anyone able to design such an attack presumably knows how to spoof an IP address.

Re: Aaaand, we're BACK! Ba-by!

Posted: Thu Mar 12, 2020 4:14 pm
by Giraffe Stapler
Poetlister wrote:
Thu Mar 12, 2020 9:21 am
Can this site survive without all our thousands of contributors from China and Singapore? :XD Of course, if this were an attack aimed at us, anyone able to design such an attack presumably knows how to spoof an IP address.
These days, I think the cool kids just outsource the denial of service attacks to someone with a botnet.

Re: Aaaand, we're BACK! Ba-by!

Posted: Thu Mar 12, 2020 7:48 pm
by Midsize Jake
Giraffe Stapler wrote:
Thu Mar 12, 2020 4:14 pm
These days, I think the cool kids just outsource the denial of service attacks to someone with a botnet.
True, and a lot of the botnets that have appeared in the last couple of years — including some that appeared almost overnight by exploiting poorly-secured Huawei routers — are IoT (Internet of Things) botnets, meaning they're running via light bulbs, smart-plugs, and programmable thermostats, among other devices. Even if those things had some sort of interface to check, 99.999% people would never bother to monitor them for unusual web activity.

Anyway, I guess my (somewhat-dubious) logic here is that the longer we go without a recurrence of all that bot activity, the more reassured we can be that this wasn't directed specifically at us. But it does look like all these IoT "internet appliances" now make it possible to quickly set up botnets with, say, 15-20,000 nodes, whereas in the past the same amount of effort might have yielded only a few dozen nodes, maybe a couple hundred at most. That's going to be a problem for everybody, at least potentially.

Re: Aaaand, we're BACK! Ba-by!

Posted: Fri Mar 13, 2020 6:41 pm
by Zoloft
Among the many reasons I have exactly 0 IoT devices in my home. This opinion is shared by many of my colleagues.

Re: Aaaand, we're BACK! Ba-by!

Posted: Fri Mar 13, 2020 6:53 pm
by Vigilant
Fucking right.

As a guy who's done pentesting and prodsec, assume all of your electronics are made.
All of them.

Re: Aaaand, we're BACK! Ba-by!

Posted: Fri Mar 13, 2020 8:58 pm
by Poetlister
Zoloft wrote:
Fri Mar 13, 2020 6:41 pm
Among the many reasons I have exactly 0 IoT devices in my home. This opinion is shared by many of my colleagues.
Same here. I see very little advantage amid all the hype, and there are clearly a few downsides.

Re: Aaaand, we're BACK! Ba-by!

Posted: Fri Mar 13, 2020 10:34 pm
by Midsize Jake
I thought about getting one of those fancy wi-fi long-distance sex toys, but I don't even want to think about what these botnet operators would do if they got control of a whole bunch of those.

Re: Aaaand, we're BACK! Ba-by!

Posted: Fri Mar 13, 2020 10:49 pm
by Vigilant
Midsize Jake wrote:
Fri Mar 13, 2020 10:34 pm
I thought about getting one of those fancy wi-fi long-distance sex toys, but I don't even want to think about what these botnet operators would do if they got control of a whole bunch of those.
wat?

Re: Aaaand, we're BACK! Ba-by!

Posted: Sat Mar 14, 2020 5:07 pm
by Poetlister
Midsize Jake wrote:
Fri Mar 13, 2020 10:34 pm
I thought about getting one of those fancy wi-fi long-distance sex toys, but I don't even want to think about what these botnet operators would do if they got control of a whole bunch of those.
Hmm, you're in danger of bewildering the innocents on the site who have no idea about sex. :rotfl: