One foot planted in “Yeehaw!” the other in “yuppie”.

My Alts:

If you see th3raid0r associated with any other instances it is NOT me and you should block and/or report them.

If an admin does not delete that user - they are complicit in bot spam and the instance de-federated.

  • 0 Posts
  • 4 Comments
Joined 3 years ago
cake
Cake day: June 11th, 2023

help-circle



  • Admin of tucson.social here - when UM signed up at tucson.social he made some crucial mistakes that made him easy to identify as a bot. Unfortunately, since this affects my security posture, I’m not keen on publicly posting what it is as he still makes the same mistakes.

    However, let me add this - there are multiple places we should be validating are accessed from the same IP in a registration flow - all to many bot farms centralize certain aspects of their operations and use the same IP every time for only certain parts of a given flow.

    I’ll also add that many admins are either stupid about site security, or actively complicit in the bot problem.