Post ANIbIZdVCZP9tS0FCy by smoothie@poa.st
(DIR) More posts by smoothie@poa.st
(DIR) Post #ANIailHmPYwZbClY8W by Kinochet@poa.st
2022-09-06T20:37:22.203395Z
36 likes, 29 repeats
BREAKING: Troons are now trying to force hack KiwiFarms accounts with weak passwords and KF's captcha provider dropped them making the process much easier.
(DIR) Post #ANIaoP9NciBkgVWmdU by CenturianFrend@poa.st
2022-09-06T20:38:23.129870Z
4 likes, 0 repeats
@Kinochet glowies are activated
(DIR) Post #ANIawULQCAVR6w0ySe by RabbiChaimNosenberg@poa.st
2022-09-06T20:38:05.638983Z
4 likes, 0 repeats
@Kinochet Pathetic. Lucas will still not be a woman.Keep calm and sneed on.
(DIR) Post #ANIawmuTAbEigqYDaa by stachu1@poa.st
2022-09-06T20:38:29.979975Z
7 likes, 0 repeats
@Kinochet This is illegal but troons are above the law
(DIR) Post #ANIb0I4ZlNG4D1wqy8 by Joe_Chihuahua@poa.st
2022-09-06T20:40:00.718233Z
3 likes, 0 repeats
@Kinochet I don't expect them to snag too many accounts tbh. These fuckwits don't seem to comprehend a password more complex than penis123
(DIR) Post #ANIbCMgMS1vnypNaiG by ThorndykeSpecial@poa.st
2022-09-06T20:39:50.689971Z
4 likes, 0 repeats
@Kinochet These people are absolutely despicable human beings.
(DIR) Post #ANIbEWb0YzGnJ1uCyO by Kinochet@poa.st
2022-09-06T20:43:06.593100Z
4 likes, 0 repeats
@Joe_Chihuahua They only needed one fed poast to make Cloudflare grovel.
(DIR) Post #ANIbGdtIPajiVgTAAK by XtraVision@poa.st
2022-09-06T20:41:38.993871Z
1 likes, 0 repeats
@Kinochet christ wtf is the endgame for these people ?
(DIR) Post #ANIbGeO8YvPG3KtnEm by sunshinetadpole@poa.st
2022-09-06T20:43:29.584525Z
0 likes, 0 repeats
@XtraVision @Kinochet They don't have one, only perpetual seethe, when kf is in the grou d they will turn arround and devour each other
(DIR) Post #ANIbIZdVCZP9tS0FCy by smoothie@poa.st
2022-09-06T20:39:53.281570Z
1 likes, 0 repeats
@Kinochet Exactly my thoughts. If there's a way for Josh to restrict accounts that haven't logged into KF for a while, now is the time to restrict them.
(DIR) Post #ANIbIuvI3d6xuhUFLk by Koropokkur@poa.st
2022-09-06T20:43:53.889934Z
0 likes, 0 repeats
@Kinochet @Joe_Chihuahua False Flag FedPoast, at that!
(DIR) Post #ANIbKDTQZXx7jk4dfM by Ludor@poa.st
2022-09-06T20:41:38.709895Z
2 likes, 0 repeats
@Kinochet I think he can enable Q&A verification for login when it becomes problem.He should make the question and answer captcha Tranny insults desu.
(DIR) Post #ANIbKDwqo9ULCzq8Wm by Kinochet@poa.st
2022-09-06T20:44:08.193046Z
1 likes, 0 repeats
@Ludor idk if KF has 2 factor auth capabilities but this made me remember to enable 2 factor here and on Telegram
(DIR) Post #ANIbUJAcFOraIg5SFs by sunshinetadpole@poa.st
2022-09-06T20:45:57.017089Z
0 likes, 0 repeats
@Kinochet @Ludor My password is 123 idc lol
(DIR) Post #ANIbZioaKQszHeMbZ2 by Ludor@poa.st
2022-09-06T20:46:30.102552Z
1 likes, 0 repeats
@sunshinetadpole @Kinochet F
(DIR) Post #ANIbda32rhSjFhy1mi by SpicoBlanco@poa.st
2022-09-06T20:46:42.266632Z
1 likes, 0 repeats
@Kinochet TROONOPS AFOOT
(DIR) Post #ANIbmJlkl7g3N22s52 by craigbob99@poa.st
2022-09-06T20:48:15.853143Z
0 likes, 0 repeats
@SpicoBlanco @Kinochet Oh, this is perfect. Record IPs and send to the FBI. lmfao
(DIR) Post #ANIbmLgrcGxFKRlzjk by Kinochet@poa.st
2022-09-06T20:49:12.849219Z
1 likes, 0 repeats
@craigbob99 @SpicoBlanco The FBI who is in on Keffals' plan?
(DIR) Post #ANIbmMUqcQw9pT9ue8 by craigbob99@poa.st
2022-09-06T20:49:04.978512Z
0 likes, 0 repeats
@SpicoBlanco @Kinochet Imagine what happens if even one of them didn't at least put up a VPN. Imagine the surprise pikachu when flashing lights and suits arrive.
(DIR) Post #ANIbp000ihiSvJzbLk by CapSneed@poa.st
2022-09-06T20:44:31.744425Z
2 likes, 1 repeats
@Kinochet Disgusting faggots. I dont get how people on the rest of the internet arent freaking out at the kind of power this creatures have. I wonder how long it will take for them to try and take 4chan down.
(DIR) Post #ANIcT24mPwIAwrJSN6 by craigbob99@poa.st
2022-09-06T20:50:59.301729Z
1 likes, 0 repeats
@Kinochet @SpicoBlanco If the FBI won't do anything about it then publish the logs and let nature take its course. ¯\_(ツ)_/¯
(DIR) Post #ANIcT2cSOjEMdJ4Lrc by Meister@poa.st
2022-09-06T20:56:29.012165Z
1 likes, 0 repeats
@craigbob99 @Kinochet @SpicoBlanco interpol.int/Crimes/CybercrimeThey will take care
(DIR) Post #ANIcji4s1akVqZJ84G by Shlomo@poa.st
2022-09-06T20:59:56.847619Z
3 likes, 0 repeats
@stachu1 @Kinochet depends
(DIR) Post #ANId0k4hqs4gxrLuQC by badmrfrosty@poa.st
2022-09-06T20:55:15.354389Z
3 likes, 0 repeats
@craigbob99 @SpicoBlanco @Kinochet If you honestly think one of these tranny's would get prosecuted, you haven't been paying attention.
(DIR) Post #ANIdUaZVkTxAB7zdHU by RabbiChaimNosenberg@poa.st
2022-09-06T20:42:44.219315Z
3 likes, 0 repeats
@XtraVision @Kinochet >peopleThey want to scrub all evidence of their child grooming antics off the Internet to make it easier for the globopedo leaders to do the same.
(DIR) Post #ANIdlPvuYYbU6dUkV6 by af2@bae.st
2022-09-06T21:11:28.086259Z
7 likes, 2 repeats
@Kinochet we are definitely reaping what we sowed decades ago when we outsourced most of our web logic to (((third parties)))lt.png
(DIR) Post #ANIeLpA8EQ34mKVTW4 by deadheat@shitposter.club
2022-09-06T21:18:02.472461Z
0 likes, 0 repeats
@Kinochet >hCaptcha, the tool we used to help mitigate bot traffic on the login page, received enough complaints from the mob that they dropped us@josh Would it be a good idea for the forum users to do a "counter-campaign" of some sort to tell whatever company is being targeted to not refuse service to you? At least the lies against the forum wouldn't be the only sort of communication from "the public" they would be getting. I hope you are telling in advance to whatever services you are trying to hire that your website is under a harassment campaign that they should ignore.
(DIR) Post #ANIec2TiUVrsi6Oo4W by af2@bae.st
2022-09-06T21:20:58.618990Z
2 likes, 0 repeats
@Floorscraps @Kinochet it's much easier to destroy than it is to build. The internet has been steered toward centralized authority for decades now, all attempts at moving in the other direction are met with resistance due to the fortunes various tech companies have built out of the restrictions imposed by the early tech (see NAT traversal). The seed of eden has begun to rot, you do not have much time son of man.bpd.jpg
(DIR) Post #ANIeeDMH0j8326xGiG by meowski@fluf.club
2022-09-06T21:21:15.350578Z
2 likes, 0 repeats
@deadheat @Kinochet @josh not that difficult to put a self hosted image based captcha on login, and also on linux you can create a fail2ban rule to parse logs for failed login attempts and block IPs at the firewall after n failures.
(DIR) Post #ANIf1z6zd8jNnZ8sXQ by af2@bae.st
2022-09-06T21:25:40.040877Z
6 likes, 4 repeats
@CapSneed @Kinochetimage.png
(DIR) Post #ANIf6LGZCconfRhKwi by RacistGoku42069@poa.st
2022-09-06T21:26:27.043324Z
0 likes, 0 repeats
@Kinochet I'm trying to login via tor to set a stronger password and get a "ERROR for site owner: Invalid site key" on the login reCaptcha. Dunno if you're aware or even available to look @josh
(DIR) Post #ANIfD3CiksvDfz68hs by JustNotTippy@poa.st
2022-09-06T21:27:05.084449Z
0 likes, 0 repeats
@RacistGoku42069 @Kinochet @josh hcaptcha dropped kiwifarms a few days ago, this may be the reason
(DIR) Post #ANIfD3iyowj5I2BtzM by RacistGoku42069@poa.st
2022-09-06T21:27:39.430173Z
0 likes, 0 repeats
@JustNotTippy @Kinochet @josh It's reCaptcha that's broken tho.
(DIR) Post #ANIfGeaWDfScUMwnGC by RacistGoku42069@poa.st
2022-09-06T21:28:18.704885Z
0 likes, 0 repeats
@JustNotTippy It's reCaptcha that's broken tho. They probably revoked the key too.
(DIR) Post #ANIfNYYB49tjn38y24 by OceanRedux@poa.st
2022-09-06T20:47:48.124378Z
2 likes, 1 repeats
@XtraVision @Kinochet They want you broke, homeless and dead, your kids raped and brainwashed, and they think its funny.
(DIR) Post #ANIfP0uH7h3C1eAsyG by White@poa.st
2022-09-06T21:29:49.653476Z
4 likes, 0 repeats
@af2 @CapSneed @Kinochet
(DIR) Post #ANIfRimGz0TKfTirp2 by RabbiChaimNosenberg@poa.st
2022-09-06T20:49:03.068325Z
2 likes, 0 repeats
@craigbob99 @SpicoBlanco @Kinochet What makes you think the glowies aren't complicit in this?Have you forgotten about Michael Janke?
(DIR) Post #ANIfTXVVrBCyIDkZt2 by craigbob99@poa.st
2022-09-06T20:50:10.590155Z
0 likes, 0 repeats
@RabbiChaimNosenberg @SpicoBlanco @Kinochet They still need to follow procedure. If a glowbot does it then they become an unindicted coconspirator in a case brought forward and pressured by the public. This is the kind of thing that can be FOIAd later.
(DIR) Post #ANIfTXxs9jtRiB1E5g by RabbiChaimNosenberg@poa.st
2022-09-06T20:50:56.222629Z
1 likes, 0 repeats
@craigbob99 @SpicoBlanco @Kinochet Glowies are immunized against due process.
(DIR) Post #ANIfXSI7BxsTH2LoEy by wizardducklett@poa.st
2022-09-06T21:29:47.655926Z
1 likes, 0 repeats
@af2 @CapSneed @Kinochet >reddit>AHS doing anything aside from spamming CP on subs they don't likelol. lmao even
(DIR) Post #ANIfsc04I10dSzzvGK by HyperboreanWave@poa.st
2022-09-06T21:35:09.999192Z
0 likes, 0 repeats
@Kinochet Are they using some sort of service that has millions of unique IPs that you can't simply block? If so that's pretty crazy since that stuff is expensive.
(DIR) Post #ANIg8rxmhs7PbogKeG by Mfrie@poa.st
2022-09-06T21:35:01.148812Z
1 likes, 0 repeats
@af2 @CapSneed @Kinochet They really love disturbing that hornet nest.
(DIR) Post #ANIg8vHkM6rvub2ogC by Shlomo@poa.st
2022-09-06T21:38:06.863971Z
2 likes, 1 repeats
@af2 @CapSneed @Kinochet The funny thing is that chan is a legit containment zoneWhat happens when its gone?May god help us all. Remember lads. If you see someone do racist Morse Code, it will be me :Topkek:
(DIR) Post #ANIg9L5aPwafwPYTKq by CapSneed@poa.st
2022-09-06T21:35:19.917648Z
2 likes, 0 repeats
@White @af2 @Kinochet All coincidence...
(DIR) Post #ANIgnkRVZZYM9o4qmm by CapSneed@poa.st
2022-09-06T21:44:53.191094Z
3 likes, 0 repeats
@Shlomo @af2 @Kinochet The best protection 4chan has is that its the biggest honeypot in the internet. The amount of data they get from ppl on /pol/ must be so valuable that the glowies might actualy protect them from the trannies. We might actualy have feds on our side for a change.
(DIR) Post #ANIhtD58cW7mNkmYAC by MKFenris@poa.st
2022-09-06T21:57:41.686079Z
1 likes, 0 repeats
@af2 @CapSneed @Kinochet STOP BREAKING THE CONTAINMENT YOU RETARDS!!
(DIR) Post #ANIiJ7QcGLYuNRBNbs by Ace66062@bae.st
2022-09-06T22:02:22.802796Z
2 likes, 0 repeats
@Shlomo @af2 @CapSneed @Kinochet it's even a containment zone for other fags like /lgbt/ so they're also shooting themselves in the foot in the process lmao
(DIR) Post #ANImfviYMuEaXAhmbY by Avenesus@poa.st
2022-09-06T20:43:29.244876Z
1 likes, 0 repeats
@Kinochet @Joe_Chihuahua Cuckflare
(DIR) Post #ANIml2TcfJeAwf9pqK by ClintsBurden@poa.st
2022-09-06T20:42:51.916634Z
1 likes, 0 repeats
@Kinochet Real interesting how bots have been scrapping dead accounts with weak passwords and then, magically, a dead account posts incriminating information despite the entirety of the farms users explicitly NOT doing that shit, know the consequences.Yeah, I think the time to be polite is done if it wasn't before.
(DIR) Post #ANImoQy24CkZln05Oi by Grenz@poa.st
2022-09-06T21:47:54.259459Z
0 likes, 0 repeats
@CapSneed @White @af2 @Kinochet Well these institutions all are controlled by individuals like Rupert Murdoch.
(DIR) Post #ANImqby28jxwSt2Uds by SpicoBlanco@poa.st
2022-09-06T20:50:08.533179Z
1 likes, 0 repeats
@RabbiChaimNosenberg @craigbob99 @Kinochet I don’t anything but I know Jews are involved
(DIR) Post #ANJAeRQDteSezAz7ia by hakui@tuusin.misono-ya.info
2022-09-07T03:19:57.915212Z
1 likes, 0 repeats
@meowski @deadheat @Kinochet @josh >block IPs after n failureseven f---ing wordpress has plugins that do that
(DIR) Post #ANJAzU1BRIq97QJ3Mu by birdulon@shpposter.club
2022-09-07T03:22:03.542053Z
0 likes, 0 repeats
@hakui @meowski @Kinochet @deadheat @josh I assume the underlying issue is that the login attempts are super distributed.
(DIR) Post #ANJAzUWjY04qhH4FXs by hakui@tuusin.misono-ya.info
2022-09-07T03:23:44.426685Z
1 likes, 0 repeats
@birdulon @Kinochet @deadheat @josh @meowski even forcing a 10 minute cooldown on an IP will drastically reduce the attempts you can make
(DIR) Post #ANJBYMGsEa0tEAH6zA by meowski@fluf.club
2022-09-07T03:30:02.813213Z
1 likes, 0 repeats
@hakui @Kinochet @josh @deadheat the WP plugin called wordfence is pretty advanced. it detects sql injection attempts and other stuff.obscure forum software usually doesn't have this level of community support, but fail2ban provides a method to parse logs (if you can get a machine readable entry in the system logs for failed attempts) and bans IPs at the firewall, which is a good way to save resources and bandwith because the malicious request never even makes it to the web application
(DIR) Post #ANJByjT8bkJOhfaUb2 by meowski@fluf.club
2022-09-07T03:34:48.647242Z
1 likes, 0 repeats
@birdulon @Kinochet @josh @deadheat @hakui DDoS is knid of a separate issue than malicious login attempts. yea it's possible that a person is using a huge botnet to proxy login attempts but then to do anything, every one of those machines has to act as an http proxy.with DDoS it's usually not that sophisticated. just zombie machines sending garbage requests, or simply flooding your gateway so no legit traffic gets through. it all depends though. botnets have a limited number of IP addresses so even if it's in the 10s of thousands, eventually you can catch all of them if your heuristics are good. i think we've become too reliant on services like cloudflare unfortunately and we're paying for it not. i'm just hoping this will be a push in the right direction for people to build more resiliant distributed infrastructure
(DIR) Post #ANJC63bg8Ou1Bd4iwK by yes@social.handholding.io
2022-09-07T03:36:08.636940Z
0 likes, 0 repeats
the part of a DDoS that does damage is volume. a proper DDoS takes out the datacenter the target is in. this is the issue.
(DIR) Post #ANJDd6CFct52jHV7xY by birdulon@shpposter.club
2022-09-07T03:44:18.988814Z
1 likes, 0 repeats
@meowski @Kinochet @deadheat @hakui @josh the cloudflare problem is that botnet bandwidth is always cheaper than reverse proxy bandwidth.If you plan on handling your own DDoS protection, you're going to collectively need deeper pockets than whoever wants to fuck with you, especially if you plan to just leave it up continuously instead of ramping up whenever there is an attack (because all those providers that would help you ramp up are spineless and will drop you for clout, at least if you hold controversial opinions like men aren't women).Using botnets for brute-forcing is indeed more expensive than just dumb packet flooding services but there are providers that sell the service.
(DIR) Post #ANJDd6kzXiryT1ks6q by meowski@fluf.club
2022-09-07T03:53:17.993753Z
2 likes, 1 repeats
@birdulon @Kinochet @josh @deadheat @hakui fail2ban can help (somewhat) with bandwith because it can prevent traffic from ever hitting the reverse proxy. you still have the issue of bandwith on the other side of the proxy though. i understand it's an expense. i think cloudflare has some advanced botnet detection and they can shut down the traffic before it ends up on your bill. i run a forum for a client with several thousand active users and it's a target for bots, although obvs not to the extent that KF is. the login brute forcing attempts generally come from just a handful of IPs. just my experience. on that forum i use an image based captcha instead of recaptcha etc and it's not perfect. some malicious signups sitll get through. the mods have to approve accounts after 1st posts
(DIR) Post #ANJEGZs1EZSI3QrXI8 by birdulon@shpposter.club
2022-09-07T03:59:15.712113Z
2 likes, 0 repeats
@meowski @Kinochet @deadheat @hakui @josh Yeah dumb captcha will always beat out no captcha when it comes to stopping the bleeding. Everyone left DDoS protection to big players because it's like an insurance scheme, you need a lot of resources when a bad event happens and it's totally worthless 99% of the time. And Cloudflare was nice to everyone with a free tier and the 1.1.1.1 DNS to act like a good guy.
(DIR) Post #ANKFqltkHoXwtZS7Qe by beardedcolossus@poa.st
2022-09-07T02:39:53.873509Z
1 likes, 0 repeats
@af2 @CapSneed @Kinochet If 4chan goes down where will all the feds hangout?