Post AQLzDdbbnnzMlr4fbM by udon@social.076.ne.jp
 (DIR) More posts by udon@social.076.ne.jp
 (DIR) Post #AQLZBp1ZmLdqnYh5BQ by ryo@social.076.ne.jp
       2022-12-07T00:40:35.249400Z
       
       0 likes, 0 repeats
       
       @digdeeper Could you clear this shit up?I really start getting doubt in that "Block CloudFlare MitM Attack" extension.
       
 (DIR) Post #AQLZZsj3fXLjEBVMSe by digdeeper@social.076.ne.jp
       2022-12-07T00:44:00.694718Z
       
       1 likes, 0 repeats
       
       @ryo I do not control that mirror, it's hosted by an old friend. I am pretty sure he changed the headers as a joke, I don't even think onions can be CFed.
       
 (DIR) Post #AQLZqnEVLPCt7CHGyW by ryo@social.076.ne.jp
       2022-12-07T00:47:11.041055Z
       
       0 likes, 0 repeats
       
       @digdeeper Yea, I know that onions can't use Cuckflare, considering it needs you to change DNS settings, which none of the darknets rely on.By the way, which Tor and I2P mirrors are under your control?I'll update my webring accordingly, as I don't really trust 3rd party controlled ones for having them up forever (think cancel culture for example).
       
 (DIR) Post #AQLa37hJ5ECY3ld3wG by digdeeper@social.076.ne.jp
       2022-12-07T00:49:23.802056Z
       
       1 likes, 0 repeats
       
       @ryo Only Clearnet 1, Onion 1 and I2P 1 are mine.
       
 (DIR) Post #AQLa8dtsmVTHNo8w1Q by ryo@social.076.ne.jp
       2022-12-07T00:51:11.606923Z
       
       0 likes, 0 repeats
       
       @digdeeper I see, thanks.
       
 (DIR) Post #AQLb54usUhzTy3TO4W by ryo@social.076.ne.jp
       2022-12-07T01:01:42.891645Z
       
       0 likes, 0 repeats
       
       @lilianabreeder @digdeeper These motherfuckers...Which one?
       
 (DIR) Post #AQLeAAfGqjNf6dIDey by digdeeper@social.076.ne.jp
       2022-12-07T01:25:54.578195Z
       
       1 likes, 0 repeats
       
       @lilianabreeder @ryo Since we're talking about Cloudflare, can I complain about it again? 18.4% of sites MitMed worldwide (I see it went down after the Kiwifarms censorship scandal - used to be over 20% already sometime ago). Still, NONE of the big privacy sites speak about it. NONE of the security experts like Krebs and Schneier speak about it. Some praise it. It's insane, I'm beginning to think this world is cursed.
       
 (DIR) Post #AQLf0UUSNqG5eVBOBU by ryo@social.076.ne.jp
       2022-12-07T01:43:25.858674Z
       
       0 likes, 0 repeats
       
       @digdeeper @lilianabreeder Ever used a search engine before?It's very common to get result after result after result that's Cuckflared.Hell, even searx.org and meet.jit.si are Cuckflared, almost every single VPS provider is Cuckflared, almost every single alt tech platform is Cuckflared...It really makes it seem like that 18.4% is more like 95%.Especially if you consider the websoytes that aren't Cuckflared, but make use of 3rd party requests from Cuckflared CDNs, jsdelivr and fontawesome being some of the most common ones.Hell, Font Awesome is so bad, you can't even self-host their cruft, or well you can, but good luck fixing their over the top bloated minified JS and CSS (yes, both need to be fixed!) files.Meanwhile, so many websoytes on the clearnet are using Font Awesome, it's insane.Meanwhile, guess who's not Cuckflared?Big tech, banks, government websoytes, Web 1.0 nerds.So it really seems like it only exists for the plebs and controlled opposition, but not for the establishment and free thinkers.
       
 (DIR) Post #AQLzDdbbnnzMlr4fbM by udon@social.076.ne.jp
       2022-12-07T03:44:07.307583Z
       
       1 likes, 0 repeats
       
       @lilianabreeder @digdeeper @ryo What is network.http.altsvc.enabled used for?
       
 (DIR) Post #AQLzDgPfMfDbTgVfu4 by udon@social.076.ne.jp
       2022-12-07T03:54:28.694838Z
       
       0 likes, 0 repeats
       
       @lilianabreeder @digdeeper @ryo https://2019.www.torproject.org/projects/torbrowser/design/> SPDY and HTTP/2> Design Goal: SPDY and HTTP/2 connections MUST be isolated to the URL bar domain. Furthermore, all associated means that could be used for cross-domain user tracking (alt-svc headers come to mind) MUST adhere to this design principle as well.> Implementation status: SPDY and HTTP/2 are currently disabled by setting the Firefox preferences network.http.spdy.enabled, network.http.spdy.enabled.v2, network.http.spdy.enabled.v3, network.http.spdy.enabled.v3-1, network.http.spdy.enabled.http2, network.http.spdy.enabled.http2draft, network.http.altsvc.enabled, and network.http.altsvc.oe to false. But, I still don't get how it is related to Cloudflare (directly).
       
 (DIR) Post #AQMfOanilZhhKge6qm by udon@social.076.ne.jp
       2022-12-07T12:37:46.030639Z
       
       0 likes, 0 repeats
       
       @lilianabreeder @digdeeper @ryo Are those the same connections in about:networking? In general I can see moz telemetries and in post 11.1 I can see securedrop telemetries.
       
 (DIR) Post #AQMfObEf9PFqgFFcqO by udon@social.076.ne.jp
       2022-12-07T13:14:10.704448Z
       
       0 likes, 0 repeats
       
       @lilianabreeder @digdeeper @ryo I just now tested, request header is still 1.1.Btw, that securedrop thing can be disabled with "about:rulesets". No idea for the firefox.settings.mozilla thing.
       
 (DIR) Post #AQMfmmAEAdO1WZhkXo by udon@social.076.ne.jp
       2022-12-07T13:28:33.531338Z
       
       1 likes, 0 repeats
       
       @lilianabreeder @digdeeper @ryo Same... I gave up TBB when I couldn't remove those things with Spyware Watchdog's guide, since 11.5 (*typo in previous post, 11.5, not 11.1)