Post B6QBdob90vrf23TMiu by finlaydag33k@social.linux.pizza
 (DIR) More posts by finlaydag33k@social.linux.pizza
 (DIR) Post #B6Q2GxXkgrrAWlue4u by mntmn@mastodon.social
       1 likes, 1 repeats
       
       our gitlab was brought down by a DoS attack by Meta today, with 299991 requests from "meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)". i wonder if i could sue for damages?
       
 (DIR) Post #B6Q2Uu4aOFUhonv4D2 by vimja@tooting.ch
       0 likes, 0 repeats
       
       @mntmnI'd like to know that too. Had Meta take down customer websites on at least two occasions in the past. Absolute Frechheit! 😡
       
 (DIR) Post #B6Q2WL8vEKqS41dHpA by deBaer@23.social
       0 likes, 0 repeats
       
       @mntmn Strafanzeige wegen Computersabotage bei der Onlinewache der Berliner Polizei einreichen. ;-)
       
 (DIR) Post #B6Q4DDGsTMaE3ZMRvc by musicmatze@social.linux.pizza
       0 likes, 0 repeats
       
       @mntmn I would love to read updates on that if you go forward with legal steps!And I bet most people here would love to read that as well...
       
 (DIR) Post #B6Q4reyqryNFZwDT1s by PaulaMaddox@mastodon.social
       0 likes, 0 repeats
       
       @mntmn WTF is your business to do with them?   Greedy money grabbing a***holes.  You should sue them if you’re able.
       
 (DIR) Post #B6Q6R05aToeZ8SmYtc by CyReVolt@mastodon.social
       0 likes, 0 repeats
       
       @mntmn German law needs to define "digitales Schutz- und Schmerzensgeld"
       
 (DIR) Post #B6Q7XeTVL6cq56hl3Y by guenther@chaos.social
       0 likes, 0 repeats
       
       @mntmn Is it possible to tell whether that actually originated from Facebook or whether someone's just using their UA?
       
 (DIR) Post #B6Q8cxLIiWaS05xd7w by mntmn@mastodon.social
       0 likes, 0 repeats
       
       @guenther all IPs are 57.141.20.*
       
 (DIR) Post #B6Q9BAiLVYHXJm3U12 by guenther@chaos.social
       0 likes, 0 repeats
       
       @mntmn oof.
       
 (DIR) Post #B6QAjnCb17dGUCHDmq by Jtuchel@mastodon.social
       0 likes, 0 repeats
       
       @mntmn same here. blocking meta's crawlers saves loads of money by reducing traffic tremendously.This is in fact a DOS attack by Meta.
       
 (DIR) Post #B6QBdob90vrf23TMiu by finlaydag33k@social.linux.pizza
       0 likes, 0 repeats
       
       @mntmn Could? Yes.Win? Probably not.Their lawyers would likely just argue that "they weren't doing it on purpose" (overloading your GitLab) and that "it's not their fault your servers weren't able to handle the traffic".
       
 (DIR) Post #B6QBsSoKIjvVnsciKe by Forbo@mastodon.social
       0 likes, 0 repeats
       
       @mntmn Please do sue them. Hitting them in the wallet is the only language of morality that corporations understand.
       
 (DIR) Post #B6QE5fZaMXqV3e9YvI by vSourceCode@mastodon.social
       0 likes, 0 repeats
       
       @mntmn Platform security at meta esp. FB is and has been a matter of concern.
       
 (DIR) Post #B6QF24VBporfAawgIC by vSourceCode@mastodon.social
       0 likes, 0 repeats
       
       @mntmn This is exactly why exposing an application server directly to the public web is an operational risk. A lightweight reverse proxy at the edge can read those meta-externalagent headers and drop or throttle the excess corporate bot requests in milliseconds, completely shielding your core Gitlab environment from the surge while keeping it online for real humans.
       
 (DIR) Post #B6QJJFopPcWn0Xa0zA by crazyeddie@mastodon.social
       0 likes, 0 repeats
       
       @mntmn You probably can't afford to sue but you "can" sue them.
       
 (DIR) Post #B6QJtECKuqMKPDjHEG by agowa338@chaos.social
       0 likes, 0 repeats
       
       @mntmn If you have the means to sue them please do for the sake of all of us.
       
 (DIR) Post #B6QK1z16jD1BvdeTc8 by mntmn@mastodon.social
       0 likes, 0 repeats
       
       @crazyeddie yeah...
       
 (DIR) Post #B6QLMCgphZwW53NGnA by SomeVeganCheeseIsOk@mastodon.social
       0 likes, 0 repeats
       
       @mntmn @crazyeddie bet they'd make a nice offer to settle out of court?
       
 (DIR) Post #B6QQg0v1fx8j8THKoC by akira@framapiaf.org
       0 likes, 0 repeats
       
       @mntmn i remember using nginx bad bot blocker module in the past. So efficient 😁
       
 (DIR) Post #B6SPAPKRfnUXwASA4W by hyc@mastodon.social
       0 likes, 0 repeats
       
       @mntmn we had that deluge on OpenLDAP's gitlab as well; I blocked their useragent a couple weeks ago.These were the stats from just 24 hours of traffic