Feedback Technical Grievances

I still don't see the point of these DDoS attacks. If Keffails siccing the entire mainstream media on the site only temporarily knocked the site out, what are they expecting normal DDoSing to do? I can't figure out what they're expecting to accomplish with this except showing how much money they can burn.
Rees and short term satisfaction. Plus they probably think they can make null give up?
 
  • Informative
Reactions: Mad At The Intranet
I still don't see the point of these DDoS attacks. If Keffails siccing the entire mainstream media on the site only temporarily knocked the site out, what are they expecting normal DDoSing to do? I can't figure out what they're expecting to accomplish with this except showing how much money they can burn.
It's like Chinese water torture sure one drop is a little annoying but when you do it over, and over, for days on end it starts to drive you insane. Josh is having to keep tweaking the server and playing marco polo with a botnet all weekend when all he really wants is to relax and hoard some silver.
 
I still don't see the point of these DDoS attacks. If Keffails siccing the entire mainstream media on the site only temporarily knocked the site out, what are they expecting normal DDoSing to do? I can't figure out what they're expecting to accomplish with this except showing how much money they can burn.
They’re trying to break Null’s spirit, but they don’t realise that some people are motivated by spite

I got a test emergency alert while reading this thread and nearly shat out all my organs
 
Last edited:
The attack is changing so I can tell people what I was doing.

I disabled HTTP/1.1 and forced HTTP/2. Most botnets are composed of compromised, older computers that may not be able to use H2. All modern browsers can.
Take us to HTTP/3 and beyond.

Some people are getting sessions crossed. A cache change is to blame.
 
Anybody else randomly get logged into somebody's random account?
When I clicked a submission in a post someone had deleted (the submission was linked in a quote reply), the site said I needed to authenticate or something and showed someone else's icon at the top right. Naturally, I didn't screenshot anything. Just don't tell Null, he'll call me dumb again.
 
  • Feels
Reactions: Moosebonker
I have double-checked all caching and applied additional rules to purge cookies in every situation I can imagine. I've also invalidated all sessions.

When I clicked a submission in a post someone had deleted
Which thread?

I am pretty sure if sessions bled it was through the goddamn fucking proxy.php file which is the biggest piece of fucking shit and I cannot wait to get the fuck off XenForo but unfortunately I have to take dev time to work on this asinine fucking cancer all the time
 
Which thread?

I am pretty sure if sessions bled it was through the goddamn fucking proxy.php file which is the biggest piece of fucking shit and I cannot wait to get the fuck off XenForo but unfortunately I have to take dev time to work on this asinine fucking cancer all the time
I can do better than that, I can give you the actual post.
I just tried it again, though, and it didn't happen this time. Not a false alarm though, I guarantee that it did happen once.
Got kicked out of my account.
Logged in- everything is good.
Ditto.
 
I've also invalidated all sessions.
Ah, so that was you. Has sneedchat also been locked down? I get a message that I can't join general chat, and I can view, but not post messages in any other room.
 
Got kicked out of my account.
Logged in- everything is good.

Is it possible accounts ae being tested to see who has a non-complex password hence the random log into other people's accounts?
Not everything, I lost Sneedchat authentication despite logging in.
 
  • Thunk-Provoking
Reactions: Dona Morte
Got kicked out of my account.
Logged in- everything is good.

Is it possible accounts ae being tested to see who has a non-complex password hence the random log into other people's accounts?

I just had the same thing - got kicked out of my account as I was browsing the forum, wasn't attempting to post or anything. Took a minute, but I'm back in.

I have a long complex password of random numbers and letters, but changing it now anyway.
 
I just had the same thing - got kicked out of my account as I was browsing the forum, wasn't attempting to post or anything. Took a minute, but I'm back in.

I have a long complex password of random numbers and letters, but changing it now anyway.
Josh said a few posts up that he invalidated all sessions. Presumably everyone was logged out.
 
Can't send any images whatsoever; either posting them gets me an "oops there was a problem" message or the thing goes to 100% before just... never sending
 
  • Like
Reactions: make_it_so
Josh said a few posts up that he invalidated all sessions. Presumably everyone was logged out.

Ah, I'm an idiot who can't read then. Briefly worried it was some attempt from whoever is running the DDoS against the site, but all good then.
 
Annoying that the botnet figured out the trick. Is there any other unique information that can be used to identify and filter out the botnet?
 
>Br*tish boffins write paper about how they legally DDoS’d the farms
>Keffals does something retarded
>Shame Noakes and other cows supposedly GayOping as well

Why do all of Null’s enemies have to be the most laughable idiots who in a sane and just society would be digging ditches or dead in the ditch.
 
So which group do you think was behind this ddos attack, Indian scammers looking to make a quick buck, troons spending their government check, or bigger collision to prevent news stories from spreading.
 
Back