this post was submitted on 02 Sep 2023
7 points (100.0% liked)

Announcements and Meta

99 readers
2 users here now

A community reserved for communications from the Based Count admin team to its users.

Occasionally we will also hold community polling in here. Make sure to subscribe to not miss any updates.

Everyone is welcome to join the discussion! We accept suggestions on how to run the instance from everybody, including users from other instances.

Posting to this community is restricted to the admin team to avoid spam, however feel free to speak your mind about the status of the instance and how you'd improve it in our !general@lemmy.basedcount.com community.

founded 2 years ago
MODERATORS
 

We have been informed of another potential CSAM attack to our federated instance lemmy.ml.

After the events of the last time, I have preemptively and temporarily defederated us from lemmy.ml until the situation can be assessed with more clarity.

I have already deleted the suspicious posts (without looking at them myself, all from the database's command line) and banned the author. To the best of our knowledge, at no point in time any CSAM content was saved on our server.

EDIT: 2023-09-03 8:40 UTC

There have been no further reports of similar problems arising from lemmy.ml or other instances, so I am re enabling federation. Thank you for your patience.

you are viewing a single comment's thread
view the rest of the comments
[–] lilShalom@lemmy.basedcount.com 1 points 2 years ago (7 children)

The privacy crowd doesnt like cloudflare brokering their SSL connection. If youre going to use CF you might as well use their WAF to stop XSS attacks. The pictures portion of lemmy was vulnerable to that recently.

[–] Nerd02@lemmy.basedcount.com 1 points 2 years ago (6 children)

Yeah I remember that. We lost our first instance to that XSS attack (this one we are writing on is the second one).

And I get why some people might not like Cloudflare, but to my knowledge that's quite literally the only tool at our disposal. These constant attack can be stressing to some admins, it's illegal stuff after all. Even if we are doing everything right and reporting it to the authorities, as soon as I got notice of this I had to drop anything I was doing, jump on SSH and start fixing stuff. This isn't really sustainable in the long run.

[–] lilShalom@lemmy.basedcount.com 3 points 2 years ago (5 children)

I understand. You could roll your own HA proxy but it would be more expensive and wouldnt be able to provide you the inappropriate content inspect CF provides.

If someone is really concerned about privacy they shouldnt be using lemmy to begin with.

[–] Atalocke@lemmy.basedcount.com 1 points 2 years ago

I'm with you. I don't like Cloudflare either. Not only for privacy reasons, but I've just had a number of generally bad customer interactions with them on other projects. Unfortunately, it seems to be the only solution for this issue. We've been lucky so far with these incidents. If somebody ever uploaded that stuff here it'd be an incredible pain in the ass.

load more comments (4 replies)
load more comments (4 replies)
load more comments (4 replies)