Weekly Update 455

Date:

Share post:

The bot-fighting is a non-stop battle. In this week's video, I discuss how we're tweaking Cloudflare Turnstile and combining more attributes around how bot-like requests are, and… it almost worked. Just as I was preparing to write this intro, I found a small spike of anomalous traffic that, upon further investigation, should have been blocked. So we've pivoted again, adding yet more logic to try and give legit humans the best experience possible whilst making it painful for the bots. Fortunately, we're doing this with resources that have minimal impact if a limited number of bot requests come through, but it does make for a challenging if not somewhat infuriating experience.

Weekly Update 455
Weekly Update 455
Weekly Update 455
Weekly Update 455

References

  1. Sponsored by: Report URI: Guarding you from rogue JavaScript! Don’t get pwned; get real-time alerts & prevent breaches #SecureYourSite
  2. We've now identified the first round of partners to onboard to HIBP (these are companies that can help victims "after the breach")
  3. ColoCrossing had a breach that exposed 7k customer email addresses for their cloud service (looks like this just ColoCloud)
  4. We love the HIBP merch store, but Teespring's support is absolutely woeful (we'll move to an alternate provider in the very near future)
  5. We're still tweaking Cloudflare's Turnstile to keep the bad guys out and the good guys in (that's a link to the HIBP homepage which we think we have dialed in pretty good now, see if you get a nice async request or a full page post-back)

Source link

spot_img

Related articles

Welcome To Video – Darknet Diaries

Full Transcript Andy Greenberg brings us a gut wrenching story of how criminal investigators used...

Go DRAM-less With The Biwin Black Opal X570 2TB

Meet The Maxio 1806A 8 Channel Controller With the rising cost of NAND, going DRAM-less on your next SSD...

Navan IPO tumbles 20% after historic debut under SEC shutdown workaround

Navan, the corporate travel and expense platform, finished its first day of trading on the Nasdaq on Thursday...