Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Search - "websec"
-
So here's a random idea: DDoS defence swarm.
Install the daemon on your server, and every time your server gets DDoS'd, all members of the swarm will mobilise to defend you, but the catch is that your server will have to help other members of the swarm too.
The defensive technique in question can be one of many:
1. Automated IP blocking/reporting with a blacklist in distributed form.
2. Other swarm members counterattack and cooperatively DDoS the offending addresses.
3. Flood the ISP with automated emails to force them to pay attention to the problem.
...or a combination of all of the above.
The only issue I can see with this is abuse potential. A clever person can trick the swarm into DDoSing innocents.15 -
The assholes in my class (or just my classmates) keep asking me:"Yo, man, do you hack to websites and stuff?" And I always say " No, I don't really know how" and they keep saying " why won't you learn how to do this, shouldn't be that hard" and it's getting really hard to explain to them that I have no desire to ruin someones day, I just want to help people and make others happier. Any ideas for new answers for these questions?
Or, if you like, any good websec books?10 -
Why is GitHub's certificate showing up on semver.org? I can no longer access the site normally because of the browser warning. Who's responsible for this atrocity?
I checked with a VPN and without, same result. Can someone confirm?
https://www.semver.org/5