<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: koroshitekure</title><link>https://news.ycombinator.com/user?id=koroshitekure</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Wed, 22 Apr 2026 08:45:12 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=koroshitekure" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>the guy that was attacking me attempted to dox me, so I shut down all non-essential accounts to prevent anything similar happening in the future</p>
]]></description><pubDate>Sat, 07 Dec 2019 12:16:24 +0000</pubDate><link>https://news.ycombinator.com/item?id=21729870</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21729870</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21729870</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>yeah that's what I'm using<p>I also pull-requested a user agent anonymisation setting (pleroma.http.user_agent) to make this better</p>
]]></description><pubDate>Fri, 06 Dec 2019 15:15:25 +0000</pubDate><link>https://news.ycombinator.com/item?id=21722457</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21722457</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21722457</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>I'm not too bothered about correcting it, just thought it good to note</p>
]]></description><pubDate>Fri, 06 Dec 2019 15:01:26 +0000</pubDate><link>https://news.ycombinator.com/item?id=21722313</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21722313</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21722313</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>hey, OP here<p>I'm no longer on keybase, deleted it a few days ago - but I'm more than happy to share what I found if you want<p>pretty sure it's nothing groundbreaking though<p>other contact methods are listed on my profile<p>(edit: by OP I mean article author)</p>
]]></description><pubDate>Fri, 06 Dec 2019 15:00:27 +0000</pubDate><link>https://news.ycombinator.com/item?id=21722303</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21722303</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21722303</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>oh, i found out where the leak was<p>it's right at the end of the article - the attacker was abusing the "create a preview card of any posted URL" feature - he'd post a link, wait for pleroma to go and grab the url to preview it, then narrow down which one was mine based on user agent<p>i added an upstream proxy and anonymised the user agent, so even if he were to do that, the most he'd find was my proxy box</p>
]]></description><pubDate>Fri, 06 Dec 2019 12:27:00 +0000</pubDate><link>https://news.ycombinator.com/item?id=21721176</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21721176</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21721176</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>yep, i had the same thought<p>which is what led me to block all other IPs - it's not the <i>hardest</i> thing to just make an openssl req and get the common names of the certificate returned<p>especially if you know the hosting provider, which narrows down the ip space significantly</p>
]]></description><pubDate>Fri, 06 Dec 2019 12:04:52 +0000</pubDate><link>https://news.ycombinator.com/item?id=21721063</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21721063</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21721063</guid></item><item><title><![CDATA[New comment by koroshitekure in "Mitigating a DDoS on Mastodon"]]></title><description><![CDATA[
<p>hey, i'm the author of the article<p>really... surprised it got submitted here<p>incidentally i'm running pleroma, not mastodon. minor detail but you know</p>
]]></description><pubDate>Fri, 06 Dec 2019 12:03:38 +0000</pubDate><link>https://news.ycombinator.com/item?id=21721057</link><dc:creator>koroshitekure</dc:creator><comments>https://news.ycombinator.com/item?id=21721057</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=21721057</guid></item></channel></rss>