-
paphnoutios
vagina@5222.de for rtbl please
-
TheCoffeMaker
Can confirm
-
schäfchen726
+1
-
dora71
Does anybody know what's up with hot-chilli.net Support? Pastebins in MUCs are not working but no answer in support chat.
-
Quinn64
> Does anybody know what's up with hot-chilli.net Support? Pastebins in MUCs are not working but no answer in support chat. I haven't seen Roi around in a couple of days. I hope he's okay ↺
-
Projjal
😕
-
dora71
> Quinn64: > 2023-06-24 05:39 (GMT+02:00) > I haven't seen Roi around in a couple of days. I hope he's okay hope so too. Is Roi the only admin?
-
Quinn64
I'm not sure, it's been a while since I used Hot-Chilli
-
Quinn64
Looks like Beorn is also an admin on there: https://jabber.hot-chilli.net/
-
pur
Someone using jabber.de to spam atm. Some of the jids where the spam originates from are: xmpp:4fa1b9dd486a606f78d91eadfcc59c18e94ae3@jabber.de xmpp:47d385813117fb0ced95538e59293325bebb8b@jabber.de xmpp:a17f7d42cd7c7441874647eb@jabber.de xmpp:7cb4e46c8a229eeec21f61957a@jabber.de xmpp:23fb08eb7f35e393ae2687891322d3dd82f8c2@yax.im
-
gooya
yep
-
gooya
In 404 gemeral chat and my server
-
gooya
Please add him to blocklist MattJ
-
pur
Lots of spam coming now from many different yax.im jids
-
techmetx11
there's a ton of spam coming from yax.im
-
gooya
Ge0rG: is aware
-
techmetx11
i'm assuming they're abusing the account registration API
-
Ge0rG
pur, techmetx11: please give me a lits of JIDs to delete.
-
pur
I wish there was an easy way to do so in conversations.
-
techmetx11
i don't get why servers have XEP-0077 enabled
-
pur
Maybe check the newly created accounts. jid is random letters and numbers
-
Ge0rG
pur: I just checked the two JIDs reported to me, found five more from the same IPs and deleted both sets
-
techmetx11
Ge0rG: can you ban the IP?
-
pur
Ty
-
Ge0rG
techmetx11: I can, but if you ban the user from the MUC, all other yax.im users from the same IP will be also banned
-
Ge0rG
so I'll only ban one current Tor exit node, probably.
-
techmetx11
i really do wonder if these spammers abuse XEP-0077
-
techmetx11
since registering with XEP-0077 is as easy as.... sending a form
-
Ge0rG
I don't see a large number of user registrations on yax.im with hex user names.
-
Ge0rG
sorry, my registration watching code was broken. I now found ~3000 accounts using long hexadecimal JIDs, all registered in the last week, and am proceeding to delete them
-
paphnoutios
is it best practice to like block open proxies and tor?
-
Ge0rG
I'm using the DroneBL blacklist for registrations, but apparently it didn't match on most of these registrations
-
paphnoutios
I use this merged list in nftables and default drop all packets https://iplists.firehol.org/?ipset=firehol_anonymous
-
raucao
hi there. may i ask someone to confirm that they can connect tot he kosmos.chat MUC service and write t its MUC rooms? (e,.g. in ops@kosmos.chat)
-
raucao
a user from another domain is getting timeouts, and for some reason all our rooms disappeared from https://search.jabber.network too
-
raucao
no idea why, i'm basically certain that it wasn't unreachable for a week, and from here everything looks totally fine
-
Quinn64
raucao: https://connect.xmpp.net/ is only able to connect on S2S via StartTLS, it fails everything else when I had it check
-
raucao
htx✎ -
raucao
thx ✏
-
raucao
i found that the ip address that is used for the MUC service (but not the rest) was down
-
raucao
so local users were able to connect through their accounts on the same server, but remote ones would get timeouts
-
raucao
hmm, that website says
-
raucao
> Unable to contact the testing API. It might be unavailable or blocked. > undefined
-
raucao
lol, just a coincidence. worked on 2nd try
-
raucao
is it normal to define SRV records for MUC domains?
-
raucao
because it looks like we only have records for our main domain
-
Quinn64
I have SRV records for everything I want accessible by external users, including my MUC component. I don't have an A/AAAA or CNAME record for my MUC component at all, just SRV
-
techmetx11
Ge0rG: do you flag JIDs with pure hexadecimal?
-
techmetx11
like 0123456789abcdef
-
Trung
there might be legit people using hash JID too btw
-
techmetx11
yes
-
techmetx11
or maybe, depending on context
-
techmetx11
too many accounts registered in a minute/hour
-
techmetx11
per IP
-
raucao
> only able to connect on S2S via StartTLS, it fails everything else when I had it check the ejabberd docs say direct tls is deprecated in favor of starttls
-
raucao
is that up to date?
-
Ellenor Bjornsdottir
holy sh-
-
techmetx11
i'm considering that it was a mistake to make in-band registering way too easy✎ -
techmetx11
i'm considering that maybe it was a mistake to make in-band registering way too easy ✏
-
MSavoritias (fae,ve)
> is that up to date? no... at least from a security perspective ↺
- Ellenor Bjornsdottir scrapes a line on the clock at 1946z
-
paphnoutios
penises@conversations.im for rtbl please
-
paphnoutios
and templeos@xmpp.is
-
paphnoutios
rape@5222.de for rtbl please
-
☭Mike Yellow
It was a right choice removing public server addresses which support XEP-0077 in the user manual. Nobody ensures they keep supporting it in the future. It seems reports about spammers are many, is that because XMPP is becoming popular? :)
-
paphnoutios
the majority of these are the same person
-
☭Mike Yellow
Oops.
-
☭Mike Yellow
What is the way to deal with the accounts? Delete the them or forbid them to login?
-
nuron
I guess it doesn't matter. If one account doesn't work, a new one will be created
-
nuron
I changed all mucs to moderated a few month ago when they spamed a lot last time. Don't have any problems today :)
-
nuron
A couple of mods and it seems to work well
-
☭Mike Yellow
> I guess it doesn't matter. If one account doesn't work, a new one will be created It matters for manual creator. I wonder when an IP address is blocked, what is the feed back information to them? Maybe “policy violation”?
-
nuron
Oh I thought you would just change the password of this account to block login
-
nuron
If its an IP block that could maybe help
-
paphnoutios
you can't block their IP because they don't connect to your server
-
paphnoutios
only if their account is on your server
-
nuron
Of course
-
nuron
You are right
-
☭Mike Yellow
>It matters for manual creator. Sorry. I mean the guide book.
-
nuron
Woops :)
-
☭Mike Yellow
:>
-
j.r (jugendhacker.de)
Does anybody know the xmpp.is admin? Seems like they would want to moderate childporn@muc.xmpp.is
-
nuron
Looks like the mail addresses here are the only way to contact them: https://xmpp.is/contact/
-
Projjal
I've written to xmpp.is admin before and they usually respond very fast.
-
Projjal
try it
-
paphnoutios
ejaculationfromtheanus@conversations.im for rtbl please
-
gooya
paphnoutios: already on it ~9m ago