Live data from Hacker News

Using Goatse to Stop App Theft

joshcsimmons.com

81–90 of 464 posts

Re: Using Goatse to Stop App Theft

#81
post #67
post #43

Earlier quoted context omitted.

The author said he’s not mature. His approach is much awesomer than the nature thing.

His approach is "funny" if you want, but it doesn’t help real users finding the real domain.

In a roundabout way, it likely would halt users unable to find the real domain from accessing the thieves' websites again. That narrows down the search for the real domain by one!

Re: Using Goatse to Stop App Theft

#83

Your website has the worst permalinks ever.

oh no -- it's actually vulnerable to xss...!!!

https://joshcsimmons.com/post/eNpTVlaoKC5WSEnNzefisilOLsosKL...

(this just injects a alert but.... that's bad)

just tried contacting the author via linkedin (since I don't see an email address on their site)

@joshcsimmons are you around?

Re: Using Goatse to Stop App Theft

#84

Earlier quoted context omitted.

> This blog is now STATELESS. The entire post is contained in the URL that you are visiting now. All my "blog" is now is a hard-coded main page that contains links to posts I claim authorship of. Of course the entire post is contained in each of these links. https://joshcsimmons.com/post/H4sIAAAAAAAA%2F3xV227cRgx911cQ...

doesn't this mean I could embed salacious material into a link and fool people into thinking the person who owned this website wrote it?

> Anything can be generated here. You could even host your own blog that uses my website as a renderer if you really wanted to. It supports markdown.

> Every post that I want to publicly claim authorship of lives at the root of this site. If you are reading a post that I have claimed it will look like this page. Posts of unknown authorship have a disclaimer at the top of the page.

https://joshcsimmons.com/post/H4sIAAAAAAAA%2F3xV227cRgx911cQ...

(His permalinks are horrible, lol)

Re: Using Goatse to Stop App Theft

#87

Ah, I had a similar idea. There were too many bots or vulnerability scanners hitting /wp-admin.php on my blog. It was flooding my access logs with 404s because I don't rock wordpress. Irksome stuff. So I threw up a little 'surprise' for the ahem penetration testers ahem , if you feel brave: https://www.thran.uk/wp-login.php

Well that’s fun

Re: Using Goatse to Stop App Theft

#89
post #67
post #43

Earlier quoted context omitted.

The author said he’s not mature. His approach is much awesomer than the nature thing.

His approach is "funny" if you want, but it doesn’t help real users finding the real domain.

I get the sense that that isn't really his goal. He makes clear it's just a fun passion project, and this sounds like an equally fun (to him) way of retaliating against those taking advantage of it.

Re: Using Goatse to Stop App Theft

#90
post #63

I don't know why I checked but uhh yup. It's working. There are at least 6 sites on the first page of Google results that now render goatse. Thankfully, the first link is the original one for me.

Came here to say the same thing. Unless you're one of today's "lucky 10,000"[0] who haven't ever encountered goatse before, there's no need to verify this :D [0] - https://xkcd.com/1053/ edit: folks the xkcd lucky 10k reference was a joke, settle down

This is a different twist on that xkcd - if you haven't seen goatse before, consider yourself truly lucky, and enjoy not experiencing this particular cognitohazard.
Post reply on HN