Live data from Hacker News

Using Goatse to Stop App Theft

joshcsimmons.com

271–280 of 464 posts

Re: Using Goatse to Stop App Theft

#271

Ah, I had a similar idea. There were too many bots or vulnerability scanners hitting /wp-admin.php on my blog. It was flooding my access logs with 404s because I don't rock wordpress. Irksome stuff. So I threw up a little 'surprise' for the ahem penetration testers ahem , if you feel brave: https://www.thran.uk/wp-login.php

Even in the source as a comment :)

Re: Using Goatse to Stop App Theft

#272
post #133

Earlier quoted context omitted.

> The author is aware. Since the website is vulnerable to XSS, you could inject a script that removes the disclaimer.

s/removes the disclaimer/exploits a browser 0-day/

There are much less weird links you can give someone if you have 0-day. I don't think that's a problem worth worrying about for the author.

Re: Using Goatse to Stop App Theft

#273

Once, out of the kindness of my foolish heart, I ran a server with a lot of great sound effects for all and sundry to download. Eventually the bandwidth was getting hammered by a huge number of leechers seemingly from some apps that had simply hard-linked to the resources. After replacing said resources [0] they soon ceased but not without a slew of abusive and entitled emails demanding I restore the SFX. Oh fun time…

The users of these apps probably don't even understand what it means to hotlink someone else's resources, and, rather than simply remove the resources, you replaced them with an overtly offensive message. I'm not saying you weren't within your rights to do that, but you can't at this point high-horse and complain about the abusive emails you got as a reaction.

I was under the impression the emails came from the app developers. Surely it's reasonable to complain about their entitled demands, unconditionally?

Re: Using Goatse to Stop App Theft

#274

The world we live in: people somehow feel more comfortable posting shock/traumatic images than regular consensual porn. This is one of the few parts of internet culture I hope to see the end of. We can be edgy and offensive without traumatizing each other.

Goatse is consensual porn, as far as I know. Maybe not “regular”, but that seems to be an unnecessary constraint in this context.

That wasn't my point. Goatse is not pornography. Goatse is shock/trauma imagery.

My point is that OP could have used porn (or something else) as an alternative to shock/trauma imagery, because their goal was to be offensive. There was no need for OP to traumatize their audience.

Re: Using Goatse to Stop App Theft

#275

The world we live in: people somehow feel more comfortable posting shock/traumatic images than regular consensual porn. This is one of the few parts of internet culture I hope to see the end of. We can be edgy and offensive without traumatizing each other.

What kind of edgy and offensive image would you use?

Any consensual porn would do fine. The goal is to harm the website owner with something taboo/offensive/nsfw, not to harm the viewer with trauma.

Re: Using Goatse to Stop App Theft

#276
It’s a bit of a stretch to use the term “theft” in the headline (and “steal” in the image) to describe this situation, no?

Neither unauthorized hotlinking nor iframe embedding are “theft” or “steal”ing.

Re: Using Goatse to Stop App Theft

#277
post #166

Once, out of the kindness of my foolish heart, I ran a server with a lot of great sound effects for all and sundry to download. Eventually the bandwidth was getting hammered by a huge number of leechers seemingly from some apps that had simply hard-linked to the resources. After replacing said resources [0] they soon ceased but not without a slew of abusive and entitled emails demanding I restore the SFX. Oh fun time…

In the days of P2P file sharing I used to share files with file names and metadata indicating they were rare Metallica live recordings of Metallica songs and other metal band's songs.... but instead https://www.youtube.com/watch?v=hwK_WOXjfc0 So many downloads.

[dead]

Re: Using Goatse to Stop App Theft

#278

Once, out of the kindness of my foolish heart, I ran a server with a lot of great sound effects for all and sundry to download. Eventually the bandwidth was getting hammered by a huge number of leechers seemingly from some apps that had simply hard-linked to the resources. After replacing said resources [0] they soon ceased but not without a slew of abusive and entitled emails demanding I restore the SFX. Oh fun time…

> simply hard-linked to the resources It's fairly surprising to see that approach from pretty large brands/companies. Some Indian ISPs are kinda notorious in that they'll just link to huge image files on third-party sites and just let their 300 million customers hammer the poor site into the ground. I guess it saves them bandwidth, but they also run a huge risk of pissing someone off and have that asset replaced by s…

The isps can pretty easily set up a cache for things that are popular. There was a time when I worked for an ISP consultancy, where Netflix would literally give ISPs a prebuilt cache server iirc for free, and that was a win win for everyone. I shouldn’t be surprised that some shitty isp thinks it’s easier to hard link, but making a cache isn’t that hard.

Re: Using Goatse to Stop App Theft

#279

I run three word games, this stuff happens for all of them. It sucks but I would never do what they did, it's abusive to the people who just googled your game and ended up on the wrong site. I've had teachers and students reach out to me to say they play my game in class every day together. And parents who play with their kids every day, and adult who text their results to each other every day. It sucks if they end u…

+1 - this is a childish move and bad business imo. I'd guess the author is pretty young.

yes, everything done on the Internet must be deadly serious and professional AT ALL TIMES.

I'd guess you're pretty old.

Post reply on HN