Live data from Hacker News

Celebrating CloudFlare's 4th Birthday

blog.cloudflare.com

1–10 of 42 posts

Re: Celebrating CloudFlare's 4th Birthday

#3
CloudFlare is the biggest MITM attack in the history of the internet. Why are we putting this much power in the hands of a few US citizens, who are legally obliged to record all that unencrypted data passing through their servers?

Re: Celebrating CloudFlare's 4th Birthday

#6
CloudFlare has solved the DDos problem for us. Because we constantly fight with phishers, before we switched to CloudFlare, we would get hit by massive DDos attacks at least once a year, and that would result in downtime and in getting kicked out of a dedicated server provider or being asked high fees to put us on on a dedicated network. After moving to CloudFlare, we are not even aware of it if we get hit by a DDos.

We are very thankful to CloudFlare! Happy birthday!

Re: Celebrating CloudFlare's 4th Birthday

#7
post #3

CloudFlare is the biggest MITM attack in the history of the internet. Why are we putting this much power in the hands of a few US citizens, who are legally obliged to record all that unencrypted data passing through their servers?

I'd be interested in a source pointing out the origin of that obligation. I very much agree that end-to-end encryption is superior for transactions that need it. Some don't need it though, and MITM'd encryption does at least protect the end user from any untrusted parties on their local subnet like in coffee shops, which are far more untrusted than upstream operators.

Re: Celebrating CloudFlare's 4th Birthday

#9
post #3

CloudFlare is the biggest MITM attack in the history of the internet. Why are we putting this much power in the hands of a few US citizens, who are legally obliged to record all that unencrypted data passing through their servers?

Most sites which are not on HTTPS now are static sites like blogs etc. Google recently announced HTTPS will be determining SERP so many webmasters are going to use it anyway even with a MITM.

Re: Celebrating CloudFlare's 4th Birthday

#10
Wonder why DDOSes have been getting worse lately? DDOS groups are putting their sites behind Cloudflare so they cannot be DDOSed off the internet by rival groups, thus their "services" become a lot more accessible, and they have grown bolder.

This is a grave conflict of interest for Cloudflare, they have no incentive to stop them, after all, it generates more business for Cloudflare.

This absolutely needs to be addressed.

http://krebsonsecurity.com/2013/05/ddos-services-advertise-o...

Post reply on HN