Live data from Hacker News

Can someone please explain whether Cloudflare blackmailed Canonical?

flyingpenguin.com

161–170 of 182 posts

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#161

The article puts it very succinctly: Cloudflare fronts attackers for free and bills the victims for relief. Ddos protection services can be cast as a digital protection racket where they have a perverse incentive to keep attackers attacking. “It's a dangerous internet out there; you'd better pay us to protect your website from the attackers using our free tier.” At the least, even if there is no active collusion or p…

Ok, so what's the solution? I do agree with your comment. But obviously Cloudflare didn't invent DDoS. If Cloudflare just magically disappears tomorrow, the AI crawlers won't stop. So what's the alternative? It's not a world you need to upload a government-issued ID to browse the internet, right? ...right?

Government or non profit run ddos protection service.

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#162

Earlier quoted context omitted.

They have done this one time and the CEO said he regretted it.

They have done it at least 3 times: The Daily Stormer, 8chan, and Kiwi Farms

Thanks for the correction, I didn’t know they had done it again. Unfortunate that they allowed themselves to be bullied into deplatforming again. DDoS protection should be content-neutral, like electricity service.

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#163

Earlier quoted context omitted.

you are heartened to see people advocate for cloudflare to start proactively and arbitrarily deciding who can host legal content, instead of being content-neutral? their size and the "man-in-the-middle"-ing is a huge problem. however, i dont think the solution is to encourage them to also start acting as content police. i dont trust cloudflare, which is exactly why i dont want them policing my legal content. you want…

I don't think it's proactive, most people are just saying they should respond to abuse reports more or should be treated based on their lack of response. If I'm hosting anything I don't have to proactively police it. If someone alerts me that a certain domain I'm hosting points to something illegal, I then decide if I want to remove it or not (and don't decide this based on a shell script). Cloudflare is apparently j…

>If someone alerts me that a certain domain I'm hosting points to something illegal

neither of the pages that people want taken down are illegal.

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#164
post #111

Earlier quoted context omitted.

So "big companies only, absolutely no anonymous sign-ups" should be the only ones able to put stuff on the internet without fearing that a random teenager can take your site offline for days just because they're bored?

No. Nobody said that. Cloudflare should simply enforce basic rules, like "don't run a cybercrime storefront", rather than letting criminal operations like this proliferate.

The danger with this is that you're asking cloudflare to know more about you and your website and to be more ready to take websites offline. That's a monkey paw if ive ever seen one.

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#165
post #119

Earlier quoted context omitted.

> If a robber sees Bob buy a bunch of expensive electronics at WalMart, and then buys a crowbar and robs him, is WalMart somehow responsible for the robbery Yes, if Walmart somehow knew robber’s intentions, but sold anyway. That is the primary question actually. Was the intent or act known or not.

Should Walmart be responsible for performing background checks on people buying crowbars to ensure they don’t intend to do harm? What about lighter fluid? Rat poison? Baseball bats?

you keep missing the point. is it intentional?

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#166

Earlier quoted context omitted.

In The Before Times, there were very few problematic DDOS operations because... they would all DDOS one another offline. Websites, control infrastructure, anything. DDOS protection services were provided by companies like Akamai; call for pricing, big companies only, absolutely no anonymous sign-ups. Cloudflare revolutionised the industry by providing free DDOS protection to anyone, including DDOS-for-hire services.…

Seems like they could use Tor onion sites just as easily tbh.

Why don't they?

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#167

people will always be able to pick a handful of sites they think shouldnt be allowed to use cloudflare hosting services. the problem is that every person will have a different handful of sites. cloudflare should host everything and anything unless and until a lawful order is received. if they start sticking their fingers into sites and determining whether the site's content is "appropriate" or whatever, based on some…

Most people on planet earth will be able to trivially agree on a subset of all their lists which in fact shouldn't be able to use it

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#168
post #75

Earlier quoted context omitted.

Your account can get terminated for any other random nonsense though. Happens all the time, with cloudflare, google, github, everywhere. Everyone just pretends that "this can't happen to me". You want cyberspace free from any "evil" state jurisdiction, nor "coddling" so this is what you get.

was this meant as a reply to someone else?

no it was reply to "i just dont want cloudflare ai-scanning my blog, seeing the word "DDoS" because i am in networking, and proactively removing my site from the internet."

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#169
post #97

Earlier quoted context omitted.

Don’t offer service to DDoS rings?

That doesn't get rid of the important perverse incentives. They still "want" DDoS all over from a monetary perspective. Kicking off the web page of the attackers will have a slight impact but not a whole lot.

Perhaps, but not accepting money from criminals is always a good idea and it would cause problems for those guys as their competitors push them off-line. Just because they wouldn’t go away doesn’t justify helping them.

Re: Can someone please explain whether Cloudflare blackmailed Canonical?

#170
post #169

Earlier quoted context omitted.

That doesn't get rid of the important perverse incentives. They still "want" DDoS all over from a monetary perspective. Kicking off the web page of the attackers will have a slight impact but not a whole lot.

Perhaps, but not accepting money from criminals is always a good idea and it would cause problems for those guys as their competitors push them off-line. Just because they wouldn’t go away doesn’t justify helping them.

Are they getting paid by the criminals? It sounds like a tiny little site that's extremely within the free limits.
Post reply on HN