Live data from Hacker News

Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

news.ycombinator.com

301–310 of 312 posts

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#301

Earlier quoted context omitted.

I had the same happen with a AU insurance company that also made it hard to reach them. I sent an email to their regulator that this company keeps sending me confidential information about one of their clients. It took one day until I received an email from the company informing me that they've corrected the mistake and I shall no longer receive any emails, and it worked, I haven't received a single one since.

Maybe I’m lazy but why do above four posters do so much effort? I just mark as spam and or block the sender

same. although, if it's a reservation you're being sent, you can cancel it to let the person know they're using the wrong email (plausible deniability because you don't recognize it, yet are getting a reservation)

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#302
post #257

Earlier quoted context omitted.

You also change the headers / TLS signature, because it's their worker doing the connection. That covers quite a lot already. The racket is not in the workers themselves, but rather cloudflare both protecting from internet abuse and protecting sites which sell the abuse services. (For example hosting WebStresser) I meant that by giving them more traffic and accepting that as a workaround, we'd be saying "I'm ok with…

>You also change the headers / TLS signature, because it's their worker doing the connection. pip install curl_cffi Even easier than spending 15 minutes setting up cloudflare workers. >The racket is not in the workers themselves, but rather cloudflare both protecting from internet abuse and protecting sites which sell the abuse services. (For example hosting WebStresser) I meant that by giving them more traffic and a…

> Even easier than spending 15 minutes setting up cloudflare workers.

You need both in practice. Changing the TLS details won't save you from coming out of the same CGNat as the rest of your city for example.

> for gun shops to sell guns for home defense, but also to sell guns to criminals?

If they know they're selling to criminals who are likely to attack their customers, then of course yes. In practice the overlap is not as trivial so I don't think it really transfers that well. So really "mu, the analogy is not close enough".

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#303

Earlier quoted context omitted.

I had the same happen with a AU insurance company that also made it hard to reach them. I sent an email to their regulator that this company keeps sending me confidential information about one of their clients. It took one day until I received an email from the company informing me that they've corrected the mistake and I shall no longer receive any emails, and it worked, I haven't received a single one since.

Maybe I’m lazy but why do above four posters do so much effort? I just mark as spam and or block the sender

If I made a mistake while entering data, I'd be happy if someone told me they receive emails from me that they probably shouldn't be getting, so I do the same when it's not obvious spam/scam.

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#304

Earlier quoted context omitted.

Well, proof of having an ID can be done anonymously. Cloudflare even worked on a system for that kind of thing.

A non-citizen living in Germany without the German eID because they’re not a citizen. Their country of origin doesn’t have any of that. I guess they don’t exist in that setup? Seems like a steep hill to climb on to solve some random login with captcha problem. Binding login interaction to some government issued id…who’s entitled here. Sounds like throwing a baby out with the bathwater.

Then have them go through the captcha process that already exists

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#305

It's ironic but I was having terrible problems accessing archive.today when I was using Cloudflare DNS (1.1.1.1) that cleared up when I switched to either my ISP's provider or Google's 8.8.8.8. I was not the only one https://news.ycombinator.com/item?id=38063548 What's funny about it is that as a human I get tormented by those things all the time but I have been writing bots since 1999 and have yet to have had CAPTCH…

the russian archive site and cloudflare have been having a dispute for a while now

Russian?

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#306
yes yes yes yes yes yes yes. I nearly wrote a borderline hit piece of cloudflare challenges because of this bullshit, but instead I gave into their games and repealed my privacy (only for niche cases mostly), likewise there's no solution for me either and it's just, like you said, some other variant of "too bad, so sad".

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#307
post #98

Earlier quoted context omitted.

Maybe you should try to care about something other than just your bottom line. I'm sorry if this sounds mean, but this attitude just turns the web into a giant monoculture because you can't be bothered to care. It actually ends up hurting everybody in the long run. Look how long we were trapped with IE6. Amazing how people forget history so quickly.

Everyone has limited resources. As a for profit company, the focus has to be on your bottom line. How many resources should a company use for some obscure corner case when the user can make changes? Of course accessibility is important - ie screen reader compatibility. A typical testing matrix in the US would be - Safari for iOS - Chrome for desktop and Android - maybe Safari for desktop or you just tell Mac users to…

There’s no test to be done there. Just respect web standards and do geoblock if you want to.

The issues I have are website pretending to be apps and apps that are SPAs for no reasons.

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#308

Earlier quoted context omitted.

Maybe I’m lazy but why do above four posters do so much effort? I just mark as spam and or block the sender

same. although, if it's a reservation you're being sent, you can cancel it to let the person know they're using the wrong email (plausible deniability because you don't recognize it, yet are getting a reservation)

How would the person know their reservation is cancelled?

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#309

Earlier quoted context omitted.

same. although, if it's a reservation you're being sent, you can cancel it to let the person know they're using the wrong email (plausible deniability because you don't recognize it, yet are getting a reservation)

How would the person know their reservation is cancelled?

they'd show up for the reservation they made and find that it doesn't exist!

Re: Tell HN: Impassable Cloudflare challenges are ruining my browsing experience

#310
post #130

Earlier quoted context omitted.

Thanks for that note. I receive „spam“ by a US based Car Rentel/Leasing Company, cause they prevent me from unsubscribing because i am in European IP-Range (geo-blocking). Especially „nice“ cause they send me contract specific details of one of their customers, who misspelled his email address.

I'm in a similar boat. A UK bank thinks I'm one of their customers (someone with a similar name). The reply address is no-reply@ and I'm not about to call a foreign bank.

From: no-reply@ and simlar fake senders should just result in immediate rejection of the mail at submission time.

Tempted to set that up on my server.

Post reply on HN