Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
72 Indlæg 43 Posters 221 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • jernej__s@infosec.exchangeJ jernej__s@infosec.exchange

    @the_wub They check user-agent and challenge anything that claims to be Mozilla (because that's what the majority of bots masquerade as).

    Also, weird that Seamonkey can't pass it – I just tried with Servo, and it had no problems.

    ahltorp@mastodon.nuA This user is from outside of this forum
    ahltorp@mastodon.nuA This user is from outside of this forum
    ahltorp@mastodon.nu
    wrote sidst redigeret af
    #31

    @jernej__s @the_wub Every graphical web browser claims to be Mozilla.

    1 Reply Last reply
    0
    • drwho@masto.hackers.townD drwho@masto.hackers.town

      @david_chisnall @MeiLin 400-500 separate data tracking recipients on each page..m

      meilin@tech.lgbtM This user is from outside of this forum
      meilin@tech.lgbtM This user is from outside of this forum
      meilin@tech.lgbt
      wrote sidst redigeret af
      #32

      @david_chisnall @drwho
      And the worst part is that the majority of effects and stuff, you can do with pure CSS and HTML. But because everyone started to jump on the React bandwagon the moment JavaScripe infected servers in addition to browsers, it was over.

      In addition to tracking cookies and the like.

      I am still wondering what 'legitimate interest' is, aside from a figleaf to still try and track me...

      1 Reply Last reply
      0
      • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

        Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

        Web design in the late 2020s: Let's add a 10-second delay while Cloudflare checks that you are capable of ticking a checkbox in front of every page load.

        yacc143@mastodon.socialY This user is from outside of this forum
        yacc143@mastodon.socialY This user is from outside of this forum
        yacc143@mastodon.social
        wrote sidst redigeret af
        #33

        @david_chisnall
        So what will you do?

        Nobody gets fired for buying cloudflare.

        1 Reply Last reply
        0
        • hex0x93@mastodon.socialH hex0x93@mastodon.social

          @david_chisnall it's funny, everytime I try to access a website that uses Cloudflare, I have to use sth else or disable my VPN && my DNS resolver.
          So if they can have my data, they let me use them. So don't tell me it is about prorection against bots.
          It's about gathering data - or am I just paranoid af?

          zeborah@mastodon.nzZ This user is from outside of this forum
          zeborah@mastodon.nzZ This user is from outside of this forum
          zeborah@mastodon.nz
          wrote sidst redigeret af
          #34

          @hex0x93 I know nothing about Cloudflare's data practices. But I do know a lot of sites have been forced to go with Cloudflare because so many AI bots are incessantly scraping their site that the site goes down and humans can't access it - essentially AI is doing a DDOS, and when that's sustained for weeks/months/more then the Cloudflare-type system seems to be the only way to have the site actually available to humans.

          I hate it but those f---ing AI bots, seriously, they are ruining the net.

          @david_chisnall

          hex0x93@mastodon.socialH jackyan@mastodon.socialJ elosha@chaos.socialE 3 Replies Last reply
          0
          • zeborah@mastodon.nzZ zeborah@mastodon.nz

            @hex0x93 I know nothing about Cloudflare's data practices. But I do know a lot of sites have been forced to go with Cloudflare because so many AI bots are incessantly scraping their site that the site goes down and humans can't access it - essentially AI is doing a DDOS, and when that's sustained for weeks/months/more then the Cloudflare-type system seems to be the only way to have the site actually available to humans.

            I hate it but those f---ing AI bots, seriously, they are ruining the net.

            @david_chisnall

            hex0x93@mastodon.socialH This user is from outside of this forum
            hex0x93@mastodon.socialH This user is from outside of this forum
            hex0x93@mastodon.social
            wrote sidst redigeret af
            #35

            @david_chisnall @zeborah i know, and it probably isn't about data and stuff. But for me it is annoying, that it deems me as a bot, just because of some settings I enabled on my browser and system....^^

            1 Reply Last reply
            0
            • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

              Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

              Web design in the late 2020s: Let's add a 10-second delay while Cloudflare checks that you are capable of ticking a checkbox in front of every page load.

              crazyeddie@mastodon.socialC This user is from outside of this forum
              crazyeddie@mastodon.socialC This user is from outside of this forum
              crazyeddie@mastodon.social
              wrote sidst redigeret af
              #36

              @david_chisnall There's the self-hosting option of sticking anubis in front of your service so that it can throttle visitors by making their browser do a bunch of work.

              There's also the bouncing around between various services and proxies in order to get logged in...something I'm currently struggling to figure out because apparently I'm a dumbass that can't figure out traefik or how to properly set environment variables or something.

              1 Reply Last reply
              0
              • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

                Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

                Web design in the late 2020s: Let's add a 10-second delay while Cloudflare checks that you are capable of ticking a checkbox in front of every page load.

                woozle@toot.catW This user is from outside of this forum
                woozle@toot.catW This user is from outside of this forum
                woozle@toot.cat
                wrote sidst redigeret af
                #37

                @david_chisnall I remember optimizing thumbnail-images to within kilobytes of their lives...

                ...and now apparently nobody thinks twice about requiring many MB of JS code per page-load.

                (TLDR: this current nonsense is nonsense.)

                sysop408@sfba.socialS jackyan@mastodon.socialJ 2 Replies Last reply
                0
                • woozle@toot.catW woozle@toot.cat

                  @david_chisnall I remember optimizing thumbnail-images to within kilobytes of their lives...

                  ...and now apparently nobody thinks twice about requiring many MB of JS code per page-load.

                  (TLDR: this current nonsense is nonsense.)

                  sysop408@sfba.socialS This user is from outside of this forum
                  sysop408@sfba.socialS This user is from outside of this forum
                  sysop408@sfba.social
                  wrote sidst redigeret af
                  #38

                  @woozle I'll just be happy if people stop serving images that should be jpegs or webp in png format.

                  @david_chisnall

                  woozle@toot.catW 1 Reply Last reply
                  0
                  • sysop408@sfba.socialS sysop408@sfba.social

                    @woozle I'll just be happy if people stop serving images that should be jpegs or webp in png format.

                    @david_chisnall

                    woozle@toot.catW This user is from outside of this forum
                    woozle@toot.catW This user is from outside of this forum
                    woozle@toot.cat
                    wrote sidst redigeret af
                    #39

                    @sysop408 @david_chisnall

                    JPG screenshots 🔥

                    1 Reply Last reply
                    0
                    • david_chisnall@infosec.exchangeD david_chisnall@infosec.exchange

                      Web design in the early 2000s: Every 100ms of latency on page load costs visitors.

                      Web design in the late 2020s: Let's add a 10-second delay while Cloudflare checks that you are capable of ticking a checkbox in front of every page load.

                      nazokiyoubinbou@urusai.socialN This user is from outside of this forum
                      nazokiyoubinbou@urusai.socialN This user is from outside of this forum
                      nazokiyoubinbou@urusai.social
                      wrote sidst redigeret af
                      #40

                      @david_chisnall Don't forget the oh so lovely "select all the squares with cars in them" with a picture of one single car and you're not quite sure if you should select the squares in the bottom middle or not.

                      I'm given to understand that those actually do jack squat for stopping bots... They just use tokens to straight up bypass or something.

                      I personally don't mind t he delay so much, but I do hate having to deal with that crap — especially when it fails and declares that I'm supposedly not human. (How the F was I supposed to know that the blurry red glob in the bottom right was supposed to be a lion? It wasn't even the right color!) The one with the catgirl and a loading bar is fine I guess. But all that other crap can take a flying leap.

                      1 Reply Last reply
                      0
                      • internic@mathstodon.xyzI internic@mathstodon.xyz

                        @autiomaa So the bots have an option to bypass the captchas meant to catch bots but the humans don't. That tracks. 😩 @mark @david_chisnall

                        lascapi@social.tchncs.deL This user is from outside of this forum
                        lascapi@social.tchncs.deL This user is from outside of this forum
                        lascapi@social.tchncs.de
                        wrote sidst redigeret af
                        #41

                        @internic That's not a bug, that's a feature!
                        I guess...

                        @autiomaa @mark @david_chisnall

                        1 Reply Last reply
                        0
                        • danherbert@mastodon.socialD danherbert@mastodon.social

                          @mark @david_chisnall I don't think that's actually the case, at least not entirely. The main issue is that the Internet is currently being inundated with LLM content crawlers to the point that it overwhelms websites or scrapes content some sites don't want sucked into AI training data. It has caused a massive number of sites to serve those bot-detection pages to everyone. So it's not quite an issue of too many visitors but actually "too many non-human visitors"

                          jackyan@mastodon.socialJ This user is from outside of this forum
                          jackyan@mastodon.socialJ This user is from outside of this forum
                          jackyan@mastodon.social
                          wrote sidst redigeret af
                          #42

                          @danherbert @mark @david_chisnall Sadly, that is our reality. One siteʼs traffic was 75–80 per cent scraper (even back in 2023) so up went the Cloudflare blocks and challenges. (Before anyone @s me about this, Iʼm not a computer whiz so this is the only thing I know how to use.) And itʼs finally worked after figuring out which ASNs and IP addresses are the worst, with traffic on that site back to pre-2023 levels (which I know means an overall drop in ranking).

                          1 Reply Last reply
                          0
                          • woozle@toot.catW woozle@toot.cat

                            @david_chisnall I remember optimizing thumbnail-images to within kilobytes of their lives...

                            ...and now apparently nobody thinks twice about requiring many MB of JS code per page-load.

                            (TLDR: this current nonsense is nonsense.)

                            jackyan@mastodon.socialJ This user is from outside of this forum
                            jackyan@mastodon.socialJ This user is from outside of this forum
                            jackyan@mastodon.social
                            wrote sidst redigeret af
                            #43

                            @woozle @david_chisnall I still do! Old habits.

                            1 Reply Last reply
                            0
                            • zeborah@mastodon.nzZ zeborah@mastodon.nz

                              @hex0x93 I know nothing about Cloudflare's data practices. But I do know a lot of sites have been forced to go with Cloudflare because so many AI bots are incessantly scraping their site that the site goes down and humans can't access it - essentially AI is doing a DDOS, and when that's sustained for weeks/months/more then the Cloudflare-type system seems to be the only way to have the site actually available to humans.

                              I hate it but those f---ing AI bots, seriously, they are ruining the net.

                              @david_chisnall

                              jackyan@mastodon.socialJ This user is from outside of this forum
                              jackyan@mastodon.socialJ This user is from outside of this forum
                              jackyan@mastodon.social
                              wrote sidst redigeret af
                              #44

                              @zeborah @hex0x93 @david_chisnall This pretty much describes us. Scrapers as well as brute-force hackers multiple times per hour (even literally per second). One siteʼs traffic was 75–80 per cent scraper.

                              hex0x93@mastodon.socialH 1 Reply Last reply
                              0
                              • laberpferd@sueden.socialL laberpferd@sueden.social

                                @david_chisnall "Please wait while we check that your Browser is safe" while my laptop goes for a minute or two into full load and screaming hot

                                Perhaps ending in "We are sorry but we could not verify you are an actual human, your machine shows suspect behaviour, sent an e-mail to admin to get access"

                                V This user is from outside of this forum
                                V This user is from outside of this forum
                                vendelan@mastodon.social
                                wrote sidst redigeret af
                                #45

                                @Laberpferd @david_chisnall proof of work is such a bad CAPTCHA. Like, who thought bots couldn't evaluate JS

                                nachof@mastodon.uyN 1 Reply Last reply
                                0
                                • jackyan@mastodon.socialJ jackyan@mastodon.social

                                  @zeborah @hex0x93 @david_chisnall This pretty much describes us. Scrapers as well as brute-force hackers multiple times per hour (even literally per second). One siteʼs traffic was 75–80 per cent scraper.

                                  hex0x93@mastodon.socialH This user is from outside of this forum
                                  hex0x93@mastodon.socialH This user is from outside of this forum
                                  hex0x93@mastodon.social
                                  wrote sidst redigeret af
                                  #46

                                  @jackyan @zeborah @david_chisnall and it is totally understandable to protect yourself against that. It is just super annoying for ppl like me, who value and protect their privacy.
                                  An I am no webscraper, nor am I a hacker....

                                  jackyan@mastodon.socialJ 1 Reply Last reply
                                  0
                                  • hex0x93@mastodon.socialH hex0x93@mastodon.social

                                    @jackyan @zeborah @david_chisnall and it is totally understandable to protect yourself against that. It is just super annoying for ppl like me, who value and protect their privacy.
                                    An I am no webscraper, nor am I a hacker....

                                    jackyan@mastodon.socialJ This user is from outside of this forum
                                    jackyan@mastodon.socialJ This user is from outside of this forum
                                    jackyan@mastodon.social
                                    wrote sidst redigeret af
                                    #47

                                    @hex0x93 @zeborah @david_chisnall I hear you as I get annoyed, too. I believe ours is the one with the tick box, so no stupid 'Choose the bicycles' or rejection because you use a VPN.

                                    hex0x93@mastodon.socialH 1 Reply Last reply
                                    0
                                    • jackyan@mastodon.socialJ jackyan@mastodon.social

                                      @hex0x93 @zeborah @david_chisnall I hear you as I get annoyed, too. I believe ours is the one with the tick box, so no stupid 'Choose the bicycles' or rejection because you use a VPN.

                                      hex0x93@mastodon.socialH This user is from outside of this forum
                                      hex0x93@mastodon.socialH This user is from outside of this forum
                                      hex0x93@mastodon.social
                                      wrote sidst redigeret af
                                      #48

                                      @jackyan @zeborah @david_chisnall I love that!❤️❤️

                                      alexskunz@mas.toA 1 Reply Last reply
                                      0
                                      • hex0x93@mastodon.socialH hex0x93@mastodon.social

                                        @jackyan @zeborah @david_chisnall I love that!❤️❤️

                                        alexskunz@mas.toA This user is from outside of this forum
                                        alexskunz@mas.toA This user is from outside of this forum
                                        alexskunz@mas.to
                                        wrote sidst redigeret af
                                        #49

                                        @hex0x93 I try to use the "Managed Challenge" on CF which tests the browser and often "solves itself" within a second or so (wiggling the mouse might help with that, I'm not sure). The checkbox only appears when that fails. I try to not block anything except for the worst, known offenders. Reddit, Yelp & others are blocking me entire when I use my ad-blocking VPN on the phone — just stupid...

                                        @jackyan @zeborah @david_chisnall

                                        hex0x93@mastodon.socialH jackyan@mastodon.socialJ 2 Replies Last reply
                                        0
                                        • alexskunz@mas.toA alexskunz@mas.to

                                          @hex0x93 I try to use the "Managed Challenge" on CF which tests the browser and often "solves itself" within a second or so (wiggling the mouse might help with that, I'm not sure). The checkbox only appears when that fails. I try to not block anything except for the worst, known offenders. Reddit, Yelp & others are blocking me entire when I use my ad-blocking VPN on the phone — just stupid...

                                          @jackyan @zeborah @david_chisnall

                                          hex0x93@mastodon.socialH This user is from outside of this forum
                                          hex0x93@mastodon.socialH This user is from outside of this forum
                                          hex0x93@mastodon.social
                                          wrote sidst redigeret af
                                          #50

                                          @alexskunz @jackyan @zeborah @david_chisnall that's cool, and those do work sometimes. What you say about reddit and stuff not working is my everyday, online life. I chose it, still annoying, but I guess it is like in life...the few bad people ruin it for everyone😜😜
                                          Sometimes I think I am just paranoid...can't help it😅

                                          1 Reply Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper