Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. is anyone else getting random follows from accounts on infosec

is anyone else getting random follows from accounts on infosec

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
57 Indlæg 27 Posters 0 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • viss@mastodon.socialV viss@mastodon.social

    is anyone else getting random follows from accounts on infosec.exchange and defcon.social where the account is like a day or two old, has barely any profile filled out, has zero posts, zero followers, but is already follwing a few dozen or a few hundred accounts? seems super shady. ive been blocking them on sight

    sempf@infosec.exchangeS This user is from outside of this forum
    sempf@infosec.exchangeS This user is from outside of this forum
    sempf@infosec.exchange
    wrote sidst redigeret af
    #8

    @Viss Me tooooo

    1 Reply Last reply
    0
    • viss@mastodon.socialV viss@mastodon.social

      is anyone else getting random follows from accounts on infosec.exchange and defcon.social where the account is like a day or two old, has barely any profile filled out, has zero posts, zero followers, but is already follwing a few dozen or a few hundred accounts? seems super shady. ive been blocking them on sight

      fritzadalis@infosec.exchangeF This user is from outside of this forum
      fritzadalis@infosec.exchangeF This user is from outside of this forum
      fritzadalis@infosec.exchange
      wrote sidst redigeret af
      #9

      @Viss
      Everyone on i.e. is shady.

      viss@mastodon.socialV 1 Reply Last reply
      0
      • fritzadalis@infosec.exchangeF fritzadalis@infosec.exchange

        @Viss
        Everyone on i.e. is shady.

        viss@mastodon.socialV This user is from outside of this forum
        viss@mastodon.socialV This user is from outside of this forum
        viss@mastodon.social
        wrote sidst redigeret af
        #10

        @FritzAdalis sure but some are very clearly malicious. and i dont mean like 'they hack shit', i mean they are horrible sociopathic narcisistic fuckbags who spearhead dogpiling campaigns and will sick com kids on you to harrass you for months. and they will 100% pull that shit where they create a sockpuppet account to watch you, in case you make an off color comment thats marked follower-only, so that they can dogpile you over it

        prometheus@infosec.exchangeP 1 Reply Last reply
        0
        • viss@mastodon.socialV viss@mastodon.social

          is anyone else getting random follows from accounts on infosec.exchange and defcon.social where the account is like a day or two old, has barely any profile filled out, has zero posts, zero followers, but is already follwing a few dozen or a few hundred accounts? seems super shady. ive been blocking them on sight

          kaoudis@infosec.exchangeK This user is from outside of this forum
          kaoudis@infosec.exchangeK This user is from outside of this forum
          kaoudis@infosec.exchange
          wrote sidst redigeret af
          #11

          @Viss same, and yes I block them

          1 Reply Last reply
          0
          • viss@mastodon.socialV viss@mastodon.social

            is anyone else getting random follows from accounts on infosec.exchange and defcon.social where the account is like a day or two old, has barely any profile filled out, has zero posts, zero followers, but is already follwing a few dozen or a few hundred accounts? seems super shady. ive been blocking them on sight

            jerry@infosec.exchangeJ This user is from outside of this forum
            jerry@infosec.exchangeJ This user is from outside of this forum
            jerry@infosec.exchange
            wrote sidst redigeret af
            #12

            @Viss the bots have gotten very good at gaming the moderated signups. Residential IP, protonmail or gmail address, on topic reason for joining, then lay low, make a few posts, follow some accounts, then start posting about how unfair it was for Ukraine to start a war or how Christians are the most persecuted religion. It’s starting to make me crazy. Report them when you see them.

            viss@mastodon.socialV silhouette@dumbfuckingweb.siteS iagox86@infosec.exchangeI 3 Replies Last reply
            1
            0
            • viss@mastodon.socialV viss@mastodon.social

              @linuxandyarn my whiskers tell me they are collectors, in the event you make a followers only post, so whoever runs them can see shit you want to be semi-private

              jerry@infosec.exchangeJ This user is from outside of this forum
              jerry@infosec.exchangeJ This user is from outside of this forum
              jerry@infosec.exchange
              wrote sidst redigeret af
              #13

              @Viss @linuxandyarn there’s no real advantage - mastodon is a wide open book.

              viss@mastodon.socialV 1 Reply Last reply
              0
              • jerry@infosec.exchangeJ jerry@infosec.exchange

                @Viss @linuxandyarn there’s no real advantage - mastodon is a wide open book.

                viss@mastodon.socialV This user is from outside of this forum
                viss@mastodon.socialV This user is from outside of this forum
                viss@mastodon.social
                wrote sidst redigeret af
                #14

                @jerry @linuxandyarn huh. i wonder what the point is of having 'follower only posts' if anybody can see them anyway?

                jerry@infosec.exchangeJ cr0w@infosec.exchangeC jernej__s@infosec.exchangeJ 3 Replies Last reply
                0
                • jerry@infosec.exchangeJ jerry@infosec.exchange

                  @Viss the bots have gotten very good at gaming the moderated signups. Residential IP, protonmail or gmail address, on topic reason for joining, then lay low, make a few posts, follow some accounts, then start posting about how unfair it was for Ukraine to start a war or how Christians are the most persecuted religion. It’s starting to make me crazy. Report them when you see them.

                  viss@mastodon.socialV This user is from outside of this forum
                  viss@mastodon.socialV This user is from outside of this forum
                  viss@mastodon.social
                  wrote sidst redigeret af
                  #15

                  @jerry yessir. ive just been blocking them, but i'll start reporting them now.

                  itgrrl@infosec.exchangeI 1 Reply Last reply
                  0
                  • viss@mastodon.socialV viss@mastodon.social

                    @jerry @linuxandyarn huh. i wonder what the point is of having 'follower only posts' if anybody can see them anyway?

                    jerry@infosec.exchangeJ This user is from outside of this forum
                    jerry@infosec.exchangeJ This user is from outside of this forum
                    jerry@infosec.exchange
                    wrote sidst redigeret af
                    #16

                    @Viss @linuxandyarn if you’re posting follower only, they you’re right, you have to be a follower to see them. Few people seem to post that way though.

                    viss@mastodon.socialV jesstheunstill@infosec.exchangeJ 2 Replies Last reply
                    0
                    • viss@mastodon.socialV viss@mastodon.social

                      @jerry @linuxandyarn huh. i wonder what the point is of having 'follower only posts' if anybody can see them anyway?

                      cr0w@infosec.exchangeC This user is from outside of this forum
                      cr0w@infosec.exchangeC This user is from outside of this forum
                      cr0w@infosec.exchange
                      wrote sidst redigeret af
                      #17

                      @Viss @jerry @linuxandyarn Noise reduction.

                      1 Reply Last reply
                      0
                      • jerry@infosec.exchangeJ jerry@infosec.exchange

                        @Viss @linuxandyarn if you’re posting follower only, they you’re right, you have to be a follower to see them. Few people seem to post that way though.

                        viss@mastodon.socialV This user is from outside of this forum
                        viss@mastodon.socialV This user is from outside of this forum
                        viss@mastodon.social
                        wrote sidst redigeret af
                        #18

                        @jerry @linuxandyarn i do them here and there, but in most cases, people boosting me has a tiny chance someone may want to talk shop, and thats important 😄

                        jerry@infosec.exchangeJ 1 Reply Last reply
                        0
                        • viss@mastodon.socialV This user is from outside of this forum
                          viss@mastodon.socialV This user is from outside of this forum
                          viss@mastodon.social
                          wrote sidst redigeret af
                          #19

                          @varx i think it just has to do with post frequency. the more you post, the more you end up in the firehose, and the more you end up in the firehose, the more attention you attract

                          1 Reply Last reply
                          0
                          • viss@mastodon.socialV viss@mastodon.social

                            @jerry @linuxandyarn i do them here and there, but in most cases, people boosting me has a tiny chance someone may want to talk shop, and thats important 😄

                            jerry@infosec.exchangeJ This user is from outside of this forum
                            jerry@infosec.exchangeJ This user is from outside of this forum
                            jerry@infosec.exchange
                            wrote sidst redigeret af
                            #20

                            @Viss @linuxandyarn anyhow, it’s an arms race and most instances are feeling it. I have a number of sentinel accounts around the fedi and they are getting follows almost every day lately from different instances.

                            viss@mastodon.socialV 1 Reply Last reply
                            0
                            • jerry@infosec.exchangeJ jerry@infosec.exchange

                              @Viss the bots have gotten very good at gaming the moderated signups. Residential IP, protonmail or gmail address, on topic reason for joining, then lay low, make a few posts, follow some accounts, then start posting about how unfair it was for Ukraine to start a war or how Christians are the most persecuted religion. It’s starting to make me crazy. Report them when you see them.

                              silhouette@dumbfuckingweb.siteS This user is from outside of this forum
                              silhouette@dumbfuckingweb.siteS This user is from outside of this forum
                              silhouette@dumbfuckingweb.site
                              wrote sidst redigeret af
                              #21

                              @jerry @Viss ever since i opened reg on this instance i have been getting 2-5 registrations per week with messages seemingly sourced from our about page from unverified emails. it's good to keep an eye open and manually filter.

                              jerry@infosec.exchangeJ 1 Reply Last reply
                              0
                              • jerry@infosec.exchangeJ jerry@infosec.exchange

                                @Viss @linuxandyarn anyhow, it’s an arms race and most instances are feeling it. I have a number of sentinel accounts around the fedi and they are getting follows almost every day lately from different instances.

                                viss@mastodon.socialV This user is from outside of this forum
                                viss@mastodon.socialV This user is from outside of this forum
                                viss@mastodon.social
                                wrote sidst redigeret af
                                #22

                                @jerry @linuxandyarn i feel like some of my old twitter experience could be handy here, but unike then, i dont have hadoop access to all the logs, heh

                                jerry@infosec.exchangeJ 1 Reply Last reply
                                0
                                • viss@mastodon.socialV viss@mastodon.social

                                  @jerry yessir. ive just been blocking them, but i'll start reporting them now.

                                  itgrrl@infosec.exchangeI This user is from outside of this forum
                                  itgrrl@infosec.exchangeI This user is from outside of this forum
                                  itgrrl@infosec.exchange
                                  wrote sidst redigeret af
                                  #23

                                  @Viss

                                  @jerry is good people™, he’s doing his absolute best to minimise & shut this shit down 💕

                                  (one of the reasons I regularly throw him some $$)

                                  1 Reply Last reply
                                  0
                                  • silhouette@dumbfuckingweb.siteS silhouette@dumbfuckingweb.site

                                    @jerry @Viss ever since i opened reg on this instance i have been getting 2-5 registrations per week with messages seemingly sourced from our about page from unverified emails. it's good to keep an eye open and manually filter.

                                    jerry@infosec.exchangeJ This user is from outside of this forum
                                    jerry@infosec.exchangeJ This user is from outside of this forum
                                    jerry@infosec.exchange
                                    wrote sidst redigeret af
                                    #24

                                    @silhouette @Viss I see all sorts of wacky stuff - that gets discarded. Quite a few of them are copying the contents of bios of other mastodon accounts and using that as the reason to join. I get a lot of “Infosec.exchange requires you to enter a reason to join. You need to enter something believable. Would you like help?” (Variations of that), and lately, it’s been very on point reasons “I work in IT and trying to get into cyber security” and so on. The latest wave is not really discernible based on the reason they provide.

                                    viss@mastodon.socialV 1 Reply Last reply
                                    0
                                    • jerry@infosec.exchangeJ jerry@infosec.exchange

                                      @silhouette @Viss I see all sorts of wacky stuff - that gets discarded. Quite a few of them are copying the contents of bios of other mastodon accounts and using that as the reason to join. I get a lot of “Infosec.exchange requires you to enter a reason to join. You need to enter something believable. Would you like help?” (Variations of that), and lately, it’s been very on point reasons “I work in IT and trying to get into cyber security” and so on. The latest wave is not really discernible based on the reason they provide.

                                      viss@mastodon.socialV This user is from outside of this forum
                                      viss@mastodon.socialV This user is from outside of this forum
                                      viss@mastodon.social
                                      wrote sidst redigeret af
                                      #25

                                      @jerry @silhouette do the waves come from any isps or multiple signups from the same host? i get there are residential proxies in use, but im wondering if theres enough volume to spot patterns. or like, web/appserver logs from the same ip - do they do recon before signing up in a way that can get fingerprinted

                                      jerry@infosec.exchangeJ 1 Reply Last reply
                                      0
                                      • viss@mastodon.socialV viss@mastodon.social

                                        @jerry @linuxandyarn i feel like some of my old twitter experience could be handy here, but unike then, i dont have hadoop access to all the logs, heh

                                        jerry@infosec.exchangeJ This user is from outside of this forum
                                        jerry@infosec.exchangeJ This user is from outside of this forum
                                        jerry@infosec.exchange
                                        wrote sidst redigeret af
                                        #26

                                        @Viss @linuxandyarn I really don’t know what the point is. The ability to spam or scam tens of people just seems… futile.

                                        viss@mastodon.socialV oscarsclaws@infosec.exchangeO 2 Replies Last reply
                                        0
                                        • viss@mastodon.socialV viss@mastodon.social

                                          @jerry @silhouette do the waves come from any isps or multiple signups from the same host? i get there are residential proxies in use, but im wondering if theres enough volume to spot patterns. or like, web/appserver logs from the same ip - do they do recon before signing up in a way that can get fingerprinted

                                          jerry@infosec.exchangeJ This user is from outside of this forum
                                          jerry@infosec.exchangeJ This user is from outside of this forum
                                          jerry@infosec.exchange
                                          wrote sidst redigeret af
                                          #27

                                          @Viss @silhouette residential US IP addresses, tor exit nodes, and lately protonvpn. They have figured out how to mass create proton accounts because the last few day, protonmail.com and protonvpn IPs have become the strongest signal of a bot (but it’s also used by a lot of legit people)

                                          viss@mastodon.socialV edbruce@infosec.exchangeE 2 Replies Last reply
                                          0
                                          Svar
                                          • Svar som emne
                                          Login for at svare
                                          • Ældste til nyeste
                                          • Nyeste til ældste
                                          • Most Votes


                                          • Log ind

                                          • Har du ikke en konto? Tilmeld

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          Graciously hosted by data.coop
                                          • First post
                                            Last post
                                          0
                                          • Hjem
                                          • Seneste
                                          • Etiketter
                                          • Populære
                                          • Verden
                                          • Bruger
                                          • Grupper