5 ms·
Using your analogy with malware and spam, the users that do not want to read kiwifarms can choose not to by.. just not reading it. Or blocking it in their firew
by byyll 4y ago
Using your analogy with malware and spam, the users that do not want to read kiwifarms can choose not to by.. just not reading it. Or blocking it in their firewall or browser. Seems like it's a bad analogy.
- insanitybit 4y agoNot really. Those who host malware and spam domains have them taken down. It's not just about a user receiving a spam email, it's also the fact that when a domain is being used to distribute malware the hosting provider will remove them.
- byyll 4y agoThat's not the case. There are a lot of hosting providers and reverse proxies that will gladly host malware and their upstream ISPs (which this thread is about, not hosting) will not block them. But what happens instead is they (either domains or IPs) get added to lists of phishing or malware enabled by default on most clients (browsers). Google has Safe Browsing and SpamHaus is probably the most popular spam list. In contrast, nobody accidentally visits KiwiFarms. And there is nothing done to you (malware to download or your information being stolen) if you accidentally do.
- insanitybit 4y agoMalicious domains, users of email services for spam purposes, etc, get removed by their hosts all the time. That's simply a fact, I have made or been involved with the process as I work in security. There are some providers that are more cooperative than others, and certainly lists like Safe Browsing exists as well to deal with that + they can be more false positive tolerant. My point is that these providers make choices about the content that they host all the time. They do this because some content is just bad. Kiwifarms tipped too far into "bad" and got removed, just like malware would get removed, just like spammers get removed. Visiting a site, accidental or otherwise, isn't relevant.
- luckylion 4y agoI've previously reported phishing and scams to sendgrid, aws and azure. Neither took the domains down.
- insanitybit 4y agoI'm not sure what your anecdote is supposed to contribute. Are you trying to say that because of your experience you don't believe that hosting providers take malicious content down? That doesn't even seem worth responding to, if so, especially as I have given anecdotes to the contrary.
- luckylion 4y agoThey certainly don't do it reliably. You might have different access to them, and they listen to reports from you, or it's an "you need this many Twitter followers before we take reports from you". Them removing malicious content "all the time" is certainly not something I've seen. I disagree with an argument that goes towards "they care and that's why they do it this way today".
- insanitybit 4y agoIt doesn't matter if they do it sometimes or all the time or 90% of the time or whatever. The point is that they do it, they already take those actions and no one cries "censorship" because it's obviously a good thing that a malware C2 gets taken down.
- yucky 4y ago>Malicious domains, users of email services for spam purposes, etc, get removed by their hosts all the time. That's simply a fact, I have made or been involved with the process as I work in security. Yes because it's illegal. Deadnaming a transperson might be mean but it's not illegal. If there are countries where it is illegal, then they could just do like China does to "protect people from offensive material" by banning sites in those locales.
- immibis 4y agoHow do you choose not to be infected with the malware? If you're the recipient of a DDoS from malware, how do you choose not to receive the DDoS? Is it a violation of the malware author's free speech if you take down its C&C server to stop the DDoS? Kiwifarms users do the real-life moral equivalent of DDoS, and Kiwifarms is a C&C server.