Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
xxdesmus
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
xxdesmus
3mo ago
I run Trust & Safety at Cloudflare. The best route to request a takedown of this domain and luaventures{.}xyz (the other domain mentioned in your blog post) would be at the host and/or the domain registrar. Cloudflare isn't th
2.
▲
by
xxdesmus
8mo ago
I run the trust & safety team at Cloudflare. In the vast majority of cases, Cloudflare is not the hosting provider of a website resolving to our IPs. In those cases we have no capacity to remove content hosted by others. In those cases
3.
▲
How Cloudflare is using automation to tackle phishing head on
(blog.cloudflare.com)
3 points
by
xxdesmus
2y ago
|
0 comments
4.
▲
Cloudflare's 2024 Transparency Reports – now live with new data and a new format
(blog.cloudflare.com)
3 points
by
xxdesmus
2y ago
|
1 comments
5.
▲
by
xxdesmus
2y ago
While Cloudflare has been publishing transparency reports for a long time, this year we chose to revamp the report in light of new reporting obligations under the DSA, and our goal of making our reports both comprehensive and easy to unders
6.
▲
by
xxdesmus
2y ago
Please drop me an email with what you’re seeing - justin (at) cloudflare.com ? That doesn’t sound like old info - that sounds like someone might still be reporting it for abuse even after the domain changed owners.
7.
▲
by
xxdesmus
3y ago
I look forward to the phishinhg. Hopefully you can block known bad hashes.
8.
▲
by
xxdesmus
3y ago
1) Thanks for the heads up 2) Is this the beta channel? or official builds? 3) You've already notified 1Password of this possible bug/risk?
9.
▲
by
xxdesmus
4y ago
Self hosting option? Looks great, but I’d rather avoid a SaaS service if possible.
10.
▲
Cloudflare mitigates record-breaking 71M request-per-second DDoS attack
(blog.cloudflare.com)
7 points
by
xxdesmus
4y ago
|
4 comments
11.
▲
by
xxdesmus
4y ago
CNAME flattening works just fine and is supported by a variety of DNS providers at this point, but yes — there’s an RFC otherwise.
12.
▲
by
xxdesmus
4y ago
Hello, I’m the Head of Trust & Safety at Cloudflare. I wanted to clarify our processes, which were described inaccurately in this Hacker News post. As part of our standard fraud review process, domains determined to be malicious registr
13.
▲
by
xxdesmus
4y ago
Hello, I'm the Head of Trust & Safety. Please forward me the email? This is very likely legitimate and from our team, but I'd like to confirm. justin@ cloudflare.com
14.
▲
Cloudflare's Log4j RCE 0-day mitigation – CVE-2021-44228
(blog.cloudflare.com)
21 points
by
xxdesmus
5y ago
|
0 comments
15.
▲
by
xxdesmus
5y ago
Cloudflare sends the origin IP directly to the hosting provider -- with a copy of the abuse report.
16.
▲
by
xxdesmus
5y ago
Not true -- according to the OP -- we'll tell you who the hosting provider is -- as in, the name and abuse email of the host. The origin IP is not needed.
17.
▲
by
xxdesmus
5y ago
>> "You also have a Cloudflare account to file a complaint, which I found to be odd." That's incorrect. Anyone can fill out the web reporting form here: cloudflare.com/abuse -- absolutely no Cloudflare account nee
18.
▲
Federal court rejects copyright infringement claim against Cloudflare
(blog.cloudflare.com)
26 points
by
xxdesmus
5y ago
|
1 comments
19.
▲
Account Takeover Protection and WAF to Help Stop Global Brute Force Campaigns
(blog.cloudflare.com)
3 points
by
xxdesmus
5y ago
|
0 comments
20.
▲
by
xxdesmus
5y ago
To clarify — the website owner can fully add Tor to your allow list if you’d like to. That’s entirely your choice if you’re concerned about Tor users being CAPTCHA’d. Also you control the overall security level — so drop it if you’d like to
21.
▲
by
xxdesmus
6y ago
Completely agree. I closed the tab as soon as I saw those were the only 2 signup options.
22.
▲
by
xxdesmus
6y ago
To be clear -- the website owner can always reply to the email they receive from our Trust & Safety team. That goes directly to our team. This individual could also do that if they had further questions for the team. Hackernews isn'
23.
▲
by
xxdesmus
6y ago
waves author here. To be clear: I do this research in my free time. This is 100% independent of my $dayjob at Cloudflare.
24.
▲
by
xxdesmus
6y ago
(1) setup a VPN server at a hosting provider (you pick) (2) turn off all logging (3) make it available to the public (you pick how) (4) get flooded with abuse reports (5) get shut down by your hosting provider
25.
▲
by
xxdesmus
6y ago
Hi, I'm the Head of Trust & Safety at Cloudflare. I'd be happy to discuss the specifics of your domain's DNS settings that lead to this if you'd like to email me -- justinATcloudflareDOTcom This general issue though
26.
▲
by
xxdesmus
7y ago
Not at all a safe assumption. Ask your host if they are — you’ll probably be surprised by the answer.
27.
▲
by
xxdesmus
7y ago
The site is broken on iOS Safari with an ad block on. Not a good start. Looks interesting otherwise.
28.
▲
by
xxdesmus
7y ago
Author of the post here -- happy to answer any questions.
29.
▲
by
xxdesmus
7y ago
justin {at} cloudflaredotcom Thanks! p.s. I thought it was lobsters, but it doesn't appear to be ...hence I asked. :)
30.
▲
by
xxdesmus
7y ago
Please open source the code? Would love to run my own site (for a different purpose).
More ›