Reminds me of the Crowdstrike incident last year.

  • krashmo@lemmy.world
    link
    fedilink
    arrow-up
    3
    ·
    6 小时前

    Isn’t cloudflare a pretty common part of remotely accessing your server? I don’t use it but I’ve seen lots of people talk about it and recommend using them.

    • antrosapien@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      49 分钟前

      I haven’t exposed anything to internet and self hosted headscale instance. I’m not behind CGNAT so it was quite easy.

    • TubularTittyFrog@lemmy.world
      link
      fedilink
      arrow-up
      10
      ·
      edit-2
      6 小时前

      yes. it also prevents attacks. it’s basically a necessity these days.

      if you host your own stuff and get any traffic you’ll get DDoSed by bots. cloudflare prevents this by detaching your DNS from your IP and distributing requests.

      just port forwarding on your home network these days… and you’ll get dozens of attacks per hour.

      the internet is not ‘nice’ anymore. services like cloudflare are a necessity for any active services beyond personal use. long gone are the days you could host a web server from your bedroom.

      • krashmo@lemmy.world
        link
        fedilink
        arrow-up
        2
        ·
        4 小时前

        Maybe you guys are hosting more than me but I’ve got a few ports forwarded and don’t see any unusual activity. I guess I’m just lucky.

        • chicken@lemmy.dbzer0.com
          link
          fedilink
          arrow-up
          2
          ·
          1 小时前

          For me what triggered getting a lot of malicious login attempts in the logs was pointing a dns record directly at my ip

          • krashmo@lemmy.world
            link
            fedilink
            arrow-up
            2
            ·
            1 小时前

            Ah, yeah I don’t do that. Haven’t had much of a reason to so far. Only have a few minor convenience type services opened up

    • 4grams@awful.systems
      link
      fedilink
      English
      arrow-up
      3
      ·
      6 小时前

      I do use it myself (free tier only) but it’s out of ease and convenience. I’m ready to abandon it but I like the security it brings. My stuff is just personal garbage with no strict uptime requirement - if I lose public access I still have Tailscale and a VPN to my router as backup.

      So, it’s a deal with the devil for sure, but it’s one I wore protection for when signing.