social.dk-libre.fr is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Laut StatCounter hat #Linux einen Marktanteil von 10 Prozent erreicht. Doch die Zahlen sind durch #Bots massiv verfälscht. Bereinigt bleibt der Anteil deutlich geringer. https://winfuture.de/news,160376.html?utm_source=Mastodon&utm_medium=ManualStatus&utm_campaign=SocialMedia
I wonder if this actually worked somewhere, somewhen, for somebot
Jul 27 07:40:21 skapet sshd-session[71062]: Failed password for invalid user root/bin from 217.156.66.34 port 47552 ssh2
#passwordgropers #passwordguessers #sshgropers #ssh #cybercrime #morons #idiots #bots
It looks like whoever is behind this has finally come for one of my sites. Manually blocking datacenter IPs has worked for a while, but it seems like the traffic is now coming either from residential IPs, or the IPs are just getting spoofed.
Real conundrum. I didn't want to have to set up Cloudflare for the site, and I have to wonder how good they are at catching this anyway, but it might just come to that.
Anyone else has been dealing with this?
Welp, now they came for my personal site.
I already reluctantly added Cloudflare to botwiki.org. But I *really* don't want to have to do that to my site.
This kind of blows. Thanks AI bros.
#indieweb #PersonalWebsite #devops #bots #spam #AICrawlers #enshittification
Hello to the fediverse !
If you are admin of a Mastodon instance, you should check if IP from the bloc 43.160.0.0/12 (precisely IPs in the ranges 43.172.194 to 198 and 43.173.173 to 194)
are asking for A LOT of pages and consuming a lot of CPU / Bandwidth.
It's a malicious bot that harvest the fediverse by tags, feel free to bloc it ;)
Hello to the fediverse !
If you are admin of a Mastodon instance, you should check if IP from the bloc 43.160.0.0/12 (precisely IPs in the ranges 43.172.194 to 198 and 43.173.173 to 194)
are asking for A LOT of pages and consuming a lot of CPU / Bandwidth.
It's a malicious bot that harvest the fediverse by tags, feel free to bloc it ;)
Bonjour la fédiverse !
Si vous êtes admin d'une instance de la fédiverse, regardez si des IPs du bloc 43.160.0.0/12 (plus précisément des IPs soit dans les plages 43.172.194 à 198 et 43.173.173 à 194)
ne font pas *énormément* de traffic sur votre instance. Si c'est le cas, c'est un bot maléfique, bloquez à vue !
stats récentes de mamot : (hits par bloc)
6434 66.249.
258917 43.172.
497379 43.173.
piaille :
28582 216.73.
230864 43.172.
443057 43.173.
Bonjour la fédiverse !
Si vous êtes admin d'une instance de la fédiverse, regardez si des IPs du bloc 43.160.0.0/12 (plus précisément des IPs soit dans les plages 43.172.194 à 198 et 43.173.173 à 194)
ne font pas *énormément* de traffic sur votre instance. Si c'est le cas, c'est un bot maléfique, bloquez à vue !
stats récentes de mamot : (hits par bloc)
6434 66.249.
258917 43.172.
497379 43.173.
piaille :
28582 216.73.
230864 43.172.
443057 43.173.
How We’re Keeping Reddit Real and Safe in the AI Era
https://redditinc.com/news/how-were-keeping-reddit-real-and-safe-in-the-ai-era
…
― Blocking 23 million spam views per day before they ever reach a human user.
― Catching ~25K net new spammy posts and comments a day.
― Reducing spam exposure for our users by ~20% from January to March 2026, relative to the prior three months and an additional 10–15% drop in overall spam account exposure.
― Revoking nearly 2M inauthentic votes per day over the last three months.
…
For those who are unaware: we have a Lobsters and Hacker new daily bots!
They post the top 25 articles of the days, each day, into your timeline.
Coté Source :
~614 487 IP sources : rappel, on est sûr du logiciel NON grand publique, un peu niche avec zéro contribution de dev externe a l'entreprise, ce qui est normale.
Si j'enlève les IP de l'infra (monitoring, jenkins, redmine) on enlève ~630 000 requêtes pour 6 IPs.
reste 2 500 000 requêtes et 614 481 IPs ...
~ 582 000 IPs, on fait moins de 10 requêtes (pour un total de 1754808 requêtes soit plus de 50%) dans les détails :
~ 257 998 IPs, on fait une seule requête pour un total de 257998.
36395 IPs, on fait seulement 2 requêtes pour un total de 72790
125627 IPs, on fait seulement 3 requêtes pour un total de 376881
28233 IPs, on fait seulement 4 requêtes pour un total de 112932
15122 IPs, on fait seulement 5 requêtes pour un total de 75610
60216 IPs, on fait seulement 6 requêtes pour un total de 361296
sinon on est ~ une trentaine (et pas tous dev) et en ce lundi de juillet, les bureaux parisiens (ou il y a pas grand monde ~ 3 personnes) ont fait environ 800 requêtes...
donc l'usage "légitime" sur la journée doit être ~ 30 000 requêtes (évaluation haute) soit 1% de l'usage. (bon l'infra compte pour 20% quand même 🙂 )
bref, on n'est pas sur les mêmes chiffres, mais on dépasse largement ton test.
Plusieurs point : l'url du git est ancienne (depuis plus de 10 ans) il y a eu quelques changements, mais globalement ce sont les mêmes urls.
De toute façon, c'est seulement depuis moins de 2 ans qu'on a un nombre de requêtes aussi importantes. Au point de déclencher des erreurs sur le monitoring et d'empêcher l'usage correct de la plateforme.
Je pense que les robots ne sont pas ceux des moteurs de recherche, ils ne parcourent pas internet à la recherche de page a indexé, mais plutôt des robots qui ciblent des URLS particulières " à forte valeur ajoutée" (des urls de code opensource accessible, super pour alimenter des IAs de code).
Yay! My essay on the impacts of Large Language Model (#LLM) #AI in #archaeology was just published:
https://doi.org/10.11141/ia.71.15
It looks at #bots and mass scraping on the infrastructure supporting #opendata and #openaccess. It also looks at the incentives that encourage the mass-production of #bullshit that may lead to #modelcollapse but more likely less dramatic and more dreary outcomes.
Heads up for #golang Chatmail bots developers:
The Chatmail API for Go library got a new release to support the latest chatmail core 2.53.0
https://github.com/chatmail/rpc-client-go
#chatmail #deltachat #bots #dev #devs #developer #api #e2ee #privacy #security #opensource #go #programming #automation
@oldsysops @nixCraft WATCH ME!
Cuz this is my daily doing!
- First of all, I'd block all non-Consumer Networks (i.e. entire ASNs associated with said #AIslop corpos - like #aws & #Azure!)
- Then I do check for #UserAgent and block known #bots like #ByteSpider and dynamically block entire IP allocations (minimum /24) as they get used.
- Whenever I can, I geoblock places that are notorious fir #Cybercrime (Russia, "P.R." China, USA,)
Huh, looks like the new ASes, with LLM-bots attacking servers, just dropped
TLDR: there are AS12876 and AS16276 — both located in France (Scaleway SAS and OVH SAS). My Asterisk self-hosted box was attacked from the next IPs: 62.4.15.81 and 51.222.38.229.
Today, after I was checked my e-mail, I found three warnings from Monit about fail2ban exhausting limits in my small server in the kitchen (Intel Atom N2800 1866 MHz and 4 Gb of RAM). First e-mail warns about fail2ban ate 200 MB of RAM, next about 500 MB of RAM and the last e-mail warns me that fail2ban ate 2 GB of RAM 
"Bots Now Outnumber Humans Online And The Internet Was Never Built For This."
https://www.forbes.com/sites/josipamajic/2026/06/04/bots-now-outnumber-humans-online-and-the-internet-was-never-built-for-this/
(#paywalled)
"The culprit is not the old wave of scraper bots and search crawlers, but agentic AI… #AgenticAI…made up just 1.7% of automated traffic at the start of last year. By the end of 2025 that category had grown 8,000%."
Mein kleiner #GoToSocial #Debian 13 Server wird momentan aus China von einer massiven Rotte #SSH Login #Bots zugemüllt. Es sind ganze /24er Netze. #Fail2Ban wäre für den kleinen Server Overkill und würde vermutlich mehr schaden als nützen. Also etwas kleines handliches. Ein Script, welches das Journal nach Loginversuchen abgrast und die Blöcke für 24h erdet. Mal sehen, ob ich die Zeit noch verlängern werde. Die Lümmels haben sogar den unüblichen Port gefunden. Wenn ich ihn verschiebe, dauert es nicht lange, bis sie dort aufschlagen. Und so habe ich #nftables und ein kleines #bash Script eingesetzt, um das Treiben zu bremsen. Es funktioniert gut. Momentan sind direkt 5 verschiedene /24 Netze blockiert.
https://notes.j62.de/?file=Gemini-SSH-Schutz+mit+nftables+und+Scripts.md
⚠️
An article about how to spot a bot account:
edit: I think the article I added below this one is better
#BotAccount #fediverse #Mastodon
#Bots
#SocialMedia
https://stateofsurveillance.org/guides/basic/bot-network-detection-social-media/
⚠️ Another article about bot accounts, similar to the one above but with a bit more info and a few more important resources
#BotAccounts #Bots #Fedivrese #Mastodon
https://theword360.com/2025/07/06/how-to-identify-bots-and-troll-farms-on-social-media/
Die #DeutscheBahn sperrt Nutzer von #Linux teils von ihrer Webseite aus. Das Sicherheitssystem stellt das #Open-Source-#Betriebssystem offenbar unter Generalverdacht und behandelt Anwender wie bösartige #Bots. https://winfuture.de/news,158852.html?utm_source=Mastodon&utm_medium=ManualStatus&utm_campaign=SocialMedia
If you see an account marked with the "Automated" or "Bot" tag, this does not mean anything bad! This tag can only be added by the owner of the account, so it is almost always used to mark good useful bots run by honest people.
Bad bots usually *do not* use this tag, because the creators of bad bots usually don't want to reveal that they are bots.
More info and questions answered about the "Automated" tag in the guide:
➡️ https://fedi.tips/why-are-some-accounts-marked-bot-on-mastodon