Mastodon Skip to content
  • Home
  • Aktuell
  • Tags
  • Über dieses Forum
Einklappen
Grafik mit zwei überlappenden Sprechblasen, eine grün und eine lila.
Abspeckgeflüster – Forum für Menschen mit Gewicht(ung)

Kostenlos. Werbefrei. Menschlich. Dein Abnehmforum.

  1. Home
  2. Uncategorized
  3. If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks.

If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks.

Geplant Angeheftet Gesperrt Verschoben Uncategorized
openstreetmapbotsabuse
114 Beiträge 92 Kommentatoren 0 Aufrufe
  • Älteste zuerst
  • Neuste zuerst
  • Meiste Stimmen
Antworten
  • In einem neuen Thema antworten
Anmelden zum Antworten
Dieses Thema wurde gelöscht. Nur Nutzer mit entsprechenden Rechten können es sehen.
  • alivedevil@tauri.earthA alivedevil@tauri.earth

    @utf_7 @osm_tech

    App developers can embed some "Sdk" into their apps or games.
    The developer receives money.
    The "Sdk"-provider proxies requests through these apps and games, to gain residential IPs.
    And scrapers can buy these services, to tunnel their requests from residential IPs.

    kuniti_shino@pounced-on.meK This user is from outside of this forum
    kuniti_shino@pounced-on.meK This user is from outside of this forum
    kuniti_shino@pounced-on.me
    schrieb zuletzt editiert von
    #74

    @AliveDevil @utf_7 @osm_tech basically botnet/malware

    1 Antwort Letzte Antwort
    0
    • andresimous@oslo.townA andresimous@oslo.town shared this topic
      exxo@nrw.socialE exxo@nrw.social shared this topic
    • dalias@hachyderm.ioD dalias@hachyderm.io

      @AliveDevil Yes but they could still be banned when caught. A few devs getting banned would be a big deterrent for others to ship this malware.

      The right *technical* defense, however, is not to allow apps arbitrary network access unless they're declared in the manifest as a "browser" or other "client software" that the user can use with any service they want (like IRC clients, mail clients, Mastodon clients, etc.).

      Instead, the manifest should declare a single domain the app can contact, or multiple if the developer is willing to pay for more intensive vetting of them, and only allow network access to the declared domain(s).

      utf_7@mastodon.socialU This user is from outside of this forum
      utf_7@mastodon.socialU This user is from outside of this forum
      utf_7@mastodon.social
      schrieb zuletzt editiert von
      #75

      @dalias @AliveDevil dafuq? if so, "software development kit sounds" wrong in that contedt. this is plain malware.

      imagine using an app and someone downloads child porn or classical torrent over your connection. how will you proof you're innocent

      1 Antwort Letzte Antwort
      0
      • wiase@ibe.socialW wiase@ibe.social shared this topic
      • osm_tech@en.osm.townO osm_tech@en.osm.town

        If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

        dot@noc.socialD This user is from outside of this forum
        dot@noc.socialD This user is from outside of this forum
        dot@noc.social
        schrieb zuletzt editiert von
        #76

        @osm_tech @taylorlorenz

        1 Antwort Letzte Antwort
        0
        • angelacarstensen@mastodon.onlineA angelacarstensen@mastodon.online shared this topic
        • osm_tech@en.osm.townO osm_tech@en.osm.town

          If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

          chillicampari@layer8.spaceC This user is from outside of this forum
          chillicampari@layer8.spaceC This user is from outside of this forum
          chillicampari@layer8.space
          schrieb zuletzt editiert von
          #77

          @osm_tech tagging @mfeilner

          sl007@digitalcourage.socialS 1 Antwort Letzte Antwort
          0
          • osm_tech@en.osm.townO osm_tech@en.osm.town

            If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

            john_livingston@mamot.frJ This user is from outside of this forum
            john_livingston@mamot.frJ This user is from outside of this forum
            john_livingston@mamot.fr
            schrieb zuletzt editiert von
            #78

            @osm_tech

            Ping @mart1oeil @mathildesaliou

            1 Antwort Letzte Antwort
            0
            • robz@toot.robzazueta.comR robz@toot.robzazueta.com

              @osm_tech Why not write the article yourself as a blog post? Would much rather hear the full version of your side of the story than a journo's interpretation of it.

              mimesatwork@wandering.shopM This user is from outside of this forum
              mimesatwork@wandering.shopM This user is from outside of this forum
              mimesatwork@wandering.shop
              schrieb zuletzt editiert von
              #79

              @robz @osm_tech And who is it going to reach?

              robz@toot.robzazueta.comR 1 Antwort Letzte Antwort
              0
              • baloouriza@social.tulsa.ok.usB baloouriza@social.tulsa.ok.us

                @osm_tech I wonder if there's a way to fail2ban requests coming in faster than typically found in human requests.

                nicd@masto.ahlcode.fiN This user is from outside of this forum
                nicd@masto.ahlcode.fiN This user is from outside of this forum
                nicd@masto.ahlcode.fi
                schrieb zuletzt editiert von
                #80

                @BalooUriza The problem is, who do you ban? Since the requests keep changing IPs and user agents.

                1 Antwort Letzte Antwort
                0
                • chillicampari@layer8.spaceC chillicampari@layer8.space

                  @osm_tech tagging @mfeilner

                  sl007@digitalcourage.socialS This user is from outside of this forum
                  sl007@digitalcourage.socialS This user is from outside of this forum
                  sl007@digitalcourage.social
                  schrieb zuletzt editiert von
                  #81

                  @chillicampari @osm_tech So if it is too late to tag @mfeilner now, I am tagging @evawolfangel

                  Journa et al.
                  - #OSM is equally important as #wikipedia and wikibase
                  - Please do not only report about critical infrastructure problems if an OSS project has birthday …

                  1 Antwort Letzte Antwort
                  0
                  • osm_tech@en.osm.townO osm_tech@en.osm.town

                    If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                    gusseting@mastodon.socialG This user is from outside of this forum
                    gusseting@mastodon.socialG This user is from outside of this forum
                    gusseting@mastodon.social
                    schrieb zuletzt editiert von
                    #82

                    @osm_tech @camwilson fyi

                    1 Antwort Letzte Antwort
                    0
                    • dalias@hachyderm.ioD dalias@hachyderm.io

                      @osm_tech @BalooUriza For IPv4, a bitmask of the entire address space is a viable "efficient" implementation of blocking. I wonder if there are tools that can do it that way rather than needing a gigantic list.

                      slink@fosstodon.orgS This user is from outside of this forum
                      slink@fosstodon.orgS This user is from outside of this forum
                      slink@fosstodon.org
                      schrieb zuletzt editiert von
                      #83

                      @dalias @osm_tech @BalooUriza we have a very efficient implementation in #vinylcache (formerly #varnishcache )

                      1 Antwort Letzte Antwort
                      0
                      • blub@norden.socialB blub@norden.social

                        @osm_tech Or @heiseonline ?

                        christopherkunz@chaos.socialC This user is from outside of this forum
                        christopherkunz@chaos.socialC This user is from outside of this forum
                        christopherkunz@chaos.social
                        schrieb zuletzt editiert von
                        #84

                        @blub @osm_tech @heiseonline Yeah I already replied.

                        1 Antwort Letzte Antwort
                        0
                        • osm_tech@en.osm.townO osm_tech@en.osm.town

                          If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                          stuartyeates@cloudisland.nzS This user is from outside of this forum
                          stuartyeates@cloudisland.nzS This user is from outside of this forum
                          stuartyeates@cloudisland.nz
                          schrieb zuletzt editiert von
                          #85

                          @osm_tech

                          The real solution here is for app stores to give users proper per-app security settings. If an app isn't doesn't have a good reason to be sending email, it shouldn't be trying.

                          1 Antwort Letzte Antwort
                          0
                          • L linux@bahn.social

                            @osm_tech
                            Maybe @adfichter for @republik_magazin ?

                            adfichter@infosec.exchangeA This user is from outside of this forum
                            adfichter@infosec.exchangeA This user is from outside of this forum
                            adfichter@infosec.exchange
                            schrieb zuletzt editiert von
                            #86

                            @Linux after vacation;) @osm_tech @republik_magazin

                            1 Antwort Letzte Antwort
                            0
                            • bjoerne@norden.socialB bjoerne@norden.social shared this topic
                            • osm_tech@en.osm.townO osm_tech@en.osm.town

                              If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                              droidboy@social.cologneD This user is from outside of this forum
                              droidboy@social.cologneD This user is from outside of this forum
                              droidboy@social.cologne
                              schrieb zuletzt editiert von
                              #87

                              @osm_tech @publictorsten

                              1 Antwort Letzte Antwort
                              0
                              • jorgesanz@mapstodon.spaceJ jorgesanz@mapstodon.space

                                @osm_tech maybe @civio @dcabo can be interested or help finding someone

                                dcabo@mastodon.socialD This user is from outside of this forum
                                dcabo@mastodon.socialD This user is from outside of this forum
                                dcabo@mastodon.social
                                schrieb zuletzt editiert von
                                #88

                                @jorgesanz @osm_tech @civio hmm, it doesn’t fit in Civio’s scope I’m afraid. But it’s definitely an issue I’m aware of, it’s worse now with all the AI scrapers and I wonder if we should block them all, they flood my apps too 😕 Maybe the 404 Media guys would be interested in this? https://www.404media.co/ai-scraping-bots-are-breaking-open-libraries-archives-and-museums/

                                1 Antwort Letzte Antwort
                                0
                                • osm_tech@en.osm.townO osm_tech@en.osm.town

                                  If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                                  nodami@hcommons.socialN This user is from outside of this forum
                                  nodami@hcommons.socialN This user is from outside of this forum
                                  nodami@hcommons.social
                                  schrieb zuletzt editiert von
                                  #89

                                  @osm_tech
                                  Maybe @La_Directa @donestech
                                  @tunubesecamirio
                                  @albalafarga
                                  @mediapart
                                  @mainichi
                                  @heisec

                                  Not Sure If they are already aware 😅

                                  I remember @FediTips shared a list of News Media here in the fediverse, I'll try to find it.... Here it is https://fedi.directory/tag/investigative-journalism/

                                  1 Antwort Letzte Antwort
                                  0
                                  • osm_tech@en.osm.townO osm_tech@en.osm.town

                                    If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                                    kaasbaas@mastodon.africaK This user is from outside of this forum
                                    kaasbaas@mastodon.africaK This user is from outside of this forum
                                    kaasbaas@mastodon.africa
                                    schrieb zuletzt editiert von
                                    #90

                                    @osm_tech @theregister ?

                                    1 Antwort Letzte Antwort
                                    0
                                    • osm_tech@en.osm.townO osm_tech@en.osm.town

                                      If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                                      wumbo@infosec.exchangeW This user is from outside of this forum
                                      wumbo@infosec.exchangeW This user is from outside of this forum
                                      wumbo@infosec.exchange
                                      schrieb zuletzt editiert von
                                      #91

                                      @osm_tech hey, look into spur.us, they can help with the residential proxy issue.

                                      1 Antwort Letzte Antwort
                                      0
                                      • osm_tech@en.osm.townO osm_tech@en.osm.town

                                        If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                                        wumbo@infosec.exchangeW This user is from outside of this forum
                                        wumbo@infosec.exchangeW This user is from outside of this forum
                                        wumbo@infosec.exchange
                                        schrieb zuletzt editiert von
                                        #92

                                        @osm_tech @briankrebs

                                        1 Antwort Letzte Antwort
                                        0
                                        • osm_tech@en.osm.townO osm_tech@en.osm.town

                                          If you write about the messy reality behind "free" internet services: we're seeing #OpenStreetMap hammered by scrapers hiding behind residential proxy/embedded-SDK networks. We're a volunteer-run service and the costs are real. We'd love to talk to a journalist about what we're seeing + how we're responding. #AI #Bots #Abuse

                                          joris@hostux.socialJ This user is from outside of this forum
                                          joris@hostux.socialJ This user is from outside of this forum
                                          joris@hostux.social
                                          schrieb zuletzt editiert von
                                          #93

                                          @osm_tech in my experience, it helps if you have local representatives so journalists can speak with, and write about, a person in their own region.
                                          I could nudge Dutch (/Belgian) press!

                                          1 Antwort Letzte Antwort
                                          0
                                          Antworten
                                          • In einem neuen Thema antworten
                                          Anmelden zum Antworten
                                          • Älteste zuerst
                                          • Neuste zuerst
                                          • Meiste Stimmen



                                          Copyright (c) 2025 abSpecktrum (@abspecklog@fedimonster.de)

                                          Erstellt mit Schlaflosigkeit, Kaffee, Brokkoli & ♥

                                          Impressum | Datenschutzerklärung | Nutzungsbedingungen

                                          • Anmelden

                                          • Du hast noch kein Konto? Registrieren

                                          • Anmelden oder registrieren, um zu suchen
                                          • Erster Beitrag
                                            Letzter Beitrag
                                          0
                                          • Home
                                          • Aktuell
                                          • Tags
                                          • Über dieses Forum