Sensitive content
Hey there.
My Apache server is getting for many days a massive amount of requests on a particular repository, which kills it (due to maximum workers limit passed). I've deactivated the repository and I'm banning IPs still trying to access it, and in less than an hour I have already ~17000 unique IPs banned.
That really looks like a DDoS even if I have no idea why somebody would attack my server.
How can I deal with that? Note that I don't want to use Cloudflare.
TIA
Anubis maybe? I've heard that (some) AI bots now have the ability to bypass that but maybe worth a shot?
Weighs the soul of incoming HTTP requests to stop AI crawlers - TecharoHQ/anubisGitHub
@daniel yeah, thinking about it, but I'm not sure about consequences on accessibility. Also in this case I'm still having requests when I've blocked the URL, it's returning 403 (but still creating workers, which at the end block Apache).
I may have to move to NGINX, it should handle better this kind of things.
Archos reshared this.
as soon as someone steps up and implements it: gitlab.com/fdroid/fdroidclient…
The fediverse is decentralized, there are no blockers, just go and do it!
I think it would be very necessary to add the opportunity to rate and comment the apps in f-droid. If one would recognize that a app was a...GitLab
Interview with Hanna from Tuta Mail, the most secure email provider in the world. This is no sponsored, so support my work here: https://www.patreon.com/thehatedone Tuta Mail: https://tuta.The Hated One | Invidious
Hi I'm Cy, a total loser who has written some novels that nobody reads at fedicy.us.to/stories/ I also do a lot of programming that nobody uses or looks at, such as fedicy.us.to/forum Don't have a cell phone, don't make any money, don't have a family, or any sort of relationship, can't have a family at this point, never went on any adventures, don't have any life experiences to relate, and don't really sing, play, or write music anymore. There's nothing about me worth knowing and I am a little bitter about it. I'm currently not committing suicide and uncomfortably lingering and serving as an example of how everything you tried to do to make things better has failed.
Anyway I post silly jokes and actually boost crisis posts and try to find people posting good news, instead of bad news.
Have you ever started laughing, because something someone said was so ridiculous you knew it must be a joke, but now you're looking around, and not everyone is laughing, not nearly enough people are laughing!
That's just how it feels all the time now.
Side point on #ChatControl: When I worked on the law in the European Parliament, in the face of questionably legal, and highly problematic behavior by DG HOME, I prepared a whitepaper on why it was such a terrible Idea.
As it is in the public interest, I have decided to make that white paper public.
I have an idea. Instead of giving billions to a war monger for a so called "shield", why can't we use these billions to build a resilient infrastructure in Canada, notably infrastructure for a "Canadian cloud" that is vendor neutral and can work without any connection to the US.
Subsidising the GAFAM to build data-centers is NOT that. It's just tax cut to american companies.
We could also fund (open source) software to also become less dependent on the US enshittification. The hundreds of millions of tax payer money that go annually out of the Canadian economy to fund US oligarch could fund a lot of Canadian sovereign *open source* software. Licensing is a key point here as well.
" when new money enters the economy, it benefits those closest to the source first while others face rising costs. Today, purchases of proprietary software echo this theory in a similar way. Vendors and shareholders profit early, while taxpayers and communities shoulder the burden of recurring fees, upgrade costs, and discarded hardware."
news.opensuse.org/2025/09/15/c…
Communities, governments and businesses face a choice that carries real economic weight as Microsoft winds down support for its Windows 10 operating system. ...openSUSE News
@thunderbird super excited about the changes to the DB you are working on. Are threads going to still be built only with headers (no weird algorithm which decides for us what is part of the same thread and what is not?)
Please keep RFC compliant threads! there are so few clients that still do this unfortunately.
blog.thunderbird.net/2025/10/v…
We're starting work on the long-awaited Conversation View! Learn how our developers and designers are working together to make it happen!Monica Ayhens-Madon (The Thunderbird Blog)
More than 300 people will be attending The Matrix Conference next week. One of the most anticipated presentations is from Sweden’s Försäkringskassan.
Based on insights from eSam, the Swedish public sector wants to move on from proprietary, siloed communication systems.
Anna and Kenneth will cover the latest developments within SAFOS, a service designed to establish a national standard for secure messaging, video conferencing, and real-time collaboration.
conference.matrix.org/register
Join us for the Matrix Conference this October. The four day conference will take place in Strasbourg, France. Talks will be streamed live and virtual attendees will be able to ask speakers questions.conference.matrix.org
Andrej Babiš není spokojen s tím, že jeho zvažovaní koaliční partneři pouštějí na veřejnosti informace z vyjednávání.Barbora Kučerová (Seznam Zprávy)
State Of The Bird 2024/25 - great report by @thunderbird 's team: blog.thunderbird.net/2025/10/s…
Thank you for this wonderful piece of software. Can't wait to see the new database in action and I'll continue to donate ❤️
Let's dive into the details with the Thunderbird Annual Report 2024-2025 to see how we've grown and what we've accomplished in the past year.Ryan Sipes (The Thunderbird Blog)
This is your yearly reminder to #contribute to the apps you depend daily and still respect your #privacy are #free and #opensource. Demonstrate your love for them, help them do what they do best.
Today I contributed to @kunzisoft and @davx5app.
@keepassxc, @signalapp and @thunderbird will next.
существует две правды.
видео на котором поле, усеянное трупам и полицейский кричит «есть кто живой»
мурло которое вылезает на сцену с гениальным умозаключением. зрителей фестиваля Нова убил вертолет апач. есть ли у палестинцев такие вертолеты? нет. и ебаная толпа долбоебов, верящая в плоскую землю и то, что Израиль сам разъебенил с вертолета фестиваль Нова, чтобы напасть на бедных арабов в газе.
как мы можем сосуществовать с ними? никак.
We really want to kill the planet as fast as possible
--
Prime Minister Mark Carney raised the Keystone XL oil pipeline, which would run from northern Alberta to the U.S. Midwest, during his conversations with U.S. President Donald Trump at the White House on Tuesday, according to a source with direct knowledge of the meeting.
The source said Carney expressed renewed national interest *(!!!!!!!!!!!!!!!!! that's Alberta)* in the pipeline from the Canadian side and the U.S. president was receptive to the project advancing.
Remember if you vote Conservative, unless you are filthy rich, you vote against your own interest. On. Every. Aspect. Of. Your. Life.
Yesterday Twitter showed me a video of a known journalist interviewing a famous muslim US representative, where they cheerfully talk how the representative married and has sex with her brother.
Very realistic looking yet 100% fake. So many will believe it.
Insanely racist, islamophobic and defamatory.
Non consensual deep fakes are so obviously problematic, and in this political environment absolutely incendiary.
People involved in facilitating this should be arrested.
mas.to/@carnage4life/115338574…
Attached: 1 image Sora is a remarkable technical achievement but these were two poorly considered decisions 1. A platform where anyone can share a video of Pikachu & Sonic the Hedgehog beating each other up will be a DMCA takedown festival. 2.mas.to
🌊You have heard the EU bubble's new buzzword "deregulation" and you have no idea what it means? Or even better, you know what it means and whant to know how to fight it?
That's why we joined forces with out friends at @lobbycontrol to create free lobby tour of Brussels about the D-word!
🗓️ Join us on October 13th at 4pm
📝 It is free, but you have to register via ceo@corporateeurope.org
👟This is a physical tour of the European Quarter in Brussels
⌚ It will take about 90min
📷 by Marcella Via
reshared this
Remember. If your Province doesn't offer free COVID vaccines to all it's because the tax cut for the rich at the Federal level make they no longer supply to the provinces. So the provinces have no obligation to care.
Two Governments failing their citizens doesn't make a success.
Archos reshared this.
Did you notice Tuta's new colors? We've already heard great feedback, particularly about the blue dark theme. 💙 What are your thoughts about this update?!
✨ New color themes
✨ Apply dark mode to emails even if they contain colors
✨ Auto-save drafts
The last one is not visible, but super handy: Tuta now saves drafts automatically so if your device shuts down, your Tuta draft will not be lost! 🎉
My boss asked me "what new skills do you think web developers will need in two years", which gave me an opportunity to tell her about my recent efforts to learn urban foraging and how to identify edible plants in my neighborhood.
Anlasslose Chatkontrolle muss in einem Rechtsstaat tabu sein. Private Kommunikation darf nie unter Generalverdacht stehen.“Bundesministerium der Justiz
"Google is supposed to begin distributing third-party app stores inside the Play Store and mirror Play Store content in other stores."
arstechnica.com/gadgets/2025/1…
Should @fdroidorg be added to Google Play?
The first app store changes are due in a few weeks, with the major changes coming next summer.Ryan Whitwam (Ars Technica)
Missing option, though that would probably be unrealistic: "Only if signed by F-Droid".
Why? When Google signs, it adds proprietary BLOBs to the APK as well (keyword: DEPENDENCY_INFO_BLOCK, FROSTING_BLOCK). So the APK as it would then be distributed via PlayStore would no longer be fully FOSS.
Why unrealistic? As for new apps, Google no longer accepts APKs signed by their devs.
The kerberos5 library Heimdal is one of three GSS libraries curl support. It has a memory leak triggered by the new test in #18917 and the project seems mostly abandoned. Drop support and steer use...GitHub
sure, and you are doing a superb job of balancing choice against maintainability/security.
Adding parts is often easier than removing them. One has to be bold to say "enough".
Hubert Figuière
in reply to Rick Scott 🏳️⚧️ • • •Sensitive content