Hacker Newsnew | past | comments | ask | show | jobs | submit | more sim7c00's commentslogin

sad story but i have to say using it to try and pull away kids from their parents simply because the parents are of a certain belief or lack certain intelligence or schooling seems a very slippery slope. Ofc the UK is happy to jump on, slide down and get injured at the bottom of slippery slopes, but yeah... you cant force people to conform with your ideas and beliefs even if they are 'scientifically sound'.

however interesting this is i am sorry to say the moon _is_ made of cheese. otherwise very interesting and thorough read. thanks for the share / writeup. i hope this censorship stuff doesnt get more out of hand. its crazy to think a foreign government could put you out of business in such a way if your own laws or constitution protect you specifically on the same point.

the about is a bit convoluted. kinda like the idea but phrases like 'forging hyper-local connections' ...

whats the difference here between local and hyper local? i mean. it makes the whole thing kinda too fluffy to read. distracts from the main concept presented.


this is the best approach honestly. redirect them to some place that undermines their efforts. either back to themselves, their own provider, or nasty crap that no one want to find in their crawler logs.

Maybe someone will publish a "nastylist" for redirecting bots.

Decades later, I'm still traumatized by goatse, so it'll have to be someone with more fortitude than me.


goatse, lemonparty, meatspin. take ur pick of the gross but clearnetable things.

mind you before google and the likes and the great purge of internet, these things were mild and humorous...


Goatse?

Wouldn't recommend Googling it. You either know or just take a guess.


I googled a lot of shock sites after seeing them referenced and not knowing what they were. Luckily Google and Wikipedia tended to shield my innocent eyes while explaining what I should be seeing.

The first goatse I actually saw was in ASCII form, funnily enough.


I use the ASCII form to reply to spammers, since it will not trip up on an attachment filter or anything most usually. I get mixed results from them, but the results are usually funny.

I've never seen it in ASCII form, and I don't want to search for it as google will inevitably disregard my instructions and show me the 4K version in full color.

The Jason Scott method.

thats traffic in the other direction

The main joy of a zip bomb is that it doesn't consume much bandwidth - the transferred compressed file is relatively small, and it only becomes huge when the client tries to decompress it in memory afterwards

It's still going in the wrong direction.

It doesn't matter either way. OP was thinking about ways to consume someone's bandwidth. A zip bomb doesn't consume bandwidth, it consumes computing resources of its recipient when they try to unpack it.

i wouldnt assume someone sending 700 req per minute or so to a single domain repeatedly (likely to the same resources) will bother opening zip files.

the bot in the article is likely being tested (as author noted), or its a very bad 'stresser'.

if it was looking for content grabbing it will access differently. (grab resources once and be on its way).

its not bad to host zip bombs tho, for the content grabbers :D nomnom.

saw an article about a guy on here who generated arbitrary pngs or so. also classy haha.

if u have a friendly vps provider who gives unlimited bandwidth these options can be fun. u can make a dashboard which bot has consumed the most junk.


This is using the builtin compression in http:

  Transfer-Encoding: gzip

nearly every http response is gzipped. unpacking automatically is a default feature of every http client.

Accept-Encoding i think would be logical on scrapers these days but maybe its not helpful idk. server should adhere to what client requests afaik.

I know. I was pointing out that it doesn't matter what it consumes if it's going the wrong way to begin with.

if they have some service up on the machines the bot connect from then u can redirect them to themselves.

otherwise, maybe redirect to aws customer portal or something -_- maybe they will stop it if it hit themselves...


asks for a pony, gets a washingmachine.

chatgpt???

good catch! i wasnt able to find your item so i dispatched something randomly!


You’re absolutely right! The correct emoji for a seahorse is

> would probably introduce far more bugs than would be fixed

It runs against the same test suite with no issues

- that proves nothing about bugs existing or not.


*perform rituals to summon external logic entites


cool stuff and congrats. nice reading about the whole journey to it :) always humbled by people digging so deeply into things. thanks for the writeup!


Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: