Now I hear the #Ja3 is going to be on Nike By You. Very smart move!

For people who run large public HTTP services, are there any IP/JA3/fingerprint lists that you use to create outright block lists at your network edge? I'm interested in ones that you know are safe and don't cause false positives for you.

I've used Firehol in the past but unsure how up to date they are these days. Retoots appreciated!

#netsec #ja3 #blocklist

Join Vlad Iliushin's training at #Honeynet2025 for a hands-on walkthrough of modern passive fingerprinting techniques. Learn to generate, interpret, and apply network fingerprints like JA3, JA4, pOf, and more — and use them in real-world defensive workflows.

🛠️ Gain practical fingerprinting skills you can apply immediately
🪑 Limited seats available – don’t wait!
🔗 Register now: https://prague2025.honeynet.org

#Honeynet #NetworkSecurity #PassiveFingerprinting #JA3 #MuonFP

2025 Honeynet Project Workshop – Prague, Czech Republic

Partage, veille et lecture : GitHub - O-X-L/haproxy-ja3n: HAProxy (community) Lua Plugin for JA3N TLS Client-Fingerprinting https://github.com/O-X-L/haproxy-ja3n On m'en a parlé ce matin, ja3 est un outil permettant de sortir un fingerprint TLS et... Selon un très court tcpdump, ça matcherai... J'aurais donc un bot net spécifique qui vient tabasser forgejo.

Mais le tcpdump de 45 secondes c'est pas vraiment sur. Donc au moins avec ça je vais pouvoir analyser plus facilement

Et ENSUITE : bam ! on tape (oui, ja3 et ja3n c'est pas tout a fait pareil) et j'ai quelques idées pour ça :D #HAproxy #ja3 #Securite #Shaarli https://dryusdan.link/shaare/5a8W7g
GitHub - O-X-L/haproxy-ja3n: HAProxy (community) Lua Plugin for JA3N TLS Client-Fingerprinting

HAProxy (community) Lua Plugin for JA3N TLS Client-Fingerprinting - O-X-L/haproxy-ja3n

GitHub
Masz VPN, zmieniony user-agent, prywatną przeglądarkę – a mimo to serwer wie, kim jesteś?
Bo dziś identyfikacja to coś więcej niż ciasteczka. W grze są JA3, JA4, PeetPrint, fingerprinting HTTP/2 od Akamai, kolejność nagłówków, ALPN, WebGL, fonty, język systemu…
Prywatność nie kończy się na adresie IP.
#Fingerprinting #PrivacyMatters #JA3 #JA4 #PeetPrint #Akamai #CyberSecurity #DigitalIdentity #VPN #Infosec

實作更多功能的 curl-impersonate fork

從「Curl-Impersonate (github.com/lexiforest)」這邊看到的消息。

前情提要可以在「修正 Curl 的 TLS handshake,避開 bot 偵測機制」這邊看到,當時介紹了 curl-impersonate 這個專案,可以修改 TLS 的行為 (尤其是 handshake 階段),讓

https://blog.gslin.org/archives/2024/12/31/12168/%e5%af%a6%e4%bd%9c%e6%9b%b4%e5%a4%9a%e5%8a%9f%e8%83%bd%e7%9a%84-curl-impersonate-fork/

#Browser #Computer #GoogleChrome #Murmuring #Network #Privacy #Security #Software #WWW #curl #fingerprint #fork #impersonate #ja3 #ja4 #tls

實作更多功能的 curl-impersonate fork

從「Curl-Impersonate (github.com/lexiforest)」這邊看到的消息。 前情提要可以在「修正 Curl 的 TLS handshake,避開 bot 偵測機制」這邊看到,當時介紹了 curl-impersonate 這個專案,可以修改 TLS 的行為 (尤其是 handshake 階段),讓 TLS fingerprint 看...

Gea-Suan Lin's BLOG

#фалыстыннаш

в игре #ja3 вышедшей в июле 2023 года, изложена позиция израильского руководства о возможном нападении хамас. почти слово в слово. губернатор ли бибигуэн, блядь.

неужели это просто так сукабля характерно, что просто является гэгом про третьесортное ни на что не способное правительство заштатной африканской страны?