Dear fellow Admins!
I'm currently investigating a curious case of suspicious HTTP requests coming from several ASNs (mostly Brasil, China and France) and generating a lot of traffic. Traffic started around Aug 28.
The only common thing between the requests are the following **HTTP User Agents**:
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/127.0.0 Safari/537.36
and
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/112.0.0.0 Safari/537.36
Does anyone else experience this as well? Is there anything known about those UAs being used by bots?
Could you guys check your access logs and let me know if you experience this as well? Thanks! 🙇
EDIT: typos
#FediAdmin #MastoAdmin #boost #wienops