Why does CloudFlare insist on forwarding abuse reports to hosting providers and website owners? This makes no sense if the website operators and possibly also hosting providers are the criminals you're trying to stop!
@netresec I think because they don't host the content themselves and they just pass the responsibility to those who do. It's basically just a "notify the hoster" contact form in disguise.
@daniel But Cloudflare do run the nameservers for many malware/botnet domains. They also forward TCP traffic to command-and-control servers from infected computers. So it's not so much about the hosted content, but rather the service they provide.

@netresec @daniel also #OCILLA privilegues only apply up to the point the provider is being notified.

#ClownFlare deliberately claims to not be able (which is a lie!) when OFC they are.

  • See how quickly they fired #KiwiFarms when all the right reasons didn't matter, but bigger clients yeeted #CloudFlare!

https://infosec.space/@kkarhan/114743233834160376

Kevin Karhan :verified: (@[email protected])

@[email protected] because #CloudFlare is a #RogueISP who routinely hosts and supports #Cybercrime and #Terrorism actors, including #Deash and #KiwiFarms for the latter. - #Doxxing reports *and* refusing to acknowledge that they can in fact *yeet clients* off their network is their routine #ModiOperandi. Only once clients threatened to fire #ClownFlare did they fire KiwiFarms! https://en.wikipedia.org/wiki/Cloudflare#Kiwi_Farms

Infosec.Space