Kit O'Connell 🏳️‍⚧️

135 Followers
251 Following
1.4K Posts

Genderqueer movement journalist, digital Editor @TexasObserver. Nominated for 2023 GLAAD Media Award and finalist for 2023 National Magazine Award. Admin for texasobserver.social. Follow my personal account: @kitoconnell

Avi by Jordan Vonderhaar for TXO.

Email me: oconnell at texasobserver dot org
Get in touch for my Signal.

#LGBTQIA #Extremism #HumanRights

PronounsThey/Them
Bylineshttps://texasobserver.org/author/kit-oconnell/
I've been laid off from the @TexasObserver. I'm working on transferring this 'work' account off of the server today, if I'm allowed to do so.
@SarahBreau Thank you! Hoping to enjoy some nice outdoor time and even a trip up to IKEA.
I'm taking the week off, so things might be a little quieter than usual around here!

To all Fedi Admins Currently Being hit with a Spam Wave:

This kind of spam is now over! Unmute all the instances no longer on my list!

I've just released v4.0.0 of The UNmute List! I'd be very happy about a small donation because I have very little time and I cannot really justify working on this list with my current schedule 

There is a new type of spam, the same instances are affected as before. Those responsible in Japan are said to have been arrested.

Without further ado...

Limit these instances:

[Full List of Affected Instances Here]

Just get the list to download and import here.

Simply import this list and you'll mute the 47 worst spam instances currently known to me! I've worked on it for multiple weeks, sometimes ~9 hours at a time verifying all lists sent to me manually.

Limit first, defederate only in worst situations!

Consider re-federating with and un-silencing any of the mentioned instances once the spam is mitigated. The admins of some of these may have just been asleep when this all started.




Ban Spam Accounts via their E-Mail Domain

Block the following E-Mail Domain and whatever temp Mail provider it resolves to: chitthi.in

Just to be safe, block these ones too (same provider)

  • mailto.plus
  • fexpost.com
  • fexbox.org
  • mailbox.in.ua
  • any.pink

All our spam accounts came from these E-mails.

Since you probably have some of these accounts sleeping:

https://[your-instance.tld]/admin/accounts?email=%25%40chitthi.in there just select all and press “Ban”.

Find Remaining Spammers

I've seen instances that fixed the spam issue but began being hit later again. The spammers might use new E-Mails, so here is a way to find and block them anyway:

https://mamot.fr/@vincib/111946701929274350




IP Bans and TOR

These spammers seem to be using the TOR Network as all of their IPs are TOR Exit Node IPs, hence an idea (with some collateral damage if executed) would be to ban all TOR exit node IPs for sign ups. I am personally against this idea as you'd also prevent users who simply wish to stay anonymous online (political refugees, leakers of important documents, etc.) from using your platform. For now, simply banning every user using a particular Spammer IP will not help and will merely ban users that try to stay anonymous! Not necessarily the spammers.




How To Block All Temp E-Mails in the Future

If you want to prevent this from ever happening again, you should block E-Mails from Temporary Mail providers all together:

Because of this, hessen.social, for example, was not affected by the spam attack! They had already banned the email domain the spammers used ages ago.

In future updates on Mastodon, maybe Admins can simply click a button that says “Ban Temp E-Mail Providers” Automagically from the E-Mail Menu? There could be E-Mail categories that can be banned, such as temporary mails.




Why did this happen?

The real reason hundreds of us spent hours of our days during the spam on mitigating it is the following:

Cyberbullying Gone Global: Fediverse Spam and Operation Beleaguer

This is the full exposé @cappy has been working on regarding the February 15th Spam Attacks!

Thank you @BrodieOnLinux for mentioning this post in a video!

Good luck, everyone!
Thanks for participating in the Fediverse Experiment!

#FediBlock #FediAdmin

mastodon.de :MastodonDE:​ (@[email protected])

Interested in **supporting this instance?** :blobcatreachrev:​:MastodonDE:​:blobfoxfloofreach: Feel free to **donate** using one of the below links: :blank: • :liberapay: [Liberapay](https://liberapay.com/MastodonDE) :blank: • :kofi: [Ko-Fi](https://ko-fi.com/MastodonDE) :blank: • :patreon: [Patreon](https://patreon.com/MastodonDE) :blank: • :paypal: [PayPal](https://www.paypal.com/donate/?hosted_button_id=7CZ4CXZ2L32R8) :blank: Direct Bank Transfer (*no fees*): **IBAN**: DE36283500000145760443 **BIC**: BRLADE21ANO **Account holder**: Uden UG (*haftungsbeschraenkt*) **Set your Memo / Reference as “Donation for mastodon.de”** Explanation of these operating expenses (276.84 €/Month) in [English](https://mastodon.de/@MastodonDE/110811119053549314) and [German](https://mastodon.de/@MastodonDE/110810936592028856). You can also subscribe to our official Twitch channel or use your Prime Sub free of charge! https://twitch.tv/Mastodon_DE Thank you for supporting mastodon.de! Kind regards, **@Emily, @ErikUden & @Sleagle** :blobfoxfloofcofe: 🤎🧡💛💚💙💜:blobhaj_flag_transgender:​:blobhaj_flag_gay:​:fediverse:

MastodonDE
Today's attack proved that the Fediverse is unfortunate pretty vulnerable even to just a skid (or maybe OP who warned the skid).

The cause of the attack includes:
-
insufficient moderation on some servers allowing mass account creation.
- no good methods to filter out even just a keyword for an entire instance.

Even though most of us survived the first wave, we have to prepare for the second and future ones:
- Servers should enable the equivalent feature in their software that
enables moderators to check if an account is ok first before letting them post anything.
- Mastodon, Misskey and major software should implement a
regex filter that ignores posts from any instances.

Together, we can definitely make Fediverse a
better place. #fediblock #fediblockmeta #fediadmins #fediadmin #mastoadmin #mastoadmins #spam
I have blocked most or all of the #spam that was coming in overnight. Check the replies for a list of domains to block. I also blocked mastodon-swiss.org as well for the same issue. #fediblock
@chris we got one about 15 minutes ago

@oconnell

Here's one post (of many today) about the Misskey instance names to block if you need them:

Getting hit hard with Japanese spam from the following Misskey instances, highly recommend blocking them:

- m.mxin.moe
- cunnyborea.top
- social.cutefunny.net
- friendsyu.me (this is the only one that has closed registration so far to try and stem the tide)

@FinchHaven thank you that's very helpful