buc.ci is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
准备把大量的CBZ/EPUB/PDF格式的漫画从Backblaze迁移到Cloudflare R2,再同步到本地,一开始用的是CF R2迁移数据的Super Slurper,backblaze无需下载传输费用,但是有很多文件和路径不兼容,导致很多文件没能完全迁移,还是得用Rclone从b2 sync到r2:
rclone sync b2:ComicOPSD r2:comics --transfers 8 --checkers 16 --progress --log-level INFO --log-file ~/rclone-sync.log
运行完之后,再清理下Super Slurper迁移产生的僵尸分片上传:rclone backend cleanup -o max-age=1h r2:comics
我感觉我要退坑Backblaze了(),iDrive e2作为存储或许会更好,至少不用为了省下一点流量费到处找免流办法
This post is a test of a custom rule for Cloudflare I've been working on, and of my own conspiracy theory.
Forgive me my tinfoil hat: I have long suspected that the use of these tags (above), in fact, results in attracting more attention from crawlers/spiders/bots/whatever; that said automated systems exist which are specifically instructed to look for these tags, and to index any and all pages in which they find them.
If and only if my custom rule blocks a notably higher number of attempts to index this post alone, as compared to any of my other posts individually, I assume my theory is true until otherwise proven.
I will provide an update about this whenever I have one.
#CloudflareTunnel #Cloudflare #Fediverse #SelfHosting #SelfHosted
@w8emv Delta Chat has channels (1-to-many like on Telegram), Signal doesn't
Signal is centralized and hence much more easy to block, while Delta Chat can even work in intra-net and mesh networks
Delta Chat can use several servers "relays" at the same time, do you remember that downtime with signal when #amazon or #cloudflare are down?? with Delta Chat if one of your relays go down you can keep chatting using the others (ex. people manage to use Delta Chat in Iran, Russia and China despite the strict network firewalls, if you go on vacations to China Signal will not work, Delta Chat will)
Signal doesn't support using the same account in multiple phones, and multi-device with desktop is weak and still depends on the phone, with delta chat you can have several devices at the same time and it is super easy to add a second device
each device in Delta Chat works as an incremental automatic full backup, while in signal you have to upload backups to some cloud and eventually pay for it when the backup is too big
in Delta Chat you can have several profiles, as much as you like, easily separate your work profile (with more serious avatar and name) from your family profile where you can use more informal name and avatar etc
you don't need phone numbers or any private data to use Delta Chat, onboarding is super easy, no SMS codes, no solving CAPTCHA like on Signal
No strangers can discover you and send you spam or fishing in Delta Chat same for your family members, so it is a safer space for family chat
#DeltaChat has offline-first in-chat mini-apps like games, collaborative text pads, checklist, shopping lists and other tools (all end-to-end encrypted without any 3rd party service hosting such apps, they live in the chat and only chat members can access them)
in Delta Chat you can save messages in a "Saved Messages" chat, #signal also has "Note to Self" but what is superior in Delta Chat is that you can also jump from the saved/bookmarked message to the original message and see it in its chat context, in Signal it just forwards a copy of the message to the "Note to Self" chat
and more, but this post is too long already
Finished transferring my first domain from #Cloudflare to #Hetzner. The next one will be close to expire on May, so I’ll transfer it then. Slowly moving to #europe )
¿Que es esto de que un lunes a las 8.30 haya fútbol y esté #Cloudflare bloqueado? He visto que había varias páginas que no me estaban yendo y he estado dándole vueltas a mi router un buen rato hasta que se me ha ocurrido comprobarlo en https://hayahora.futbol
Menuda panda de sinvergüenzas son los de #laLiga, los jueces, las operadoras y los gobiernos que han propiciado toda esta situación. Ojalá les explote algún servicio crítico en la cara por esto.
Self hosters, do you use Cloudflare in front of your hosted services?
#cloudflare #selfhosting #privacy #security
| Yes - for security, bots, or spam: | 0 |
| Yes - IP, location, or identity privacy: | 0 |
| Yes - Because isn't it the modern way to host?: | 0 |
| No - I refuse to use Cloudflare: | 10 |
«Cloudflare — 2027 reden im Internet mehrheitlich Maschinen miteinander:
Das Internet war eigentlich als Medium für die Kommunikation zwischen Menschen gedacht. Zunehmend dient es aber als Kanal dafür, dass insbesondere KI-Systeme sich miteinander unterhalten. Dies wird den Traffic in Kürze sogar dominieren.»
Wenn die Bots zu mindestens was wirklich Sinnvolles so wie Produktives generieren würden aber ja…
I was wondering, how #Cloudflare domains are the cheapest in the world. Now I have an answer.
I'm planning on moving my domains to #Hetzner and have made a price comparison for my domains. You can clearly see that Cloudflare makes money on "premium" domains.
I had a client just deliver a big directive: "Get me a written step by step plan to get us off of #gmail and I want to move all of our workstations to #Linux. "
We are six months into my plan for moving away from #cart and #cloudflare and #google on the website, now #email and #Windows are on he chopping block.
#3DS is the biggest stumbling block
New #Documentation: Blocking requests from #Cloudflare's automated browser #crawl endpoint
Cloudflare recently announced an endpoint on their Browser Rendering service which allows users to make one API request to trigger a crawl of an entire site.
This documentation details how to block the resulting request.
Die zerbrechlichen Ketten der Bequemlichkeit
Wir haben unsere digitale Freiheit gegen Komfort eingetauscht. Microsoft, Amazon, Google und Meta bestimmen, wie wir kommunizieren, arbeiten und denken. Der CrowdStrike-Schock war kein Unglück, er war eine Ansage. Es ist Zeit, die Ketten zu sprengen. Ein Plädoyer für die digitale Emanzipation Europas. [Mehr lesen...]
https://www.christin-loehner.de/blog/die-zerbrechlichen-ketten-der-bequemlichkeit
#DigitaleSouveränität #DigitalSovereignty #Linux #OpenSource #FOSS #FreieSoftware #Datenschutz #Privacy #BigTech #FuckBigTech #DeGoogle #DeleteGoogle #DeleteFacebook #BoycottAmazon #BoycottMicrosoft #BoycottApple #Überwachungskapitalismus #SurveillanceCapitalism #Fediverse #Mastodon #Dezentralisierung #Decentralization #PublicMoneyPublicCode #ÖffentlichesGeld #RightToRepair #Fairphone #Framework #SelfHosted #Nextcloud #Signal #Tor #VPN #CrowdStrike #CloudAct #DSGVO #GDPR #Hetzner #EuropeFirst #TechSovereignty #DigitalRights #DigitaleRechte #Netzpolitik #CCC #ChaosComputerClub #ByeByeElon #QuitX #LeaveX #SaveSocial #Ecosia #Startpage #uBlockOrigin #LibreWolf #Firefox #FediTips #EuropäischeWerte #EuropeanValues #TechEthics #Nachhaltigkeit #Sustainability #GeplantéObsoleszenz #PlannedObsolescence #KaufLokal #LocalFirst #Widerstand #DigitalResistance #PolitischeTech #TechForGood #KI #AI #OpenSourceAI #ZenDiS #PublicCode #Libre #GNU #Debian #Fedora #PopOS #ZorinOS #NixOS #AntiColonialism #DigitalerKolonialismus #Cloudflare #AWS #AzureAlternative #EUTech #MadeInEurope
@Soblow dot they at least properly designate their #UserAgent as ClaudeBot.
curl…You forgot to shove AI in that corner over there.
New.
"AI is automating high-velocity attacker operations."
Cloudflare's 2026 Threat Report https://blog.cloudflare.com/2026-threat-report/ @cloudflare #infosec #Cloudflare
@jae Any halfassed #WebHoster or #VPS provider offers better #DDoS - protection and #firewalling than #ClownFlare.
Das Sammeln von Metadaten ist bei #Signal ausgelagert an #Google #Microsoft #Amazon & #Cloudflare - ist wie #WhatsApp in blau! So fügen die 4 IT #TechFaschisten alles von Dir zsammen: primal.net/e/note154hta... Bei #Threema alles unmöglich = deutlich sicherer! #UnPlugBigTech #UnplugTrump #Diday
It has been 0 days since I saw a threat actor depending on protection for their malicious activity from Cloudflare.
#threatintel #Cloudflare #FuckCloudflare
BEC phishing lure -> contiexpert[.]sg -> pub-cf549cc779d94e9ebb2f44e5579515a0.r2[.]dev/View-Pay-Details.html -> scrum.yiodrailoo[.]digital
Cloudflare is on a roll. Its last major outage happened a couple of months ago.
"How do you upgrade a network service, handling millions of requests per second around the globe, without disrupting even a single connection?"
Cloudflare: Shedding old code with ecdysis: graceful restarts for Rust services at Cloudflare https://blog.cloudflare.com/ecdysis-rust-graceful-restarts/ #infosec #Cloudflare #Rust
Can a 2001 Sun SPARC server host a website in 2026?
Spoiler: Yes. Yes it can. 🔥
I got my Sun Netra X1 running OpenBSD + httpd serving actual web traffic.
Full writeup: https://rup12.net/posts/can-my-sparc-server-host-my-website/
#homelab #SPARC #retro #selfhosted #OpenBSD #Cloudflare #vintagecomputing #sysadmin #Sun
Drum roll, please.
In the past, traffic originated from traditional search engines, and SEO determined who got found first. Now the traffic is increasingly coming from AI crawlers and agents that demand structured data within the often-unstructured Web that was built for humans."
Cloudflare: Introducing Markdown for Agents https://blog.cloudflare.com/markdown-for-agents/ #Cloudflare #bots #SEO
Cloudflare would know, ergo the self-promotion.
Cloudflare: 2025 Q4 DDoS threat report: A record-setting 31.4 Tbps attack caps a year of massive DDoS assaults https://blog.cloudflare.com/ddos-threat-report-2025-q4/ #Cloudflare #DDoS #infosec
I wrote a blog post breaking down the moral and technical failings of Cloudflare's recent Matrix project and why I am disappointed in the Matrix.org Foundation for supporting it: https://nexy.blog/2026/01/28/cf-matrix-workers/#matrix #cloudflare
@ity also #ClownFlare is a #RogueISP that has no legitimate reasons to be used…
turns out, #cloudflare, you can't get production-quality software by typing "You are a professional software engineer" to your chatbot!
Well, yesterday #claudecode was useless because of compute congestion, so we know where this #cloudflare shite was stealing cycles from.
The serpent is eating it's tail
RE: https://tech.lgbt/@JadedBlueEyes/115967791152135761
How it started out: "A production-grade Matrix homeserver implementation running entirely on Cloudflare's edge infrastructure. Implements Matrix Client-Server API v1.12 and Server-Server (Federation) API."
How it's going: "This is a proof of concept Matrix homeserver [...] assisted by Claude Code Opus 4.5 [...]"
🤦
// TODO: Validate PDU signature
// TODO: Check authorization
// TODO: Store event
https://github.com/nkuntz1934/matrix-workers/commit/2d3969dd5e795caa3641d0e237e2b52ca0502463
Interessante Analyse zum suboptimalen DTAG-Routing zu Cloudflare. Nicht nur Telekom schuld, sondern auch Cloudflare lenkt Traffic nach London! Details: https://www.reddit.com/r/de_EDV/comments/1qkm5vt/zum_dtagrouting_zu_cloudflare/
Wie die Rechten in der EU von US-Tech Konzernen umworben werden... #Instagram #Facebook #Meta #WhatsApp #Signal #X #Twitter #Amazon #Google #Cloudflare #Microsoft #UnplugTrump #FckUSA #SignalApp #UnplugBigTech #Linux #NoNazis #FckAfD #FckNzs www.derstandard.at/story/300000...
"The Social Security Admin🚨has referred two DOGE employees for Hatch Act violations after discovering contacts with a political group seeking SSA data to overturn election results.
In a remarkable court filing, #DOJ🚨also revealed that DOGE employees traded Social Security data on an unapproved third party server — #Cloudflare — & may have sent private SSA info to a top DOGE adviser.:
-K Cheney
#Musk #DOGE #SocialSecurity #Betrayal #Fraud #TrumpRegime #Elections #USPol
https://www.politico.com/news/2026/01/20/trump-musk-doge-social-security-00737245
@stefano #OwnYourData, yes. Also sounds like a reason to consider transferring any domain names registered with them away from #Cloudflare to other registrars. (Reminder to those who don't know: domain transfers can be done at any time, and you do not lose out on paid-for registration time. Depending on the TLD, a cost similar to one year of registration may be charged, but that extends the registration time of the domain name correspondingly.)
A domain registration is more like a lease rather than a deed. You get the exclusive right to use a domain name for a fixed term, but if you miss renewal, someone else can swoop in. What's scary is that with dropcatch services, cybercriminals can automate monitoring of pending‑delete domains and fire off registrations the split‑second a name is deleted by the registry and becomes available again. Think hawks circling for high‑value prey. 🦅
That's what happened to fita[.]org, a popular website owned by the Federation of International Trade Associations (FITA) and referenced by many government bodies including the International Trade Administration (trade.gov). The domain now sits behind Cloudflare and functions as a command-and-control (C2) for the AsyncRAT malware. The actor controlling it also stood up these C2 endpoints:
90phutif[.]cc,90phutis[.]cc,90phutiv[.]cc,90phuttn[.]cc,xoilaclinkf[.]cc,xoilactivi[.]uk,xoilactivik[.]cc,xoilactivil[.]cc,xoilactivim[.]cc,xoilactivin[.]cc,xoilactivio[.]cc,xoilactivip[.]cc,xoilactiviq[.]cc,xoilactivir[.]cc,xoilactivis[.]cc,xoilactivit[.]cc,xoilactiviu[.]cc,xoilactiviv[.]cc,xoilactiviw[.]cc,xoilactivix[.]cc,xoilactiviy[.]cc,xoilactiviz[.]cc,xoilacvnnc[.]tv,xoilacvnnf[.]tv,xoilacvzb[.]cc,xoilacvzc[.]cc,xoilacvze[.]cc,xoilacvzi[.]cc,xoilacvzk[.]cc,xoilacvzn[.]cc,xoilacvzp[.]cc,xoilacvzq[.]cc,xoilacvzz[.]cc,xoilacyys[.]cc,xoilaczc[.]mobi,xoilaczzbb[.]cc,xoilaczzczz[.]tv,xoilaczzdd[.]cc,xoilaczzdzz[.]tv,xoilaczziz[.]tv,xoilaczzszz[.]tv,xoilaczzvzz[.]tv
So make sure to set auto pay for any valuable domains you possess 💳 otherwise you could risk losing them. Proactive IT governance is also part of security.
#InfobloxThreatIntel #dns #async #threatintel #threatintelligence #infosec #cybersecurity #cybercrime #infoblox #rat #asyncrat #malware #dropcatch #domain #cloudflare #remoteaccesstrojan #infostealer #c2
Wer von #WhatsApp weg geht und zur #Signalapp wechselt hat keinerlei Sicherheitsgewinn. Der gesamte #Signal Traffic läuft über die Clouds von #Amazon, #Google, #Microsoft & #Cloudflare Alle US-Dienste haben so Deine #MetaDaten, dank #CloudACT de.wikipedia.org/wiki/CLOUD_Act Besser #Threema nehmen
@robinsyl +9001%
At best "#AI" is just #BigData in a different packaging, at most it's #WastefulComputing that gets curbstomped by #WolframAlpha & #CleverBot and more often than not it's #Malware that literally #DDoS'es entire businesses because the assholes than run the Trillion-Dollar #AIbubble refuse to adhere to basic #consent as standardized decades ago with robots.txt…
In case anyone wounders: I do some redundancy in terms of #DNS and other services, and have a curated list of 29 DNS Servers which are all #DualStack [#IPv4 & #IPv6] of which I'm using 10 each to enshure stability and reliability as well as redundancy.
Plus #decentralization is important and neither #Google nor #ClownFlare should get any more traffic!
A fun fact from the latest #CloudFlare 2025 - practically all web today is based on #JavaScript frameworks. That is, to load simple “my company is ACME WIDGETS and here’s my phone” majority of pages will first load 145 MB of advanced JavaScript libraries and then make requests to further 50 Google and Amazon trackers to report “someone saw your phone!”, wasting tons of bandwidth, electricity, memory and time.
Mungkin banyak yang meledek, kok pakai #cloudflare, kok mau tergantung mereka?
Sekarang saya balik tanya. Ada alternatif lain kah yang lebih mumpuni dengan biaya rendah (malah free) untuk melindungi anonimitas?
Gak usah anonimitas, ada sarana lain yg mudah, ekonomis, buat nanganin #DDOS?
Dan saya dan kawan-kawan merasakan kok, routing melalui mereka utk beberapa kasus lebih efisien drpd direct.
Bisa-bisanya kita pilah mana lewat cloudflare mana tidak.
PS: instance ini tdk pakai CF loh.
Baru nyadar, ternyata #cloudflare warp sekarang agak-agak seragam ngebungkus #ipv4.
Saya coba di beda perangkat, beda ip asal, cuma sama-sama dari #jakarta #indonesia, dia bungkus jadi satu ip untuk satu tujuan.
Kalau #ipv6 saya lihat masih beda-beda dibungkus sama #cloudflare.
Gak masalah, justru enak jadinya makin sulit diidentifikasi. Tapi repotnya kalau satu kena block sama server tujuan, semua kena block.
20 packets transmitted, 20 received, 0% packet loss, time 19026ms
rtt min/avg/max/mdev = 1.199/1.478/3.001/0.416 ms
@semurjengkol entah sejak kapan, sepertinya #cloudflare mulai peering dengan #openixp di #idc3d.
Nanti gua liat juga di grafana saya om, sejak kapan latensi-nya turun. Soalnya dulu ya seingat saya emang seringnya di atas 10ms, malah sering 20an.
Someone should make a fake #Cloudflare site and call it #ClownFlare to redirect #bots and #scammers to get pushed onto.
Сеть доставки контента Cloudflare, обслуживающая около 20% всего мирового web-трафика, опубликовала годовой отчёт со статистикой и анализом тенденций в глобальной сети за 2025 год.
This is probably obvious but I'm seldomly working this high up the "cybersec stack". It's somewhat trivial to create a database mapping the actual IPs of websites on common hosting platforms even if they're behind #Cloudflare tunnels, automatically.
Since it's possible, I assume such a database already exists. Anyone?
(Yes it's for identifying bad guys, not your homelab residential IP)
If #Cloudflare makes their interface worse, they can compete with #Amazon #Prime for worst UX
I do not understand 10% of it anymore. I know how it should work, but this design is a mess.
A couple of weeks ago, a new domain name made it's appearance on the domain name ranking of #Cloudflare. Shortly later, the company redacted the name, to avoid promoting a #botnet. Recently, the domain name disappeared from Cloudflare's #Radar. A brief check shows that the domain still exists and is active. Is it simply not resolved by Cloudflare's #DNS resolvers? Or did the company prevent that this domain name makes it into their feeds?
Cloudflare outage on December 5, 2025
https://blog.cloudflare.com/5-december-2025-outage/
#HackerNews #Cloudflare #Outage #December #5 #2025 #Internet #Issues #Cybersecurity #Tech #News
I got quoted in The Guardian again, I guess CloudFlare must have been down or something?
> “These companies have become too big to not fail. And because they handle so much traffic, when they do fail, this immediately becomes a massive problem”
Fantastic! Let's do this!
1. Favorite Fediverse instance that feels like a warm hug to you when you spy on their local timeline? Or do you have an app that does this even?
2. Favorite public domain work, and why?
3. What is your response to all the bloggers laughing about how #CloudFlare keeps going down? Me, I am laughing with glee but also sadness because nobody's getting it yet that actually CF sucks.
4. Favorite 90's movie trope even though all your friends hate it?
And 5.
Favorite anime trope that everyone in your circle hates? :)
Seems like as good a time as any to share this again
https://jacen.moe/rants/20251118-please-stop-using-cloudflare/
https://mongers.uptime.is/check/6f19ae9ecd45d6d0 has a feed you can subscribe to and _know_ when #cloudflare is down next time.
Ohhh #cloudflare is down? You know that there are #opensource alternatives, right?
Can fully recommend #vinylcache. 🧡
Cloudflare experienced a disruption today resulting in 500 Internal Server Error messages across multiple sites.
Dashboard/API issues were also reported, though Cloudflare says a fix has now been deployed.
Curious to hear the community view on this:
What’s the best way to design resilience when so much traffic relies on a few providers?
Follow us for balanced, reliable cybersecurity reporting.
#infosec #cloudflare #cybersecurity #internetoutage #SRE #DevOps #websecurity #resilience
probably the easiest, complete, and free WAF package approach that they offerThis assumes you need a WAF in the first place. Which you most likely do not. And if you are a corporate that really does need it, you should have a couple employees that can set this up on your own infra either way. Setting up a WAF is, on itself, not all that hard.
Also, the "free" part is false. Its gratis, and
only if you are not actually being attacked on a level that it would be impactful anyway. So its gratis while it doesn't matter. The moment you are starting to cost #Cloudflare some money, they will charge you for all those costs. The fact that so few people who use Cloudflare know this, shows how often Cloudflare is a useless addition to your stack.What you
do get for gratis at all times at Cloudflare, is the erosion of your users' privacy and security, and some extra outages that you are now completely unable to do anything about.Big Tech must not own the internet
Check out alternatives: https://tuta.com/blog/degoogle-list
@sandycorzeta@misskey.id I don't notice it on my home cluster, but people at work seem very upset about this. If only they had dropped #Cloudflare at the previous times they had massive outages this year. I always found it weird why people just plop in Cloudflare without realizing the potential issues, but its even weirder that when those issues are shown
Funny 'cause it's true:
https://nxdomain.no/~peter/cloudflare_500_2025-12-05.png #cloudflare #downtime #code500 #internalservereror
Und DownDetector ist down, wie soll man so arbeiten: https://downdetector.com #Cloudflare