Reminds me of the Crowdstrike incident last year.

  • antrosapien@lemmy.ml
    link
    fedilink
    arrow-up
    19
    ·
    7 hours ago

    There’s some malicious satisfaction watching centralized internet burning in dumpster fire while your self hosted stuff is still up

    • DigitalDilemma@lemmy.ml
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 hours ago

      Except many of us use cloudflare tunnels to reach our selfhosted kit from the internet because we’re behind CGNATs…

    • krashmo@lemmy.world
      link
      fedilink
      arrow-up
      3
      ·
      6 hours ago

      Isn’t cloudflare a pretty common part of remotely accessing your server? I don’t use it but I’ve seen lots of people talk about it and recommend using them.

      • antrosapien@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        51 minutes ago

        I haven’t exposed anything to internet and self hosted headscale instance. I’m not behind CGNAT so it was quite easy.

      • TubularTittyFrog@lemmy.world
        link
        fedilink
        arrow-up
        10
        ·
        edit-2
        6 hours ago

        yes. it also prevents attacks. it’s basically a necessity these days.

        if you host your own stuff and get any traffic you’ll get DDoSed by bots. cloudflare prevents this by detaching your DNS from your IP and distributing requests.

        just port forwarding on your home network these days… and you’ll get dozens of attacks per hour.

        the internet is not ‘nice’ anymore. services like cloudflare are a necessity for any active services beyond personal use. long gone are the days you could host a web server from your bedroom.

        • krashmo@lemmy.world
          link
          fedilink
          arrow-up
          2
          ·
          4 hours ago

          Maybe you guys are hosting more than me but I’ve got a few ports forwarded and don’t see any unusual activity. I guess I’m just lucky.

          • chicken@lemmy.dbzer0.com
            link
            fedilink
            arrow-up
            2
            ·
            1 hour ago

            For me what triggered getting a lot of malicious login attempts in the logs was pointing a dns record directly at my ip

            • krashmo@lemmy.world
              link
              fedilink
              arrow-up
              2
              ·
              1 hour ago

              Ah, yeah I don’t do that. Haven’t had much of a reason to so far. Only have a few minor convenience type services opened up

      • 4grams@awful.systems
        link
        fedilink
        English
        arrow-up
        3
        ·
        6 hours ago

        I do use it myself (free tier only) but it’s out of ease and convenience. I’m ready to abandon it but I like the security it brings. My stuff is just personal garbage with no strict uptime requirement - if I lose public access I still have Tailscale and a VPN to my router as backup.

        So, it’s a deal with the devil for sure, but it’s one I wore protection for when signing.