All of the spam accounts have been suspended, reports queue cleared, IPs and e-mail domains used in the spam wave banned. We're continuing to monitor the situation and analyzing the pattern.
Top-level
All of the spam accounts have been suspended, reports queue cleared, IPs and e-mail domains used in the spam wave banned. We're continuing to monitor the situation and analyzing the pattern. 72 comments
@Gargron did this attack involve any kind of exploit (for mass-sending or something) or did they just manually register accounts and started spamming with them? @DJGummikuh @Gargron as it seems they set up some server that automatically registered ~600 accounts (at least my instance admins wrote they blocked that many) and then let those send the spam. @Gargron All the users on my server who reported spam are now banned. It's so easy 😎 @Gargron what if you limited supported email accounts to only popular ones? I’m wondering if that would help. @gh0sti@mastodon.social @Gargron@mastodon.social Please don't. People has been going through great trouble to not using big companies' services, don't make it even bigger. @Gargron Maybe if they don't have a big instance to attack, and instead were 12 medium instances... 🤔
[DATA EXPUNGED]
@Gargron Thank you from a neighboring instance, glad you've purged this situation so quickly, they didn't have a chance to knock into my DMs! @Gargron@mastodon.social email domains? They registered their spam accounts using their own email server? 🤔 @Gargron ich kann anhand der weiter eintrudelnden Meldungen nicht bestätigen, dass alle Accounts gesperrt wurden First-class Service! ⭐️⭐️⭐️⭐️⭐️ Thanks @Gargron & team. If everyone reports spammers immediately, they theoretically get but one try. 😀 Will you be doing a full, complete and honest postmortem? What happened that you hadn't anticipated and had clearly not been prepared for? What was the vector of attack? And do you still want to auto-signup every user of the Mastodon app to the instance *you* control? Still think that's a good idea -- even if it's not directly related to this spam attack? You know you're on the right track when you're making billionaires nervous enough to orchestrate & fund a spam attack. Cyber warfare is funded. @gargron thanks for getting on top of it! this is the kind of quick community action we NEVER got to see on Twitter @Gargron Thanks for taking care of that so quickly! I got one and thought, for better or for worse, spammers targeting Mastodon means it’s on more peoples’ radar, which is ultimately a good thing. @Gargron please be very careful regarding IP or even IP-range bans, as I - like many others - completely RELY on working access using VPN services! |
@Gargron
good work, thanks