you are viewing a single comment's thread.

view the rest of the comments →

[–][deleted]  (11 children)

[deleted]

    [–]mrwizardd 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (10 children)

    i am an old school programmer.. i have been coding for almost forty years.. i think that i could effectively stop ANY ddos attack.. i wouldnt need that cloudflare scam crap either.. just give me a super thin linux box and a gcc compiler and a nice router to weed out the ddos attack attempts.. and poof, they would be evaporated and disabled in just a few requests..

    then, after you have been authorized as a legitimate request attempt, attach a special cookie to your browser and redirect you to the second router which only accepts requests from callers that have a proper cookie in their possession.

    people that resort to bullshit like that cloudflare crap havent got a chance in hell.

    [–][deleted]  (9 children)

    [deleted]

      [–]mrwizardd 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (8 children)

      off the top of my head, i would create a custom captcha system on the primary router, but i would definitely not used that crap captcha stuff that is all over the web where you have to click on all bicycles or boats or airplanes, etc, omg.

      a basic yet effective captcha could be something as simple as this:

      it is now six hours before midnight, what time will it be in fifteen minutes? [] 6:10pm [] 8:30am [] 6:15pm

      mary has four dogs. does mary have more than five dogs? []yes []no

      i dont know, that is just off the top of my head.. but it shouldnt be that difficult to come up with a captcha system that would be simple for a user to pass thru, but would be very difficult to automate and impossible for a bot to break.

      the captcha system should be something that you implement in-house that is a part of your website system, and not something that you have to pay for from an external company.

      cookies can come in a few different forms, for all practical purposes..

      1) industry standard cookies that are held by a browser and passed back and forth between the browser and the server.

      2) as a variable that can be passed from browser to server for the duration of the browsing session.. these can be passed as either a POST or GET variable.

      btw, i learned to write sockets code in C language by reading beej's guide to network programming.. it is much more pleasant to write such things on a linux box, btw..

      https://beej.us/guide/bgnet/html/

      [–][deleted]  (7 children)

      [deleted]

        [–]mrwizardd 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (6 children)

        more intelligent people like to find solutions.

        educated monkeys find problems with potential solutions.

        i have worked with many that are like you.

        no offense intended.

        [–][deleted]  (5 children)

        [deleted]

          [–]mrwizardd 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (4 children)

          you dont write spam bots, yet you were confident that you could write a bot that could intelligently read a custom/dynamic captcha?

          typical drag queen, talking smack.

          [–][deleted]  (3 children)

          [deleted]

            [–]mrwizardd 1 insightful - 1 fun1 insightful - 0 fun2 insightful - 1 fun -  (2 children)

            i am not offended because you are trans. you are not able to offend me because you have a psychiatric illness.

            there is a difference between being offended and feeling sorry for you.