Timestamps are in GMT/BST.
[1:13] * sleon|tuX (n=sleon|tu@e180034037.adsl.alicedsl.de) has left #freenet
[1:38] * smains (i=sivrif@tor/session/x-a27da731c4cfdc53) has joined #freenet
[1:43] * Romster (i=tor@tor/session/x-b09a1c0e8d5947e2) has joined #freenet
[2:57] * sanity (n=ian@81-178-100-27.dsl.pipex.com) has joined #freenet
[3:24] * Romster (i=tor@tor/session/x-b09a1c0e8d5947e2) Quit (Remote closed the connection)
[3:37] * Romster (n=Romster@tor/session/x-61a44031c47fa5b1) has joined #freenet
[5:19] * NullAcht15 (n=NullAcht@dslb-082-083-233-196.pools.arcor-ip.net) has joined #freenet
[5:21] * toad_ (i=toad@pdpc/supporter/active/toad-with-underline) has joined #freenet
[5:21] * ChanServ sets mode +o toad_
[5:36] * nextime (n=nextime@213-140-6-96.ip.fastwebnet.it) has joined #freenet
[5:41] * kfkrkkrr (n=Romster@tor/session/x-dc894705590506e9) has joined #freenet
[5:42] * Romster (n=Romster@tor/session/x-61a44031c47fa5b1) Quit (Nick collision from services.)
[5:42] * kfkrkkrr is now known as Romster
[6:15] * smains (i=sivrif@tor/session/x-a27da731c4cfdc53) Quit (Remote closed the connection)
[6:16] * spaetz (n=spaetz@62.48.121.241) has joined #freenet
[6:16] <spaetz> j #gentoo-dev
[6:16] <spaetz> oops
[6:24] <nextgens> hi
[6:27] <spaetz> hi nextgens
[6:49] * rah (n=rah@cpc1-nott8-4-1-cust246.nott.cable.ntl.com) Quit (Read error: 110 (Connection timed out))
[8:04] * spaetz (n=spaetz@62.48.121.241) Quit (Client Quit)
[8:19] * greycat (i=rfc1413@wooledge.org) has joined #freenet
[8:34] * FallingBuzzard (n=FallingB@66.151.22.70) has joined #freenet
[8:40] * MrNaughty (n=mrnaught@S01060013103e9ce9.ed.shawcable.net) Quit ("\(^_^)/'")
[8:47] * MrNaughty (n=mrnaught@S01060013103e9ce9.ed.shawcable.net) has joined #freenet
[8:53] * greycat (i=rfc1413@wooledge.org) Quit (Remote closed the connection)
[8:54] * greycat (i=rfc1413@wooledge.org) has joined #freenet
[9:27] * Ash-Fox (i=UNKNOWN@ecc115.neoplus.adsl.tpnet.pl) Quit ()
[9:27] * Ash-Fox (i=UNKNOWN@ecc115.neoplus.adsl.tpnet.pl) has joined #FreeNET
[10:22] * Code-Chris (n=kicken18@80-193-62-89.cable.ubr03.gill.blueyonder.co.uk) has joined #freenet
[11:10] * smains (i=_tor@tor/session/x-8a34c03cbaf1f9fe) has joined #freenet
[11:35] * Coding-Chris (n=kicken18@80-193-62-89.cable.ubr03.gill.blueyonder.co.uk) has joined #freenet
[11:36] * Code-Chris (n=kicken18@80-193-62-89.cable.ubr03.gill.blueyonder.co.uk) Quit (Read error: 110 (Connection timed out))
[11:46] * sleon|tuX (n=sleon|tu@e180034037.adsl.alicedsl.de) has joined #freenet
[12:58] * rah (n=rah@cpc1-nott8-4-1-cust246.nott.cable.ntl.com) has joined #freenet
[13:04] * Ash-Fox (i=UNKNOWN@ecc115.neoplus.adsl.tpnet.pl) Quit (Remote closed the connection)
[13:07] * Ash-Fox (n=N@gprs2.plusgsm.pl) has joined #FreeNET
[13:11] * stats (n=ircont9k@pcp08659903pcs.mplsnt01.sc.comcast.net) has joined #freenet
[13:13] <stats> hi
[13:15] * blah (i=blah@66.111.51.110) has joined #freenet
[13:15] <blah> Has the bug report at the top of http://sbc.lir.dk/LogBot/index.php?date=2005-10-09 been seen?
[13:15] * Ash-Fox (n=N@gprs2.plusgsm.pl) Quit (Nick collision from services.)
[13:15] * Ash-Fox (i=UNKNOWN@ecc115.neoplus.adsl.tpnet.pl) has joined #FreeNET
[13:21] <stats> blah, you see all are busy :-)
[13:23] <blah> yes, though a simple "yes, seen it and will address it when we can" would suffice :-) i just don't want it to dissapear, as it looks pretty damaging
[13:26] <stats> hehe, and i searching for x86_64 info
[13:35] * stats (n=ircont9k@pcp08659903pcs.mplsnt01.sc.comcast.net) Quit ("CGI:IRC (EOF)")
[13:36] * stats (n=ircont9k@pcp08659903pcs.mplsnt01.sc.comcast.net) has joined #freenet
[13:43] * blah (i=blah@66.111.51.110) Quit (".")
[13:48] <toad_> i don't suppose anyone has blah's email address?
[13:48] <toad_> anon filter bugs are considered to be critical by the dev team
[13:48] <toad_> but we need to reproduce it in order to fix it
[13:49] <toad_> where should i post to solicit his reply?
[13:50] * smains (i=_tor@tor/session/x-8a34c03cbaf1f9fe) Quit (Remote closed the connection)
[13:58] * smains (i=[U2FsdGV@tor/session/x-8649b7978a352ff2) has joined #freenet
[14:00] <toad_> hmmm
[14:00] <toad_> is the wiki broken?
[14:01] <toad_> hmmm just slow
[14:09] <stats> Warning: session_start(): open(/tmp/sess_3bd44ccaf960730722, O_RDWR) failed: Permission denied (13) in /home/groups/f/fr/freenet/htdocs/wiki/wikka.php on line 1150
[14:29] <toad_> hey, CofE updated again! trumpets, drum roll...
[14:29] <toad_> and the gnashing of teeth...
[14:35] <toad_> <font size="-1">I don't have the time or patience at the moment to
[14:35] <toad_> upload the podcasts to Freenet in case Libsyn cave in, but I'd
[14:35] <toad_> appreciate it if somebody else would</font>
[14:35] <toad_> awww, he ought to
[14:44] * Fireball (n=aleksey@reactos/developer/Fireball) has joined #freenet
[14:51] * Coding-Chris (n=kicken18@80-193-62-89.cable.ubr03.gill.blueyonder.co.uk) Quit (Read error: 110 (Connection timed out))
[14:53] <stats> toad? using 0.7 freenet the same freenet-ext.jar? have 0.7 freenet x86_64 support?
[14:54] * Fireball (n=aleksey@reactos/developer/Fireball) has left #freenet
[15:04] <rah> what's a podcast?
[15:18] * Hory (n=Miranda@82.78.27.85) has joined #FreeNet
[15:19] * toad_ (i=toad@pdpc/supporter/active/toad-with-underline) Quit (Remote closed the connection)
[15:42] * Hory (n=Miranda@82.78.27.85) Quit ("http://CyberLore.net - Recommendations on the best games, freeware and websites.")
[15:48] * stats (n=ircont9k@pcp08659903pcs.mplsnt01.sc.comcast.net) Quit ("lala")
[16:14] * Hory (n=Miranda@82.78.27.85) has joined #FreeNet
[16:33] * greycat (i=rfc1413@wooledge.org) Quit ("This time the bullet cold rocked ya / A yellow ribbon instead of a swastika")
[16:34] * FallingBuzzard (n=FallingB@66.151.22.70) has left #freenet
[17:18] * toad_ (i=toad@pdpc/supporter/active/toad-with-underline) has joined #freenet
[17:18] * ChanServ sets mode +o toad_
[17:28] * Hory (n=Miranda@82.78.27.85) Quit (Read error: 104 (Connection reset by peer))
[17:34] * Elly (i=elly@ool-45785a46.dyn.optonline.net) Quit (Read error: 104 (Connection reset by peer))
[17:35] * Elly (i=elly@ool-45785a5e.dyn.optonline.net) has joined #freenet
[18:00] * NullAcht15 (n=NullAcht@dslb-082-083-233-196.pools.arcor-ip.net) Quit (Remote closed the connection)
[18:03] * blah (i=blah@66.111.51.110) has joined #freenet
[18:03] <blah> toad_: i am always watching :) what info do you need?
[18:08] <blah> the full SSK I found in my websites referrer logs (cat $log | cut -d" " -f11) was "http://127.0.0.1:8888/SSK@swDwYMtkvtkiK7ZI5e8ZAscFzgAPAgM/Pedophilephile/18//UnderageSex-EN.xml"
[18:09] <blah> there were 17 different IPs that used that referrer
[18:09] <Elly> oO
[18:09] <blah> (all very different from many different class As, Bs, and Cs)
[18:09] <Elly> that's pretty weird
[18:10] <Elly> why would someone click an HTTP link from an illegal freesite?
[18:11] <blah> though, of course, now that you know the SSK, you also know who i am, if you fetch that page
[18:11] * blah is not too smart
[18:11] <toad_> sorry
[18:11] <toad_> you here
[18:11] <toad_> cool
[18:11] <blah> well, you know how to reach me ;)
[18:11] <Elly> hey toad_
[18:11] <toad_> in your referrer logs?
[18:11] <blah> yeah
[18:11] <toad_> no
[18:12] <toad_> it's some sort of hack
[18:12] <Elly> wouldn't it be trivial to fake a referrer?
[18:12] <toad_> a link from an illegal freesite would show http://127.0.0.1:8888/__CHECKED_HTTP_<whatever>...
[18:12] <blah> hmm? so they're doing referrer spam from 17 different IPs?
[18:12] <toad_> blah: well, the referrer could be fake, yeah
[18:12] <blah> toad_: i have plenty of those too
[18:12] <toad_> it's just that it's probably illegal for me to fetch that key!
[18:12] <blah> the checked_http is good, to be expected
[18:13] <blah> i tried fetching it with links, but wasn't able to grab it
[18:13] <toad_> wait a minute, it's a .xml?
[18:13] <toad_> we don't do _anything_ with xml...
[18:13] <blah> ah, so the xml may have a .css
[18:13] <Elly> oops?
[18:13] <blah> which in turn import(http://foo)
[18:13] <toad_> nah
[18:13] <blah> or whatever
[18:13] <Elly> I don't want to fetch that key either
[18:13] <toad_> it might be xhtml
[18:13] <toad_> no, we filter css
[18:13] <Elly> blah, what's your actual website?
[18:14] * blah is now known as jrandom2p
[18:14] <toad_> if it was actually XML, it would be blocked by the filter...
[18:14] * jrandom2p is now known as blah
[18:14] <toad_> if some fool proceeded, that's their own problem
[18:14] <blah> ok cool
[18:14] <blah> i just saw those in there and was a bit worried
[18:14] <toad_> yeah
[18:14] <Elly> nice, massive botnet busted
[18:15] <toad_> well if you want to fetch it (e.g. with FUQID, or with java -cp freenet.jar freenet.client.cli.Main get <key> ), and check it out...
[18:15] <danderson> referrer log spamming? On freenet?
[18:15] <toad_> danderson: a nice case of FUD
[18:15] <Elly> no, of a normal HTTP server
[18:15] <blah> danderson: it doesn't make sense, especially not from 17 different IPs
[18:15] <Elly> using freenet links
[18:15] <Elly> it looks like astroturfing?
[18:16] <Elly> I mean, if referrals like that were to show up on, say, CNN
[18:16] <Elly> cnn.com rather
[18:16] <toad_> it's probably just an XML page which somebody had to actually click on "retrieve anyway" on...
[18:16] <Elly> or something
[18:16] <toad_> which can of course then have a webbug
[18:16] <blah> ah yes toad, some of the referrers had ?force=1234
[18:16] <blah> (or whatever random numbers)
[18:16] <blah> two of them didn't have ?force
[18:16] <danderson> toad_: oh?
[18:16] <Elly> some?
[18:16] <toad_> but it's also an obvious child porn site, so we can't really fetch it to make sure
[18:17] <Elly> how can they not all have ?force?
[18:17] <toad_> danderson: we block pure XML
[18:17] <toad_> surely they all have ?force
[18:17] <blah> no, two of them don't
[18:17] <Elly> I'm trying to think of a legal and ethical way to check that page
[18:17] <Elly> one doesn't come to mind
[18:17] <toad_> what were the user-agent's?
[18:17] <danderson> toad_: what do they actually do? Spam HTTP server logs with freenet addresses?
[18:18] <blah> Elly: fetch it to analyse a potential security issue. no ethical or security problem
[18:18] <blah> lemmie check toad
[18:18] <Elly> blah: uhh
[18:18] <toad_> now, it DOES make sense to re-check that fproxy blocks text/xml
[18:18] <Elly> you aren't allowed to hack banks to check their security
[18:18] <toad_> somebody should insert an XML file and see if fproxy queries it or just returns it
[18:18] <toad_> blah: well, i don't know if there might be a legal issue... if it's a ZIP manifest, very possibly
[18:19] <toad_> personally I do see a moral problem, as well
[18:19] <blah> two opera, the rest firefox, many different user languages
[18:19] <toad_> and the two which didn't have ?force= ?
[18:19] <Elly> hmm
[18:19] <blah> one weird one has.. "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.10) Gecko/20050728 Firefox/1.0.6 (MOOX M3)"
[18:19] <toad_> did they have any other parameters?
[18:19] <Elly> toad_: mainport.allowedHosts=127.0.0.0/1 <--- is that right?
[18:20] <Elly> ...wait, no, it's not
[18:20] <Elly> shit, my node has been running semi-publically
[18:20] <toad_> moox is a firefox variation
[18:20] <blah> [cut] - - [03/Oct/2005:09:04:41 -0400] "GET /how_networkcomparisons HTTP/1.1" 200 15437 "http://127.0.0.1:8888/SSK@swDwYMtkvtkiK7ZI5e8ZAscFzgAPAgM/Pedophilephile/18//UnderageSex-EN.xml" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.5) Gecko/20041107 Firefox/1.0"
[18:20] <toad_> Elly: semi-publically?
[18:20] <blah> [cut] - - [04/Oct/2005:00:06:25 -0400] "GET / HTTP/1.1" 200 8162 "http://127.0.0.1:8888/SSK@swDwYMtkvtkiK7ZI5e8ZAscFzgAPAgM/Pedophilephile/18//UnderageSex-EN.xml" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.7.12) Gecko/20050915 Firefox/1.0.7"
[18:20] <Elly> well
[18:20] <toad_> Elly: no, /8
[18:20] <Elly> 127.0.0.0/1
[18:20] <Elly> argh
[18:20] <Elly> fuck
[18:20] * Elly changes it back to /8
[18:21] <toad_> blah: so it's not a browser version problem...
[18:21] <Elly> is it a windows issue?
[18:21] <toad_> Elly: or /32
[18:21] <Elly> toad_: what does /1 do?
[18:21] <toad_> Elly: guess
[18:21] <Elly> uhh
[18:21] <Elly> anyone without the high bit set
[18:21] <Elly> can use my node?
[18:21] <blah> Elly: they did all advertise "Windows NT 5.1" as their OS
[18:22] <toad_> NT 5.1 = XP
[18:22] <blah> right
[18:22] <Elly> yeah, I know
[18:22] <Elly> I was just wondering if it's platform specific
[18:22] <Elly> which is pretty bizarre
[18:22] <Elly> are any of them not firefox?
[18:22] <blah> two opera
[18:22] <toad_> somehow it avoided the ?force= ?
[18:23] <Elly> which means a hole in our ereet sekurity
[18:23] <blah> those two above didn't show it in their referrer. i dont really know much more than that :(
[18:24] <Elly> so
[18:24] <Elly> any volunteers to grab the dirty file and look?
[18:25] * blah wasn't able to, and don't have fuqid on this platform :/
[18:25] <Elly> when's the latest fetch of it?
[18:26] <toad_> could be just a browser issue? maybe the browser drops the parameter in the referrer?
[18:26] <Elly> toad_
[18:26] <Elly> why?
[18:26] <Elly> what possible reason would there be for it to do that?
[18:26] <toad_> a bug?
[18:26] <Elly> what, it randomly drops parameters named 'force'?
[18:27] <toad_> no, randomly drops all parameters?
[18:27] <blah> no, another user had the exact same build/os/version and included force
[18:27] <blah> (different IP)
[18:27] <blah> though they may be tor outproxies
[18:27] <blah> (in which case they could be the same user)
[18:28] <Elly> scan one of them and see
[18:28] <toad_> one of which?
[18:28] <toad_> the IP's?
[18:29] <Elly> yeah
[18:29] <Elly> look for a TOR node
[18:29] <Elly> or a squid
[18:29] <Elly> windows has nothing like iptables, right?
[18:29] <Elly> so they can't really filter by source without a bit of trouble
[18:29] <blah> i'm not sure that'd explain it - someone would have to be trying to spoof this error for that to occur
[18:30] <toad_> the fact that most of them had the ?force= suggests that there is no security risk here
[18:30] <Elly> the fact that you said 'most'
[18:30] * sanity is now known as sanity|zzz
[18:30] <Elly> suggets that there is but it's intermittent
[18:30] <toad_> it suggests an intermittent bug
[18:30] <Elly> right
[18:30] <Elly> which is bad
[18:31] <toad_> no
[18:31] <blah> 'k, just wanted to bring it up, as last time i posted the report you weren't online
[18:31] <toad_> an intermittent bug in the browser
[18:31] <Elly> yes
[18:31] <Elly> bugs are bad
[18:31] <blah> if there's anything else i can do to help, lemmie know
[18:31] <toad_> which causes the last part of the referrer to vanish
[18:31] <Elly> if so we should report it to the firefox guys
[18:31] * blah (i=blah@66.111.51.110) Quit (".")
[18:31] <toad_> not a bug in fproxy, which is the key thing
[18:31] <Elly> afk, food
[18:35] <toad_> bbl
[18:54] * genetik (i=tor@tor/session/x-d4b28de4e5316f3c) has joined #freenet
[18:54] * genetik (i=tor@tor/session/x-d4b28de4e5316f3c) has left #freenet
[18:59] * Ash-Fox (i=UNKNOWN@ecc115.neoplus.adsl.tpnet.pl) Quit (Nick collision from services.)
[18:59] * Ash-San (i=UNKNOWN@ecl199.neoplus.adsl.tpnet.pl) has joined #FreeNET
[19:12] * Romster (n=Romster@tor/session/x-dc894705590506e9) Quit (SendQ exceeded)
[19:16] * sleon|tuX (n=sleon|tu@e180034037.adsl.alicedsl.de) Quit (Read error: 110 (Connection timed out))
[19:16] * sleon|tuX (n=sleon|tu@e180010214.adsl.alicedsl.de) has joined #freenet
[19:25] * Ash-San (i=UNKNOWN@ecl199.neoplus.adsl.tpnet.pl) Quit (Remote closed the connection)
[19:40] * elly_ (n=elly@ool-457854e8.dyn.optonline.net) has joined #freenet
[19:41] * tav_ (n=tav@host-212-158-205-5.bulldogdsl.com) has joined #freenet
[19:47] * elly_ (n=elly@ool-457854e8.dyn.optonline.net) Quit ("Leaving")
[19:47] * tav (n=tav@host-84-9-3-82.bulldogdsl.com) Quit (Read error: 110 (Connection timed out))
[19:48] * rtyhujkl (i=[U2FsdGV@tor/session/x-6731c7c8ffa724e7) has joined #freenet
[19:49] * rtyhujkl is now known as Romster
[19:56] * Elly (i=elly@ool-45785a5e.dyn.optonline.net) Quit (Connection timed out)
[20:02] * Elly (i=elly@ool-457854e8.dyn.optonline.net) has joined #freenet
[20:05] <Elly> hey toad_
[20:05] <Elly> what happens if you rm -rf your node's store?
[21:06] * sanity|zzz (n=ian@81-178-100-27.dsl.pipex.com) Quit ()
[22:50] * locksy (n=locksy@mrtg.sisgroup.com.au) has joined #freenet
[23:09] * tav (n=tav@host-212-158-205-5.bulldogdsl.com) has joined #freenet
[23:19] * tav_ (n=tav@host-212-158-205-5.bulldogdsl.com) Quit (Read error: 110 (Connection timed out))
[23:34] * sleon|tuX (n=sleon|tu@e180010214.adsl.alicedsl.de) Quit (Remote closed the connection)
Irc logs of #freenet : 2008 2007 2006 2005
These logs were automatically created by FreenetLogBot on chat.freenode.net using the Java IRC LogBot.