Get it here https://www.spamhaus.org/blocklists/do-not-route-or-peer/
Remember, this is traffic you do not want to connect with. Not ever. DROP it and move on.
Get it here https://www.spamhaus.org/blocklists/do-not-route-or-peer/
Remember, this is traffic you do not want to connect with. Not ever. DROP it and move on.
We strongly recommend against providing services to entities whose AS or IP networks are listed in Spamhaus (ASN-)DROP - learn more here https://www.spamhaus.org/blocklists/do-not-route-or-peer/
@SpaceLifeForm wrote:
<<< Why should a CDN have to police websites? >>>
They don't. However, because Cloudflare abuses the knowledge that cybercriminals know that blocking Cloudflare's IP-address ranges will result in lots if false positives (for decent websites), this doesn't imply that Cloudflare should be able to get away with this. They DO have a responsibility.
The only things they have to do, instead if trying to fool us with the usual "freedom of speech" rubbish:
(1) Refuse anonymous or obviously identity-spoofing customers, such as:
• complaints-booking[.]info
• defi-chainfix.pages[.]de
• evri.mylocal-parcel-gb[.]com
• loginmicrosoftonlinecom.pages[.]dev
• ing.es-areacliente[.]com
See also https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/its-raining-phish-and-scams-how-cloudflare-pages-dev-and-workers-dev-domains-get-abused/ for abuse of Cloudflare's free workers.dev and pages.dev domains (the article is 1 year old but still very to the point);
(2) Refuse customers using known malicious IP-addresses and/or registrars;
(3) Treat complaints seriously - and listen to those who know, such as Mandiant (as can be seen in for example https://www.virustotal.com/gui/ip-address/188.114.96.0/relations: tap ••• a couple of times until you see Mandiant in the third column);
(4) Always first show a warning page (shown before proceeding to actual site) for new customers, and more often show such a page after receiving complaints and/or when in doubt regarding the customer's intentions.
Cloudflare is complicit to cybercrime if they continue to facilitate it for their own profit - which is exactly what they and other Big Tech firms are doing right now (I call that #internetCancer ).
It is simply unfair that, on the current internet, everybody says that nobody is to blame (except the victims) if innocent individuals have their bank accounts drained, or companies file bankrupcy after ransomware gangs managed to penetrate their network perimeters via phishing attacks and/or hosted malware.
See also https://infosec.exchange/@ErikvanStraten/112883883343165898.
@dangoodin : thanks for the article: https://arstechnica.com/security/2024/07/cloudflare-once-again-comes-under-pressure-for-enabling-abusive-sites/
#DontBeEvil #LackOfAuthentication #ShortSightedness #Cybercrime #BulletProofHosting
#AllowingAnonymousBusinesses #Cloudflare #Google #Microsoft #Amazon #Fastly