this post was submitted on 02 Feb 2024
27 points (84.6% liked)

Monero

1583 readers
42 users here now

This is the lemmy community of Monero (XMR), a secure, private, untraceable currency that is open-source and freely available to all.

GitHub

StackExchange

Twitter

Wallets

Desktop (CLI, GUI)

Desktop (Feather)

Mac & Linux (Cake Wallet)

Web (MyMonero)

Android (Monerujo)

Android (MyMonero)

Android (Cake Wallet) / (Monero.com)

Android (Stack Wallet)

iOS (MyMonero)

iOS (Cake Wallet) / (Monero.com)

iOS (Stack Wallet)

iOS (Edge Wallet)

Instance tags for discoverability:

Monero, XMR, crypto, cryptocurrency

founded 1 year ago
MODERATORS
 

Cloudflare just revealed on their blog that back in November a sophisticated hacker, likely a nation state, got access to some of their servers. This comes after a security firm identified a different vulnerability months earlier. This shows the true dangers of them overseeing all traffic and all cryptocurrency on all centralized exchanges. It's critically important you understand this:

https://simplifiedprivacy.com/cloudflarehack/

Tor Browser Onion: http://privacypkybrxebcjicfhgwsb3coatqechwnc5xow4udxwa6jemylmyd.onion/cloudflarehack/

I question that GetMonero.org is on Cloudflare. We should strongly reconsider this as we're downloading XMR wallet binaries from an organization not friendly to privacy. And the PGP public key to verify it is on the same Cloudflare website.

I do not have much say in this community as I’m new, but I ask you to bring it to the attention of those who do.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 2 points 7 months ago* (last edited 7 months ago) (1 children)

I strongly agree, but if you tell the admin they will ask for a replacement.

Do we have a suggested alternative to cloud flare to protect from DDoS attacks? Its a legitimate issue for many sites.

For form spam protection I usually recommend hcaptcha, but that won't work for DoS

Edit: I have noticed that hetzner protects themselves with a pow-powered DOS protection service that actually works (unlike cloudflare) on hardened web browsers. But I've never seen them advertise it for resale, which is a shame.

[–] [email protected] 2 points 7 months ago

I'd recommend Bunny, they accept anonymous Bitcoin, and maybe we can pitch to them to start with Monero if they'll take us on as customers. Also if the person is willing to pay the EU VAT tax, then you get GDPR for customer data.

https://bunny.net/network/ddos-protection/