this post was submitted on 17 Mar 2024
160 points (67.4% liked)
Fediverse
27910 readers
3 users here now
A community to talk about the Fediverse and all it's related services using ActivityPub (Mastodon, Lemmy, KBin, etc).
If you wanted to get help with moderating your own community then head over to [email protected]!
Rules
- Posts must be on topic.
- Be respectful of others.
- Cite the sources used for graphs and other statistics.
- Follow the general Lemmy.world rules.
Learn more at these websites: Join The Fediverse Wiki, Fediverse.info, Wikipedia Page, The Federation Info (Stats), FediDB (Stats), Sub Rehab (Reddit Migration), Search Lemmy
founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
Yes, but for example if everyone is running the mainline code, and .ml decides they are going to run a version which does not respect federation updates under certain conditions, they could quietly poison the entire fediverse by spoofing updates from other instances. It's very obvious that they are already selectively federating their modlog, for example. And some other instances already play games with how votes get reported. There is a lot of trust baked into the federation updates, and nobody knows how to exploit that better than dessalines, who is clearly very interested in using the platform to push a specific ideology.
I am absolutely in favor of forking Lemmy to get this out of their hands, fwiw. Specifically for this reason. I think they've shown that they are not above poisoning the code base exactly like this.