Bonum Certa Men Certa

Targeted Attack Leveraging FSF Servers

Target



Summary: Targeted by a determined and persist perpetrator, I've received over 20,000 E-mails. And the weapon of choice was the FSF's infrastructure, remotely misused against yours truly.

THOSE who read our IRC logs or follow us outside this site (e.g. social control media) would likely be aware of communications we had opened up with the FSF in the form of a report, support ticket, and correspondence.



"Leveraging Tor exit nodes, some party decided to 'weaponise' the FSF's mailing lists to bombard my E-mail accounts several times per minute."First of all, I'd like to commend the FSF for swift action, transparency and eventually an explanation (including technical aspects).

So what is it that happened? Well, it seems like more than a week ago someone (or someones) was trying to cause nuisance if not conflict (it was a nuisance, but I spoke to 3 people at the FSF and there was no conflict). Leveraging Tor exit nodes, some party decided to 'weaponise' the FSF's mailing lists to bombard my E-mail accounts several times per minute. For several days. Non-stop.

"Suffice to say, it clogged things up and caused technical issues."By week's end I had received over 20,000 E-mails from the FSF's mailman services. Suffice to say, it clogged things up and caused technical issues. Rather than flag as spam or report the FSF I contacted them, at the advice or Mr. Oliva, and the problem was resolved within less than a day (despite COVID-19 disruptions to workflows and LibrePlanet right there in the middle, keeping FSF staff very busy).

The timing of the incident was particularly inconvenient to all and its perpetrators remain unknown. We can only speculate about the motivations. This week I asked the FSF if I can interpret the situation as, "as far as we know only Roy was targeted by this" and John Sullivan responded with a yes.

The spam mails have stopped.

It's worth noting that not one E-mail address of mine was targeted (the public address; there are more addresses). Two accounts were targeted, including a private one (which isn't easy to find).

"It's worth noting that not one E-mail address of mine was targeted (the public address; there are more addresses). Two accounts were targeted, including a private one (which isn't easy to find)."So it seems rather clear that someone targeted me, specifically, and used FSF servers for this purpose.

"Given various recent events," I told the FSF, "it's rather clear that some people try driving a wedge and strive harm Free software groups. There's ample evidence of it. Who would have the persistence to get 20,000 spam mails sent to my account from FSF servers?"

The mystery persists, but the FSF and us are in good terms. Many thanks and kind regards to Ruben Rodriguez, Zoë Kooyman, and John Sullivan.

Recent Techrights' Posts

[Meme] The Heart of Staff Rep
Rowan heartily grateful
 
Links 18/04/2024: Misuse of COVID Stimulus Money, Governments Buying Your Data
Links for the day
Gemini Links 18/04/2024: GemText Pain and Web 1.0
Links for the day
Gemini Links 18/04/2024: Google Layoffs Again, ByteDance Scandals Return
Links for the day
Gemini Links 18/04/2024: Trying OpenBSD and War on Links Continues
Links for the day
IRC Proceedings: Wednesday, April 17, 2024
IRC logs for Wednesday, April 17, 2024
Over at Tux Machines...
GNU/Linux news for the past day
North America, Home of Microsoft and of Windows, is Moving to GNU/Linux
Can it top 5% by year's end?
Management-Friendly Staff Representatives at the EPO Voted Out (or Simply Did Not Run Anymore)
The good news is that they're no longer in a position of authority
Microsofters in 'Linux Foundation' Clothing Continue to Shift Security Scrutiny to 'Linux'
Pay closer attention to the latest Microsoft breach and security catastrophes
Links 17/04/2024: Free-Market Policies Wane, China Marks Economic Recovery
Links for the day
Gemini Links 17/04/2024: "Failure Is An Option", Profectus Alpha 0.5 From a Microsofter Trying to Dethrone Gemini
Links for the day
How does unpaid Debian work impact our families?
Reprinted with permission from Daniel Pocock
Microsoft's Windows Falls to All-Time Low and Layoffs Reported by Managers in the Windows Division
One manager probably broke an NDA or two when he spoke about it in social control media
When you give money to Debian, where does it go?
Reprinted with permission from Daniel Pocock
How do teams work in Debian?
Reprinted with permission from Daniel Pocock
Joint Authors & Debian Family Legitimate Interests
Reprinted with permission from Daniel Pocock
Bad faith: Debian logo and theme use authorized
Reprinted with permission from Daniel Pocock
Links 17/04/2024: TikTok Killing Youth, More Layoff Rounds
Links for the day
Jack Wallen Has Been Assigned by ZDNet to Write Fake (Sponsored) 'Reviews'
Wallen is selling out. Shilling for the corporations, not the community.
Links 17/04/2024: SAP, Kwalee, and Take-Two Layoffs
Links for the day
IRC Proceedings: Tuesday, April 16, 2024
IRC logs for Tuesday, April 16, 2024
Over at Tux Machines...
GNU/Linux news for the past day
Inclusion of Dissent and Diversity of Views (Opinions, Interpretations, Scenarios)
Stand for freedom of expression as much as you insist on software freedom
Examining Code of Conduct violations
Reprinted with permission from the Free Software Fellowship
Ruben Schade's Story Shows the Toxicity of Social Control Media, Not GNU/Linux
The issue here is Social Control Media [sic], which unlike the media rewards people for brigading otherwise OK or reasonable people
Upgrading IRCd
We use the latest Debian BTW
The Free Software Community is Under Attack (Waged Mostly by Lawyers, Not Developers)
Licensing and legalese may seem "boring" or "complicated" (depending on where one stands w.r.t. development), but it matters a great deal
Jonathan Cohen, Charles Fussell & Debian embezzlement
Reprinted with permission from disguised.work
Grasping at Straws in IBM (Red Hat Layoff Rumours in 2024)
researching rumours around Red Hat layoffs
GNU/Linux Continues to Get More Prevalent Worldwide (Also on the Desktop)
Desktops (or laptops) aren't everything, but...
Who is a real Debian Developer?
Reprinted with permission from Daniel Pocock
Links 16/04/2024: Many More Layoffs, Broadcom/VMware Probed (Antitrust)
Links for the day
Links 16/04/2024: Second Sunday After Easter and "Re-inventing the Wheel"
Links for the day
Upcoming Themes and Articles in Techrights
we expect to have already caught up with most of the administrivia and hopefully we'll be back to the prior pace some time later this week
Links 16/04/2024: Levente "anthraxx" Polyák as Arch Linux 2024 Leader, openSUSE Leap Micro 6 Now Alpha, Facebook Blocking News
Links for the day
Where is the copyright notice and license for Debian GNU/Linux itself?
Reprinted with permission from Daniel Pocock
Halász Dávid & IBM Red Hat, OSCAL, Albania dating
Reprinted with permission from the Free Software Fellowship
Apology & Correction: Daniele Scasciafratte & Mozilla, OSCAL, Albania dating
Reprinted with permission from the Free Software Fellowship
Next Week Marks a Year Since Red Hat Mass Layoffs, Another Round Would be "Consistent With Other Layoffs at IBM."
"From anon: Global D&I team has been cut in half."
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, April 15, 2024
IRC logs for Monday, April 15, 2024