Remove tag cloudflare
article thumbnail

Sending Spammers to Password Purgatory with Microsoft Power Automate and Cloudflare Workers KV

Troy Hunt

Following, I've added the "HTTP" connector which enables me to make an outbound request: All this request does is makes a POST to an API on Password Purgatory called "create-hell" It passes an API key because I don't want just anyone making these requests as it will create data that will persist at Cloudflare.

Passwords 145
article thumbnail

Google disrupts the Glupteba botnet

Security Affairs

TAG also partnered with CloudFlare and others take down servers. Google partnered with Internet infrastructure providers and hosting providers, such as CloudFlare, to take down servers used by the gang. Glupteba disruption over last year: 63M Google Docs 1,183 Google Accounts, 908 Cloud Projects, and 870 Google Ads accounts.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Quebec shuts down thousands of sites as disclosure of the Log4Shell flaw

Security Affairs

IT giants like Apple, Amazon, Twitter, Cloudflare, Steam, Tencent, Baidu, and NetEase are running servers potentially affected by the issue. Query our API for "tags=CVE-2021-44228" for source IP addresses and other IOCs. Tags available to all users and customers now.

Libraries 109
article thumbnail

A zero-day exploit for Log4j Java library could have a tsunami impact on IT giants

Security Affairs

IT giants like Apple, Amazon, Twitter, Cloudflare, Steam, Tencent, Baidu, and NetEase are running servers potentially affected by the issue. Query our API for "tags=CVE-2021-44228" for source IP addresses and other IOCs. Open-source projects like ElasticSearch, Elastic Logstash, Redis, and the NSA’s Ghidra also use the library.

Libraries 141
article thumbnail

HTTPS Is Easy!

Troy Hunt

If you are a tech pro and you want to go deeper on HTTPS, have a browse back through the dozens of posts on the SSL tag or go and watch 3 and a half hours of Pluralsight training on the subject. Next, you'll see that this is all very Cloudflare-centric and you may be wondering "why not use Let's Encrypt instead?"

article thumbnail

Weekly Update 96

Troy Hunt

The most unexpected outcome of those discussions was a real flat-earther chiming into the Twitter discussion after someone made the innocent mistake of using the #FlatEarth hash tag to describe people decrying HTTPS. Plus there's my post on a whole bunch of nifty Azure Function and Cloudflare Workers bits. Enjoy: References.

GDPR 46
article thumbnail

My Blog Now Has a Content Security Policy - Here's How I've Done It

Troy Hunt

I also can't add custom headers via Cloudflare at "the edge"; I'm serving the HSTS header from there because there's first class support for that in the GUI , but not for CSP either specifically in the GUI or via custom response headers. Another reoccurring issue was the presence of onClick events on some tags.

IT 47