trash
fedilink
zoey
creator
link
fedilink
English
155d

I did find this github link as the first search result, looks interesting, thanks for letting me know the term “tar pit”.

_cryptagion [he/him]
link
fedilink
English
54d

If you’re looking to stop them from wasting your traffic, do not use a tarpit. The whole point of it is that it makes the scraper get stuck on your server forever. That means you pay for the traffic the scraper uses, and it will continually rack up those charges until the people running it wise up and ban your server. The question you gotta ask yourself is, who has more money, you or the massive AI corp?

Tarpits are the dumbest bit of anti-AI tech to come out yet.

@rumba@lemmy.zip
link
fedilink
English
34d

There’s more than one style of tar pit. In this case you obviously wouldn’t want to use an endless maze style.

What you want to do in this case is send them through an HA proxy that would redirect them on user agent, whenever they come in as Claude you send them over to a box running on a Wanem process at modem speeds.

They’ll immediately realize they’ve got a hug of death going on and give up.

@N0x0n@lemmy.ml
link
fedilink
English
9
edit-2
5d

Now I just want to host a web page and expose it with nepenthes…

First, because I’m a big fan of carnivorous plants.

Second, because it let’s you poison LLMs, AI and fuck with their data.

Lastly, because I can do my part and say F#CK Y0U to those privacy data hungry a$$holes !

I don’t even expose anything directly to the web (always accessible through a tunnel like wireguard) or have any important data to protect from AI or LLMs. But just giving the opportunity to fuck with them while they continuously harvest data from everyone is something I was already thinking off but didn’t knew how.

Thanks for the link !

@doodledup@lemmy.world
link
fedilink
English
14d

I don’t quiet understand how this is deployed. Hosting this behind a dedicated subdomain or path kind of defeats the purpose as the bots are still able to access the actual website no problem.

Natanael
link
fedilink
English
14d

The trick is distinguishing them by behavior and switching what you serve them

@doodledup@lemmy.world
link
fedilink
English
14d

How would I go about doing that? This seems to be the challenging part. You don’t want false positives and you also want replayability.

Natanael
link
fedilink
English
24d

If you’ve already noticed incoming traffic is weird, you try to look for what distinguishes the sources you don’t want. You write rules looking at the behaviors like user agent, order of requests, IP ranges, etc, and put it in your web server and tells it to check if the incoming request matches the rules as a session starts.

Unless you’re a high value target for them, they won’t put endless resources into making their systems mimic regular clients. They might keep changing IP ranges, but that usually happens ~weekly and you can just check the logs and ban new ranges within minutes. Changing client behavior to blend in is harder at scale - bots simply won’t look for the same things as humans in the same ways, they’re too consistent, even when they try to be random they’re too consistently random.

When enough rules match, you throw in either a redirect or an internal URL rewrite rule for that session to point them to something different.

Create a post

A place to share alternatives to popular online services that can be self-hosted without giving up privacy or locking you into a service you don’t control.

Rules:

  1. Be civil: we’re here to support and learn from one another. Insults won’t be tolerated. Flame wars are frowned upon.

  2. No spam posting.

  3. Posts have to be centered around self-hosting. There are other communities for discussing hardware or home computing. If it’s not obvious why your post topic revolves around selfhosting, please include details to make it clear.

  4. Don’t duplicate the full text of your blog or github here. Just post the link for folks to click.

  5. Submission headline should match the article title (don’t cherry-pick information from the title to fit your agenda).

  6. No trolling.

Resources:

Any issues on the community? Report it using the report flag.

Questions? DM the mods!

  • 1 user online
  • 94 users / day
  • 654 users / week
  • 1.55K users / month
  • 4.06K users / 6 months
  • 1 subscriber
  • 4.21K Posts
  • 87.9K Comments
  • Modlog