this post was submitted on 19 Jun 2023
15 points (94.1% liked)

Lemmy.World Announcements

28834 readers
2 users here now

This Community is intended for posts about the Lemmy.world server by the admins.

Follow us for server news ๐Ÿ˜

Outages ๐Ÿ”ฅ

https://status.lemmy.world

For support with issues at Lemmy.world, go to the Lemmy.world Support community.

Support e-mail

Any support requests are best sent to [email protected] e-mail.

Report contact

Donations ๐Ÿ’—

If you would like to make a donation to support the cost of running this platform, please do so at the following donation URLs.

If you can, please use / switch to Ko-Fi, it has the lowest fees for us

Ko-Fi (Donate)

Bunq (Donate)

Open Collective backers and sponsors

Patreon

Join the team

founded 1 year ago
MODERATORS
 

I was just browsing the main page and looking at threads, any idea why Bitdefender thinks some pages are suspicious?

The first one with the infected, I think it was a post and it had some pictures, didn't click on anything, just loaded the post.

top 3 comments
sorted by: hot top controversial new old
[โ€“] [email protected] 4 points 1 year ago* (last edited 1 year ago)

Honestly, lots of reasons. Malware links, new sites, it's a bit of the wild west, I use Jerboa on mobile, with RethinkDNS and Orbot (mobile Android), my logs are an absolute shitfight, with what to block, and what to allow. Give it time, it will settle. New sites (instances) may, or may not be malicious. I do not know what ,if any, protection Lemmy provides against malware. Good luck, we're all counting on you you

[โ€“] [email protected] 4 points 1 year ago* (last edited 1 year ago)

I think Lemmy fetches a lot of thumbnails/embeds from the instance where the user who posted the post lives.

And a lot of Lemmy instances are on domains registered like yesterday, in TLDs that are rarely used by companies, and are extremely unpopular websites. You might be the first Bitdefender user to query them.

So Bitdefender sees that you went to one site and immediately started requesting a bunch of weird stuff from a domain you didn't visit, which nobody else has ever visited as far as they know, and which was registered yesterday out in the boonies of .space or whatever, and decides it must be evil since it's so dang weird and is exactly what would happen if you were being attacked via some kind of cross-site scripting hole.

It is a worrying trend nowdays to have security software decide that anything it doesn't know about must be evil. Even Windows will block you from running programs you download that it thinks nobody else has ever downloaded.

[โ€“] [email protected] 2 points 1 year ago
load more comments
view more: next โ€บ