They have unsanitized SERVER_ADDR input in their header image.php.

I wonder what could go wrong.

Nothing a friendly spoofed header couldn't help them fix.

Finally a real Protect Voat subverse! What can we do about all the anon spam?

Archive for evidence, if true. @Puttitout can you check this out?

@freshmeat you forgot /v/paddyspub and the other gimmick music verses that are out there

protectvoat vs. counterprotectvoat

can't you all just try to make OC or contribute discussion or something? this is getting really retarded

Might be time to have another awareness campaign. This was a big problem a year or so ago.

Well that stinks. On a side note if anyone wants to see the /v/paddyspub css I post it semi regularly in the sub or whenever there's the littlest change to help people out working on their own. If you can't find it in the sub and want it just let me know and I'll repost it. It's still a work in progress though I've been admittedly lazy about it lately. It's base is /v/typogra because that css already had the light and dark settings built in. I'm gonna get working on restoring the background on the dark side and making the light side a little easier on the eyes. Anyways we just try to be good voat citizens at the pub. If we get to spammy w/ the music sometimes just go ahead and block us. It won't hurt our feelings. We mainly post b/c we like to see what each other is listening to and check out new music.

They are full of shit, dont fall for it. See here:

A while ago I tried to get the default subverse mods to use data uris to avoid offsite content. At least /v/programming kept it, hah.

One group contributes and protects, the other divides and sows discontent. Which are you?

Who has the better logo? I'm a sucker for a good logo and a catchy slogan.

That's very subjective.

One group contributes and protects (what do they contribute and who do they protect?), the other divides and sows discontent.(who are they dividing and what discontent are they sowing?)

This sub was made to be the honest version of PV due to inconsistencies and outright site rule-breaking on behalf of them. There will be no witch hunts here or speculative arguments. Just links to evidence.

How is a sub made and run by jews gonna be honest. This whole thread is based on lies. All of what SarMegaKike said is a planted lie.

Would someone please post an example of what's going on here? And please cover some basics like:

1) Are they only able to dox you if you go to one of their subs?

2) Is 'pinging you', as one user here noted, the SRS subs messaging you?

3) I have a static IP for my home. How big of a danger is that in general?

4) What will they do with whatever information they collect?

5) What's stopping anyone here from doing the same thing to them?

since noone else covered it, pinging you is this- @SocksOnCats which just sends a msg to your inbox notifying you that your name has been mentioned. Its used to call people to a thread mostly. That and pingbombing @HenryCorp cause hes a cunt.

I have to agree with the above statement 100%. @HenryCorp is a giant cunt.

3) I have a static IP for my home. How big of a danger is that in general?

That's already too much information.

'4) What will they do with whatever information they collect? ''

Anything can be done, once attacker has enough skill. They, on the other hand, are stupid and can only delete electronic information.

You can do some reading about what information is revealed by http request headers. Basically in order to load an image the browser needs to make a request to the server hosting the image. Along with that request are a set of headers telling the server things like what type of browser it's for and the IP address and so on. A lot of that is not really necessary but it's held over from an older internet, since this stuff has been around for a little while now.

So the attacker is gathering information about people who visit pages which use whatever image is being loaded. They read and collect that header information. Who knows that they'll do with the information. In the case of Torrenting illegal movies for example the government has the power generally to gather IP addresses and investigate. In Germany it's immediate guilt as you are legally tied to your IP address there. In America and just about any other country on the planet it is understood that many people might be using an IP address and legally it is not enough information to do anything with.

Also, without your internet provider rolling over on you an IP address isn't enough information to gather your name or any other info. So Doxxing is a bit of a heavy word. More like just general data collection.

this post doesnt show up in /v/all shady shit

SBBH are friends with Putt.

I'm pretty sure that computer intrusion is a crime. Log their IPs when they portscan you.

Let's get their domains blocked in adblockers like Ublock Origin.

Always disable CSS. I don't need that shit slowing down my phone

I fucking hate custom CSS on voat and reddit, it's fucking cancer that makes my experience less streamlined.

I better get a VPN or everyone will know I'm DB Cooper, the zodiac killer, and Madeline McCann.

People actually enable CSS? That's almost as bad as using Day Mode.

I think it's enabled by default, isn't it? I remember having to turn it off ages ago

Yeah IMO Voat should disable CSS by default until external references can be sanitized or whitelisted somehow.

I'd only allow a fixed catalogue of predefined CSS templates, where you can define some of the colors, fonts and background images through a form when selecting the CSS for the sub. Of course downloadable fonts are a no-no and images must come from a trusted image host.

Everyone has their own ideas about which image hosts can be trusted. Just never come here without VPN.

  1. I have always had CSS disabled. Sub-CSS is just like the cancer that was myspace. Why the fuck do you allow it to be enabled.

  2. They are probably paid to do it for ad agencies or are using it to inflate their 'visitor' rate for their own websites to sell ad's on.

  3. Maybe they are trying to DOX you. Not much they can do with just an IP. They can get a general area from an IP but unless your home address has registered static IP's (or IP's tied to domains that have your information in them) they can guess at who you are at best.

@SarMegahhikkitha is a JIDF shill and mentally ill. The IP scan thing was done in SdBH as a joke to scare users who know nothing about the internet. Wasn't even a secret, as your IP was shown to you in a bar at the bottom of the screen.

He is just scared because he lives in a faggot country where you can get fired for being a fascist.

  1. Where did I advise people to enable subverse CSS?

  2. Hotlinking to images on your own domain (e.g. pembo's wastes bandwidth. No traffic is being driven to the site itself, and you can see for yourself whether the site has ads.

  3. SRS are on the SoRoS payroll. If you remember, Clinton got access to three-letter agency spying tools given by her friends on the inside. Google, Microsoft, Apple, etc. all work with Clinton Foundation. They always leave backdoors and undisclosed zerodays for the three-letter agencies to exploit. Your computer and/or router running linux isn't going to save you.

Ok, ok. Lets clear it up a little bit ;)

I was not implying that you suggest that any verse should have CSS enabled. That was more of a statement to all rather than to you. Sorry that I was not more clear.

Addressing #2. Advertisers are dumb. No, really. They are very, very, dumb. You can sell them "impressions" without specifying what/how/etc.. If your contract is clever you can get them to believe that the 1x1 pixel is only being shown on your website so every time its used it is an impression that they might buy content for (Seriously, most do not check for this, even if they say they do).

Number 3. We can debate that for ages. I was not calling you out, just agreeing that it is possible and with enough resources you could indeed dox someone. It would take connections, cash or both to do so. Nearly no solo operator has enough time/money to dox every single 1x1 image impression. This will bring up the "unique" image impression stuff I know.. buy you understand what I am getting at.

I am more than aware of how the security of the systems I design and build is impacted by outside tampering. You do not need to sell me on the idea, ive been trying to sell it to everyone else for over a decade.

However. With all of that said. You make good points. Thank you for the thought out response.

Some of the doxxing targets could be very valuable. There was that politician who they found on voat thanks to his poor infosec.

Targets such as these could seem worth the resources. Who knows. Most of us are just regular folks but not all.

Just imagine if Q were a voater and they doxxed him? That would cost a man his life.

1764_sugar_act ago

Womb_Raider ago

Yeah, I don't think he would make such mistakes.

I'm kind of a skeptic too, but I want to believe. If he's real, it gives me hope the government is actually cleaning up their act.

1764_sugar_act ago

it gives me hope the government is actually cleaning up their act.

Just don't allow this to interfere with our mindset to ensure that they do. That is what I worry about. Like with Trump talking all this good game, now he gets into office and says maybe we should let all the mexicans in that were brought here "through no fault of their own." I think he could be (((their))) guy, some actor to ruin the reputation of all white males, the final blow delivered in an elaborate ruse. It is totally feasible, whether we realize it or not, he represents us all now.

I like stefan molyneux's analogy for Trump cucking up to DACA. If a child's parents rob a bank, and give that money to the child, "through no fault of their own," are you just going to let them have it after apprehending them? After all, the child is without fault! ...

they wiped his phone as a warning shot.


SarMegahhikkitha ago

He used to be prolific, now his profile's wiped.

Ask @Womb_Raider for a screenshot of the PMs if you want proof, I just have some of the text.


[8:08 PM] inthetimeofnick: Told them I wasn’t combating them anymore wonder why they’re still attacking

[8:11 PM] inthetimeofnick: I’m not annoyed. I cut my teeth on /b/ back in the day. I’m hard to mad. I’m just curious why because I rarely respond anymore.


inthetimeofnick - Today at 7:37 AM

Got doxxed. Deleting everything today. Keep fighting the good fight.

[12:44 PM] Womb Raider: He had a lot of data saved... he had dirt on all of SBBH... he had it all

[12:44 PM] Womb Raider: a bigger collection than any I'd seen before

[12:44 PM] Womb Raider: but nobody but me should have known that

Hey man, I told you this stuff in confidence. Nick valued his privacy. This isn't very cool, you know.

SarMegahhikkitha ago

Like I told you, Nick came into chat himself and said this stuff. The only reason I didn't post his own words is I can't seem to search his name (or search that far back, not sure which).

That is very true dude. But, I would say that nick being gone, this piece of info won't hurt anyone. I honestly didn't know he was archiving stuff so it kind of sucks to hear they got to him.

Did he ever mention how it happened because he took a lot more precautions than I do.

Womb_Raider ago

He was archiving your bullshit, too, mighty. I wasn't the only one that realized you lie.

What nick said to me about that isn't voat's business, this is his private life we're talking about here. We lost a good one.

WeMustRemainPure ago

He was archiving your bullshit, too, mighty. I wasn't the only one that realized you lie.

I figured a lot of people were that's why I tried my best ot be honest. As far as I know there isn't anything I lied about but I'm also an alcoholic and do some dumb shit sometimes.

What nick said to me about that isn't voat's business, this is his private life we're talking about here. We lost a good one.

I know, it's fucked up. I'm wondering what he did to even get the focus on him. He never really brought SRS to attention, just casually Voated. I didn't realize it was as serious as this comment thread made me realize and this reminds me vivdly of my experience before finding Voat. I had my phone hacked by SRS about 4 years ago and they did a lot of shit that damaged my business in a small way. Not significant enough to cause financial harm, but enough to make me need to explain this shit to normies and customers.

Did he browse on mobile?

VPN to be on the safe side. You can't know about these things ahead of time on every site you go to.

Use whonix .