TEMPLATE.action.txt 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475
  1. # {%actnttl0000%}
  2. | 🖼 | 🖼 | 🖼 |
  3. | --- | --- | --- |
  4. | ![](../image/matthew_prince_teen.jpg) | ![](../image/matthew_prince.jpg) | ![](../image/blockedbymatthewprince.jpg) |
  5. {%actnl0176%}
  6. {%actnl0177%}
  7. {%actnl0178%}
  8. "*I’d suggest this was armchair analysis by kids – it’s hard to take seriously.*" [t](https://www.theguardian.com/technology/2015/nov/19/cloudflare-accused-by-anonymous-helping-isis)
  9. "*That was simply unfounded paranoia, pretty big difference.*" [t](https://twitter.com/xxdesmus/status/992757936123359233)
  10. "*We also work with Interpol and other non-US entities*" [t](https://twitter.com/eastdakota/status/1203028504184360960)
  11. "*Watching hacker skids on Github squabble about trying to bypass Cloudflare's new anti-bot systems continues to be my daily amusement.* 🍿" [t](https://twitter.com/eastdakota/status/1273277839102656515)
  12. ![](../image/whoismp.jpg)
  13. ---
  14. <details>
  15. <summary>{%clickme%}
  16. ## {%actnttl0001%}
  17. </summary>
  18. - {%actnl0000%}
  19. - {%actnl0001%} [{%actnl0002%}](https://twitter.com/phyzonloop/status/1274132092490862594)
  20. - {%actnl0003%}
  21. [{%actnl0004%}](https://github.com/Eloston/ungoogled-chromium/issues/783):
  22. ```
  23. {%actnl0005%}
  24. ```
  25. [{%actnl0006%}](../PEOPLE.md)
  26. ![](../image/liberapay.jpg)
  27. [{%actnl0007%}](https://counterpartytalk.org/t/turn-off-cloudflare-on-counterparty-co-plz/164/5).<br>
  28. {%actnl0008%} [{%actnl0009%}](https://github.com/maraoz/maraoz.github.io/issues/1) {%actnl0010%}
  29. ```
  30. {%actnl0011%}
  31. http://crimeflare.eu.org
  32. ```
  33. ```
  34. {%actnl0012%}
  35. http://crimeflare.eu.org
  36. ```
  37. - {%actnl0013%}
  38. - {%actnl0014%}
  39. {%actnl0015%} {%actnl0016%}
  40. [{%actnl0017%}](https://archive.is/bDlTz) ("Subprocessors" > "Entity Name")
  41. ```
  42. {%actnl0018%}
  43. {%actnl0019%}
  44. http://crimeflare.eu.org
  45. ```
  46. {%actnl0020%}
  47. [Liberland Jobs](https://archive.is/daKIr) [privacy policy](https://docsend.com/view/feiwyte):
  48. ![](../image/cfwontobey.jpg)
  49. {%actnl0021%}
  50. [{%actnl0022%}](https://www.reddit.com/r/GamerGhazi/comments/2s64fe/be_wary_reporting_to_cloudflare/)
  51. {%actnl0023%}
  52. {%actnl0024%}
  53. ```
  54. {%actnl0025%}
  55. {%actnl0026%}
  56. {%actnl0027%} [*]
  57. [ {%actnl0028%} ] [ {%actnl0029%} ]
  58. ```
  59. [*] [PEOPLE.md](../PEOPLE.md)
  60. - {%actnl0030%} {%actnl0031%}
  61. - ["I'm in your TLS, sniffin' your passworz"](../image/iminurtls.jpg)
  62. - {%actnl0032%} {%actnl0033%}
  63. - {%actnl0034%}
  64. - {%actnl0035%}
  65. - [{%actnl0036%}](../HISTORY.md)
  66. </details>
  67. ------
  68. <details>
  69. <summary>{%clickme%}
  70. ## {%actnttl0002%}
  71. </summary>
  72. - {%actnl0037%}
  73. - {%actnl0038%}
  74. | {%actnl0095%} | {%actnl0096%} | {%actnl0097%} | {%actnl0098%} | {%actnl0099%} | Chrome |
  75. | -------- | -------- | -------- | -------- | -------- | -------- |
  76. | [Block Cloudflare MITM Attack](https://trac.torproject.org/projects/tor/attachment/ticket/24351/block_cloudflare_mitm_attack-1.0.14.1-an%2Bfx.xpi)<br>[**DELETED BY TOR PROJECT**](../HISTORY.md) | nullius | [ ? ](../tool/block_cloudflare_mitm_fx), [Link](http://crimeflare.eu.org/) | **{%tftfyes%}** | **{%tftfyes%}** | {%tftfno%} |
  77. | [Bloku Cloudflaron MITM-Atakon](../subfiles/about.bcma.md) | #Addon | [ ? ](http://crimeflare.eu.org/) | **{%tftfyes%}** | **{%tftfyes%}** | **{%tftfyes%}** |
  78. | [Detect Cloudflare](https://addons.mozilla.org/en-US/firefox/addon/detect-cloudflare/) | Frank Otto | [ ? ](https://github.com/traktofon/cf-detect) | {%tftfno%} | **{%tftfyes%}** | {%tftfno%} |
  79. | [TPRB](http://sw.nnpaefp7pkadbxxkhz2agtbv2a4g5sgo2fbmv3i7czaua354334uqqad.onion/) | Sw | [ ? ](http://sw.nnpaefp7pkadbxxkhz2agtbv2a4g5sgo2fbmv3i7czaua354334uqqad.onion/) | **{%tftfyes%}** | **{%tftfyes%}** | {%tftfno%} |
  80. | [True Sight](https://addons.mozilla.org/en-US/firefox/addon/detect-cloudflare-plus/) | claustromaniac | [ ? ](https://github.com/claustromaniac/detect-cloudflare-plus) | {%tftfno%} | **{%tftfyes%}** | {%tftfno%} |
  81. | [Which Cloudflare datacenter am I visiting?](https://addons.mozilla.org/en-US/firefox/addon/cf-pop/) | 依云 | [ ? ](https://github.com/lilydjwg/cf-pop) | {%tftfno%} | **{%tftfyes%}** | {%tftfno%} |
  82. | [Ĉu ligoj estas vundeblaj al MITM-atako?](../subfiles/about.ismm.md) | #Addon | [ ? ](http://crimeflare.eu.org/) | {%tftfno%} | **{%tftfyes%}** | **{%tftfyes%}** |
  83. | [Ĉu ĉi tiuj ligoj blokos Tor-uzanton?](../subfiles/about.isat.md) | #Addon | [ ? ](http://crimeflare.eu.org/) | {%tftfno%} | **{%tftfyes%}** | **{%tftfyes%}** |
  84. - {%actnl0039%}
  85. - {%actnl0040%}
  86. - {%actnl0041%}: "[very concerning indeed](https://github.com/Synzvato/decentraleyes/issues/236#issuecomment-352049501)", "[widespread usage severely centralizes the web](https://github.com/Synzvato/decentraleyes/issues/251#issuecomment-366752049)"
  87. - [{%actnl0042%}](https://www.ssl.com/how-to/remove-root-certificate-firefox/)
  88. </details>
  89. ------
  90. <details>
  91. <summary>{%clickme%}
  92. ## {%actnttl0003%}
  93. </summary>
  94. ![](../image/word_cloudflarefree.jpg)
  95. - {%actnl0044%}
  96. - {%actnl0045%} [{%actnl0046%}](https://support.cloudflare.com/hc/en-us/articles/200167776-Removing-subscriptions-plans-domains-or-accounts)
  97. | 🖼 | 🖼 |
  98. | --- | --- |
  99. | ![](../image/htmlalertcloudflare.jpg) | ![](../image/htmlalertcloudflare2.jpg) |
  100. - {%actnl0043%} {%actnl0047%} {%actnl0048%}
  101. - [{%actnl0100%}](https://it.slashdot.org/story/19/02/19/0033255/stop-saying-we-take-your-privacy-and-security-seriously) {%actnl0101%} {%actnl0102%}
  102. ![](../image/anonexist.jpg)
  103. - {%actnl0049%} {%actnl0050%}
  104. - [{%actnl0051%}](https://www.ibtimes.com/cloudflare-down-not-working-sites-producing-504-gateway-timeout-errors-2618008) [Another](https://twitter.com/Jedduff/status/1097875615997399040) [sample](https://twitter.com/search?f=tweets&vertical=default&q=Cloudflare%20is%20having%20problems). [Need more](../PEOPLE.md)?
  105. ![](../image/cloudflareinternalerror.jpg)
  106. - {%actnl0052%} {%actnl0053%} {%actnl0054%} {%actnl0055%}
  107. - {%actnl0056%} {%actnl0057%}
  108. ![](../image/rssfeedovercf.jpg)
  109. - {%actnl0058%} {%actnl0059%}
  110. - {%actnl0060%} {%actnl0061%} {%actnl0062%}: [Hurricane Electric Free DNS](https://dns.he.net/), [Dyn.com](https://dyn.com/dns/), [1984 Hosting](https://www.1984hosting.com/), [Afraid.Org ({%actnl0063%})](https://freedns.afraid.org/)
  111. - {%actnl0064%} {%actnl0065%} {%actnl0062%}: [Onion Service](http://vww6ybal4bd7szmgncyruucpgfkqahzddi37ktceo3ah7ngmcopnpyyd.onion/en/security/network-security/tor/onionservices-best-practices), [Free Web Hosting Area](https://freewha.com/), [Autistici/Inventati Web Site Hosting](https://www.autinv5q6en4gpf4.onion/services/website), [Github Pages](https://pages.github.com/), [Surge](https://surge.sh/)
  112. - [{%actnl0066%}](../subfiles/cloudflare-alternatives.md)
  113. - {%actnl0067%} [{%actnl0068%}](../PEOPLE.md)
  114. - {%actnl0069%}
  115. - {%actnl0070%}
  116. - {%actnl0071%} {%actnl0072%}
  117. > {%actnl0073%}: "[{%actnl0074%}](cloudflare_inc/)"
  118. > A: {%actnl0075%}
  119. ```
  120. server {
  121. ...
  122. deny 173.245.48.0/20;
  123. deny 103.21.244.0/22;
  124. deny 103.22.200.0/22;
  125. deny 103.31.4.0/22;
  126. deny 141.101.64.0/18;
  127. deny 108.162.192.0/18;
  128. deny 190.93.240.0/20;
  129. deny 188.114.96.0/20;
  130. deny 197.234.240.0/22;
  131. deny 198.41.128.0/17;
  132. deny 162.158.0.0/15;
  133. deny 104.16.0.0/12;
  134. deny 172.64.0.0/13;
  135. deny 131.0.72.0/22;
  136. deny 2400:cb00::/32;
  137. deny 2606:4700::/32;
  138. deny 2803:f800::/32;
  139. deny 2405:b500::/32;
  140. deny 2405:8100::/32;
  141. deny 2a06:98c0::/29;
  142. deny 2c0f:f248::/32;
  143. ...
  144. }
  145. ```
  146. > B: {%actnl0076%}
  147. ```
  148. http {
  149. ...
  150. geo $iscf {
  151. default 0;
  152. 173.245.48.0/20 1;
  153. 103.21.244.0/22 1;
  154. 103.22.200.0/22 1;
  155. 103.31.4.0/22 1;
  156. 141.101.64.0/18 1;
  157. 108.162.192.0/18 1;
  158. 190.93.240.0/20 1;
  159. 188.114.96.0/20 1;
  160. 197.234.240.0/22 1;
  161. 198.41.128.0/17 1;
  162. 162.158.0.0/15 1;
  163. 104.16.0.0/12 1;
  164. 172.64.0.0/13 1;
  165. 131.0.72.0/22 1;
  166. 2400:cb00::/32 1;
  167. 2606:4700::/32 1;
  168. 2803:f800::/32 1;
  169. 2405:b500::/32 1;
  170. 2405:8100::/32 1;
  171. 2a06:98c0::/29 1;
  172. 2c0f:f248::/32 1;
  173. }
  174. ...
  175. }
  176. server {
  177. ...
  178. if ($iscf) {rewrite ^ https://example.com/cfwsorry.php;}
  179. ...
  180. }
  181. <?php
  182. header('HTTP/1.1 406 Not Acceptable');
  183. echo <<<CLOUDFLARED
  184. Thank you for visiting ourwebsite.com!<br />
  185. We are sorry, but we can't serve you because your connection is being intercepted by Cloudflare.<br />
  186. Please read http://crimeflare.eu.org for more information.<br />
  187. CLOUDFLARED;
  188. die();
  189. ```
  190. - {%actnl0077%}
  191. - {%actnl0078%}
  192. </details>
  193. ------
  194. <details>
  195. <summary>{%clickme%}
  196. ## {%actnttl0004%}
  197. </summary>
  198. - {%actnl0079%} {%actnl0080%} {%actnl0081%} [**Briar** (Android)](https://f-droid.org/en/packages/org.briarproject.briar.android/), [Ricochet (PC)](https://ricochet.im/), [Tox + Tor (Android/PC)](https://tox.chat/download.html)
  199. - {%actnl0082%}
  200. - {%actnl0083%}
  201. - {%actnl0084%}: [bug #831835](https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=831835). {%actnl0085%}
  202. - {%actnl0086%}
  203. | {%actnl0095%} | {%actnl0096%} | {%actnl0097%} | {%actnl0103%} |
  204. | -------- | -------- | -------- | -------- |
  205. | [Ungoogled-Chromium](https://ungoogled-software.github.io/ungoogled-chromium-binaries/) | Eloston | [ ? ](https://github.com/Eloston/ungoogled-chromium) | PC (Win, Mac, Linux) _!Tor_ |
  206. | [Bromite](https://www.bromite.org/fdroid) | Bromite | [ ? ](https://github.com/bromite/bromite/issues) | Android _!Tor_ |
  207. | [Tor Browser](https://www.torproject.org/download/) | Tor Project | [ ? ](https://support.torproject.org/) | PC (Win, Mac, Linux) _Tor_|
  208. | [Tor Browser Android](https://www.torproject.org/download/) | Tor Project | [ ? ](https://support.torproject.org/) | Android _Tor_|
  209. | [Onion Browser](https://itunes.apple.com/us/app/onion-browser/id519296448?mt=8) | Mike Tigas | [ ? ](https://github.com/OnionBrowser/OnionBrowser/issues) | Apple iOS _Tor_|
  210. | [GNU/Icecat](https://www.gnu.org/software/gnuzilla/) | GNU | [ ? ](https://www.gnu.org/software/gnuzilla/) | PC (Linux) |
  211. | [IceCatMobile](https://f-droid.org/en/packages/org.gnu.icecat/) | GNU | [ ? ](https://lists.gnu.org/mailman/listinfo/bug-gnuzilla) | Android |
  212. | [Iridium Browser](https://iridiumbrowser.de/about/) | Iridium | [ ? ](https://github.com/iridium-browser/iridium-browser/) | PC (Win, Mac, Linux, OpenBSD) |
  213. {%actnl0087%} {%actnl0088%}
  214. {%actnl0089%}
  215. - {%actnl0090%} {%actnl0091%}
  216. - [{%actnl0092%}](https://support.torproject.org/tbb/tbb-9/) {%actnl0093%}
  217. - [{%actnl0094%}](../subfiles/chromium_tor.md)
  218. {%actnl0104%}
  219. - [{%actnl0105%}](https://www.mozilla.org/en-US/firefox/organizations/)
  220. - [{%actnl0106%}](https://spyware.neocities.org/articles/firefox.html)
  221. - [{%actnl0107%}](https://web.archive.org/web/20200423010026/https://reclaimthenet.org/firefox-rejects-free-speech-bans-free-speech-commenting-plugin-dissenter-from-its-extensions-gallery/)
  222. - ["{%actnl0108%}"](https://old.reddit.com/r/firefox/comments/gutdiw/weve_got_work_to_do_the_mozilla_blog/fslbbb6/)
  223. - [{%actnl0109%}](https://www.reddit.com/r/firefox/comments/jybx2w/uh_why_is_firefox_showing_me_sponsored_links_in/)
  224. - [{%actnl0113%}](https://digdeeper.neocities.org/ghost/mozilla.html)
  225. - [{%actnl0110%}](https://www.robtex.com/dns-lookup/www.mozilla.org) [{%actnl0111%}](https://www.theregister.co.uk/2018/03/21/mozilla_testing_dns_encryption/)
  226. - [{%actnl0112%}](https://bugzilla.mozilla.org/show_bug.cgi?id=1426618)
  227. - [{%actnl0114%}](https://github.com/mozilla-mobile/focus-android/issues/1743) [{%actnl0115%}](https://github.com/mozilla-mobile/focus-android/issues/4210)
  228. - [{%actnl0116%}](https://github.com/mozilla-mobile/focus-android/issues/1743#issuecomment-345993097)
  229. - [{%actnl0117%}](https://www.reddit.com/r/privacytoolsIO/comments/cc808y/pale_moons_archive_server_hacked_and_spread/)
  230. - {%actnl0118%} - "[{%actnl0119%}](https://github.com/yacy/yacy_search_server/issues/314#issuecomment-565932097)"
  231. - [{%actnl0120%}](https://spyware.neocities.org/articles/waterfox.html)
  232. - [{%actnl0121%}](https://www.gnu.org/proprietary/malware-google.en.html)
  233. - [{%actnl0122%}](https://spyware.neocities.org/articles/chrome.html)
  234. - [{%actnl0123%}](https://spyware.neocities.org/articles/iron.html) {%actnl0124%}
  235. - [{%actnl0125%}](https://www.bleepingcomputer.com/news/security/facebook-twitter-trackers-whitelisted-by-brave-browser/)
  236. - [{%actnl0126%}](https://spyware.neocities.org/articles/brave.html)
  237. - [{%actnl0127%}](https://twitter.com/cryptonator1337/status/1269594587716374528)
  238. - [{%actnl0128%}](https://www.zdnet.com/article/microsoft-edge-lets-facebook-run-flash-code-behind-users-backs/)
  239. - [{%actnl0129%}](https://spyware.neocities.org/articles/vivaldi.html)
  240. - [{%actnl0130%}](https://spyware.neocities.org/articles/opera.html)
  241. - Apple iOS: [{%actnl0131%}](https://www.gnu.org/proprietary/malware-apple.html)
  242. {%actnl0132%}
  243. </details>
  244. ------
  245. <details>
  246. <summary>{%clickme%}
  247. ## {%actnttl0005%}
  248. </summary>
  249. - {%actnl0133%}
  250. - [{%actnl0134%}](https://www.digwebinterface.com/?hostnames=www.mozilla.org%0D%0Amozilla.cloudflare-dns.com&type=&ns=resolver&useresolver=8.8.4.4&nameservers=)
  251. - {%actnl0135%}
  252. - [{%actnl0136%}](https://github.com/mozilla/policy-templates/blob/master/README.md)
  253. - {%actnl0137%}
  254. - {%actnl0138%}
  255. "`/distribution/policies.json`"
  256. > "WebsiteFilter": {
  257. > "Block": [
  258. > "*://*.mozilla.com/*",
  259. > "*://*.mozilla.net/*",
  260. > "*://*.mozilla.org/*",
  261. > "*://webcompat.com/*",
  262. > "*://*.firefox.com/*",
  263. > "*://*.thunderbird.net/*",
  264. > "*://*.cloudflare.com/*"
  265. > ]
  266. > },
  267. - ~~{%actnl0139%}~~ {%actnl0140%}
  268. - {%actnl0141%}
  269. - [{%actnl0142%}](../subfiles/change-firefox-dns.md)
  270. ![](../image/firefoxdns.jpg)
  271. - [{%actnl0143%}](https://wiki.opennic.org/start)
  272. ![](../image/opennic.jpg)
  273. - {%actnl0144%} [Crimeflare DNS](../subfiles/service.publicdns.md)
  274. - {%actnl0145%} [{%actnl0146%}](https://tor.stackexchange.com/)
  275. > **{%actnl0147%}**
  276. > 1. {%actnl0148%}
  277. > 2. {%actnl0149%}
  278. > DNSPort 127.0.0.1:53
  279. > 3. {%actnl0150%}
  280. > 4. {%actnl0151%}
  281. </details>
  282. ------
  283. <details>
  284. <summary>{%clickme%}
  285. ## {%actnttl0006%}
  286. </summary>
  287. - {%actnl0152%}
  288. - [{%actnl0153%}](http://crimeflare.eu.org)
  289. - {%actnl0154%}
  290. - [{%actnl0155%}](http://crimeflare.eu.org) :)
  291. - {%actnl0156%}
  292. - {%actnl0157%}
  293. - {%actnl0158%}
  294. - [{%actnl0159%}](../subfiles/cloudflare-alternatives.md)
  295. - {%actnl0160%}
  296. - {%actnl0161%}
  297. - [{%actnl0162%}](https://twitter.com/thexpaw/status/1108424723233419264)
  298. - {%actnl0163%}
  299. - {%actnl0164%}
  300. - {%actnl0165%}
  301. - {%actnl0166%} {%actnl0167%}
  302. - [{%actnl0168%}](https://www.itu.int/en/ITU-T/Workshops-and-Seminars/20181218/Documents/Geoff_Huston_Presentation.pdf)
  303. - {%actnl0169%}
  304. - {%actnl0179%}
  305. </details>
  306. ------
  307. ### {%actnttl0007%}
  308. ```
  309. {%actnl0170%}
  310. {%actnl0171%}
  311. {%actnl0172%}
  312. {%actnl0173%}
  313. ```
  314. ```
  315. {%actnl0174%}
  316. ```
  317. ```
  318. {%actnl0175%}
  319. ```
  320. ### {%actnttl0008%}
  321. ![](../image/stopcf.jpg)