fosstodon.org is one of the many independent Mastodon servers you can use to participate in the fediverse.
Fosstodon is an invite only Mastodon instance that is open to those who are interested in technology; particularly free & open source software. If you wish to join, contact us for an invite.

Administered by:

Server stats:

8.6K
active users

#Impersonate

1 post1 participant0 posts today

→ Perplexity is using stealth, undeclared crawlers to evade website no-crawl directives
blog.cloudflare.com/perplexity

“We observed that #Perplexity [an AI-powered answer engine] uses not only their declared #user_agent, but also a generic browser intended to #impersonate Google Chrome on macOS when their declared crawler was blocked.”

“This activity was observed across tens of thousands of domains and millions of requests per day.”

The Cloudflare Blog · Perplexity is using stealth, undeclared crawlers to evade website no-crawl directivesPerplexity is repeatedly modifying their user agent and changing IPs and ASNs to hide their crawling activity, in direct conflict with explicit no-crawl preferences expressed by websites.
#AI#evade#stealth

Tuesday, July 29, 2025

“Peace through strength is possible,” Zelensky — Investigation: Despite sanctions, American trucks are being used by Russia to launch kamikaze drones — Unidentified drone enters Lithuania from Belarus amid rising tensions — Ukraine liberates Kindrativka village in Sumy Oblast amid ongoing Russian offensive … and more

activitypub.writeworks.uk/2025

#FBI warns of ongoing #scam that uses #deepfake audio to #impersonate government officials

The FBI is warning people to be vigilant of an ongoing malicious messaging campaign that uses AI-generated voice audio to impersonate government officials in an attempt to trick recipients into clicking on links that can infect their computers.
#ai #security #privacy

arstechnica.com/security/2025/

Ars Technica · FBI warns of ongoing scam that uses deepfake audio to impersonate government officialsBy Dan Goodin

lexiforest 版的 curl-impersonate 出 v1.0.0rc1

先前在「fork 出來的 curl-impersonate」有提到 curl-impersonate 本來的作者 lwthiker 已經沒在維護了,現在是 lexiforest 版看起來是比較活躍的版本:「lexiforest/curl-impersonate」。 剛剛看到 v1.0.0rc1 的消息,頁面上也提到 breaking change: Breaking changes on v1.0, see release page for details. 看起來比較明顯的是改 binary 的名字這件事情,因為不只支援 chrome 很久了,所以把 binary 裡面 chrome 的名字拿掉: Changed the binary name from (lib)curl-impersonat…

blog.gslin.org/archives/2025/0

Gea-Suan Lin's BLOG · lexiforest 版的 curl-impersonate 出 v1.0.0rc1先前在「fork 出來的 curl-impersonate」有提到 curl-impersonate 本來的作者 lwthiker 已經沒在維護了,現在是 lexiforest 版看起來是比較活躍的版本:「lexiforest/curl-impersonate」。 剛剛看到 v1.0.

fork 出來的 curl-impersonate

原來的 lwthiker/curl-impersonate 已經超過一年沒更新了,不過看起來有其他人 fork 出來繼續維護 (以及開發):「lexiforest/curl-impersonate」。 目前支援的版本還算新,Chrome 支援 133 (目前 stable 最新版是四天前出的 134),Firefox 支援 135 (目前 stable 最新版是月初出的 136),其他的幾個瀏覽器看起來也都有跟上。 最近遇到一些網站會擋到 TLS fingerprint,剛好拿這個出來用... …

blog.gslin.org/archives/2025/0

Gea-Suan Lin's BLOG · fork 出來的 curl-impersonate原來的 lwthiker/curl-impersonate 已經超過一年沒更新了,不過看起來有其他人 fork 出來繼續維護 (以及開發):「lexiforest/curl-impersonate」。 目前支援的版本還算新,Chrome 支援 133 (目前 stable 最新版是四天前出的 134),Firefox 支援 135 (目前 stable 最新版是月初出的 136),其他的幾個瀏覽器看起來也都有跟上。 最近遇到一些網站會擋到 TLS fingerprint,剛好拿這個出來用...

A #TrustAndSafety problem on #Mastodon is that it's easy for a bad actor to #impersonate someone else by using the same username on a different server.

I've been trying one possible UI improvement to make impersonation easier to spot: to always attach the favicon of the server when showing the username.

Because many servers never change their favicon from the default, to further distinguish servers I also recolor the favicon depending on the server.

Screenshots shows @elk UI before and after.