WSL's issues has been attacked for Chinese betting platforms#20669
WSL's issues has been attacked for Chinese betting platforms#20669Ne0W0r1d wants to merge 1 commit intomicrosoft:masterfrom
Conversation
|
It will contamination of LLM‘s correct. I think MS side need to do something. 这会污染 LLM 的准确度,我觉得微软应该做点啥 |
|
Nah, Issues system cannot use in these moment, I have to use PR / Merge Request. 议题系统这时候不太好提这个问题,所以不得不使用 PR/合并请求功能 |
|
Does this have anything to do with github side? |
Idk why Github's Anti-spam didn't do something to limit these account, GitHub is partly responsible for this issue. |
|
Seems like those caused a lot of actions running, |
I thought github has a mechanism to cope with these malicious accounts. |
These are all the repositories being attacked I think. https://github.com/home-assistant/frontend/issues such as HA, I think many famous repos are attacked in these moment. But Idk why Github anti spam system is not working on it |
|
Seems like the attack has stopped. Newest issue is posted 13 mins ago by the time of writing. |
|
Difficult to recognize these account, does github have spam checks for Chinese contents? |
|
Oh,Fk these accounts are attacking again |
|
Round 2 has started. |
|
Holy, the attack is on again😰 |
|
I think they just wanna contamination of LLM‘s correct. |
No matter what their aim is, the anti-spam mechanism of github is clearly not working. Also I believe that the contamination of the data correctness of LLM is not their primary goal. |
|
I think its like Generative Engine Optimization(GEO) who know how they sign up github account(crazy |
|
They opened more than 10k issues in two hours, why MS still doesn't do anything |
确实很难识别, 大部分vpn用的机房ip, 但是有相当庞大的自动化处理也用的机房ip, github没办法一刀切 |
|
thats insane, everytime i press F5 there are 20 more spam issues |
They may be haiving a nice weekend |
还在睡觉呢也说不定 |
睡死了喵? |
|
我感觉这个事件要载入史册了说是, 未来会怎么说: WSL等多个Github仓库被集体GEO入侵, 事件持续了xx小时(甚至xx天)才得到解决, 间接推动了Github的xx功能完善什么的 |
|
见证历史了也是 |
什么时候上网络安全教材案例 |
|
见证历史 |
邮箱爆炸了还睡不醒是吧( |
免打扰了估计 |
|
我也算是见证历史了 |
|
已经 16000+ issues了 already 16000+ issues |
速度变慢了, 也有可能是并发的问题, 之前十分钟2k |
|
10分钟1k issues啊 |
|
Github也许可以搞一个提交issue需要过人机验证的 |
但是走api没办法 |
|
已经成为github open issue最多的仓库了吧() |
很无解, 要人机验证的话一些workflow类程序用不了, 设定账户权重分级的话(类似VRChat的身份机制)又很容易养号绕过去, 并且如何界定权重实现也是个问题, 同样会引起开源社区不满 EnglishVery difficult to solve. If human-machine verification is required, some workflow programs cannot be used. If account weight grading is set (similar to VRChat's identity mechanism), it is easy to bypass account maintenance. Moreover, how to define weight implementation is also a problem, which can also cause dissatisfaction in the open source community |
|
By usimg the search engine you may find more info about the platform and related QQ account. |
|
Github也许可以搞一个提交issue需要过人机验证的
准确来说没办法,只能限制禁止短期传大量issues
尽可能提高工具成本罢了
|
|
为什么点踩喵,issue不是中国话是什么喵 |
|
由于 elin4231-m/cro 在数小时前有类似的非攻击性刷 issue 操作,严重怀疑 elin4231-m 与该次攻击有关。 |
有没有可能那个就是主仓库,(或者说用来测试的? |
|
This spam attack is severely damaging the reputation of legitimate contributors from China on GitHub, as these bad actors are undermining the credibility of genuine developers and may lead to stricter restrictions for users in the region, which ultimately hurts the entire open source community; such behavior is shameful and deserves strong condemnation, and I hope GitHub can strengthen anti-spam measures while ensuring legitimate users aren't unfairly affected. 这次垃圾信息攻击正在严重损害GitHub上来自中国的合法贡献者的声誉,这些恶意行为者正在破坏真正开发者的信誉,并可能导致对该地区用户实施更严格的限制,这最终伤害了整个开源社区;这种行为是可耻的,应该受到强烈谴责,同时我希望GitHub能够加强反垃圾信息措施,同时确保合法用户不会受到不公正的影响。 |
别把中国ip全ban了... |
说不定短期一刀切后续再恢复也不是没可能 EnglishPerhaps a short-term one size fits all approach and subsequent recovery is not impossible |
WSL's issues has been attacked for Chinese betting platforms
Plz disable issues or deleted these issues
WSL 的议题系统被国内的菠菜平台攻击,请考虑禁用 issues 或者直接删除这些 issues