GM π
How to use unlimited PFP size to attack Nostr users & blossom servers:
1 create a large bot army with unique 100mb GIF for PFP, uploaded to free blossom servers.
2 have them comment en masse to threads across Nostr.
3 users are downloading GB of unnecessary data, and blossom servers are sending out TB.
Bad for users on slow links and limited data plans. I'm guessing the image hosts wouldn't be happy either. DDoS by PFP π€π
Login to reply
Replies (11)
GM jokerβοΈ


Lol, morning 'dood π
GM Ryan & plEZE relay to dO;.;Od @MayDood \/\/0T/wAIy NA ATM π«‘>;.;<π
*quietly checks if his pfp uploads have a max size limit*
DL too. You can check file sizes before downloading with a head req.
True, but hosters should have rate limiters for that, is it a DDoS? not exactly. Those files will get cached after a short period. I think hosters are mostly prepared for this. If not this would be a lesson.
Good morning βοΈπ§‘
Morning!


π
Feature or bug? Nobody knows
I will keep hammering on this until I die:
Progressive compression formats provide enough data on the first couple of bytes to render a satisfactory thumbnail out of a full resolution file, the clients only need to halt the download once enough resolution is obtained.