You are reading a single comment by @bq and its replies. Click here to read the full conversation.
  • Christ knows what stands in between my work computer and the internet, but it's a bunch of secure proxies of some kind. Perhaps cloud flare has an aversion to them. Never happened before and then twice in one day just hitting the home page, several minutes or even hours between requests. Either way it puts me off coming to the site (which I am sure is no great loss to many.)

  • I like to think the CF page is like a bouncer outside a members' club, making you feel special if you get let in.

  • You may have noticed in the last few days there has been a plague on the internet called Shellshock.

    A very large number of servers have been comprised, and CloudFlare have stopped in excess of 1 million attacks in the last couple of days.

    Before CloudFlare turned on their protection for it, the LFGSS and Microcosm servers were being hit by attacks. These attacks, if successful, could devastate any server involved, either giving up all data held on them (or behind them), or by turning them into bots to attack others.

    The attacks are real, here is one I logged for someone else to help analyse just an hour ago: http://pastebin.ca/2850408

    That specific attack was against the Espruino forum that we host: http://forum.espruino.com/

    It is not inconceivable that your employers network hasn't been 100% patched and that there is a compromised machine on your network. If that is the case, then by virtue of you appearing behind the same IP address, you are indeed having your traffic mixed with malware.

    CloudFlare are absolutely doing the right thing by issuing challenges. They only ever do so if something is already very badly wrong at the source IP.

    I can't say that the challenge you received is because of Shellshock, as there are many reasons that an IP can be scored badly. But it is very very likely.

About

Avatar for bq @bq started