Spamhaus vs. Cloudflare: The Battle for Internet Security

Carding Forum

Professional
Messages
2,788
Reaction score
1,177
Points
113
How a laissez-faire policy allows hackers to break the law while hiding behind legitimate services.

Cloudflare, known for its content delivery service (CDN), is facing criticism over its anti-internet abuse policy. Spamhaus expresses concern about Cloudflare's approach to managing abuse and urges a review of existing measures.

For many years, Spamhaus has been monitoring how attackers use Cloudflare services to disguise their actions. The Spamhaus Blocklist (SBL) has 1,201 unresolved cases, and 10.05% of domains listed in the Domain Blocklist (DBL) use Cloudflare server names, which indicates the presence of spam or fraudulent activity.

Research shows that sites that advertise services for cybercriminals also use Cloudflare services. For example, domains that offer bulletproof hosting are usually hosted on Cloudflare servers. A similar situation is observed with other cybercrime resources, such as forums for selling stolen data and DDoS attack services.

Cloudflare's abuse management policy is that the company cannot remove content because it is not its hosting provider. Instead, Cloudflare redirects abuse complaints to site operators and hosting providers. However, according to Spamhaus, this approach is problematic, as it allows attackers to hide behind Cloudflare services and ignore abuse notifications.

Spamhaus suggests that Cloudflare stop providing its services to attackers after receiving evidence of their activities. This includes suspending the DNS service, reverse proxy, and CDN. Such a move would allow the content to remain in the same place, but would make it inaccessible through the Cloudflare network.

The benefits of Cloudflare's current policy include reducing the cost of handling abuse and automating the notification process. However, such measures have a negative impact on the security of the Internet as a whole.

Spamhaus emphasizes that Cloudflare has all the necessary resources to provide reliable services to legitimate customers and prevent abuse. To do this, it is necessary to implement effective measures to prevent abuse, which would strengthen the company's credibility.

The organization calls on Cloudflare and other service providers to strengthen their measures to prevent abuse. Spamhaus, in turn, is ready to cooperate to improve security and trust on the Internet.

In today's reality, the balance between innovation and responsibility remains a key challenge. Companies that provide advanced Internet services should be aware that their technologies can be used not only for good, but also for harm.

The ethical responsibility of a business goes beyond simple compliance with the law and requires a proactive approach to ensuring the security of the global network. Ultimately, the reputation and trust of users become no less important assets than technological advantages.

Source
 
Top