Recommended Posts

Thanks to repetitive botnet attacks, we have been forced to implement cloudflare protection today, (or more specifically WAF) which seems to be something every site needs these days.

Thankfully most of the attacks were nothing but a huge inconvenience that messed up our internal analytics. But it is just annoying to have thousands of IPs hitting an article from 2003, for what purpose? I do not know..

So once the DNS has fully propagated you might see a Cloudflare prompt to access Neowin.

Thanks as always for your continued support, it means a lot.

Link to comment
https://www.neowin.net/forum/topic/1455127-were-cloudflare-protected-now/
Share on other sites

On 26/05/2025 at 22:59, Warwagon said:

What's the article?

It's really not important, as botnet attacks like this just choose a random one from a long time ago. (it has happened countless times over the past few years).

On 26/05/2025 at 22:41, Steven P. said:

What happens? Cloudflare error or something else?

Sorry I can't remember but it didn't have cloud flare in the error message I don't think, I've seen it once this afternoon and once this evening.

When/if it happens again I'll take a screenshot.

Just happened again after closing browser after last message.

Can't get it to work in Vivaldi or Edge but tried Chrome and I can view the site again.

 

Error message is....

This site can’t be reached

The web page at https://neowin.net/ might be temporarily down or it may have moved permanently to a new web address.

ERR_ECH_FALLBACK_CERTIFICATE_INVALID

Edited by SnoopZ
On 27/05/2025 at 18:33, 1337ish said:

Just to say I run an IPB v4 forum behind Cloudflare WAF and there is a WAF rule that may trigger and block attachments at times if you want the rule.

Thanks, I will look into that now.

BTW our (staff only) online counter looks "normal" now, it has been 24 hours since the DNS propagation. I got the verify if you are human prompt an hour ago, so I think we're fully over worldwide now.

I host my own RSS reader (FreshRSS) and I've unable to pull the RSS feed for the last ~24 hours. I get a HTTP 403 Forbidden error. Presumably related to the timing of the Cloudflare changes.

If I check the site in the W3C validator, I get a similar error. https://validator.w3.org/feed/check.cgi?url=https%3A%2F%2Fneowin.net%2Fnews%2Frss

Works fine in a browser or from the command line from my little homelab server.

On 27/05/2025 at 18:48, jfam said:

I host my own RSS reader (FreshRSS) and I've unable to pull the RSS feed for the last ~24 hours. I get a HTTP 403 Forbidden error. Presumably related to the timing of the Cloudflare changes.

If I check the site in the W3C validator, I get a similar error. https://validator.w3.org/feed/check.cgi?url=https%3A%2F%2Fneowin.net%2Fnews%2Frss

Works fine in a browser or from the command line from my little homelab server.

I've forwarded it to the guy who can better respond about this.

On 27/05/2025 at 17:48, jfam said:

I host my own RSS reader (FreshRSS) and I've unable to pull the RSS feed for the last ~24 hours. I get a HTTP 403 Forbidden error. Presumably related to the timing of the Cloudflare changes.

If I check the site in the W3C validator, I get a similar error. https://validator.w3.org/feed/check.cgi?url=https%3A%2F%2Fneowin.net%2Fnews%2Frss

Works fine in a browser or from the command line from my little homelab server.

I've adjusted our rules, and the RSS feed should work now. Weirdly the validator.w3.org site validator still seems to be blocked, but if you add a trailing / on the RSS url, then it does work. The rule I've added applies to both, so I don't understand why that's happening. Could you let us know if your reader is now working again?

  • Thanks 1
On 27/05/2025 at 13:30, DaveLegg said:

I've adjusted our rules, and the RSS feed should work now. Weirdly the validator.w3.org site validator still seems to be blocked, but if you add a trailing / on the RSS url, then it does work. The rule I've added applies to both, so I don't understand why that's happening. Could you let us know if your reader is now working again?

Hey Dave, it's working now. Thanks!

  • Like 1

Not sure if it's related or not but I'm not able to upload any pictures to the funny pictures thread

Sorry, an unknown server error occurred when uploading this file.

(Error code: -200)

I did clear the cookies for the site

On 28/05/2025 at 19:57, neufuse said:

every time i post now it takes me to a cloud flare "we're verifying you are human please wait" page..... that's annoying enough to make me stop posting honestly

If that happens most of the time alot of people will stop posting for sure, something the site needs to avoid.

On 28/05/2025 at 15:16, SnoopZ said:

If that happens most of the time alot of people will stop posting for sure, something the site needs to avoid.

might have been a config issue, because i havent seen it in the past 2 posts

being someone that configures cloudflare i know there are a LOT of things you can set up that cause annoyances for valid people if you set scoring wrong or the Web app filter too strict

  • Like 1

I haven't been able to comment on news since this change. I saw a few Cloudflare errors the first day, but that has cleared up, now just can't post. I click the button and it goes gray, and nothing ever happens. Tested on multiple browsers including Safari on my iPhone, same symptoms for all.

  • Like 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Posts

    • OpenAI is now rolling out Lockdown Mode to more ChatGPT users by Pradeep Viswanathan Back in February, OpenAI first announced Lockdown Mode for users who want the most comprehensive protection from potential attacks. At the time of the announcement, the company mentioned that this feature was available to a small set of highly security-conscious users, including executives or security teams at leading organizations. Today, OpenAI announced that Lockdown Mode is now rolling out to all personal ChatGPT accounts, including Free, Go, Plus, and Pro, and also self-serve ChatGPT Business accounts. Users can enable the feature from ChatGPT Settings > Security when it is available for their account. When Lockdown Mode is enabled, ChatGPT limits or disables several features that connect to the web or external services. These include live web browsing, Deep Research, Agent Mode, and more. Here is the complete list of services that will be disabled in Lockdown Mode: Live web browsing: Web browsing is limited to accessing only cached content. Search results may be limited, unavailable, or stale. Image support: ChatGPT may not display images in regular responses or retrieve images from the web. Users can still upload image files, and image generation remains available where it is otherwise available. Deep research: Deep research is disabled. Agent mode: Agent mode is disabled. Canvas networking: Users cannot approve Canvas-generated code to access the network. File downloads: ChatGPT cannot download files for data analysis. ChatGPT can still operate on your manually uploaded files. It is important to note that Lockdown Mode does not completely block prompt injections from appearing in content that ChatGPT processes. For example, a malicious instruction could still be present in an uploaded file or cached web content. However, the mode is designed to reduce the ways such an attack could send sensitive information outside the conversation. Along with Lockdown Mode, OpenAI today also announced that the Active sessions feature is now available across ChatGPT accounts and workspace types. This feature allows users to review where their account is signed in across devices and end sessions if required. A session will have the following information displayed: Device or browser information. First-party app context, such as ChatGPT, Codex, or API Platform. Approximate location. Sign-in date and time. Whether the device is a trusted device. Whether it is your current session. OpenAI highlighted that the Active sessions feature will not be available for accounts linked to an organization’s single sign-on setup, including SAML or OIDC.
    • with LSTC and ESU, moving to w11 or linux because w10 suddenly will not work when in reality it works and its a better choice, of course there are also developers that only test in 11 or force you to have TPM and Secure boot for the sake of "better security" in games. or most likely people is buying new PC that only ship with 11
    • with LTSC and ESU there are still viable as a stable platform not that they care and let people deal with w11 crashing and burning every month support mean shet if the platform is trash
    • Most boring game ever. Repetitive, empty, predictable, and full of cliches. Total waste of time and money, IMO.
    • Mafia: The Old Country expansion Man of Honor announced, brings back Salieri from original by Pulasthi Ariyasinghe During Summer Game Fest, 2K and Hanger 13 brought out a new Mafia: The Old Country trailer, revealing the game's first expansion. Named Man of Honor, this is slated to add two new chapters to the Enzo storyline that the game follows. There is an iconic character returning to the series with this expansion, with players set to run into Ennio Salieri, the future Don of the Salieri crime family. Fans of the original Mafia, or its Definitive Edition remake, may remember that name as one of the biggest characters in the storyline. This expansion is set prior to his rise to being the kingpin in the City of Lost Heaven. "Set in Sicily during the winter of 1905, Enzo Favara has proven himself a reliable soldier of the Torrisi crime family in the months since his initiation," says the studio about the new chapters. "Now, the Don entrusts him and Cesare with a delicate assignment of assisting Ennio Salieri, a man of honor recently released from prison and intent on reclaiming what is his." Working at Salieri's side, players will be heading into fresh environments as they return to the role of Enzo as a high-ranking soldato. The studio also promises brand-new weapons, fresh vehicles, and charms to collect in this expansion. Moreover, the expansion will add new content to the updated Free Ride mode. Alongside new collectibles and locations, this will add more challenges to beat alongside Salieri, which are described as runs that will "test the skills of even the most elite mafiosi." The Mafia: The Old Country Man of Honor story expansion will release on August 14, 2026, across PC, Xbox Series X|S, and PlayStation 5. It will cost $10 for owners of the base game to jump into.
  • Recent Achievements

    • Rookie
      moog19 went up a rank
      Rookie
    • Mentor
      grik went up a rank
      Mentor
    • Dedicated
      JKR earned a badge
      Dedicated
    • One Year In
      CHUNWEI earned a badge
      One Year In
    • Conversation Starter
      FBSPL earned a badge
      Conversation Starter
  • Popular Contributors

    1. 1
      +primortal
      488
    2. 2
      PsYcHoKiLLa
      270
    3. 3
      Skyfrog
      76
    4. 4
      Steven P.
      68
    5. 5
      FloatingFatMan
      63
  • Tell a friend

    Love Neowin? Tell a friend!