DDoS attacks

The way I see it, it is more of a burden for the degenerates that are spending thousands of dollars to DDoS this site than it is for us to be on Tor. Less money that they spend on purchasing illegal pornography, so we are actually harming that industry by merely existing.

We will preserver, as this is ultimately an annoyance, not a disruption in service like we did back in 2022.

If we do go under, then we go hydra. Multiple forums, either as backups or to cater to different interests. Farms always plant their seeds.
 
Only other thing I can think of is weaponizing some of the information gathered, launder it and disseminate it into the public at large. If the root cause of why the ddos is happening is the trove of knowledge, turn it into a wmd.
 
How frustrating that a pedo groomer and self harmer who actually drives people to suicide for her pedophile friends, as well as being a swatter can get away with fucking with this site because shes a useful rat to the pedo glowies to keep track of other pedo groomers. Cloudflare should never have been allowed to deny service, and should be made to accept kiwifarms again
 
The way I see it, it is more of a burden for the degenerates that are spending thousands of dollars to DDoS this site than it is for us to be on Tor.
I think it's a massive burden for the site to not be on the clearnet. It may not be a burden on us the user, but it just gives more credibility to the lies and false claims about the site to the average person. It also eliminates the effective part of having an archive for dangerous individuals.
 
The way I see it, it is more of a burden for the degenerates that are spending thousands of dollars to DDoS this site than it is for us to be on Tor. Less money that they spend on purchasing illegal pornography, so we are actually harming that industry by merely existing.

We will preserver, as this is ultimately an annoyance, not a disruption in service like we did back in 2022.

If we do go under, then we go hydra. Multiple forums, either as backups or to cater to different interests. Farms always plant their seeds.
That's kind of the problem though, at least from where I sit. They're not spending thousands of dollars.

Per Null himself, it's $80/month. Fuck me, I spend more than that on groceries.

That's what terrifies me. Forget KF for the moment. Imagine an Internet barely able to hold connections because most of the sites keep getting targeted by some retard who's having a bad day. It'd make me beg for the days of AOL.
 
Screenshot 2026-07-18 210427.png

I don't know what this page is called but you should consider putting the TOR link and the Telegram, twitter account here. maybe a feed for the telegram acc. specifically if thats possible. just some way to notify users whats happening instead of meeting them with an error page and zero information. particularly if this is gonna be a common occurrence in the future I think it would help quite a lot for users to have some sort of "emergency instructions" to follow.
 
If we're thinking of last resort solutions here as in "KF is knocked off clearnet completely and we need to fix that desperately due to funding, upkeep and whatnot":

Decentralize. Open-source a docker container that can run on any computer/server, Linux and Windows. In one easy docker command, a helpful hoster can deploy it. This hoster can go buy a cheap $2 domain, and put it behind a big-boy DDoS mitigation service. Through Tor, that service can talk to the Tor origin (the one here that doesn't go down - multiple if Josh makes more to help with this) and serves a clearnet mirror of Kiwi Farms on the hoster's domain.

A open-source KiwiFlare variant can exist on these containers so we aren't funneling shit traffic through Tor and slowing the real visitors down on that node. A bad actor running a bad node without the said KiwiFlare just opens a bad clearnet domain that will be slow for anyone trying to use it because Tor is overwhelmed from that source, it doesn't make the other domains any less slow - Tor handles that for us. Obviously Kiwi Flare would still be auditing the traffic as it comes in through Tor on the origin side, same way it does connecting through Tor now. Load times become practically double getting in, but I mean, it's not unbearably bad.

You cannot DDoS the Tor network. We do this, we have clearnet domains running Kiwi Farms (a ton of them, I know myself and likely many others would host some), and each individual one would have to be knocked down the process of going through each DDoS provider. Lots of them have free options that are very good at protecting the domains like Cloudflare, AWS Shield, Google Cloud Armor, Fastly, Sucuri, QUIC.

Each clearnet domain would indeed be vulnerable to quick actions by these companies, it's just a bet on how slow or willing they are to move. Maybe good links can be kept privately amongst groups of people independently hosting them here and giving them out to users they know/like so when normie public links go down the most of us aren't bothered while the hoster of that normie domain jumps ship to another DDoS mitigation provider.

And like I said maybe Josh goes all in on this and spins up a few more Tor routed origins that can be shared across hosters. Improve Tor latency this way so all that traffic going straight through Tor to one origin doesn't slow all Tor traffic going in.

There are two kinds of DDoS attacks: application and network. Application attacks can be mitigated by a web application firewall (WAF) like KiwiFlare. Network attacks require a packet scrubber. There is no such thing as a firewall that can stop a network attack. The attack breaks the service (and in our instance the entire network for the entire service provider) before it ever gets seen by a firewall. That's why any comment about "why not just block it" is retarded.
So effectively, this puts us on the safe side of the network layer again and we're fighting application. Obviously this ain't a weekend project and is also a big fat fuck you to all the companies we're hopeful might take us back in. We'd be violating their terms of service horrifically. But fuck these people and their censorship, I say it's worth it and would be a fantastic, impressive feat to pull off if we do it correctly.
 
Última edición:
The way I see it, it is more of a burden for the degenerates that are spending thousands of dollars to DDoS this site than it is for us to be on Tor. Less money that they spend on purchasing illegal pornography, so we are actually harming that industry by merely existing.
According to Dear Feeder, it is unfortunately only $80/month to take the site down. Admittedly that's still a decent chunk of change for the fiscally irresponsible to cough up, but Null implies that the current perp gets "assistance" from ((you know who)))
 
Would a static HTML page which when hosted could allow access to the website over Tor be of any help?
There is an option to use WebRTC TURN servers to obfuscate the participants, hiding both the user and the reverse proxy' IP addresses from each other, and then said reverse proxy just contacts the website over Tor (or directly, depending on its trust level).
It might also be possible to utilize public blockchains to store connection information for said HTML page to use, allowing to update it dynamically without actually modifying the page with a list of possible connection options, so the page could be cached in the browser allowing to use it without the backing website itself being up (sort of like the current "Page could not be loaded" XF page).

However currently I don't know of any public TURN servers which offer unmetered usage (there is a hack I am using to achieve that from Cloudflare TURN server infrastructure but it can get patched quick and, you know, it's Cloudflare).
Nonetheless, this configuration (connection to the reverse proxy via a WebRTC TURN server) seems obscure enough to not be present in typical botnet software and whatnot, so L7 is probably covered, and perhaps by some rare miracle hosting just a TURN server on a hyperscaler with L3/4 attack prevention measures could be allowed? Not betting on that but maybe that could fly.
 
That's kind of the problem though, at least from where I sit. They're not spending thousands of dollars.

Per Null himself, it's $80/month. Fuck me, I spend more than that on groceries.

That's what terrifies me. Forget KF for the moment. Imagine an Internet barely able to hold connections because most of the sites keep getting targeted by some retard who's having a bad day. It'd make me beg for the days of AOL.
Frankly, I'm surprised no one does this just to be an asshole. It would definitely spoil the fun for drug-addicted pedophiles and zoosadists who may or may not be CIs for foreign intelligence services.
 
I'm no network security expert but I don't understand why a lot of the problem couldn't be mitigated without the need for million dollar + expensive enterprise level setup. IP whitelists, bandwidth quotas for unknown visitors etc. Perhaps Null should look into hiring a security expert? Even with ChatGPT you can only go so far doing all this on your own and a fresh set of eyes could find solutions that aren't obvious.


In addition to the technical side KF needs to 'spread the word' like DSP used to say and pay more attention to the PR side. It has a twitter account and thats a start but KF's travails are mostly known only to its own large but fairly insular community and people who don't like it. The KF's story isn't spreading further beyond other than through opponent's articles.

Like it or not you gotta reach out more to the wider internet and get others interested and unfortunately in today's corporatized internet the way to reach most people is through the few mainstream corporate sites. When influencers and other organizations get into a stink they think they can fix through public opinion. They whine about it here. Make a youtube series covering KF but from its own perspective for a change. Reach out to people who might want to cover KF fairly. For example there have been some legal scholars at Reason who have written about KF in a not completely negative light. They might be interested in putting out some content from the perspective of how places can be defacto censored internet wide despite being completely legal.

Again this is probably something thats better done with more hands on deck. Null could delegate this to a competent deputy or do it himself while someone frees him to handle the tech side.
 
I'm no network security expert but I don't understand why a lot of the problem couldn't be mitigated without the need for million dollar + expensive enterprise level setup. IP whitelists, bandwidth quotas for unknown visitors etc. Perhaps Null should look into hiring a security expert? Even with ChatGPT you can only go so far doing all this on your own and a fresh set of eyes could find solutions that aren't obvious.
I can try and lay it out as simply as possible. The DDoS mitigation networks that used to protect us (Cloudflare, DDoS Guard) weren't providing us the service of a IP whitelist or a good firewall. They, at the network pipeline level, were able to keep bare traffic from hitting us. Bare, garbage, nonsensical traffic Josh's server would've rejected just like you're saying. Josh's server is fine - its the actual internet infrastructure leading to the site that is being flooded. And he can't get anyone to protect those lines, and it's not something he can set up himself, it's literally the highest level of network infrastructure owned by a couple corporations who lease that network down to other smaller companies in a trickle.
 
Atrás
Top Abajo