Elektrine lite

← Feed

@radioclash@retro.pizza

2026-06-09 03:58 UTC

Very satisfying to block every CIDR of a ASN host because they obviously don't seem to care they've been hacked (or a spamhaus) No idea who 'Drei 3K Tech GMBH' is, aka 3xktech. cloud but you can get the fuck off my servers, as I don't appreciate mass login attempts. Oh they are a Proxy company? 'Plainproxies. com' - well noy so plain they apparently harbour hackers. You don't get to see any of my sites. Buhbye. A little digging and I find not only the name of the person that runs it, Friedrich Kraft - but "In July 2025, Cloudflare reported that 3XK Tech (a.k.a. Drei-K-Tech) had become the Internet’s largest source of application-layer DDoS attacks" Well rid! Be warned.... https://krebsonsecurity.com/2026/01/who-benefited-from-the-aisuru-and-kimwolf-botnets/ #hackers #ddos

Replies (1)

  • @radioclash@retro.pizza 2026-06-09 04:01

    BTW for those wondering quite easy to block entire IP block allocations of a company. 1) get the offending IP and find the AS number e.g https://www.whois.com/whois/151.123.178.0 2) Every host has what's called an ASN Autonomous System Number It's their block of IPs grouped together, it's how the larger internet routes them to the correct host. BTW they can have more than one ASN. Theirs is AS200373 3) Look up their IP blocks here: https://hackertarget.com/as-ip-lookup/ they are in CIDR format, even in spreadsheet format 4) Plug into your firewall of choice. 5) I have an alias script for IPTables callled droprange, but you can just do what I did, paste the list into a text editor, prefix every line with 'ufw insert 1 deny from'. I find Sublime Editor great as you can edit every line at once. iptables more tricky, I think it can use CIDR? I forget. Use UFW if you can, it's not in the dark ages! But same idea. Then pasted it into the terminal window. Yes I could script it but tooks hours last time. #asn #hackers #ddos #blocking

    Open ##4616215