All right here is thread about why its is near impossible to block any content on the internet and fun little story about the time i was paid to watch porn 1/ https://twitter.com/DhivehiOne/status/1200584289739366400
how your computer knows what site to fetch when you type http://oriyaan.com  is to go ask a dns server to give it the ip address of the the server hosting the #bigtiddygirls so
browser: where da bigtiddygirls at
dns; urg u perve bigtiddygirls is at @ 1.2.3.4 /2
So the now the obvious way to stop someone from reaching the site is block the ip. But here lays the problem if the site is manage by someone competent it will be fronted by cdn which means the site no longer has a fixed ip but a range of ip's /3
You say fuck it i really hate people yolo block the CDN's ip ranges. well 2 problems with that
1) CDN's front legitimate sites eg lot of tube sites are fronted by cloudflare who also front mihaaru/cnm etc so if you block them then those sites working.
2) BGP /4
let me explain BGP well for lot of reasons easiest way of blocking a huge range of ip's on a multihomed environment is to blackhole the ASN for that range at the border gateways. which leads to all sorts of fun situations like https://dyn.com/blog/pakistan-hijacks-youtube-1/ and break the internet /4
well since ip blocking a site is impossible you say but dns can point to #bigttides to #wholesumecats lets just block it at dns level and this is the route most countries take as it is easiest. well you have two major issues with that /5
1) its rather trivial to change your dns servers from default one to 1.1.1.1 or 8.8.8.8 (in fact why the fuck are you using your isp default dns)
2) #DNSoverTLS and #DNSoverHTTPS which is rolling out as default for all the major platforms and browsers /6
well you say i am an #incel i really really hate porn lets intercept the traffic open up the packets to see if any one is fapping. fuck if it will cause major latency and bandwidth bottlenecks cause my ageedha is too fragile. SSL/TLS was designed specifically to stop this /7
which segways into that fun little story about how i was paid to watch porn as my first job in malaysia. Well you see decade ago when i was doing my masters i was working in universities RND department which had a commercial product to that was designed to stop porn /8
which had major commercial success in uk schools cause of #worntyouthinkofkids and they really really wanted to stop any even accidental image of #tiddies from being seen by kids. (fucking puritan's everywhere i tell you) not even image on google search or portable drive /9
so you ask how can something be a commercial success when you said it was impossible to do with out breaking ssl/tls. and yes that is exactly what we did We hijacked the network stack to redirect all traffic to a proxy with certs signed by our own ca and intercepted keystrokes/10
Yes we built that big spooky malicious MITM spywher aka fap material for big brother cause #fuckyourprivacy kids. we were able to do this cause one we could hijack the machines network stack 2 we had complete control over the network environment. /11
This is the route they you have to take to block any content and even then it will not work always cause kids found more holes in the system than the holes we were stopping them from seeing. and if you do this at a national level fuck your privacy goodbye /12
That is why @kudanai and rest of us get nervous when we hear you assholes wanting #mvpornban. Only way to make that work is to destroy the foundations of the internet. Kiss your ass goodbye from using any pcidss system or online transactions ever. /end
You can follow @nashrafeeg.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled: