@mhamzahkhan@intahnet.co.uk @stux@mstdn.social @freemo@qoto.org Seems both domains were reported from this security team.
https://www.mnemonic.no/
@freemo
Hey, even koyu.space was listed a long while ago.
So, I reached out to them to delist it, via email, and they told me that they had received multiple reports or something.
To delist it, the owner of the site has to ask them to do it!
@strawberryfieldsforever Err koyu.space is currently listed ๐ I was just about to message you as well!
@strawberryfieldsforever
Seems negligent to list it based on reports rsther than verifying it.
My guess is some group of people got pissed off at qoto because someone had an opinion they didnt like and then they got a ton of people to report us as some vendetta or some shit.
@mhamzahkhan
@strawberryfieldsforever
Actually i seem to have found something relevant. It appears there is a user on both qoto and mstdn that is somehow related. See this link
@freemo
same chap, definitely! ๐ฒ
Is it possible to find the one for koyu.space?
It's still listed.
@mhamzahkhan
@strawberryfieldsforever
I only found this via a google search... Maybe
@mhamzahkhan
@strawberryfieldsforever @freemo ๐คทโโ๏ธ first time I've come across this site. Seems interesting.
@mhamzahkhan @strawberryfieldsforever @freemo it's a known issue: https://web.koyu.space/2021/11/security-notice-vidar-stealer-abuses-the-mastodon-social-network/
sadly i can't really do anything. i called up kaspersky, but anyone else is still listing koyu.space as malware.
@mhamzahkhan @strawberryfieldsforever @freemo it looks like botnets are using the mastodon api as command and control server and this is not fun to figure out
@koyuchan
I managed to get qoto removed from all security threat lists and got quad9 to retract our block as well. Qoto should work on quad9 moving forward and hopefully should no longer be a problem with other services either.
@mhamzahkhan @strawberryfieldsforever
@freemo
That's glad to know.
Hopefully, koyu and other domains get removed, too.
By the way, in their email reply to me, they mentioned that #Quad9 is considering joining #Mastodon! โ
I guess, they may note receive a red-carpet welcome here! โ
@koyuchan @mhamzahkhan
@koyuchan Ahhh that sucks.
Very interesting read though!
@freemo
Seems negligent to list it based on reports rather than verifying it.
Indeed.
then they got a ton of people to report us
I think so, too.
@mhamzahkhan