👾 Tetstack👾
well fuck me ... The project need way more work than I thought. Standard tools like Puppeteer get clapped instantly because sites check under the hood for automation flags. I ma be deep in the actual browser source code changing things from the root. Here…
So basically what this means is I need to make my own browser that hides automated bots to pass captcha and WAF cloudflare fire wall.
👾 Tetstack👾
So basically what this means is I need to make my own browser that hides automated bots to pass captcha and WAF cloudflare fire wall.
This media is not supported in your browser
VIEW IN TELEGRAM
Well unfuck me cuz ... Change of plans on the browser source code rewrite grind.
Straight up, trying to manually rebuild five layers of a browser engine to spoof WebGL, clean up prototype chains, and trick JA4 fingerprints is a massive, endless rabbit hole. It’s a total brain melt, and honestly, even if I spent months custom-compiling a franken-browser, a single edge update from Cloudflare would probably still clap it instantly.
So, I’m shifting gears. We are working smarter, not harder.
Instead of fighting the WAF like a random intruder and wasting weeks on custom compilation runs that might look sus anyway, I’m implementing a clean, institutional-grade architecture. We’re going the fully authorized route—exactly how platforms like HackerOne or Burp Suite handle it.
Here is the new move:
The backend will support direct Cloudflare API Token Integration. Users will provide a token to prove they fully own the domain, our app validates it natively with Cloudflare's infrastructure, and then we can programmatically whitelist our scanner's IP to pull the data directly without getting blocked. No spoofing required, completely ironclad, and zero WAF drama.
This lets us stop fighting engine internals 24/7 and actually focus on building out the core scanning logic and vulnerability features for the engine.
Guess I fucked around and found out that building an enterprise-style auth flow is way more alpha than fighting a losing war against edge firewalls. Updates soon.
👾 Tetstack👾
well fuck me ... The project need way more work than I thought. Standard tools like Puppeteer get clapped instantly because sites check under the hood for automation flags. I ma be deep in the actual browser source code changing things from the root. Here…
I will make this after the main project is completed
POV: How I feel trying to debug a logic on the BackEnd API core engine, while having the EUEE(MATRIK) in 20 days or less. (I haven't started studying till now. )
😎3
Today I felt like I am worthy enough for a portfolio so check it out: https://isitreallyme.pages.dev/
Would love any feedback.
Would love any feedback.
And yeah mainly when you build portfolio either on vps or anything please please please use cloudflare unless you want web scrappers to get your info.
👍1
Well guess what, now there is a new way of cyber attack using bio weapon which is a viru. I am serious researchers just found a way how they can use a 176 base pair synthetic DNA encoded to cause buffer overflow when the sequence machine read it triggered a buffer overflow. I guess we gotta learn biology now huh?
👾 Tetstack👾
Today I felt like I am worthy enough for a portfolio so check it out: https://isitreallyme.pages.dev/ Would love any feedback.
So did a little tweak on the page used pure js vanilla maths for the background. Might be a bit clunky on phone bur check it out on desktop.
https://isitreallyme.pages.dev/
https://isitreallyme.pages.dev/
The background was made with JS maths and I used randomness so if you reload it will be different
As someone's advice I will be also talking about security treats that most of you do and I notice and which will lead to your as getting cooked.
So today's advice will be.
Advice 1:
Stop giving LLM's your photos and private documents, if one llm got compromised you are done all your your documents or taxes you tried to calculate, medical bill you tried to understand, photos of yourself uploaded because it was a trend, private life and more. Please Please Please, stop using AI for private stuffs think it as a stranger.
What get compromised:
Anything you share.
How it can be used: can be used to create a targeted phishing email, phone spoofing with cloned voice, social engineering to stuff I can't say here for safety of some subs.
Conclusion: treat any AI as a stranger unless it is running locally offline then do what ever you want.
Advice 1:
Stop giving LLM's your photos and private documents, if one llm got compromised you are done all your your documents or taxes you tried to calculate, medical bill you tried to understand, photos of yourself uploaded because it was a trend, private life and more. Please Please Please, stop using AI for private stuffs think it as a stranger.
What get compromised:
Anything you share.
How it can be used: can be used to create a targeted phishing email, phone spoofing with cloned voice, social engineering to stuff I can't say here for safety of some subs.
Conclusion: treat any AI as a stranger unless it is running locally offline then do what ever you want.