cross-posted from: https://quokk.au/c/fediverse/p/1066667/tesseract-dev-injects-malicious-code-into-browser-to-illegally-ddos-the-dbzer0-instance
As part of the devs farewell message on their site, they have included malicious code to make each visitor sends 2,000 requests to the dbzer0 servers in an attempt to DDOS and take the instance offline.


Aren’t there alternatives for the front end or why then still everyone uses it?
I use Alexandrite on the desktop and Voyager on my Android phone.
There’s a lot of alternatives.
Okay, TIL moment for me. How do I check which front-end I use in browser?
You are on the programming.dev instance and if you go to their website it uses the default Lemmy-UI.
In the instance “sidebar” at programming.dev it says this:
These are actual links but I just copied the text.
If you ever clicked a linkt here and are now using the subdomain to browse, you can probably figure out what UI you use. For example, Alexandrite would be https://a.programming.dev/
If you use https://alexandrite.app/ directly it can login to whatever instance you are on btw.
Thanks for info. Wasn’t paying attention to it before.
Probably some number of people who either didn’t care or didn’t hear the news.