There’s also @Deep@mander.xyz, @Beep@lemmus.org, and there was one named king but I’ve forgotten what instance they were on since they were last active.
There’s also @Deep@mander.xyz, @Beep@lemmus.org, and there was one named king but I’ve forgotten what instance they were on since they were last active.
I found the same IPs doing the same thing for my server, but one thing I noticed in the access log was that nginx was returning a 499 status code. That code means that the client closed the connection before the server answered the request. So this seems to be a deliberate attack instead of the rash of bots many have been dealing with recently. They just firehose out requests to DoS the server since pagination on services with dynamic data is expensive.
I ended up creating a fail2ban rule to add any IP to my firewall blocklist that makes a bunch of 499 entries.
Edit: I also set a rate limit in nginx for any url that has a “page” query included
Just because Steam offers a DRM option doesn’t mean that it’s mandatory:
https://www.pcgamingwiki.com/wiki/List_of_DRM-free_games_on_Steam
https://www.pcgamingwiki.com/wiki/The_big_list_of_DRM-free_games_on_Steam