There have been users spamming CSAM content in !lemmyshitpost@lemmy.world causing it to federate to other instances. If your instance is subscribed to this community, you should take action to rectify it immediately. I recommend performing a hard delete via command line on the server.
I deleted every image from the past 24 hours personally, using the following command: sudo find /srv/lemmy/example.com/volumes/pictrs/files -type f -ctime -1 -exec shred {} \;
Note: Your local jurisdiction may impose a duty to report or other obligations. Check with these, but always prioritize ensuring that the content does not continue to be served.
Update
Apparently the Lemmy Shitpost community is shut down as of now.
- mlfh ( @mlfh@lemmy.ml ) 66•1 year ago
If you aren’t going to fully wipe your drive in horrible events like this, at the very least use
shred
instead ofrm
.rm
simply removes references to the file in the filesystem, leaving the data behind on the disk until other data happens to be written there.Do not ever allow data like that to exist on your machines. The law doesn’t care how it got there.
- Mic_Check_One_Two ( @Mic_Check_One_Two@reddthat.com ) 23•1 year ago
Was going to say the same. Windows and Linux both use “lazy” ways of deleting things, because there’s not usually a need to actually wipe the data. Overwriting the data takes a lot more time, and on an SSD it costs valuable write cycles. Instead, it simply marks the space as usable again, and removes any associations to the file that the OS had. But the data still exists on the drive, because it’s simply been marked as writeable again.
There are plenty of programs that will be able to read that “deleted” content, because (again) it still exists on the drive. If you just deleted it and haven’t used the drive a lot since then, it’s entirely possible that the data hasn’t been overwritten yet.
You need a form of secure delete, which doesn’t just mark the space is usable. A secure delete will overwrite the data with junk data. Essentially white noise 1’s and 0’s, so the data is completely gone instead of simply being marked as writeable.
- lazynooblet ( @lazynooblet@lazysoci.al ) 2•1 year ago
Would rm be okay if you regularly fstrim?
- Zacryon ( @Zacryon@feddit.de ) 2•1 year ago
TRIM tells the SSD to mark an LBA region as invalid and subsequent reads on the region will not return any meaningful data. For a very brief time, the data could still reside on the flash internally. However, after the TRIM command is issued and garbage collection has taken place, it is highly unlikely that even a forensic scientist would be able to recover the data.
From: https://en.m.wikipedia.org/wiki/Trim_(computing)#Operation
So: probably yes.
- lea ( @lea@feddit.de ) 52•1 year ago
I nuked my personal instance because of this :(
Dealing with pictrs is just frustrating currently since there’s no tools for its database format and no frontend for the API. I half-expected this outcome but I hope it gets better in the future.
- Skull giver ( @skullgiver@popplesburger.hilciferous.nl ) 28•1 year ago
[This comment has been deleted by an automated system]
- Toribor ( @Toribor@corndog.social ) English1•1 year ago
Pict-rs has been the single largest pain of self-hosting a tiny Lemmy instance. I really hope things improve. I like hosting it myself but I can’t do it as a second job, having to figure out my own hacks and workarounds just to keep it running and not serving up illegal crap.
[This comment has been deleted by an automated system]
- Toribor ( @Toribor@corndog.social ) English2•1 year ago
Thank you! I was looking into running this a week or two ago when I was doing some maintenance but I gave up and shelved the project for later due to the complexity. My Lemmy instance is running in AWS and I’m going to have to put some work into my network setup on both ends to be able to connect to a computer with a GPU at home.
I’m glad the community is working to resolve some of these issues. Hopefully some of this will get easier and more cost-effective.
- zahel ( @zahel@cosmere.xyz ) English19•1 year ago
yeah this has got me second guessing hosting my own instance as well.
- fmstrat ( @fmstrat@lemmy.nowsci.com ) English7•1 year ago
Agreed, pict-rs is not ready for this. Not having an easy way to map URL to file name is a huge issue. I still don’t understand why non-block storage doesn’t just use the UUID it generates for the URL as a filename. There is zero reason to not have a one-to-one mapping.
- ohai ( @ohai@subsubd.com ) English2•1 year ago
yeah, I just spent the last hour writing some python to grab all the mappings via the pict-rs api. Didn’t help that the env var for the pictrs api token was named incorrectly (I should probably make a PR to the Lemmy ansible repo). EDIT: Nevermind, seems there is one already! https://github.com/LemmyNet/lemmy-ansible/pull/153
- UntouchedWagons ( @UntouchedWagons@lemmy.ca ) English24•1 year ago
I’m not surprised. It was quite common for shitheads on reddit to make an account, post a few comments on /r/againsthatesubreddits, then post CP on other subreddits to spin the narrative that AHS was trying to shut down hate subs.
What’s a CSAM attack? Sounds so serious, but I’ve never heard of it.
- nachtigall ( @nachtigall@feddit.de ) English16•1 year ago
Spamming pornographic depictions of minors
- argv_minus_one ( @argv_minus_one@beehaw.org ) 16•1 year ago
Pedophiles ruin everything.
- Atalocke ( @Atalocke@lemmy.basedcount.com ) 2•1 year ago
If anyone is looking for the NCME reporting registration.
- Jaz-Michael King ( @jaz@mastodon.iftas.org ) 1•1 year ago
@Jamie some recommended reading here for hosting ActivityPub services: https://github.com/FediFence/fedifence/blob/main/LegalRegulatory.md
Cloudflare has a free CSAM filter: https://developers.cloudflare.com/cache/reference/csam-scanning/
IFTAS is working on an opt-in CSAM scanner for service providers, follow this account to be notified
Lemmy moderators should fill out this needs assessment: https://cryptpad.fr/form/#/2/form/view/thnEBypiNlR6qklaQNmWAkoxxeEEJdElpzM7h2ZIwXA/