social.anoxinon.de ist einer von vielen unabhängigen Mastodon-Servern, mit dem du dich im Fediverse beteiligen kannst.
Die offizielle Mastodon Instanz des Vereins Anoxinon e.V.

Serverstatistik:

1,1 Tsd.
aktive Profile

Codeberg.org

Yes, you can host Git bombs on Codeberg.

No, we are not fond of this idea.

We are currently looking into countermeasures to get Codeberg back on track.

@hexaheximal People pushing the limits meeting a tired Codeberg crew. Nothing too special.

@Codeberg Intentionally trying to disrupt Codeberg is seriously morally wrong imo.

@Codeberg What are git bombs?

People pushing malicious code?

@thefrankring @Codeberg

It's a lot like .zip bombs on BBSes back in the day.

@thefrankring @Codeberg I guess it's something like Zip bombs.
en.wikipedia.org/wiki/Zip_bomb

That is, Git bomb is probably a maliciously crafted Git commit (or Git tree, or Git blob) which somehow wreaks havoc on the receiving end, causing resource exhaustion.

en.wikipedia.orgZip bomb - Wikipedia

@Codeberg I assume with Git bombs you mean repositories where commits have large quantities of changes?

@Codeberg it would help to get rid of that stupid #github thing where they call clones forks, first of all, and second, to always make it clear that an actual fork, which I assume is what a git bomb is, is in fact the fork, not the original, and that it has been modified, and maybe to allow for relatively simple way to see how it's been modified.

This also avoids the pointless repo clutter of script kiddies 'forking' a repo when all they wanted was to clone it.

@Codeberg that was good, glad to see this is being looked at. I commented on the thread but I'm not into git, as I note, but just my general views as an end user.

The sad thing is github totally misused the entire concept of forking, which is one of the most extreme actions any project will probably experience, in place of a clone, which is what git calls it, correctly. Thus confusing matters. Calling a clone a clone would go a long way to clear things up. Git branches are a pain, I avoid them.

@Codeberg is this the reason codeberg was slow these days?

@Codeberg

I honestly don't think that disclosing it is a good idea