some_guy@lemmy.sdf.org to Technology@lemmy.world · 19 hours agoI use Zip Bombs to Protect my Serveridiallo.comexternal-linkmessage-square75fedilinkarrow-up1426arrow-down111file-textcross-posted to: hackernews
arrow-up1415arrow-down1external-linkI use Zip Bombs to Protect my Serveridiallo.comsome_guy@lemmy.sdf.org to Technology@lemmy.world · 19 hours agomessage-square75fedilinkfile-textcross-posted to: hackernews
minus-squarejust_another_person@lemmy.worldlinkfedilinkEnglisharrow-up78arrow-down2·edit-213 hours agoI believe he’s returning a gzip HTTP response stream, not just a file payload that the requester then downloads and decompresses. Bzip isn’t used in HTTP compression.
minus-squaresugar_in_your_tea@sh.itjust.workslinkfedilinkEnglisharrow-up17·edit-215 hours agoBrotli is an option, and it’s comparable to Bzip. Brotli works in most browsers, so hopefully these bots would support it. I just tested it, and a 10G file full of zeroes is only 8.3K compressed. That’s pretty good, though a little bigger than BZip.
I believe he’s returning a gzip HTTP response stream, not just a file payload that the requester then downloads and decompresses.
Bzip isn’t used in HTTP compression.
Brotli is an option, and it’s comparable to Bzip. Brotli works in most browsers, so hopefully these bots would support it.
I just tested it, and a 10G file full of zeroes is only 8.3K compressed. That’s pretty good, though a little bigger than BZip.