this post was submitted on 22 Mar 2025
254 points (96.0% liked)

Nicoled

329 readers
6 users here now

Hi, I'm Nicole! But you can call me the Fediverse Chick :D

For when you or others get nicoled.

founded 3 weeks ago
MODERATORS
 

little do they know nobody is going to type out those urls by hand...

top 50 comments
sorted by: hot top controversial new old
[–] MushuChupacabra@lemmy.world 50 points 1 week ago (2 children)

Friend of Nicole

[–] LouSlash@sh.itjust.works 4 points 1 week ago

Nicole Cage top

[–] CrayonRosary@lemmy.world 33 points 1 week ago* (last edited 1 week ago) (6 children)

Thank god phones let you easily copy these links from the image. I was worried I'd have to type them in.

Edited to not rankle people.

[–] falcunculus@jlai.lu 7 points 1 week ago

Lol are you a Google rep?

load more comments (5 replies)
[–] jia_tan@lemmy.blahaj.zone 27 points 1 week ago (2 children)

So admins have to do ocr on every pic now?

[–] henfredemars@infosec.pub 29 points 1 week ago* (last edited 1 week ago)

It might be more effective to penalize instances with open sign ups that the bots are using, to pressure such instances to use bot-filtering tactics on their sign up pages.

Rate limiting, blocking DMs, or defederating (perhaps graduated after a warning) from minor instances that can't control bots sounds like a reasonable admin action.

[–] reallykindasorta@slrpnk.net 12 points 1 week ago (1 children)

I think the most effective would be to add a step so you could only write a message to people when both parties have consented or something like that.

[–] DavidGarcia@feddit.nl 19 points 1 week ago

poor girl is trying so hard to make friends

[–] peteyestee@feddit.org 19 points 1 week ago (3 children)

As an American, I'm voting for her next election.

[–] friendlymessage@feddit.org 15 points 1 week ago (1 children)

Cute, you still think you'll get elections

[–] YiddishMcSquidish 5 points 1 week ago

I get the joke, but that thinking brought us our current admin.

[–] RandomVideos@programming.dev 2 points 1 week ago (1 children)

She doesnt fit the requirements to be able to become a candidate in the united states of america unfortunately

[–] peteyestee@feddit.org 5 points 1 week ago* (last edited 1 week ago)

We can rig it.

[–] hungryphrog@lemmy.blahaj.zone 18 points 1 week ago

I just got this exact same message. Different account tho. Couldn't report it for some reason even though the account isn't banned yet.

[–] Mothra@mander.xyz 15 points 1 week ago (3 children)

It seems like the theory of deanonymizing users using images makes more sense with this

[–] CrayonRosary@lemmy.world 22 points 1 week ago (1 children)

Not really. The messages always had pictures. That hasn't changed. This is to bypass text filters.

If this entity just wanted to deanonymize users, a transparent GIF pixel would work even better. Then you wouldn't even be aware there was an image. And then you could vary the text sent to each person to avoid filters and avoid suspicion.

The message itself could just be a single word like "a". Something you can't reasonably filter. There wouldn't need to be a meaningful message at all if you're just trying to determine the IP of users.

Nah... The point of these messages has always been to get people to go to these URLs. This is probably classic catfishing.

Besides, are the image URLs even unique? Or include the name of the user they're sent to? If not, then it's useless as a deanonymization mechanism.

[–] Mothra@mander.xyz 6 points 1 week ago (2 children)

Fair, I'll take your point as it does sounds reasonable to me as well. But I don't believe the point is to get people to visit the links, the vast majority aren't and those who did report there is nothing on the other end. So, go figure.

As for obtaining IP- I've no idea on how that works, so I can't present you with a counterargument. There are posts discussing that already, has anyone brought that up there?

[–] CrayonRosary@lemmy.world 10 points 1 week ago* (last edited 1 week ago) (1 children)

If the image in the message is hosted on a server operated by the one sending the message, then the sender's server will have a log showing the IP address of the person viewing the image. Just by opening the message, the sender will know the IP of the person reading it.

However, hundreds of people received the message. So in order to tell which IP comes from which user, the URL of the image sent to each person needs to be unique. It can be as simple as putting their mame in the querystring, like http://image.server/girl.jpg?u=CrayonRosary%40lemmy.world

The web log will show that specific URL being requested by my IP address. Every user will receive an image with a URL unique to them.

It could also be more subtle like using a random looking ID and saving username/ID pairs in a table. Like http://image.server/girl.jpg?27639927. And then some table has that number associated to my username. The attacker builds the table as they send each message.

I got one of these messages. I should check if the URL is something like this.

Luckily the attacker can't get my personal IP address because I use NordVPN, the sponsor of this comment. Whether I’m browsing on public Wi-Fi, or trying to avoid deanonymization attacks like this one, NordVPN ensures my personal data stays private and secure. So if you want to stay safe online, go to NordVPN.com/MyTotallyRealPromoCode and get an exclusive deal today!

/s But I do use a VPN. 😄

(I must have deleted the message. I can't find it.)

[–] JustZ@lemmy.world 6 points 1 week ago (1 children)

Since you have a VPN I nominate you to engage with her and find out what she wants.

[–] CrayonRosary@lemmy.world 4 points 1 week ago

Ironically, the one time I tried Matrix, I was immediately banned after sending my first message, presumably because I'm on a VPN.

load more comments (1 replies)
[–] poplargrove@lemmy.world 4 points 1 week ago

Lemmy supports proxying images though. I read the release notes for the feature and its supposed to work on all image urls:

The setting works by rewriting links in new posts, comments and other places when they are inserted in the database. source

[–] Umbrias@beehaw.org 3 points 1 week ago

what's this?

[–] CrayonRosary@lemmy.world 14 points 1 week ago* (last edited 1 week ago) (1 children)

The Friendica link has a work address. I wonder, now, if it's the address of a person or company they're trying to harm. No way it's actually her real work address.

Turns out it's a grocery store.

Someone should ask on the Google maps Q&A section, "Does Nicole, A.K.A Fediverse Chick, work there?" 😄

[–] needanke@feddit.org 8 points 1 week ago (1 children)

Someone should ask on the Google maps Q&A section, "Does Nicole, A.K.A Fediverse Chick, work there?" 😄

Assuming this is actually a harassment campaign (which seems likely tbh) that would be the worst thing you could do.

[–] CrayonRosary@lemmy.world 5 points 1 week ago

I could think of a hundred worse things! My idea was a benign question.

Fun fact: her matrix server is a cesspool of racist garbage

[–] CosmicTurtle0@lemmy.dbzer0.com 11 points 1 week ago (1 children)

little do they know nobody is going to type out those urls by hand...

Never underestimate the lengths that thirsty bois will go.

And most OSs provide OCR.

[–] YiddishMcSquidish 3 points 1 week ago
[–] ohshit604@sh.itjust.works 7 points 1 week ago (1 children)

Am I the only one who hasn’t gotten one of her messages?

[–] TriflingToad@sh.itjust.works 5 points 1 week ago

you probs missed it, the admin of SJW auto deletes the spam messages when caught

[–] P4ulin_Kbana@lemmy.eco.br 5 points 1 week ago (2 children)

What is that font up there?

[–] puppycat@lemmy.blahaj.zone 7 points 1 week ago (1 children)

i installed it from my phone's personalization app but it doesn't seem like a commercial font or anything (no results from google). i just feel like it helps my dyslexia idk

[–] lnxtx@feddit.nl 3 points 1 week ago (1 children)

What's the name of that app?

[–] puppycat@lemmy.blahaj.zone 6 points 1 week ago

its just the built in theme manager for xiaomi

[–] PhobosAnomaly@feddit.uk 6 points 1 week ago (2 children)

It looks like a dialogue tree from the 16bit Fallout games.

brb, off to get a GECK from Poland.

[–] captain_aggravated@sh.itjust.works 3 points 1 week ago (1 children)

Were there 16 bit Fallout games? Was Fallout 1 that early on Windows?

[–] PhobosAnomaly@feddit.uk 4 points 1 week ago

It was a crude way to express an "era" for when it was released, because I couldn't be arsed googling for a release date.

It appears as though Fallout is an early 1997 game. Windows 3.x seemed to still be the dominant OS (or at least MS-DOS) at 52% of the market with Win95 accounting for 32%, so I would imagine that the game would still be built with 16-bit architectures in mind.

[–] Coelacanth@feddit.nu 2 points 1 week ago (1 children)

Does it? I'm not a font guy but to me it looks more like comic sans.

[–] Sibshops@lemm.ee 4 points 1 week ago

I was wondering what happened. I haven't heard any updates on her recently.

[–] YiddishMcSquidish 4 points 1 week ago

How is there not a bot that auto reports her yet?

[–] Schmuppes 2 points 1 week ago* (last edited 1 week ago) (1 children)

What are "pre-health" sciences anyway?

[–] LodeMike 5 points 1 week ago* (last edited 1 week ago) (1 children)

IDK. But If I had a gun to my head, I would say a category of undergraduate major before going into a doctoral or a graduate in the medical field.

[–] JustZ@lemmy.world 3 points 1 week ago (1 children)

I figure it's like pre bio chem.

[–] LodeMike 2 points 1 week ago

Something like that yes

load more comments
view more: next ›