yellowcat
Regular Member
- Aug 27, 2015
- 404
- 297
Okay so there's a whole whack of free proxies online you can obtain through a bing search.
Lots of these proxies actually do work for mainstream sites like google, instagram, facebook etc.
So this begs the question why would anyone go through the effort? I know people can accidentally configure proxies, perhaps a skid leaving a backdoor or someone hosting a proxy out of good will or circumventing some countries lame firewalls.
But there's no way these reasons can back the intent of so many proxies.
"If you are not paying for the product you are the product"
So wtf mate?
Do people just create proxies to man in the middle steal sensitive data?
Besides
This raises more questions doe, cuz, like, 99% of these proxy servers are collected and tested by random bots. So how "exploitable" are these bots?
For instance i'd figure HTTP libraries such as curl, requests,urllib etc. wouldn't receive nearly as many security updates as a browser such as Chrome/FireFox.
So is exploiting HTTP libraries connecting to a public proxy server a real world attack vector?
I know these proxy servers can either inject malicious javascript or redirect to a webpage containing malicious javascript if you are using a browser/simulated browser
Pretty much i'm asking this stuff cuz, i feel like these proxies are just a giant tin foil hat trap conspiracy trying to steal my neopets logins.
But no srsly if you have any other reasons as to why "free public proxies" exist besides not being malicious af, lemme know.
Lots of these proxies actually do work for mainstream sites like google, instagram, facebook etc.
So this begs the question why would anyone go through the effort? I know people can accidentally configure proxies, perhaps a skid leaving a backdoor or someone hosting a proxy out of good will or circumventing some countries lame firewalls.
But there's no way these reasons can back the intent of so many proxies.
"If you are not paying for the product you are the product"
So wtf mate?
_________________________________________________________
| _swag.exe____ ___ ___ _____ __ __ __ ______ _| [ ] | X | |
{ P } => { Internets}
{ R }
{ O } <===== Wtf mate?
{ X }
{ Y } <= {User(You) }
__________________________________________________________
| _swag.exe____ ___ ___ _____ __ __ __ ______ _| [ ] | X | |
{ P } => { Internets}
{ R }
{ O } <===== Wtf mate?
{ X }
{ Y } <= {User(You) }
__________________________________________________________
Okay so some sketchy shits clearly going on hereDo people just create proxies to man in the middle steal sensitive data?
Besides
- injecting ads to web pages
- dns trickery
- hiding a botnet?
- spreading malware
This raises more questions doe, cuz, like, 99% of these proxy servers are collected and tested by random bots. So how "exploitable" are these bots?
For instance i'd figure HTTP libraries such as curl, requests,urllib etc. wouldn't receive nearly as many security updates as a browser such as Chrome/FireFox.
So is exploiting HTTP libraries connecting to a public proxy server a real world attack vector?
I know these proxy servers can either inject malicious javascript or redirect to a webpage containing malicious javascript if you are using a browser/simulated browser
Pretty much i'm asking this stuff cuz, i feel like these proxies are just a giant tin foil hat trap conspiracy trying to steal my neopets logins.
But no srsly if you have any other reasons as to why "free public proxies" exist besides not being malicious af, lemme know.
Last edited: