Replying to @⁨sanitation@lemmy.today⁩

Cybersecurity companies find resproxies challenging to tackle because the network traffic looks like it’s coming from an ordinary household, rather than a malicious hacker located overseas, as they might expect.

Ah, yes. Overseas, that wretched hive of scum and villainy, home of all malicious hackers and utterly devoid of any ordinary households.

Replying to @⁨AwesomeLowlander@sh.itjust.works⁩

Let me guess, you’ve never tried to host anything public yourself. If you run fail2ban long enough you end up with a blocklist that heavily skews towards a particular set of countries. Residential proxies are regularly used in criminal activity. I’ve personally and professionally been impacted by TAs using residential proxies to get around firewall rules as part of compromises.

If authorities in those countries took action against TAs and scammers more aggressively, perhaps blocking their entire country wouldn’t be seen as a valid defensive approach.

Replying to @⁨AwesomeLowlander@sh.itjust.works⁩

Overseas is generally used for “across an ocean”. As this is an NA based publication, “overseas” would likely be Europe, Africa, Asia, Oceania.

Malicious traffic frequently originates from at least one place in every one of those continents. We were breached some time ago by a TA using a residential proxy to send traffic from a Ukr AS block that got around our firewall. Blocking all traffic from regions of the world that you have no intention of servicing is a very valid cybersecurity layer. Getting annoyed because someone used the phrase “overseas” to describe areas to be suspicious of I think is rather short sighted from a security point of view.

Very few cyber attacks come from domestic/near domestic sources, except from botnets and residential proxies. The world will not miss residential proxies.

Replying to @⁨assaultpotato@sh.itjust.works⁩

Blocking all traffic from regions of the world that you have no intention of servicing is a very valid cybersecurity layer.

I pretty regularly run into things that block access or make me complete captchas while I’m traveling. I may not be in a region you intend to service, but I’m (possibly) from a region you intend to service. Airplanes are a thing.

Buying access to a residential proxy to deal with that situation would be an extreme step for most people, but as a cybersecurity practice, it’s problematic.

Replying to @⁨Zak@lemmy.world⁩

It’s not just log files - I was running a bad version of some software and suddenly my VPS was cryptomining and they tried to export common config directories. They got nothing and I cleaned it up but I’m not letting my VPS join a botnet and attack others. If the side effect of that is that Nigerians cannot read my person blog or access my self hosted services with 30 users I think this is ok.

I’ll happily accept your ire as I also wish the internet was generally safer and more open.

Replying to @⁨assaultpotato@sh.itjust.works⁩

As this is an NA based publication, “overseas” would likely be Europe, Africa, Asia, Oceania.

Unless they’re intending that their audience is only from the Americas, then no, overseas is based entirely on where their individual readers are.

Anyway, I feel like you may have misunderstood me a little. I’m not annoyed from a security perspective, I just found that to be superbly bad writing.

Replying to @⁨Akasazh@lemmy.world⁩

The difference is that commercial VPNs are theoretically more beholden to regulatory bodies to shutdown bad traffic/provide subscriber information when so ordered by a court. With a commercial VPN you have a legal recourse against a bad actor. With residential proxies enforcement is much much harder, as traversing beyond the IP hosting the proxy to the TA is often not possible. I also use a VPN to get around content restrictions and have no qualms about their use. Residential proxies are typically bad for everyone except TAs and people who might not have access to traditional VPNs due to their local governments.

Replying to an earlier post

Now people also need to stop buying those Chinese streaming boxes filled with IPTV piracy channels. They do the same thing and most likely worse things. Samsung can only control the apps installed on their TVs.

At the end of 2025, analysts examined several models of the popular SuperBox device available from major retail stores and online marketplaces. The findings were deeply concerning: immediately upon powering up, the devices began pinging the servers of the Chinese messaging app Tencent QQ, as well as the Grass proxy service — effectively renting out the owner’s internet bandwidth to third parties.

Android TV streaming boxes may turn home networks into criminal proxiesFox NewsWhy your Android TV box may secretly be a part of a botnetSecurity researchers warn Android TV streaming boxes promising free channels may secretly hijack home internet connections for proxy networks and criminal activity.

Replying to @⁨sanitation@lemmy.today⁩

Resproxies are not inherently illegal. Some are used for evading censorship by routing internet traffic through ordinary looking residential homes. AI companies, for example, increasingly rely on resproxies to scrape data from multiple places on the internet in one go to train their AI models.

I “love” how that paragraph tries to paint AI companies use of hijacked residential TV’s to avoid being detected as they scrape the web for training data to steal as some kind of legitimate use of hijacked TV’s.

Pro tip to Zack Whittaker, the Techcrucnh author: There is NO legitimate use of someone else’s Internet connection without their knowledge and approval. Full stop.