Skip to content
This repository has been archived by the owner on Feb 2, 2023. It is now read-only.

~600 CIDRs over ~300 providers #106

Open
jimdigriz opened this issue Jul 20, 2017 · 10 comments
Open

~600 CIDRs over ~300 providers #106

jimdigriz opened this issue Jul 20, 2017 · 10 comments

Comments

@jimdigriz
Copy link

Probably should no longer be hording this list, easier to outsource the maintainence to the world+dog :)

What do you need from me to sort these out so they are usable to you?

blacklist-ip.txt

@shawnps
Copy link
Contributor

shawnps commented Jul 20, 2017

@jimdigriz thank you very much for this, there's a lot of data in here. I'm thinking to write a script to whois all of these and confirm the ranges. Traveling soon but will post updates here once I get started.

@jimdigriz
Copy link
Author

jimdigriz commented Nov 16, 2017

@shawnps Anything I can do to help you get these merged in?

@shawnps
Copy link
Contributor

shawnps commented Nov 17, 2017

@jimdigriz sorry this fell off my radar. I'm thinking of going through and adding the larger entries at first. That will at least get some of this data into the list. The biggest problem is just that it's a lot of manual work. I personally like to go through and check WHOIS, do some host lookups, etc. With a list this big it would of course take a really long time.

Out of curiosity, any idea how old are the oldest entries in here?

shawnps added a commit that referenced this issue Nov 17, 2017
shawnps added a commit that referenced this issue Nov 17, 2017
shawnps added a commit that referenced this issue Nov 17, 2017
shawnps added a commit that referenced this issue Nov 17, 2017
shawnps added a commit that referenced this issue Nov 17, 2017
@jimdigriz
Copy link
Author

Looking through my git history for this file, the oldest entry is from 2016-12-28.

FYI this data comes from me squishing fraudlent traffic destined for my ad server infrastructure being flagged from a combination of frequency analysis and manual validation with the usual WHOIS/etc.

Let me know if you have any questions or if I can help.

@jimdigriz
Copy link
Author

jimdigriz commented May 30, 2018

Bueller...Bueller...Bueller...

Let me know if I can help in any way.

@shawnps
Copy link
Contributor

shawnps commented Jun 1, 2018

Sorry @jimdigriz, I'll block some time next week to go through some more of these.

@shawnps
Copy link
Contributor

shawnps commented Jun 11, 2018

@jimdigriz I haven't forgotten about these, but it's daunting as the file is so large. I like to go through and check WHOIS and sometimes do some hostname lookups. I'll see if I can block some time this week to go through some more of them.

@jimdigriz
Copy link
Author

jimdigriz commented Jun 12, 2018

Just reoffering, if there is anything I can do to help you build confidence in the list, do let me know.

shawnps added a commit that referenced this issue Jun 13, 2018
@AndrewBarba
Copy link

AndrewBarba commented Dec 3, 2018

@jimdigriz I've been searching for a list like this for a while and it's already providing immediate value for me (getting hit with a lot of spam from micfo). Any chance you can host this publicly on your own Github for now? I also find the notation of your list more helpful, I can copy paste directly into Fastly ACL.

@jimdigriz
Copy link
Author

jimdigriz commented Dec 3, 2018

I think the energy would be better spent if we tried to find a way we can help @shawnps digest these. Maybe he can tell us how to help, or what he needs from others to build confidence in submissions (and re-evaluating existing entries).

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants