On Kottu’s Security


Ok, er, wow. Now Nibras Bawa is sending out mails threatening to hack Kottu. Is it possible to break Kottu? Yes, I do it all the time. However, it’s simply impossible to destroy peoples content as Bawa claims. Kottu is an aggregator. It doesn’t host any content at all. I’ve completely crashed Kottu and been able to reconstitute it in 10 minutes. It’s basically WordPress plus a few plugins and a blogroll. The beauty of an aggregator is that all the content is on a hundred other sites and the aggregator can be rebuilt anywhere.

I think Bawa is just trying to spread fear, so my recommendation is to just ignore him. Don’t correspond with him over email, when I get to a certain point with trolls I just set up a GMail filter to send their mails directly to trash.

Is Kottu in danger? I dunno, don’t think so, as judging by his mail he doesn’t even seem to understand what it is. Even if he did knock over Kottu it wouldn’t remove any of the posts (which are on other sites). I can just reboot the server and start over.

So basically, even if he can somehow figure out and attack Kottu, it still won’t delete any of the posts he’s worried about. None of those are centrally hosted. Also, Kottu is pretty well secured by now.

So, don’t worry, and feel free to delete any further mails from this character. I seriously recommend cutting off contact with him or forwarding the mails to me. He’s basically threatening ‘violence’ and attacks now. Per Kottu, that site is A) secured B) easily rebuilt and C) not the actual host of any content.

Though I find it distasteful, I have no ‘official’ position on the insults and hurt feelings going around. My only concern is that peoples privacy is being violated. In one of his ultimatums Bawa mentioned that he’d go back to the global blogosphere and leave this scene alone. I hope he does.

RSS feed | Trackback URI

9 Comments »

Comment by n
2009-04-27 13:36:46

How are you managing with the massive amount of sites on Kottu? Has scalability become a problem, or have you tweaked the plugin to manage?

 
Comment by Cricket Tragic
2009-04-27 13:37:13

Jeez, what a lowlife! To think that this same guy is actually a fairly popular personality….:(

Comment by indi
2009-04-27 14:08:15

where? I’ve never heard of him before

 
 
Comment by n
2009-04-27 13:39:59

Speaking of Kottu, It’s been a while since you had a kottu meetup right? What do you think about the idea of having one at Barefoot?

 
2009-04-27 17:08:37

[...] seems we’ve been doing that again, and this time I’ve been at the back of the line not getting any of the action; a fine tag [...]

 
Comment by Shaakunthala
2009-04-30 00:59:51

Ohh… poor guy Nibras Bawa show up again! :D

Anyway, after reading his blog posts, I feel that he’s a noob. I don’t want to laugh at others’ inability, but, this guy want’s nothing but to show up.

Dear bloggers, don’t be afraid. Hacking Kottu is not easy as Nibras claims. Indi can do it because he knows how it is organized. But for others it can take some considerable amount of time. No need to be afraid at all — I mean hacking Kottu doesn’t affect the original content as Indi said.

Nibras is not the first person who wanted to hack into another person’s blog. Many people may have tried to hack WordPress. Then, would WordPress developers wait till that? WordPress is pretty secure now.

 
Comment by padashow
2009-05-04 13:18:41

hey who removed jarabaraas bawa from kottu? dude he was so much fun. please please can we have him back?

 
Comment by padashow
2009-05-04 13:19:49

oh and while you’re at it, put me back on kottu as well! feed me some kottu!

 
2009-05-04 13:22:45

[...] you removed Jarabaraas from Kottu? Padashow said some pretty nasty things to you but you didn’t kick him out of the [...]

 
Name (required)
E-mail (required - never shown publicly)
URI
Your Comment (smaller size | larger size)
You may use <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> in your comment.

email indi AT indi.ca.


Recent Comments


The English Speaking Elite:
  • Mahinda: This is sort of a forum, isn't it? What I mean is that Indi posts something, everyone has a quick read, then starts using this space to air their own views and spread their own message or start their own little (quite often completely unrelated) arguments or whatever... Its got an organic quality, which I think is quite nice......
  • The way of the Dodo: I think we should take some of this stuff and create a forum. That allows for better discussion and more mature dialog. What do you guys think...
  • Mahinda: Just curious... Didn't mean to offend....
Much More Mahinda:
  • Mahinda: Lousy, uninteresting comeback with only mild entertainment value. Where's the wit? Where's the logic/justification to the comment? I'm disappointed in you......
  • David Blacker: Mahinda, I doubt you'd make a good bench press, never mind a press sec....
  • Mahinda: Machang Blacker! Where have you been??! Were you busy washing your hair or something? Oh sorry - you don't have hair, no? So why the offensive attitude? Don't you think I'd make a good press sec? ;)...
The Final Cross:
  • Mahinda: Flyovers, if effectively used, are an excellent method of improving the flow of traffic and congestion. Since you guys don't think the ones that have been built work terribly well towards that objective, lets just blame Mahinda and the Government for this and move on :) Ok. That was just a little joke, but on a serious note, I think development should be well thought out and also implemented in the most cost effective manner. Which...
  • Anon: To add to what Dodo say, before the fly-over there was stop-go traffic at the Dehiwala junction. After the flyover there is a continuous, but slow flow of traffic. Although I use that road only rarely in my limited experience the length of the queue and the time taken to travel is no better after the flyover, and may be slightly worse. Moving the bus stand would be an improvement at Dehiwala, think Nugegoda is somewhat more...
  • Anon: Thanks Shammi, there was a very good interview in the Nation a few years back that opened my eyes to him. Think he did a fair job at the port and according to reports did not take a large "grant" that was in the offing. Agree with Dodo that Mangala's chances of getting elected at the moment look pretty slip....

Related Posts


Fernando Pulled

Being a government minister's like being a rap star. Cars, guns, parties and the ever looming threat of death. Jeyaraj Fernadopulle was killed by a public attack at a marathon. He was a bit of a douchebag, but he deserved to be voted out, not to die. Nobody deserves to die. The LTTE, paradoxically, cannot 'liberate' anyone anymore, they just aggravate the situation. In response to the burdens on the Tamil people they can only

Sarath’s Security

Read bits of Sarath's first press conference. It's OK. If he runs on cleaning up the government he may have a chance. I was ready to believe in him last week, but he went on about his house and security. On the latter issue, however, he has a point. The last military man to enter politics literally blew up. There is one scenario no one talks about (or can/should, really). I think Mahinda I would

Doctor’s Wanted Up North

A friend is putting together a roster of doctors to send north. Doctors and nursing staff are quite needed but there are two huge caveats. One is that access is difficult, and two is that accommodation is not very good. Issue number one can be sorted (sorta) for Sri Lankan nationals. You need to be a Sri Lanka registered doctor with a SL passport or NIC. And, sad to say it, security clearance is much

Foreign Agents

Posters inevitably get knocked down or washed off or whatever. There is one, however, that has stayed up for months on end. It reads something like 'Gothabaya The Great: We Wish You All The Best In Your Patriotic Mission, Ignore The Manipulations Of The British Government and Their Local Agents'. Something to that affect. It is sponsored by the organization of Buddhist organizations, something circular and unwittingly ironic. Cause the Buddha was a foreigner, but

How To Hack Microsoft Internet Explorer