handmade.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
handmade.social is for all handmade artisans to create accounts for their Etsy and other handmade business shops.

Server stats:

36
active users

#spam

4 posts4 participants0 posts today

I manually review accounts who want to follow me (too many bot and scam waves). I automatically reject empty accounts!

If you don't want to be mistaken for a fake account, fill out your profile, post something that shows you as a human, only then follow people. How to: fedi.tips/how-do-i-customise-m

fedi.tipsHow to use and customise profile pages on Mastodon | Fedi.Tips – An Unofficial Guide to Mastodon and the Fediverse
More from Fedi.Tips
Replied in thread

@aral : most Let's Encrypt (and other Domain Validated) certificates are issued to junk- or plain criminal websites.

They're the ultimate manifestation of evil big tech.

They were introduced to encrypt the "last mile" because Internet Service Providers were replacing ads in webpages and, in the other direction, inserting fake clicks.

DV has destroyed the internet. People loose their ebank savings and companies get ransomwared; phishing is dead simple. EDIW/EUDIW will become an identity fraud disaster (because of AitM phishing atracks).

Even the name "Let's Encrypt" is wrong for a CSP: nobody needs a certificate to encrypt a connection. The primary purpose of a certificate is AUTHENTICATION (of the owner of the private key, in this case the website).

However, for human beings, just a domain name simply does not provide reliable identification information. It renders impersonation a peace of cake.

Decent online authentication is HARD. Get used to it instead of denying it.

REASONS/EXAMPLES

🔹 Troy Hunt fell in the DV trap: infosec.exchange/@ErikvanStrat

🔹 Google (and Troy Hunt!) killed non-DV certs (for profit) because of the stripe.com PoC. Now Chrome does not give you any more info than what Google argumented: infosec.exchange/@ErikvanStrat

🔹 https:⧸⧸cancel-google.com/captcha was live yesterday: infosec.exchange/@ErikvanStrat

🔹 Stop phishing proposal: infosec.exchange/@ErikvanStrat

🔹 Lots of reasons why LE sucks:
infosec.exchange/@ErikvanStrat (corrected link 09:20 UTC)

🔹 This website stopped registering junk .bond domain names, probably because there were too many every day (the last page I found): newly-registered-domains.abtdo. However, this gang is still active, open the RELATIONS tab in virustotal.com/gui/ip-address/. You have to multiply the number of LE certs by approx. 5 because they also register subdomains and don't use wildcard certs. Source: bleepingcomputer.com/news/secu

@EUCommission @letsencrypt @nlnet

Replied in thread

@maxleibman @andrewfeeney Don't worry, there's no shortage of Nicoles who you can call the Fediverse Chick :D

They're all proud Polish girls from Toronto (29 y/o).

Urban legend says that it all started because of a PhD student's ethically questionable cloning experiment that's gone horribly awry.

There's now whole university lectures filled entirely with Nicoles who are taking the pre-health sciences program at George Brown College.

It's an absolute nightmare marking essays. The poor lecturers don't know which Fediverse Chick to assign the grade to.

And forget about recording tutorial attendance. The lecturer calls out "Nicole" and the whole room yells back "present"!

They're all hoping to get into the medical field someday!

I'm getting follow-requests from AI-spambots.

Yes, i had to block a couple of NicoleFedichick instances, but some of them are more subtle than that.

It's now a good idea to set your Follow-requests to verify-only, so you don't end up feeding all your conversations to spammers.

Just a reminder that if you're getting DMs from Nicole or you're getting new barely-dressed followers who want you to follow them elsewhere: Please report these so your moderators can take action and suspend their accounts. These aren't visible to us unless they get reported.

Replied in thread

Jopie Jozep (or is it "Jozep Jopie") is not just #Hasbara, she is (now) actually included in the Auschwitz victims database (victims.auschwitz.org/victims/) with full details (not)

P.S. It was too much work for the Zionists to add Isaac Futerman (mastodon.world/@auschwitzmuseu - spammed on Mar 23, 2025, 04:00 AM) to their victims database, as victims.auschwitz.org/victims? now reads:

Unfortunately, in the digital collection of names of victims of the Nazi German Concentration and Extermination Camp Auschwitz information about the person you were looking for was not found.
[...]

If you get a DM saying "call me the Fediverse chick", it's a spam. Don't click the links, but DO report it!

Reports from users are really important, especially if they are about spam DMs because no one else can see the spam except the user.

You can report posts by clicking ⋯ on the post and selecting "Report". When you report it, make sure to select the option to forward the report to the server it came from so that the admin there can delete the spammer's account.

"The best way to think of the slop and spam that generative AI enables is as a brute force attack on the algorithms that control the internet and which govern how a large segment of the public interprets the nature of reality. It is not just that people making AI slop are spamming the internet, it’s that the intended “audience” of AI slop is social media and search algorithms, not human beings.

What this means, and what I have already seen on my own timelines, is that human-created content is getting almost entirely drowned out by AI-generated content because of the sheer amount of it. On top of the quantity of AI slop, because AI-generated content can be easily tailored to whatever is performing on a platform at any given moment, there is a near total collapse of the information ecosystem and thus of "reality" online. I no longer see almost anything real on my Instagram Reels anymore, and, as I have often reported, many users seem to have completely lost the ability to tell what is real and what is fake, or simply do not care anymore.

There is a dual problem with this: It not only floods the internet with shit, crowding out human-created content that real people spend time making, but the very nature of AI slop means it evolves faster than human-created content can, so any time an algorithm is tweaked, the AI spammers can find the weakness in that algorithm and exploit it."

404media.co/ai-slop-is-a-brute

404 Media · AI Slop Is a Brute Force Attack on the Algorithms That Control RealityGenerative AI spammers are brute forcing the internet, and it is working.