The instances being used are

  • lemmy.doesnotexist.club
  • chinese.lol

Here is an example of the coordinated downvoting https://hackertalks.com/post/8692093

Of course its a controversial user who got someone angry enough to automated downvoting @DonaldJMusk@lemmy.today

But you can see every post they make gets 53ish downvotes from these two instances, plus some organic ones after a few hours.

Current downvoting Accounts

bot-list

LightIsland@chinese.lol MagnificentRow@chinese.lol FondKnowledge@chinese.lol SillyTowel95@chinese.lol HelplessDear@chinese.lol SomberBrain@chinese.lol InexperiencedCloset@chinese.lol NecessaryPerson11@chinese.lol ClosedEmployment@chinese.lol CoarseHair420@chinese.lol BurlyChampionship49@chinese.lol ZigzagNatural@chinese.lol QuestionableDirt@chinese.lol ProudDeparture@lemmy.doesnotexist.club JoyousDouble@chinese.lol UnitedPatience@chinese.lol MajesticArea@lemmy.doesnotexist.club SinfulConference@chinese.lol MoralDivide96@chinese.lol LeadingCarry65@chinese.lol FrillyOpinion38@lemmy.doesnotexist.club LimitedDiscount49@lemmy.doesnotexist.club ForkedScreen@chinese.lol MediumChemistry13@chinese.lol xXxLawfulGrassxXx@lemmy.doesnotexist.club VisibleSentence@chinese.lol AcidicLawyer90@lemmy.doesnotexist.club PriceySink14@lemmy.doesnotexist.club ExcellentBeach@chinese.lol VivaciousNews@lemmy.doesnotexist.club LankyIndependent32@lemmy.doesnotexist.club SpeedyFault@chinese.lol ConcreteHall89@lemmy.doesnotexist.club WorthyPoint12@lemmy.doesnotexist.club SurprisedAdult99@chinese.lol FlashyCrack@lemmy.doesnotexist.club MasculineBeing@chinese.lol RichWeird@lemmy.doesnotexist.club DryCash97@lemmy.doesnotexist.club AuthorizedChair@chinese.lol SlimKiss@lemmy.doesnotexist.club AromaticRoof78@lemmy.doesnotexist.club BewitchedInterview@lemmy.doesnotexist.club ImaginaryDraw@lemmy.doesnotexist.club PertinentGround@chinese.lol SinfulAssumption@lemmy.doesnotexist.club AwkwardAnybody30@lemmy.doesnotexist.club UnwillingRestaurant@lemmy.doesnotexist.club InsubstantialOven@lemmy.doesnotexist.club

A individual user airing their personal biases and manipulating lemmy isn't good for the community, regardless of how you feel about their target. This is a really bad thing (tm)

top 50 comments

sorted by: hot top controversial new old
[–] 50 points 1 year ago (2 children)

Thank you for investigating

  • source
  • hideshow 4 child comments
  • [–] [S] 50 points 1 year ago

    Yeah, I was scrolling new and saw some science posts with 50 downvotes... and I couldnt figure out why people were so triggered... so I started digging.

    There are lots of gaslighting opportunities presented by social media.

  • source
  • parent
  • [–] 32 points 1 year ago (3 children)

    This highlights one of the things that I saw as a benefit when I started on kbin: being able to see who the downvote fairies were. I know the discussion has been done to death on the Lemmy side, but as a user I found it interesting to be able to see this kind of info. For example, instead of just block/reporting the spammer, I could block their sock puppets that upvoted as well. (And did kbin.social have a lot of that towards the end. Oof.)

    Thanks for digging into this.

  • source
  • hideshow 6 child comments
  • [–] 23 points 1 year ago (2 children)

    Lemmy currently allows mods to see downvotes, so they can fight brigading on top of admins

  • source
  • parent
  • hideshow 4 child comments
  • [–] 8 points 1 year ago (1 child)

    You mean admins, right? I cannot see downvotes on the community I mod.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 19 points 1 year ago* (3 children)

    Use https://tesseract.dubvee.org/

    What it does look like (there were no downvotes here, but they would appear as well)

  • source
  • parent
  • hideshow 4 child comments
  • [–] 7 points 1 year ago (2 children)

    That’s pretty neat to have as a mod. But I don’t think it should be readily available for any average Joe.

    Sometimes people are looking for anything to get angry about, myself included. And I really don’t want to get into a slap fight with someone whose dick pic I downvoted.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 11 points 1 year ago (1 child)

    The data itself is public, clients just don't show it. Imo clients should add that capability, the lack of privacy is better than the illusion of privacy.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 5 points 1 year ago (2 children)

    It's not exactly public, IIRC? Like, admins/mods have access, so it's not private by any means, but I wouldn't really call it public.

  • source
  • parent
  • hideshow 3 child comments
  • [–] 6 points 1 year ago (1 child)

    https://github.com/LemmyNet/lemmy/issues/4967

    Due to the way federation works, it is public. Anyone could spin up an instance and make a tool to make votes public.

  • source
  • parent
  • hideshow 2 child comments
  • load more comments (1 reply)
  • load more comments (2 replies)
  • [–] [S] 11 points 1 year ago (1 child)

    There is some interesting area here, like a personalized vote score, based on others who vote similar to you, giving them more weight then people you never agree with.

    net-net I think open votes make for better neighbors.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 19 points 1 year ago (2 children)

    The attacker is the admin of these two instances. Both instances have their registrations closed.

  • source
  • hideshow 4 child comments
  • [–] 7 points 1 year ago (1 child)

    When I look, both have open registrations and don't even have a captcha? You see registrations as closed?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 6 points 1 year ago* (last edited 1 year ago) (1 child)

    It could be that Fediseer is outdated. I looked at the instance's fediseer page.

    https://gui.fediseer.com/instances/detail/chinese.lol

    https://gui.fediseer.com/instances/detail/lemmy.doesnotexist.club

    Edit: Their registrations are indeed open. Perhaps they opened it just now?

    Though it is also suspicious why the owner leaves the registrations open, requires no captcha, no approval nor any email confirmation, and the admin of lemmy.doesnotexist.club has been inactive since their account creation. Seems suspicious to me.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 7 points 1 year ago (1 child)

    They have both had open registrations for at least several hours. I think perhaps there's something wrong with Fediseer's detection?

    Given the issues, I'm guessing these instances have been open for some time. lemmy.doesnotexist.club has definitely had a few "Nicole" accounts and some trolls.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 10 points 1 year ago* (last edited 1 year ago) (1 child)

    I checked the web archive. The registrations have been open since 2023. I think it's safe to assume that the admin is indeed the one behind this and possibly also behind the nicole spam. And it has been a year since these bot accounts were created and they are still being created, the admin does nothing, does not interact with anyone, but still hosts the instance.

    https://web.archive.org/web/20230809200352/https://lemmy.doesnotexist.club

    We desperately need some system to fight against these type of attacks. It is still not much of a problem. Creating bot accounts and then spamming the entire Fediverse isn't hard but defending against it will be in the future.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 4 points 1 year ago*

    Why do you assume the admin is behind it? If you have an instance that has open registrations and no captcha, then bots will take advantage of that. It doesn't mean the admin is the one doing the attacks.

    In fact, such instances are more common than they should be since open registrations with no captcha is the default configuration, last I checked 😑

  • source
  • parent
  • [–] 19 points 1 year ago* (2 children)

    Not sure if this community was the best place to post this, but yeah, that seems like a bad thing. Thanks for pointing it out. I do find it funny how most of the bot names follow the AdjectiveNounNumber format.

    Lemmings of all instances, you may want to let your local admins know of this potential issue.

    Here's a link to the megathread of support/meta communities for each instance: https://lemmy.dbzer0.com/post/40519876

    You should be able to find your instance's support/meta community in the list and cross-post OP's post to it.

  • source
  • hideshow 4 child comments
  • [–] [S] 7 points 1 year ago (1 child)

    I was trying to think of the right community for this... its not fedidrama, I want to target moderators and admins... is there a better community?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 5 points 1 year ago (1 child)

    We need a lemmyadmin community.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 4 points 1 year ago (1 child)

    There's already a chat Matrix where admins coordinate

  • source
  • parent
  • hideshow 2 child comments
  • [–] 3 points 1 year ago (1 child)

    I saw in a comment you made, but one where discussions could be public would be nice.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 4 points 1 year ago* (1 child)

    Discussions are public, everyone can join that chat.

    Edit: LW announcement: https://lemmy.world/post/5041072

  • source
  • parent
  • hideshow 2 child comments
  • [–] 3 points 1 year ago (1 child)

    None of the links there are letting me in,

  • source
  • parent
  • hideshow 2 child comments
  • [–] 15 points 1 year ago
    [–] 11 points 1 year ago

    Great work. It doesn’t matter who the target is this time (pretty sure I blocked them every time they popped up with a new account). This kind of shit should not be tolerated at all.

  • source
  • [–] 10 points 1 year ago

    lemmy . doesnotexist . club is where all those Nicole pictures are linked from for some reason.

  • source
  • [–] 9 points 1 year ago (1 child)

    what does defederated mean?

    like trusted instance admins to block untrusted ones (like the ones in the post) from showing all content/interactions on the trusted instance so users dont interact with them - like server block?

  • source
  • hideshow 2 child comments
  • [–] 7 points 1 year ago (1 child)
  • [–] [S] 7 points 1 year ago (2 children)
  • load more comments (1 reply)
    [–] 5 points 1 year ago

    Men. Tough. I agree it shouldn't be allowed, but I can't find a shred of sympathy for Nazis.

  • source
  • [–] 2 points 1 year ago (3 children)

    Hi, I'm the admin for chinese.lol, and I just realized that my instance was compromised by those bots, as there is no verification required during registration. Let me check the database and work on banning those suspicious accounts. Also, could you suggest any methods to prevent these bot attacks and stop them from registering in the future?

  • source
  • hideshow 3 child comments
  • load more comments (3 replies)
    load more comments
    view more: next ›