Page MenuHomePhabricator

Temporarily disable emergency throttle for abuse filters in slwiki
Closed, ResolvedPublicSecurity

Description

slwiki is currently spammed pretty badly and their abuse filters are not working due to the emergency throttle.

slwiki.png (950×1 px, 337 KB)

https://sl.wikipedia.org/wiki/Posebno:ZadnjeSpremembe?hidebots=1&hidecategorization=1&hideWikibase=1&limit=50&days=7&urlversion=2

I am going to temporarily raise the AF emergency disable treshold and count.

Event Timeline

Zabe renamed this task from Temporary disable emergency throttle for abuse filters in slwiki to Temporarily disable emergency throttle for abuse filters in slwiki.Jan 30 2023, 8:18 PM

@Zabe @Urbanecm Filter is working and picking up some rapid edits (see Pariz), so raising AF rates was a good decision.

edit: comment outdated

I don't know for how long you have planned to have this patch, but as a side notice: I think we got IP master tracked down and left him a note, or we locked enough pages till 7 February. IMO we should wait till 7/8th of February to see, if IP spamming had stopped.

Change 887747 had a related patch set uploaded (by Zabe; author: Zabe):

[operations/mediawiki-config@master] Revert "slwiki: Raise AF emergency disable treshold+count"

https://gerrit.wikimedia.org/r/887747

Change 887747 merged by jenkins-bot:

[operations/mediawiki-config@master] Revert "slwiki: Raise AF emergency disable treshold+count"

https://gerrit.wikimedia.org/r/887747

Zabe claimed this task.

Reverted the patch, feel free to reopen if they should come back.

sbassett moved this task from Incoming to Watching on the Security-Team board.

I can't see any obvious reasons not to make this task public, especially given the public config patch. Please say otherwise if there is, otherwise I'll plan to make this public by early next week. Related tasks and/or new incidents should have new tasks created for them.

I am fine with making this public as long as @A09090091 is aswell.

@Zabe I'm fine, IP spamming stopped. I will not cause any disturbance to what you should do.

sbassett changed the visibility from "Custom Policy" to "Public (No Login Required)".
sbassett changed the edit policy from "Custom Policy" to "All Users".
sbassett changed Risk Rating from N/A to Low.