Facebook, Instagram, and WhatsApp outages
independent.co.uk
independent.co.uk
ie "Image may contain: a dog, sunglasses"
If network capacity is severely reduced, the bulk static content (images/media) is what you'd switch off first.
The fact it's global makes that unlikely tho.
I wouldn't send any sensitive pictures over WhatsApp then.
edit : added Slack after @kache_ mentioned it, added Azure after stevehubertron mentioned it.
I had not connected Huawei to my conspiracy theory yet, but just did.
(Yes I realize WhatsApp is a different segment, an important way people communicate.)
It's not quite about a world war on the Internet, but it is about what could happen if the Internet suddenly stops working somewhere.
Fall; or, Dodge in Hell
It could also be just a really strange coincidence.
People naturally find coincidences curious. It's how we find causality.
1) a secret cyber-war is going on...
2) Some entity is installing new spying slurps
3) An (critical) IX that we werent aware of is having major issues... and we dont know who to blame on that one...
AFAF
"Impossible" means "impossible", not "unbelievably improbable".
That's even more true when you ask about "mathematically impossible", as it reinforces the idea of formal logic being the relevant domain, where precise meaning of words is fundamental.
If you adjust your question to be "at what probability is it unreasonable to claim these problems are unrelated?", then the answer is subjective - different people have different standards for reasonability.
I think we'd need mountains more data than we have about the incidents to compute a meaningful probability, anyway.
(Your HN account is 4 months old. Mine is ten years old)
I like this theory...
Its innocent but id like to see data behind it.
Separately, this is a huge blow for Instagram/Facebook since this is one of the busiest social media sharing weeks in the US. I bet a lot of their engineers are answering pagers on vacation.
But it's probably just a coincidence.
Do you have a handy link for more info about that?
`rp_filter`? https://www.slashroot.in/linux-kernel-rpfilter-settings-reve...
If you really had password logins turned off, you need to identify and isolate how they gained access before you put that box online again. Never "hope" or "cross fingers" that it doesn't happen again. Unless you are an interesting target for some reason, chances are that these attacks are automated and you are running some insecure software somewhere.
Start by taking a snapshot of the machine before you do anything else. Go through the logs. Are there any unwanted processes? How were they started? Are there any unwanted binaries in the filesystem? How were they uploaded? Try to find IP addresses that that be tied to any unwanted login, and see search your logs for any previous occurrences.
Pay special attention to any web-reachable software you have installed.
Is there any way to configure SSH to use a custom high-entry password that's different from the user's local password? My local password is something reasonable for me to type regularly (e.g. for sudo prompts), but I'd love to have a super long password just for SSH that I have to copy from my password manager each time.
I mean either you sftp to a shared folder that can be accessed from your regular user as well or you use a staging area with a cron job (or you load/unload the staging area manually.)
I'm not deploying a website so a staging area isn't applicable. This is just a VPS that I use for various purposes.
Set a long password for the user you log in as (correct horse battery staple-style passwords are perfect for such things), and make sure to put SSH on an alternate port to keep the more basic bots away and thereby reduce the noise.
Having to type a long password for sudo promts is a bit of a pain, but that trade-off is worth it from a security perspective.
You mean an RSA private key? (no really, that's exactly what it is... you can put your private key in your password manager and copy it to your computer)
In my experience this is so true! The opposite applies as well,for some reason everything behaves quietly all at once and I turn up every leav and look under every carpet for a "problem" with the monitoring or something worse.
Probability is funny, for example I don't think anyone has explained exactly why numbers that start with '1' are so common. I think it's just geometric symmetry if complex event chains.
Google mentioned a Fiber cut upstream.
But your photos don't have a fallback.
There's absolutely no doubt that the ads are served differently. Think about it this way:
- Ads: Small number, each served to many people, funded with real cash, but you can't get the cash if you don't serve the ads.
- Photos: Large number, each served to few people, funded by money left over from ads, and if you don't serve them your (non-paying) customers get frustrated.
My guess is that ads is funded well enough that they can run at lower resource utilization, and much more effort is made to run photos at high resource utilization. That's how I'd run it.
Ads:. Conduct an auction in milliseconds between hundreds of parties between hundreds of millions of ad creatives with lots of very large in-memory machine learning systems, all to decide which ad to serve to maximize revenue.
Different problem entirely.
2) I hate Facebook as a company, but as a builder/scaler of web apps for many years, I'm continually blown away by the speed and reliability of their website. Their operations are mind-blowing.
The only comparable apps (in terms of scale) are Gmail and YouTube, and Gmail is simpler in certain key areas (e.g. mail delivery isn't millisecond-sensitive for a user).
I know nothing about how cryptocurrency works, but wouldn't social media outage sources like multiple server failures, hurricane, tornado, sliced fiber line, etc... affect the kind of cryptocurrency that Facebook is embarking on?
Or is there something in the "distributed" nature of cryptocurrency that makes it more resilient? Is Facebook using that model, too?
It would be interesting to know more details. I bet results are sometimes incomplete, but somehow Google manages to keep the system correct enough nobody notices a sudden quality drop.
I also understood Search has some special QoS at all levels: from the network to the scheduling of jobs...
Their website tech is impressive, I’ll give them that. I still wouldn’t trust them with my money.
But a new law will forbid any cash transactions higher than 3k.
https://nltimes.nl/2019/07/01/dutch-govt-ban-cash-payments-e...
But any business with any sort of margin (as in, I’m not buying grapes for 99¢/pound) takes contactless payments. My gym would look at me like I’m crazy if I tried to pay with cash, and Billy Bishop airport has been cash-free for years.
Would you rather have someone thieve a dollar from your wallet or fraudulently assign you a debt?
Also, credit cards often include insurance on purchases. For example, one of my cards will reimburse my hotel/car rental/plane tickets in certain cases of trip interruption if I purchase those items on that card.
This is a gross simplification, but the basic idea is that more servers and diversity of the servers (which you get from decentralised protocols) should lead to crashes not taking out the whole network.
People couldn't pay bills, transfer money and some couldn't even buy gas.
How culture changes perspectives! Over here in Europe I was thinking "doesn't sound so bad". Then I realised over in the US, gas means petrol, and without petrol America doesn't work.
I'll reply to any replies after I've taken the electric train home.
Besides, the US has cleaner air than most of Europe, thanks to the intense diesel particulate pollution across European cities. Who can forget the infamous Paris smog photos from a few years ago (which is still an ongoing problem)?
Don't worry though, the US invented the modern electric car, twice, in the form of GM's EV1 and Tesla. We'll lead the European automakers out of the dark ages - underway right now as they all chase Tesla - and take care of the problem of the ICE automobile that Europe was heavily responsible for. In the process cities like Paris will be smog free again, finally.
(quote from a tv show where the anti-hero destroys an intergalactic empire by setting the value of all money from 1 to 0; in the scene is the alien "white house" having a discussion what to do without money)
I am probably going to butcher it as I am no comedian but it went something like:
>All these people are freaking out about this whole Y2K thing. What are we going to do when the internet and computers all stop working?! I always respond with, "I know it will be horrible, it will be like living in the 80s again"
Now clearly I realize if all computers went down there would be real world consequences and issues, however I still like the joke.
Considering the type of content Facebook, WhatsApp, and Instagram host, I'd imagine the cache hit rates to be pretty low for media. They'd be effective for JavaScript/CSS though, which might also be served from the same system
I compared a few celebrity's instagrams with accounts of friends with many fewer followers. Celeb's images loaded but less and less as you scroll back through time, friends images all 503'd. Still seems to be the case.
Instagram also doesn't seem to be serving hot and cold content from different hostnames/IPs for me, so it couldn't be that either.
Also check out the official status update at https://developers.facebook.com/status/issues/34337305659485... and https://developers.facebook.com/support/bugs/610822019411772...
So, code deploy or server configuration change?
/s but probably true eventually
I remind about a video when Larry Ellison mentioned the cloud and I thought: "What is he speaking about? It's the internet".
How I was wrong...
Now we are in a situation where we have too much concentration and we are experiencing that. It's a problem.
The really cool thing about it is that nobody owns a smart contract once it's deployed. You can't edit the code or even delete the contract itself. It's a truly autonomous entity that will continue to operate the same way forever (unless there's a 51% attack or something of that nature).
The obvious benefit for this is that you can mathematically ensure trust. For example, if you hosted a lottery app on a LAMP stack, you could steal the money, hackers could get into your server, your database could get corrupted, etc. On the blockchain, nobody can access your lottery funds or business logic, not even yourself, meaning that as long as you developed the application correctly (to be fair, that is a big assumption), it is truly fair.
In CryptoKitties' case specifically, yes. Some developers bake a fee directly into the smart contract.
But given that Facebook, Instagram, and WhatsApp would seem to have vastly different caching and security requirements - its hard to believe.
Is any of this architecture publicly documented?
You could have a soft-serve ice cream machine outage.
But in some countries many small to medium businesses use WhatsApp extensively for communication with their customers. For many people it's as bad, arguably worse, than their main ISP going down.
https://qz.com/333313/milliions-of-facebook-users-have-no-id...
Many outages.
I think a silent cyber-war is occurring between the US and China.