Answer the question
In order to leave comments, you need to log in
How to block website proxying through Nginx?
The bottom line is this - someone raised a full copy of our site on another domain and is engaged in phishing. Apparently, this is done through proxying in NGINX, since the information changes instantly. Banning domains does not help, they register another one right away. As a simple protection, JS made that checks the domain and redirects to our site and wraps it in obfuscation, but most likely there is a smarter solution, because sooner or later everything is found through diff and if stubborn people are there, they will change it.
UPD: since there is a search on the site, I entered a test request and found IP from the logs. Net ban will temporarily solve the problem, I think, until they buy new proxies.
Answer the question
In order to leave comments, you need to log in
firstly, if this is a really big problem, then you can easily capture a lot of traffic on one client IP address. And ban him.
secondly, you can make all links with full addresses, then with any transition the user will return to your site.
thirdly, after loading the page, you can check the JS URL and reload the page.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question