VSCode Tinder got DDoS'd

แชร์
ฝัง

ความคิดเห็น • 587

  • @jesperkha3425
    @jesperkha3425 3 ปีที่แล้ว +2723

    He's losing more and more trust in humanity for every video

  • @rafaelmorales1926
    @rafaelmorales1926 3 ปีที่แล้ว +1948

    81% males
    Vsinder? more like VSgrindr

    • @tutorialesTACHABI
      @tutorialesTACHABI 3 ปีที่แล้ว +28

      Bruh 💀

    • @Daniel_WR_Hart
      @Daniel_WR_Hart 3 ปีที่แล้ว +148

      If the ratio is 50/50, the devs probably made a bunch of fake female profiles

    • @RoyRope
      @RoyRope 3 ปีที่แล้ว +5

      Lmao

    • @iottabyte
      @iottabyte 3 ปีที่แล้ว +69

      Actually that's pretty on par with reality. Most recent stats have Tinder users in the US split 72% male to 28% female

    • @cloudybrains
      @cloudybrains 3 ปีที่แล้ว +19

      Nah that's actually closer to Tinder demographics.

  • @doom-and-gloom
    @doom-and-gloom 3 ปีที่แล้ว +981

    i like how despite your experience, you still honestly acknowledge what you don't know, and then make a video about it

    • @osman4816
      @osman4816 3 ปีที่แล้ว +7

      That's the wrong thing to do - He is giving them publicity

    • @CBMaster2
      @CBMaster2 3 ปีที่แล้ว +43

      He's 23, he's not THAT experienced

    • @piyushbansal2358
      @piyushbansal2358 3 ปีที่แล้ว +12

      @@CBMaster2 I am also 23 and I don't know even one fourth of him. I am so jealous.

    • @gerooq
      @gerooq 3 ปีที่แล้ว

      @@snowwsquire ? jealous much?

    • @charliewilson6169
      @charliewilson6169 3 ปีที่แล้ว +16

      @@gerooq what he does is not overly complex, there is no way he could put a senior engineer out of a job, not saying he isnt talented, but anyone thats been learning dev for a few or more years will be able to do similar things to him

  • @ThylineTheGay
    @ThylineTheGay 3 ปีที่แล้ว +347

    alternate title: i accidentally DDoS'd carbon

    • @DeveroonieWasTaken
      @DeveroonieWasTaken 2 ปีที่แล้ว +3

      Or "I accidently brought down an innocent website!"

  • @jimmy5533
    @jimmy5533 3 ปีที่แล้ว +732

    They probably got pissed Ben took the anonymity away.

    • @ghostpunk3159
      @ghostpunk3159 3 ปีที่แล้ว +32

      suspect thing to say

    • @nomtijorti
      @nomtijorti 3 ปีที่แล้ว +5

      I know right? It's like children walking around in the skins of grown men. Childish as heck.

    • @fitrianhidayat
      @fitrianhidayat 3 ปีที่แล้ว +2

      @@nomtijorti *foreskin

  • @WeeklyHow
    @WeeklyHow 3 ปีที่แล้ว +1125

    VAANG Companies: VSinder, Amazon, Angular, Netflix, Google

    • @ark5458
      @ark5458 3 ปีที่แล้ว +45

      don't put them next to these petty unknown companies

    • @zilvarro5766
      @zilvarro5766 3 ปีที่แล้ว +59

      Wait, what is Angular doing in there?

    • @mcmb8254
      @mcmb8254 3 ปีที่แล้ว +38

      Why would you put VSinder next to tiny, unknown companies like google lol

    • @navthenugget
      @navthenugget 3 ปีที่แล้ว +12

      Google? Is that a company? I have never heard of it in my life

    • @keshavvinayakjha2070
      @keshavvinayakjha2070 3 ปีที่แล้ว +9

      @@navthenugget Yeah they're just a search engine company or something haven't heard much about them either

  • @BenRangel
    @BenRangel 3 ปีที่แล้ว +253

    This 'series' of you launching products and following up on how they do and being honest about all mistakes is amazingly educational

  • @Dvon2477
    @Dvon2477 3 ปีที่แล้ว +609

    I love this. The fact that someone went after this app is wild to me. Some people must really dislike code snippets. 😂

    • @betoharres
      @betoharres 3 ปีที่แล้ว +18

      I've had random projects being DDoS'd in the past, I think it's just for fun

    • @shadowking6008
      @shadowking6008 3 ปีที่แล้ว +1

      Or tinder.

    • @HassanSelim0
      @HassanSelim0 3 ปีที่แล้ว +5

      Happened to my startup (pretty much unknown outside of Egypt), but then I realized it was an attempt at credential stuffing and our login endpoint must've gotten on some list of something. Long story short, Cloudflare blocked all of that 😅

    • @MrLordZenki
      @MrLordZenki 3 ปีที่แล้ว +11

      Some people just like to see what they can do to a system, it doesn't really matter what the system is. People found ways to attack the telephone system just to see if they could.

    • @GBart
      @GBart 3 ปีที่แล้ว +3

      If it can be hacked, it will be hacked, and for no reason

  • @wabrush9061
    @wabrush9061 3 ปีที่แล้ว +280

    Angular devs learn hacking

    • @aiqabusov6926
      @aiqabusov6926 3 ปีที่แล้ว +1

      @Azer Gamer YT Hahahhaha

  • @ayushpandey2263
    @ayushpandey2263 3 ปีที่แล้ว +472

    Waiting for the attacker to comment "I did it."

  • @whitmanbohorquez184
    @whitmanbohorquez184 3 ปีที่แล้ว +174

    People attack VSTinder just to have the pleasure to watch this video. I can imagine the laughs of that guy while DDoSing you.

    • @Meleeman011
      @Meleeman011 3 ปีที่แล้ว +10

      not gonna lie this put a smile on my face

    • @henrivlot
      @henrivlot 3 ปีที่แล้ว +15

      @@Meleeman011 Found the attacker.

    • @devmukhtar
      @devmukhtar 3 ปีที่แล้ว +15

      @@Meleeman011 sus here

    • @justinfleagle
      @justinfleagle ปีที่แล้ว

      🤫

  • @froquede
    @froquede 3 ปีที่แล้ว +97

    people thinking ben has enemies: this is production

    • @snghnishant
      @snghnishant 3 ปีที่แล้ว +3

      Hahahaha. Now they’ll know what it’s like to perform a patch in production.

    • @Meleeman011
      @Meleeman011 3 ปีที่แล้ว +2

      thats cause he does lol

  • @iamtenrose7479
    @iamtenrose7479 3 ปีที่แล้ว +267

    Make VScode - spotify integration so that people can listen to same music while coding

  • @_ap__
    @_ap__ 3 ปีที่แล้ว +42

    People are underestimating/ignoring the tech insights that are there in this video. Pure gold.

  • @pumpkinhead6646
    @pumpkinhead6646 3 ปีที่แล้ว +95

    Sorry It wasnt a DDoS, my mom just really loves a good and thick extension

  • @jannikmeissner
    @jannikmeissner 3 ปีที่แล้ว +156

    I have a goal: I want to be your success story that met their future spouse on VSinder.

    • @calimio6
      @calimio6 3 ปีที่แล้ว +11

      Or husband

    • @calimio6
      @calimio6 3 ปีที่แล้ว +1

      @bychtromae oh i didn't know that

    • @Asdayasman
      @Asdayasman 3 ปีที่แล้ว +14

      Step 1: Make sure you're gay.

  • @jannikmeissner
    @jannikmeissner 3 ปีที่แล้ว +6

    Thank you for the extension and the apps, it actually became my favourite dating app by now. Sooo nice to just talk to people who understand the things I’m into and also a dating app where not every second girl is a catfish. Thank you soooo much for this.

  • @StrangeIndeed
    @StrangeIndeed 3 ปีที่แล้ว +60

    The curse of Ben Awad's VS Code extensions

  • @quachhengtony7651
    @quachhengtony7651 3 ปีที่แล้ว +194

    I spent 15 minutes writing a React joke but when I click vsinder was like bruh

  • @lalilaloe
    @lalilaloe 3 ปีที่แล้ว +21

    You do know Carbon has an CLI project that spits out images? No puppeteer needed

  • @loquek
    @loquek 3 ปีที่แล้ว +3

    Love your attitude and breakdown of events dude, great work!

  • @gigog27
    @gigog27 3 ปีที่แล้ว +68

    they're probs talking about overall requests: so like the html is one, then at least one css page, some javascript, images and with all that it becomes many request per page load

    • @RomanSteiner_xD
      @RomanSteiner_xD 3 ปีที่แล้ว +1

      Was about to write the same

    • @user-mb4xy2cz3t
      @user-mb4xy2cz3t 3 ปีที่แล้ว +2

      CDN, ever heard about that?

    • @local9
      @local9 3 ปีที่แล้ว

      @@user-mb4xy2cz3t amazingly still to this day, not many places use a CDN.

  • @marcofilho
    @marcofilho 3 ปีที่แล้ว +16

    Ben: I don't really know why it was failing but it's working now
    that's a programmer for sure

  • @roaminroninx3446
    @roaminroninx3446 3 ปีที่แล้ว +116

    you should call this app VS Grindr

  • @harrydparkes
    @harrydparkes 3 ปีที่แล้ว

    This made made my day, absolutely hilarious. Thank you Ben

  • @makeshift27015
    @makeshift27015 3 ปีที่แล้ว +4

    I've been working with AWS for a few years now and yeah - this is a hard lesson to learn. As soon as you open up anything to the internet, it's gonna get hit very hard. Glad you learned this without a massive bill!

  • @Gazzar19
    @Gazzar19 3 ปีที่แล้ว +39

    The sweet pain of going prod

  • @Paintballman251
    @Paintballman251 3 ปีที่แล้ว

    I love these vscode versions of things and can't wait to see what others are coming if you decide to do more

  • @hasanyousef6782
    @hasanyousef6782 3 ปีที่แล้ว +39

    This boy somehow makes VS code compete with the 2 giants: App strore and Google play. Microsoft is gonna kiss his ass definitely.

  • @indiansoftwareengineer4899
    @indiansoftwareengineer4899 3 ปีที่แล้ว

    felt bad for last video for VS-Stories, now same for this one....
    Godddddd....
    Nice videos Ben,
    Keep making lots of videos for us.
    Lots of love from India....

  • @TheGodSaw
    @TheGodSaw 3 ปีที่แล้ว +21

    This is a perfect lesson on lambda.

  • @CodingwithElias
    @CodingwithElias 3 ปีที่แล้ว +2

    Congratulation! 200K

  • @IvanRandomDude
    @IvanRandomDude 3 ปีที่แล้ว +2

    Great video. Gives perspective to us beginners how insanely difficult is to run app in production. In development everything looks sweet. All these warning in courses "don't use this in production" make more sense.

  • @pai64
    @pai64 3 ปีที่แล้ว +161

    Dude you got many enemies

    • @Khushpich
      @Khushpich 3 ปีที่แล้ว +66

      Dem angular devs

    • @0dyss3us51
      @0dyss3us51 3 ปีที่แล้ว +5

      Enemies .. lol

    • @tiagosansaodev
      @tiagosansaodev 3 ปีที่แล้ว +3

      @@Khushpich I have never seen an angular developer, are they hostiles?

    • @Tortuex_
      @Tortuex_ 3 ปีที่แล้ว +18

      @@tiagosansaodev the legends says no one ever came back from seeing an angular dev

    • @petertyldesley6542
      @petertyldesley6542 3 ปีที่แล้ว +6

      @@tiagosansaodev That's called survivorship bias. Just because nobody has ever met an angular dev doesn't mean they don't exist. It just means nobody has lived to tell the tale...

  • @noti_101
    @noti_101 3 ปีที่แล้ว +103

    Probabaly will be some angular devs 😅

    • @greg6618
      @greg6618 3 ปีที่แล้ว +3

      Haha, no we are not like that :)

    • @saqlainalvi3333
      @saqlainalvi3333 3 ปีที่แล้ว

      @The Great Lord Kek no we r not

    • @alexandruaxentioi3006
      @alexandruaxentioi3006 3 ปีที่แล้ว

      @The Great Lord Kek Yes we are

    • @lasue7244
      @lasue7244 3 ปีที่แล้ว

      @@saqlainalvi3333 pretty sure we are though

    • @lasue7244
      @lasue7244 3 ปีที่แล้ว

      @@greg6618 hey, where's the girl is from in your profile pic? Is she from monogatari series?

  • @pablo_brianese
    @pablo_brianese 3 ปีที่แล้ว

    This projects sound like so much fun!

  • @ZwiebelTVDE
    @ZwiebelTVDE 3 ปีที่แล้ว

    Just wanted to say that after really going through with the VSCinder: YOU ARE A LEGEND!

  • @EwokPanda
    @EwokPanda 3 ปีที่แล้ว +2

    Love the Ajani, Caller of the Pride picture in the background :)

    • @cyrilmorin9547
      @cyrilmorin9547 3 ปีที่แล้ว

      Noticed it by reading your comment 😁

  • @AvinashGadala
    @AvinashGadala 3 ปีที่แล้ว

    Good Job 👏 . You learnt hard way but now you have valuable experience. Keep learning and Be curious.

  • @whistletoe
    @whistletoe 3 ปีที่แล้ว

    You should have hit 1 mil by now dude your content is gold

  • @chan4est
    @chan4est 3 ปีที่แล้ว

    Great postmortem Ben! Glad the first week wasn't too hectic. Sounds like a lot of fun.

  • @vhoyer
    @vhoyer 3 ปีที่แล้ว

    MAAAN, you are a legend!!!

  • @JanNeumann
    @JanNeumann 3 ปีที่แล้ว +39

    I don't think banning reports containing "hi" and "hello" is reasonable. I think it's not too uncommon instead of writing "This person harrassed me" to write " *Hello* , this person harrassed me". See what I mean?

    • @bawad
      @bawad  3 ปีที่แล้ว +14

      // I'm going to do
      message === 'hi'
      // Not
      message.includes('hi')

    • @JanNeumann
      @JanNeumann 3 ปีที่แล้ว +1

      @@bawad hi

    • @exactzero
      @exactzero 3 ปีที่แล้ว

      what

  • @elian6019
    @elian6019 3 ปีที่แล้ว

    Thx for all the detailed info. Very interesting.

  • @kage0x3b59
    @kage0x3b59 3 ปีที่แล้ว +3

    I could imagine the invocations not lining up with the requests is because Puppeteer loads the whole website which with uses way more requests to load all the different JS and CSS files.

  • @theweebdev
    @theweebdev 3 ปีที่แล้ว +28

    Damn Angular devs taking their revenge on you Ben. They are ruining developer's love life lol

  • @yamanas
    @yamanas 3 ปีที่แล้ว +1

    Hey Ben, huge fan, great works man! I wonder if you consider using a tool like Thundra to inspect your lambda functions or webapps in case of any similar issues. Disclaimer: I work for the company and be more than happy to see you in our Slack.

  • @ApoorvMote
    @ApoorvMote 3 ปีที่แล้ว

    Really like the tech stack breakdown for the whole app. You should do AWS's segment. THIS IS MY INFRASTRUTURE.

  • @krtirtho
    @krtirtho 3 ปีที่แล้ว +1

    It feels bright when you say "Of course it's Typescript"!🤣

  • @hnasr
    @hnasr 3 ปีที่แล้ว

    this was a fun project!

  • @guanxi99
    @guanxi99 3 ปีที่แล้ว

    Becoming my favorite „real life DevOps“ channel on yt.
    Many thanks for the honor witnessing the beginnings of a 1bn valuation unicorn as well. :-)

  • @stevefan8283
    @stevefan8283 3 ปีที่แล้ว +1

    I think there aren't just one request per Lambda instance per page view for render, because Carbon is written in Next.js so there maybe you have invoked SSR generation for each request and that's like a few new JS and CSS generated plus a lot of different assets (but probably most are just stored in static site like netlify), and if you multiply it by 9 or 10 for each of these "just in time" assets I think it make sense to have millions of requests

  • @1gassen
    @1gassen 3 ปีที่แล้ว +6

    I feel like a part of the problem is not using testers before releasing the final product

  • @firstcomesrock8593
    @firstcomesrock8593 3 ปีที่แล้ว

    im so happy this guy is getting a following

  • @Ro_dolfoSilva
    @Ro_dolfoSilva 3 ปีที่แล้ว

    Have you tried use Caprover, is heroku like opensource alternative.

  • @blizzardsolution222
    @blizzardsolution222 3 ปีที่แล้ว

    hey Ben, thanks for the great story! I have a question; can we have a online version of the profile in VSinder?

  • @starfuks
    @starfuks 3 ปีที่แล้ว +15

    Waiting for VsTwitch

  • @hdmi00
    @hdmi00 3 ปีที่แล้ว

    I felt your pain when you said ''puppeteer'' ... I was doing the same thing and had the same random errors lol.

  • @marcinzdunek2902
    @marcinzdunek2902 3 ปีที่แล้ว

    Can you talk about making small apps as a single developer from idea to launch. Which frameworks did you use and technical other aspects.

  • @CardinalHijack
    @CardinalHijack 3 ปีที่แล้ว +1

    Will this change how you rate limit resolvers at all?

  • @donaldwu2792
    @donaldwu2792 3 ปีที่แล้ว

    are u using api gateway for that lambda func? I think u can set max concurrent request + max request per second there
    and the location dropdown, I guess u can add country/location table in yr postgres + make an API for UI to call, then will be lower cost
    others thing looks nice

  • @andressanabria5537
    @andressanabria5537 3 ปีที่แล้ว

    Ben, have you used a "search token" in the google places API? That reduces a lot the cost of each request.

  • @BenRangel
    @BenRangel 3 ปีที่แล้ว

    This is a great lesson for anyone who runs a non-cacheable site like Carbon: consider finding some DDoS-protection feature, even just a basic one that alerts you if you get too many requests from a single source.
    Or even a single well-meaning developer can sink your site.

  • @me_hanics
    @me_hanics 3 ปีที่แล้ว

    How did Vercel contact you that you reacted so fast? did they call you or wrote an email/tweet and you literally saw it right at the moment

  • @falconiere
    @falconiere 3 ปีที่แล้ว +2

    Man, you are a genius, no sarcasm, how do you get those ideas?

  • @ThisAintMyGithub
    @ThisAintMyGithub 3 ปีที่แล้ว

    For your Google Places API, make sure you're only setting the components you need in the request (like address_components) and you can also use geolocation to more accurately pinpoint their location if you haven't already. Those two should help some with the bill but I'm no expert, just basing it off their API (and implementing it once)

  • @MarcoCarini1
    @MarcoCarini1 3 ปีที่แล้ว +1

    Lambda functions auto-retries twice by default on failure, so when puppeteer fails, the lambda will retry the entire flow, hitting carbon 2 more times. And like you mentioned, that’s not even considering the potential retry built into puppeteer

  • @rajchinagundi7498
    @rajchinagundi7498 3 ปีที่แล้ว

    I love to watch the stuff i dont understand, I feel cool cause its Ben Awad

  • @_Amilio_
    @_Amilio_ 3 ปีที่แล้ว

    Love watching Ben doing what he loves 🤣

  • @aaronhedgesmusic
    @aaronhedgesmusic 3 ปีที่แล้ว

    Did you switch to something like mapbox as a replacement for googles location service?

  • @dadaabiola2474
    @dadaabiola2474 3 ปีที่แล้ว +8

    Google went down recently and was fixed, VSinder went down and you fix! I see competition Ben. You competing with the Big Boiz!! Lol

  • @dev_gauravp
    @dev_gauravp 3 ปีที่แล้ว

    Make sure you're using session-token for places API, also use autocomplete options to reduce costs

  • @SantiagoAbud
    @SantiagoAbud 3 ปีที่แล้ว +2

    You are 2 years older than me and have like 10 years more experience. I'm probably throwing the towel but great work!

  • @jh0ker
    @jh0ker 3 ปีที่แล้ว

    Could you have a pool of Puppeteer instances running that expose the functionality of generating images from code? It would reduce the Netlify bill because you only have to load the page once and the lambda bill for spinning up puppeteer as well.

  • @asalentstech1767
    @asalentstech1767 3 ปีที่แล้ว +1

    should add a developer section along with love and friendship so people can find other devs to help with projects or issues durring development. devs helping devs ya know

  • @brycemw
    @brycemw 3 ปีที่แล้ว +1

    I love this app so much. I hope it stays up for a long time. It sounds like you may need a premium version to pay for that Google Places API though

  • @davidkim2016
    @davidkim2016 3 ปีที่แล้ว

    this was very entertaining

  • @_sevelin
    @_sevelin 3 ปีที่แล้ว

    Thanks! Never was reconnaissance so easy...

  • @brauliocruz6088
    @brauliocruz6088 3 ปีที่แล้ว +2

    Lmao second time you make me laugh firstseeing the thumbnail of your video

  • @grim.reaper
    @grim.reaper 3 ปีที่แล้ว

    I love you Ben!!

  • @nowyouknow2249
    @nowyouknow2249 3 ปีที่แล้ว

    I am having the same puppeteer error when I run it on digital ocean droplet. How did you fix it please?

  • @Meethu69
    @Meethu69 3 ปีที่แล้ว

    Ben it would be really great if you could provide some knowledge on hosting Neo4j database?

  • @pelic9608
    @pelic9608 3 ปีที่แล้ว

    5:40 - Puppeteer loads images and css and everything. That's not just one request to them when ur lambda calls, using Puppeteer.
    Requests != visits. One visit creates multiple requests. Factor 100+ is still a bit much, though.

  • @spl1ce158
    @spl1ce158 3 ปีที่แล้ว

    Hey, very cool extension! Hope you can update it to the new VSCode version!

  • @sanchayanghosh1240
    @sanchayanghosh1240 3 ปีที่แล้ว

    Does lambda allow budgeting? And gave a hard threshold after you exceed some requests?

  • @jitx2797
    @jitx2797 2 ปีที่แล้ว +2

    Deep down we know that this attack was made by some Angular lover

  • @q.u.e.r.t.y
    @q.u.e.r.t.y 3 ปีที่แล้ว

    Ben what database are you using?

  • @SantanaFPV
    @SantanaFPV 3 ปีที่แล้ว

    If you're using puppeteer to navigate to the page on chrome, then surely each invocation would be generating alot more requests to vercel each time, for images, is etc? Or have I just completed assumed wrong 😅

  • @prithajnath6819
    @prithajnath6819 3 ปีที่แล้ว

    Spawning a brand new Puppeteer process for every lambda invocation sounds very resource intensive tbh. It's probably better to have one Chromium/Puppeteer process running in the background and have it create a new tab for every call to your API

  • @fubarhandle
    @fubarhandle 3 ปีที่แล้ว +1

    Ben: "I'm gonna keep track of these people and they'll have a lifetime ban."
    Google: I WANT HIM!

  • @iFranzOSX
    @iFranzOSX 3 ปีที่แล้ว

    keep it going!

  • @ai.turdiev
    @ai.turdiev 3 ปีที่แล้ว

    Okay Ben, I expect VSinder stories next. That's where the sponsored posts and ads can go :)

  • @GuerillaRadio848
    @GuerillaRadio848 3 ปีที่แล้ว

    I feel you on the Apple payment issues. Do a Spotify/Netflix and require people to pay for premium on the web where you can just use Stripe (although you can’t tell people that’s what they need to do in the app because Apple won’t allow that through review). It’s such a ballache.

  • @nimeshgurung6600
    @nimeshgurung6600 3 ปีที่แล้ว

    My hero

  • @ekiara
    @ekiara 3 ปีที่แล้ว

    I'm confused, why puppeteer and some other website, when you can just use an image library to generate the images yourself?

  • @ertugrul-bektik
    @ertugrul-bektik 3 ปีที่แล้ว +1

    You can use CodePush to deploy fast in react native apps to AppStore / PlayStore

  • @willinton06
    @willinton06 3 ปีที่แล้ว +5

    Puppeteer seems much lighter than selenium damn

  • @aspected
    @aspected 3 ปีที่แล้ว

    Openstreetmap has a city search API, I'm almost certain of that. Use Leaflet for maps if you need to, it's really simple.

  • @mrkio7683
    @mrkio7683 3 ปีที่แล้ว +1

    I know it might be too late to suggest using PWA for creating applications without getting into the headache of mobile stores and that would be great for charging premium stuff without letting Google/apple take a cut off, it would be helpful for further projects for now I think it might be too late

  • @TheCodingOdyssey
    @TheCodingOdyssey 3 ปีที่แล้ว +2

    Ha ha all the drama!