I'm not going to pretend that what I did wasn't trivial. It was. But if this trick is so uncreative and unoriginal, why hasn't this attack vector been resolved yet? If nobody has a reason to fix this, I'll give them a reason.

Replies (1)

What is there to fix in the nostr protocol? If a particular client is loading images from unknown recipients, that’s an implementation choice. If you have a problem with it or think it should be done differently, you can open an issue in their repo or write a PR and contribute to a solution. Or, of course, you can use a different client or write your own. I fail to see how this is a nostr weakness or how what you’ve done is helpful or creative. People who are concerned about exposing their IP on the internet should use a VPN or Tor.