Active Topics

 


Reply
Thread Tools
Temporal's Avatar
Posts: 323 | Thanked: 189 times | Joined on Oct 2010 @ Brazil
#101
Originally Posted by Reggie View Post
I did see your suggestion. While it can probably help, that's another layer of plugin to monitor that can make the forum unstable. If you think about it though, how can spambots know the answer to 'Which company created the Nokia N900?' If they can answer that then they will be smart enough to skip answering that hidden field in that plug-in you are suggesting. That plug-in has been out for several years already and am almost sure they already know how to work around it.
Sorry for answering your question but a bot might just do what I just did: Throw the question to google and look for the first words and try them out. Of course if I was to make a bot I would first try all the words that are not connectives (the, of, or, etc) and try to guess answers in the case of special questions like "How is rats spelled backwards?", then I would try all the words spelled backwards or something like that. That is a common tactic, for instance.

I guess that something like "'aftermath' is a word made of 2 words. How would it be spelled if the first word had all its letters changed for the very next letter in the english dictionary?" ans:'bgufsmath' would be tougher for a bot to crack, because is an unusual question and the word has no separation for a bot to understand and try the spelling just for the after not the aftermath (but it is still doable with a dictionary attack), for instance.

BUT, to make a bot analyze all the html page to look for visual features (a form that is hidden might as well be just a mistake instead of a trap for instance) is a much more mature form of attack that, at least for me, would be far more difficult to try to implement to be overthrown.
__________________
Love and Goodness are not a property. Are not a franchising. They are present in each one of us, and must be cultivated with KNOWLEDGE.

Last edited by Temporal; 2011-09-19 at 03:23.
 
Reggie's Avatar
Posts: 1,436 | Thanked: 3,144 times | Joined on Jul 2005
#102
Ok, rather than installing a new plug-in, I re-activated another plug-in that was installed in the forum sometime back (plug-in link). Basically it puts a delay for registrants to enter and submit their member info. Registration bots would usually enter info and submit as fast as possible (humanly impossible) and this plugin tries to detect that and block it. It will deny registration via direct registration as well via hidden fields.

This was working sometime back and was deactivated when newer plug-ins were installed. This should help as well.

Thanks.
__________________
Reggie Suplido
 

The Following 28 Users Say Thank You to Reggie For This Useful Post:
Texrat's Avatar
Posts: 11,700 | Thanked: 10,045 times | Joined on Jun 2006 @ North Texas, USA
#103
I'm cautiously hopeful that did make a difference, Reggie-- it's been quiet since...
__________________
Nokia Developer Champion
Different <> Wrong | Listen - Judgment = Progress | People + Trust = Success
My personal site: http://texrat.net
 

The Following 5 Users Say Thank You to Texrat For This Useful Post:
towhatend's Avatar
Posts: 230 | Thanked: 185 times | Joined on Jul 2010 @ Sweden
#104
Mm, silence. Good job Reggie!

Last edited by towhatend; 2011-09-19 at 15:44. Reason: :(
 

The Following User Says Thank You to towhatend For This Useful Post:
Posts: 137 | Thanked: 115 times | Joined on May 2010 @ Drama, Greece
#105
Originally Posted by Reggie View Post
Ok, rather than installing a new plug-in, I re-activated another plug-in that was installed in the forum sometime back (plug-in link). Basically it puts a delay for registrants to enter and submit their member info. Registration bots would usually enter info and submit as fast as possible (humanly impossible) and this plugin tries to detect that and block it. It will deny registration via direct registration as well via hidden fields.

This was working sometime back and was deactivated when newer plug-ins were installed. This should help as well.

Thanks.

thank you very much this has worked. But in my opinion you shouldnt provide a link to the exact add-on description because if the spammer sees it, he might improve his bots.




EDIT something I have just noticed. if you use power search with keywords nline live streaming you get all of the threads. When you try to visit them of course the dont exist but still, this is annoyng

Last edited by andreas.k; 2011-09-19 at 15:17.
 

The Following 2 Users Say Thank You to andreas.k For This Useful Post:
danramos's Avatar
Posts: 4,672 | Thanked: 5,455 times | Joined on Jul 2008 @ Springfield, MA, USA
#106
Originally Posted by andreas.k View Post
EDIT something I have just noticed. if you use power search with keywords nline live streaming you get all of the threads. When you try to visit them of course the dont exist but still, this is annoyng
Wow.. you actually use Powersearch? I figured it broken so badly that nobody uses it anyway. I always end up going to google and typing 'site:talk.maemo.org search terms' because the "power search" never... NEVER seems to work right. Good to know it at least works for the spam, I guess.
__________________
Nokia's slogan shouldn't be the pedo-palmgrabbing image with the slogan, "Connecting People"... It should be one hand open pleadingly with another hand giving the middle finger and the more apt slogan, "Potential Unrealized." --DR
 

The Following User Says Thank You to danramos For This Useful Post:
Estel's Avatar
Posts: 5,028 | Thanked: 8,613 times | Joined on Mar 2011
#107
Originally Posted by Reggie View Post
I did see your suggestion. While it can probably help, that's another layer of plugin to monitor that can make the forum unstable. If you think about it though, how can spambots know the answer to 'Which company created the Nokia N900?' If they can answer that then they will be smart enough to skip answering that hidden field in that plug-in you are suggesting. That plug-in has been out for several years already and am almost sure they already know how to work around it.
So take my deepest excuses, as I have misjudged Your reasons. Thanks for taking effective action. Anyway, I think we should be somehow prepared in advance, for possible next generation of bots.

/Estel
__________________
N900's aluminum backcover / body replacement
-
N900's HDMI-Out
-
Camera cover MOD
-
Measure battery's real capacity on-device
-
TrueCrypt 7.1 | ereswap | bnf
-
Hardware's mods research is costly. To support my work, please consider donating. Thank You!
 

The Following 2 Users Say Thank You to Estel For This Useful Post:
marxian's Avatar
Posts: 2,448 | Thanked: 9,523 times | Joined on Aug 2010 @ Wigan, UK
#108
Originally Posted by danramos View Post
THE T-Team?
I pity the fool that spams this forum.
__________________
'Men of high position are allowed, by a special act of grace, to accomodate their reasoning to the answer they need. Logic is only required in those of lesser rank.' - J K Galbraith

My website

GitHub
 

The Following User Says Thank You to marxian For This Useful Post:
Reggie's Avatar
Posts: 1,436 | Thanked: 3,144 times | Joined on Jul 2005
#109
Just saw the first set of spam come in selling cellphones. Interesting that this spammer registered on Sept 17 and just posting spam just now. This means they can get around the the registration spam plugin, as they have registered already.

Keep reporting. Thanks!
__________________
Reggie Suplido
 

The Following 8 Users Say Thank You to Reggie For This Useful Post:
Posts: 5,795 | Thanked: 3,151 times | Joined on Feb 2007 @ Agoura Hills Calif
#110
Originally Posted by JamesBond@ge View Post
I nominate danrambos, gerbick, ysss, and / or geneven as temporary moderators. They seem the most balanced and sensible and they have been around for longer than most of us. I'd nominate myself but I know for a fact I would be making a beeline for adork_uk, never mind the spambots lol.

Thats if they'd want to spare the time.....
Thanks very much for nominating me. I'm not interested.
__________________
All I want is 40 acres, a mule, and Xterm.
 

The Following 3 Users Say Thank You to geneven For This Useful Post:
Reply

Tags
diespammerdie, exterminates, itneverends, kudzu, spam!, spamspamspam..., texrat darlek


 
Forum Jump


All times are GMT. The time now is 00:27.