board77

The Last Homely Site on the Web

Bot Authors Targeting phpBB Forums Security

Post Reply   Page 4 of 5  [ 82 posts ]
Jump to page « 1 2 3 4 5 »
Author Message
Sidonzo
Post subject:
Posted: Fri 09 Feb , 2007 9:36 pm
Everything Is Numb
User avatar
Offline
 
Posts: 2711
Joined: Sat 19 Mar , 2005 12:03 am
Location: back home again in Indiana
 
Hey, I just want to give you all a heads up. I asked one of my good friends from another board if she wanted to join and she said she did. She doesn't have internet access right now and she isn't sure when she will get it back, but when she does she will more than likely sign up. Since she isn't online a lot right now I didn't get to ask her what name she will use, but she tends to use "foolinthemoon" so if anyone with that name joins and I'm not around, please don't zap them! :D

~Sid


Top
Profile Quote
*E*V*E*N*S*T*A*R*
Post subject:
Posted: Sat 10 Feb , 2007 2:51 am
I've cried a thousand oceans, and I would cry a thousand more if that's what it takes to sail you home.
Offline
 
Posts: 11477
Joined: Fri 29 Oct , 2004 2:22 am
 
All about Onlinecasinobonus

Joined: 09 Feb 2007
Total posts: 0
[0.00% of total / 0.00 posts per day]
Find all posts by Onlinecasinobonus
Location: USA
Website: http://winjackpotgold.com
Occupation: Internet
Interests: spamming,reading,spamming


Well, at least they made that one easy. :P

Or maybe I'm being elitist and assuming the n00b sucks for mentioning spam when I would totally let an established member get away with the same thing.




*E*

_________________

[ img ] For always.


Top
Profile Quote
Jude
Post subject:
Posted: Tue 06 Mar , 2007 6:58 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Good news! I've just opened a support ticket with Noeclue to install the anti-bot mods! We'll keep you all posted!

Feel free to celebrate...

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
yovargas
Post subject:
Posted: Tue 06 Mar , 2007 6:59 pm
User avatar
Offline
 
Posts: 14772
Joined: Thu 24 Feb , 2005 12:11 pm
 
:dance:


Top
Profile Quote
Alatar
Post subject:
Posted: Tue 06 Mar , 2007 7:48 pm
of Vinyamar
Offline
 
Posts: 8272
Joined: Mon 28 Feb , 2005 4:39 pm
Location: Ireland
Contact: ICQ
 
Can you let me know what Mods they install? I'd like to install some on one of my other sites.

_________________

[ img ]
These are my friends, see how they glisten...


Top
Profile Quote
*E*V*E*N*S*T*A*R*
Post subject:
Posted: Tue 06 Mar , 2007 8:39 pm
I've cried a thousand oceans, and I would cry a thousand more if that's what it takes to sail you home.
Offline
 
Posts: 11477
Joined: Fri 29 Oct , 2004 2:22 am
 
Absolutely, Al. I'm posting info soon as it comes in, so will keep folks up to date.




*E*

_________________

[ img ] For always.


Top
Profile Quote
Voronwë_the_Faithful
Post subject:
Posted: Wed 07 Mar , 2007 12:50 am
Offline
 
Posts: 5168
Joined: Thu 10 Feb , 2005 6:53 pm
Contact: Website
 
Good news! Thanks for being diligent about this, Jude.


Top
Profile Quote
Jude
Post subject:
Posted: Fri 09 Mar , 2007 9:18 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Update: we got a message that simply said "done" with no details about which mods had been installed. In the meantime, I've deleted six bots since we got that message, so I'm not sure how effective it was.

I sent back a message asking for clarification. We'll keep you posted!

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Jude
Post subject:
Posted: Fri 09 Mar , 2007 9:28 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Update: I received a reply:
Quote:
we implemented humanizer & better captcha mods.

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Jude
Post subject:
Posted: Thu 15 Mar , 2007 8:44 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Well, I don't really see a difference in the amount of bots that have to be deleted. I'm not sure it's worthwhile installing those mods on the other phpbb site I administer.

Anyone got more ideas?

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Voronwë_the_Faithful
Post subject:
Posted: Thu 15 Mar , 2007 10:58 pm
Offline
 
Posts: 5168
Joined: Thu 10 Feb , 2005 6:53 pm
Contact: Website
 
How bizarre. Since they installed those mods at HoF we haven't had a single bot. Not one. I really thought you would have the same result here. I'm sorry to lead you astray. I would tell noeclue that it hasn't made much if any difference and ask for their suggestion.


Top
Profile Quote
Jude
Post subject:
Posted: Thu 15 Mar , 2007 11:06 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
That's a good idea - which I have done. Here's the message I sent:
Quote:
Thanks for your help - however, we're still finding and deleting anywhere between 3 to 8 bots a day. Do you have any more suggestions on how to prevent them from registering?
I (or one of the other rangers) will post whatever reply we receive.

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Voronwë_the_Faithful
Post subject:
Posted: Thu 15 Mar , 2007 11:10 pm
Offline
 
Posts: 5168
Joined: Thu 10 Feb , 2005 6:53 pm
Contact: Website
 
Good luck! I know how frustrating it can be, particularly trying to make sure that a genuine new member doesn't get deleted in the process.


Top
Profile Quote
Jude
Post subject:
Posted: Fri 16 Mar , 2007 2:18 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Update:
Quote:
we are implementing another mod on your forum.

1. guest shall not be able to post any URL links.

2. registered members must have at least 25 postings, before they can start using URL/web link.
I guess they're still in the process of doing this - the ticket is listed as "answered", but not yet "closed".

Also, I was able to register just now and post a url in my profile without making any posts. (did you see that new member named "testing"? That was me!)

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Jude
Post subject:
Posted: Fri 16 Mar , 2007 8:59 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
New update:
Quote:
we have implemented mods to disallow url/web link posting by guest & set a limit to 15 postings for registered members.
I tried to test it, but I was unable to register - I got the visual confirmation code wrong five times (it's case-sensitive; and how can I distinguish between capital and lowercase "v" or "w"), and then I exceeded my permitted registration attempts.

I'll try again later...

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Jude
Post subject:
Posted: Mon 19 Mar , 2007 5:37 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
I was overly optimistic because I didn't see any bots over the weekend, but today, I deleted three.

I'm not sure what the latest mods actually accomplish, since our latest member, "testing" (which is actually me in disguise; I'll be deleting him momentarily) has no posts, and yet as a url in his profile.

I feel awkward about opening the support ticket yet again...

This is your chance to bombard me with brilliant ideas and suggestions!

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Ara-anna
Post subject:
Posted: Mon 19 Mar , 2007 5:43 pm
Daydream Believer
User avatar
Offline
 
Posts: 5780
Joined: Mon 28 Feb , 2005 11:15 pm
Location: Pac Northwest
 
I noticed the number of bots was also down. I got rid of two this weekend, which is far less the number of bots than when I first started my rangering. :)

I am still wondering if we don't have a trojan or something like that on the database that is letting these things in. Does the software delete all ad-trojan things or just the common ones? And no I don't know the technical terms.

_________________

Just when I thought I was out, they pull me back in

Five seconds away from the Tetons and Yellowstone


Top
Profile Quote
*E*V*E*N*S*T*A*R*
Post subject:
Posted: Mon 19 Mar , 2007 6:07 pm
I've cried a thousand oceans, and I would cry a thousand more if that's what it takes to sail you home.
Offline
 
Posts: 11477
Joined: Fri 29 Oct , 2004 2:22 am
 
I just assumed they meant URLs in posts. So if people aren't clicking on their advertisements, it takes their claws, you know?

Whatever works for you guys, I'm fine with. Don't really understand what it's supposed to do or help with :roll: but I'll do what I can.




*E*

_________________

[ img ] For always.


Top
Profile Quote
oldtoby
Post subject:
Posted: Thu 22 Mar , 2007 11:32 pm
Cuddly Studmuffin
Offline
 
Posts: 1300
Joined: Sun 13 Mar , 2005 10:41 pm
 
Hey ya'll we needs a bot killer ASAP


Top
Profile Quote
Jude
Post subject: Re: Bot Authors Targeting phpBB Forums Security
Posted: Thu 11 Dec , 2008 9:36 pm
Aspiring to heresy
User avatar
Offline
 
Posts: 19643
Joined: Wed 23 Feb , 2005 6:54 pm
Location: Canada
 
Check out the latest member: ghij570. It's got "bot" written all over it. Have they finally defeated our security measures?

I think on the old site we had a mod that prevented new members from posting url's, but I guess it didn't carry over into our new site.

Hopefully, this is just a one-off. But we need to keep an eye on this in the near future...

_________________

[ img ]

Melkor and Ungoliant in need of some relationship counselling.


Top
Profile Quote
Display: Sort by: Direction:
Post Reply   Page 4 of 5  [ 82 posts ]
Return to “Business Room” | Jump to page « 1 2 3 4 5 »
Jump to: