PDA

View Full Version : Your PC is Not Safe!


Stolypin1655
August 10th, 2006, 11:38 PM
Removed spam

jaeden
August 11th, 2006, 12:00 AM
I would suggest that filters be enabled, so posts like this aren't repeated in the future. I've seen it happen before on several forums. First it's one post, then it's several hundred a day.

Anonymous Mammal
August 11th, 2006, 12:18 AM
I was wondering when something like this was going to happen. I've noticed a lot of new members with odd names such as that one with the numbers. Most likely some kind of script creating accounts.

Tynian, I would suggest seeing if there's something you can add to the forum software to prevent scripts like that. Possibly use one of those images that puts letters and numbers in them on a funky background to make sure an actual person is registering.

Tynian
August 11th, 2006, 09:52 AM
Possibly use one of those images that puts letters and numbers in them on a funky background to make sure an actual person is registering.

That is enabled, isn't it?

Update: Just tried it, and it is.

My guess is that there is some way of bypassing the "usual" registration process. I'll check into it.

pitt
August 11th, 2006, 10:09 AM
I think the captchas must be doing a decent job, I've seen a bunch of strange names 'registering' on the who's online page, but the recent signups on the members page doesn't list them. Unless you've been manually deleting them... :)

Tynian
August 11th, 2006, 10:12 AM
It looks like there's a couple of cross-site scripting vulnerabilities. A fix was recently posted.

There is also a new major version available.

I'll apply the fix. In the meantime, registrations are disabled.

Tynian
August 11th, 2006, 10:13 AM
I cleaned up a few of them. All of the strange names I saw were at the email confirmation phase, though, so I was just keeping an eye on it.

Oh well.

Tynian
August 11th, 2006, 11:46 AM
Updates are applied, and registrations are again allowed.

If necessary, I can moderate new users.

Anonymous Mammal
August 12th, 2006, 04:41 PM
Still noticing some of those odd names with numbers.

Tynian
August 13th, 2006, 10:22 PM
Yes. They are still getting through.

I'm manually approving new members. I'll take another look at this once I upgrade to 3.6.x.

Anathema
August 14th, 2006, 03:09 PM
Yes. They are still getting through.

I'm manually approving new members. I'll take another look at this once I upgrade to 3.6.x.

Right, but what are we going to do about the fact that our PCs are not safe!?:eek:

Tynian
August 15th, 2006, 08:23 AM
Right, but what are we going to do about the fact that our PCs are not safe!?:eek:

I'll give you $20 for it.

Belsambar
August 15th, 2006, 01:14 PM
$22.50!!