[08-Mar-2012] New SPAM mitigation scheme in place

112 posts / 0 new
Last post
brted
brted's picture
Offline
Last seen: 2 weeks 2 days ago
Joined: 01/12/2010 - 19:44
Posts: 2371
Location: Atlanta

I think so too. But quick user moderation stops it from affecting hundreds of posts and instead is just a few scattered posts.

BetweenRides
BetweenRides's picture
Offline
Last seen: 4 years 6 months ago
Joined: 01/02/2011 - 10:34
Posts: 2960
Location: Chicagoland, USA

SPAM attack this morning at around 6:45 am (Central Standard US) lasted just a couple of minutes before we smoked the Spammer. Before I could look at the name to post here, posts were gone. I only had to mark about 10 posts. Seems to be working pretty effectively.

gcbryan
Offline
Last seen: 1 year 10 months ago
Joined: 05/07/2010 - 20:42
Posts: 2528
Location: Seattle,WA

That was fun! I only had to mark about 5.

BetweenRides
BetweenRides's picture
Offline
Last seen: 4 years 6 months ago
Joined: 01/02/2011 - 10:34
Posts: 2960
Location: Chicagoland, USA

Yeah took a break from posting for a few minutes to go Spam hunting - success! Laughing

atbglenn
atbglenn's picture
Offline
Last seen: 33 min 4 sec ago
Joined: 07/29/2011 - 12:04
Posts: 5280
Location: Long Island, New York

One problem though, he/she has moved some old threads to the front page. Even though the spammer's gone, those old threads remain there

We need ICE to keep our country safe. 

sb56637
sb56637's picture
Offline
Last seen: 1 hour 14 min ago
Joined: 01/08/2010 - 09:29
Posts: 6160
Location: The Light

atbglenn wrote:

One problem though, he/she has moved some old threads to the front page. Even though the spammer's gone, those old threads remain there

OK, you guys are right, my manual testing apparently uses a standard comment un-publish function that worked correctly. The community moderated approach uses an un-publish mechanism that apparently has a bug. I filed a bug report, we'll see what comes of it.

Budget Light Forum ...where Frugal meets with Flashlight!

atbglenn
atbglenn's picture
Offline
Last seen: 33 min 4 sec ago
Joined: 07/29/2011 - 12:04
Posts: 5280
Location: Long Island, New York

sb56637 wrote:

atbglenn wrote:

One problem though, he/she has moved some old threads to the front page. Even though the spammer's gone, those old threads remain there

OK, you guys are right, my manual testing apparently uses a standard comment un-publish function that worked correctly. The community moderated approach uses an un-publish mechanism that apparently has a bug. I filed a bug report, we'll see what comes of it.

sb, thanks for your efforts to keep this place spam and bug free Smile 

We need ICE to keep our country safe. 

Vectrex
Vectrex's picture
Offline
Last seen: 3 months 1 week ago
Joined: 05/01/2010 - 15:39
Posts: 2776
Location: Gemany (according to my Black Cat)

Thanks... hopefully the Drupal/plugins-team is quick to implement that function.

kramer5150
kramer5150's picture
Offline
Last seen: 1 week 3 days ago
Joined: 05/19/2010 - 13:43
Posts: 2109
Location: Palo Alto CA

THANKS!!!

Looks like the captca measures are working.

Yesterday I needed to verify my post by solving a math problem, and just now I accidentally pressed the "SAVE" button twice and got some kind of warning.

agedbriar
Offline
Last seen: 2 months 4 weeks ago
Joined: 04/09/2011 - 18:11
Posts: 642
Location: Slovenia, EU

How can I tell my wife that the Gucci handbag purchase is canceled?  Cry

fishinfool
fishinfool's picture
Offline
Last seen: 2 years 1 week ago
Joined: 03/09/2010 - 00:30
Posts: 4342
Location: Hilo, Hawaii

BetweenRides wrote:

SPAM attack this morning at around 6:45 am (Central Standard US) lasted just a couple of minutes before we smoked the Spammer. Before I could look at the name to post here, posts were gone. I only had to mark about 10 posts. Seems to be working pretty effectively.

 

Damnit, I missed the bloodbath!    

 

Good job guys!   

 

 

Don wrote:

"But as I said long ago, you are more likely to be killed by a dead fish dropped by a seagull in the Sahara Desert than by a lithium ion

scheven_architect
Offline
Last seen: 7 months 1 week ago
Joined: 06/18/2011 - 09:11
Posts: 1238

ty very much mister admin!

 

 
BetweenRides
BetweenRides's picture
Offline
Last seen: 4 years 6 months ago
Joined: 01/02/2011 - 10:34
Posts: 2960
Location: Chicagoland, USA

Time to make the math equations harder?

dthrckt
dthrckt's picture
Offline
Last seen: 1 month 3 weeks ago
Joined: 11/08/2011 - 10:11
Posts: 4019
Location: Upstate NY

I still say add handbag to the list of swear words...that would have broken half the links in that last post

I wonder if they will eventually avoid us, since their posts disappear, or if there are so many that they'll never notice....

____________________

Girls can shoot!

brted
brted's picture
Offline
Last seen: 2 weeks 2 days ago
Joined: 01/12/2010 - 19:44
Posts: 2371
Location: Atlanta

This is not working. 3 major spam attacks last night. We can stop them within 10-20 minutes, but they can get 100 posts in before enough people mark them. There needs to be a stronger barrier up front.

I don't know if it would be possible, but I saw one forum where they had a CAPTCHA of blurry text, but the instructions said to ignore the CAPTCHA and just enter the word human. Or something like that. Even if spammers are using humans to register, they probably don't speak English, so simple questions are better than blurry text or math.

kreisler
kreisler's picture
Offline
Last seen: 4 years 6 months ago
Joined: 11/12/2011 - 23:32
Posts: 3992
Location: Deutcheland

brted wrote:
they probably don't speak English, so simple questions are better than blurry text or math.

simple questions for flashaholics, not just general simple questions. something like "which is d. chow's company? (***rs****s)"

*FMI* i got 4 i/o sh
Vectrex
Vectrex's picture
Offline
Last seen: 3 months 1 week ago
Joined: 05/01/2010 - 15:39
Posts: 2776
Location: Gemany (according to my Black Cat)

That might be too hard even for "legal" newbies.

Boro
Offline
Last seen: 4 hours 6 min ago
Joined: 02/03/2012 - 15:52
Posts: 586

kreisler wrote:

brted wrote:
they probably don't speak English, so simple questions are better than blurry text or math.

simple questions for flashaholics, not just general simple questions. something like "which is d. chow's company? (***rs****s)"

Excellent idea.  Clearly, the present spam prevention system is still not effective so change is necessary.

 

brted
brted's picture
Offline
Last seen: 2 weeks 2 days ago
Joined: 01/12/2010 - 19:44
Posts: 2371
Location: Atlanta

If you just tell them what to put in the blank, you could let the bots hammer away at the CAPTCHA and they'd never get it right.

Alternatively you could ask really, really simple questions like What does the B in BLF stand for.

kreisler
kreisler's picture
Offline
Last seen: 4 years 6 months ago
Joined: 11/12/2011 - 23:32
Posts: 3992
Location: Deutcheland

brted wrote:
What does the B in BLF stand for.

budget

budgets

 

Big Smile i win!

*FMI* i got 4 i/o sh
gearjunkie
Offline
Last seen: 2 months 3 weeks ago
Joined: 01/08/2012 - 21:33
Posts: 323
Location: Tennessee, United States

I don't think the CAPTCHA was working a few hours ago.  I posted twice and either I ignored it or did not see the math question, but my comments were still posted.  I do see it now though and it is working.

JohnnyMac
JohnnyMac's picture
Offline
Last seen: 7 months 3 weeks ago
Joined: 04/12/2011 - 16:03
Posts: 8864
Location: Eastern PA

We sure did get hammered this morning!  Everything is all out of whack and recent posts from last night are literally burried in pages of old posts.  I hope Sb can put everything back in order for us.

agedbriar
Offline
Last seen: 2 months 4 weeks ago
Joined: 04/09/2011 - 18:11
Posts: 642
Location: Slovenia, EU

gearjunkie wrote:

I don't think the CAPTCHA was working a few hours ago.  I posted twice and either I ignored it or did not see the math question, but my comments were still posted.  I do see it now though and it is working.

That's what always happens to me (no CAPTCHA), as I have the BLF cookie set to 'protected' (i. e. never to be deleted), so that I don't need to log-in every time I return to this forum.

MixoMaxo
Offline
Last seen: 3 years 11 months ago
Joined: 10/12/2011 - 15:18
Posts: 586
Location: Italy

what about do a golpe and elect kreisler as new admin? he is so active to block the spam first that the bots to their dirty job xD

joking ur job is really appreciated sb, ty Smile

kreisler
kreisler's picture
Offline
Last seen: 4 years 6 months ago
Joined: 11/12/2011 - 23:32
Posts: 3992
Location: Deutcheland

MixoMaxo wrote:
what about do a golpe

golpe? you mean coup d'eta? i am always asleep when the spammer do their attacks. missed them all. when i wake up at noon Big Smile all spammers already killed. and it looks that you guys had a lotta fun counter attacking them.

Smile

*FMI* i got 4 i/o sh
Volk
Volk's picture
Offline
Last seen: 1 year 9 months ago
Joined: 03/07/2011 - 20:21
Posts: 264
Location: Sweden

Regarding the math question: instead of being asked one time every session wouldn't it be better to get a question lets say every 10th post? This way the robots probably will come to a halt and the manual spammer will get slowed down.

Since most of us don't make more than 10 posts a day the hassle for the average user should be minimal.

Just a thought...

raccoon city
raccoon city's picture
Offline
Last seen: 5 hours 34 min ago
Joined: 10/06/2010 - 02:35
Posts: 10681
Location: रॅकून सिटी Palm Desert CA USA

One CAPTCHA per every 10 posts sounds like a good idea to me.

JAS
Offline
Last seen: 3 weeks 5 days ago
Joined: 08/01/2010 - 17:27
Posts: 199
Location: TN, India

I guess they would be clever enough to set their robots once they learn on how the CAPTCHA works. 10 posts or X posts does not matter . We should bring in some randomness to halt the loop.

Jinx
Jinx's picture
Offline
Last seen: 1 day 9 hours ago
Joined: 10/16/2011 - 11:35
Posts: 1078
Location: England

Cap posting at say five posts in any ten minutes, no one really needs to post more than that and it gives everybody a chance to kick the spammer before the whole board gets messed up...

BILL G
Offline
Last seen: 2 years 8 months ago
Joined: 01/30/2011 - 14:41
Posts: 166
Location: MN USA

        5  Posts Per 10 Min. sounds like a Plan.

Pages