Re: human validation on post comments

From: David Fetter <david(at)fetter(dot)org>
To: PostgreSQL WWW <pgsql-www(at)postgresql(dot)org>
Subject: Re: human validation on post comments
Date: 2006-03-21 05:42:34
Message-ID: 20060321054234.GA20550@fetter.org
Views: Raw Message | Whole Thread | Download mbox | Resend email
Thread:
Lists: pgsql-www

On Sat, Mar 18, 2006 at 10:15:12AM -0800, Josh Berkus wrote:
> Travis,
>
> > I have been integrating a component that will ask the user to
> > enter the word in a dynamic image before their comments can be
> > submitted.
>
> Terrific! I'm sure the people who clear the comments will have nice
> things to say.
>
> The image is generated dynamically? That's good -- the spammers
> are already working on systems that harvest static images from sites
> and match them against a database. Grrrr.

Actually, they've already got one, and here's how it works:

1. Put up a free porn site.
2. Present somebody else's capcha image as an entry.
3. Let the person see the porn if they've correctly cracked the
capcha.
4. Spam site.

The sad part of this one is that they don't have to crack any single
capcha system. Instead, they've cracked the entire capcha process.

Cheers,
D
--
David Fetter <david(at)fetter(dot)org> http://fetter.org/
phone: +1 415 235 3778 AIM: dfetter666
Skype: davidfetter

Remember to vote!

In response to

Browse pgsql-www by date

  From Date Subject
Next Message Dave Page 2006-03-21 08:12:05 Re: human validation on post comments
Previous Message Dave Page 2006-03-20 12:15:17 Re: Techdocs replacement