<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Vindictive Wiki Spammers</title>
	<atom:link href="http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/</link>
	<description>just a lowly edtech geek, mumble mumble university of calgary</description>
	<lastBuildDate>Sun, 21 Mar 2010 13:06:05 -0600</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: D'Arcy</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81509</link>
		<dc:creator>D'Arcy</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81509</guid>
		<description>Brian - thanks for the suggestion. I want to keep registration fairly open so valid users can create accounts without intervention, so that&#039;s a pretty good compromise.</description>
		<content:encoded><![CDATA[<p>Brian &#8211; thanks for the suggestion. I want to keep registration fairly open so valid users can create accounts without intervention, so that&#8217;s a pretty good compromise.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alan</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81510</link>
		<dc:creator>Alan</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81510</guid>
		<description>Sounds like an extra gatekeepers test might help, or an ugh captcha.

These are the acts of people who use the Anti-Google ethic- &quot;Do Lots of Little Evils&quot;</description>
		<content:encoded><![CDATA[<p>Sounds like an extra gatekeepers test might help, or an ugh captcha.</p>
<p>These are the acts of people who use the Anti-Google ethic- &#8220;Do Lots of Little Evils&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: D'Arcy</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81511</link>
		<dc:creator>D'Arcy</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81511</guid>
		<description>won&#039;t be putting in a captcha - they are wrong for so many reasons. there are better ways. What&#039;s needed is Spam Karma 2 for MediaWiki :-)  Bad Behavior comes close, but it only checks user agents and referrers...</description>
		<content:encoded><![CDATA[<p>won&#8217;t be putting in a captcha &#8211; they are wrong for so many reasons. there are better ways. What&#8217;s needed is Spam Karma 2 for MediaWiki <img src='http://www.darcynorman.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' />   Bad Behavior comes close, but it only checks user agents and referrers&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Brian Donovan</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81512</link>
		<dc:creator>Brian Donovan</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81512</guid>
		<description>I&#039;m not up to speed on the wiki software you&#039;re running but, assuming that an account must be created in order to make edits under your setup, have you considered adding another required field to the account signup form so that blackhat tools built to automatically create accounts and exercise them in nasty ways wouldn&#039;t be able to get past that first step?

It would require manually editing the form template ad the form processing logic, but I think that the time spent could save you a lot of frustration and wasted hours over the long haul.

I added a simple &quot;what is 12 divided by 4?&quot; field and a check to see that the correct value was given to the comment fields and processing logic in my hacked-up Wordpress install and, between that step and turning trackbacks off, my automated spamming problems went away.</description>
		<content:encoded><![CDATA[<p>I&#8217;m not up to speed on the wiki software you&#8217;re running but, assuming that an account must be created in order to make edits under your setup, have you considered adding another required field to the account signup form so that blackhat tools built to automatically create accounts and exercise them in nasty ways wouldn&#8217;t be able to get past that first step?</p>
<p>It would require manually editing the form template ad the form processing logic, but I think that the time spent could save you a lot of frustration and wasted hours over the long haul.</p>
<p>I added a simple &#8220;what is 12 divided by 4?&#8221; field and a check to see that the correct value was given to the comment fields and processing logic in my hacked-up Wordpress install and, between that step and turning trackbacks off, my automated spamming problems went away.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: D'Arcy</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81513</link>
		<dc:creator>D'Arcy</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81513</guid>
		<description>many labs will be sharing a single IP address - I hit this when trying to throttle traffic on a project awhile back...</description>
		<content:encoded><![CDATA[<p>many labs will be sharing a single IP address &#8211; I hit this when trying to throttle traffic on a project awhile back&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tony Hursh</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81514</link>
		<dc:creator>Tony Hursh</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81514</guid>
		<description>Sounds like the same crew that hit ours (http://wik.ed.uiuc.edu). It&#039;s not a pleasant thing to see first thing in the morning.

I don&#039;t know what  features of Bad Behavior has, but it seems like the best way to stop this particular attack would be to disallow rapid-fire creation of new accounts from the same IP address (all of ours were from one IP in Russia).

Of course, one could imagine a situation where several real people try to sign up for new accounts from a single computer.....</description>
		<content:encoded><![CDATA[<p>Sounds like the same crew that hit ours (<a href="http://wik.ed.uiuc.edu" rel="nofollow">http://wik.ed.uiuc.edu</a>). It&#8217;s not a pleasant thing to see first thing in the morning.</p>
<p>I don&#8217;t know what  features of Bad Behavior has, but it seems like the best way to stop this particular attack would be to disallow rapid-fire creation of new accounts from the same IP address (all of ours were from one IP in Russia).</p>
<p>Of course, one could imagine a situation where several real people try to sign up for new accounts from a single computer&#8230;..</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: D'Arcy</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81515</link>
		<dc:creator>D'Arcy</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81515</guid>
		<description>Ah. Cool. Thanks, Michael. I didn&#039;t realize BB was more involved than that. Pretty happy with it so far :-)</description>
		<content:encoded><![CDATA[<p>Ah. Cool. Thanks, Michael. I didn&#8217;t realize BB was more involved than that. Pretty happy with it so far <img src='http://www.darcynorman.net/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Michael Hampton</title>
		<link>http://www.darcynorman.net/2006/03/02/vindictive-wiki-spammers/#comment-81516</link>
		<dc:creator>Michael Hampton</dc:creator>
		<pubDate>Wed, 31 Dec 1969 17:00:00 +0000</pubDate>
		<guid isPermaLink="false">1917947093#comment-81516</guid>
		<description>Bad Behavior checks a lot more than User-Agent and Referer, which is why it works so well. It isn&#039;t perfect, of course, but nothing is.</description>
		<content:encoded><![CDATA[<p>Bad Behavior checks a lot more than User-Agent and Referer, which is why it works so well. It isn&#8217;t perfect, of course, but nothing is.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
