Re: human validation on post comments - Mailing list pgsql-www

From David Fetter
Subject Re: human validation on post comments
Date
Msg-id 20060321054234.GA20550@fetter.org
Whole thread Raw
In response to Re: human validation on post comments  (Josh Berkus <josh@agliodbs.com>)
List pgsql-www
On Sat, Mar 18, 2006 at 10:15:12AM -0800, Josh Berkus wrote:
> Travis,
>
> > I have been integrating a component that will ask the user to
> > enter the word in a dynamic image before their comments can be
> > submitted.
>
> Terrific!  I'm sure the people who clear the comments will have nice
> things to say.
>
> The image is generated dynamically?   That's good -- the spammers
> are already working on systems that harvest static images from sites
> and match them against a database.  Grrrr.

Actually, they've already got one, and here's how it works:

1.  Put up a free porn site.
2.  Present somebody else's capcha image as an entry.
3.  Let the person see the porn if they've correctly cracked the
    capcha.
4.  Spam site.

The sad part of this one is that they don't have to crack any single
capcha system.  Instead, they've cracked the entire capcha process.

Cheers,
D
--
David Fetter <david@fetter.org> http://fetter.org/
phone: +1 415 235 3778        AIM: dfetter666
                              Skype: davidfetter

Remember to vote!

pgsql-www by date:

Previous
From: "Dave Page"
Date:
Subject: Re: Techdocs replacement
Next
From: "Dave Page"
Date:
Subject: Re: human validation on post comments