<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Captcha is failing! Is there another way</title>
	<atom:link href="http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/</link>
	<description>Specialist Technology Consulting</description>
	<lastBuildDate>Tue, 30 Aug 2011 23:58:08 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: Shoaib</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-123</link>
		<dc:creator>Shoaib</dc:creator>
		<pubDate>Sat, 24 Nov 2007 12:07:37 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-123</guid>
		<description>hxxp://shoaib.no-ip.org/iptables.sh


that should cover pretty much all of new zealand :)</description>
		<content:encoded><![CDATA[<p>hxxp://shoaib.no-ip.org/iptables.sh</p>
<p>that should cover pretty much all of new zealand <img src='http://www.projectx.co.nz/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: john</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-122</link>
		<dc:creator>john</dc:creator>
		<pubDate>Sat, 24 Nov 2007 06:42:57 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-122</guid>
		<description>Iptables is too much work. I&#039;ve done that before to stop spammers hammering my box. Regarded too much work.

We have a email validation, its still not stopping registrations.

The new captcha seems to be working as I&#039;ve had no spam registrations since. fingers crossed.

John</description>
		<content:encoded><![CDATA[<p>Iptables is too much work. I&#8217;ve done that before to stop spammers hammering my box. Regarded too much work.</p>
<p>We have a email validation, its still not stopping registrations.</p>
<p>The new captcha seems to be working as I&#8217;ve had no spam registrations since. fingers crossed.</p>
<p>John</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Shoaib</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-121</link>
		<dc:creator>Shoaib</dc:creator>
		<pubDate>Fri, 23 Nov 2007 21:04:27 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-121</guid>
		<description>iptables ftw!</description>
		<content:encoded><![CDATA[<p>iptables ftw!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: john</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-120</link>
		<dc:creator>john</dc:creator>
		<pubDate>Thu, 22 Nov 2007 23:53:00 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-120</guid>
		<description>Hmmm Google groups is sounding appealing...

I installed a more advanced captcha and hopefully that will offset the default actions to stop the scripts from doing their thing...</description>
		<content:encoded><![CDATA[<p>Hmmm Google groups is sounding appealing&#8230;</p>
<p>I installed a more advanced captcha and hopefully that will offset the default actions to stop the scripts from doing their thing&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: M Freitas</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-119</link>
		<dc:creator>M Freitas</dc:creator>
		<pubDate>Thu, 22 Nov 2007 23:52:01 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-119</guid>
		<description>In addition to hidden form (which should be discarded if filled because humans wouldn&#039;t do it), try doing a different thing: people should enter their email addresses requesting to join... Send an encoded URL containing the email address. Whe the actual registration comes in check that the e-mail used matches the one in the encoded URL. This is what I do on Geekzone and simply reduces spammers a lot...</description>
		<content:encoded><![CDATA[<p>In addition to hidden form (which should be discarded if filled because humans wouldn&#8217;t do it), try doing a different thing: people should enter their email addresses requesting to join&#8230; Send an encoded URL containing the email address. Whe the actual registration comes in check that the e-mail used matches the one in the encoded URL. This is what I do on Geekzone and simply reduces spammers a lot&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Stephen Judd</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-118</link>
		<dc:creator>Stephen Judd</dc:creator>
		<pubDate>Thu, 22 Nov 2007 22:05:09 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-118</guid>
		<description>Another angle: just set up a Google Group, and let them deal with it...</description>
		<content:encoded><![CDATA[<p>Another angle: just set up a Google Group, and let them deal with it&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Stephen Judd</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-117</link>
		<dc:creator>Stephen Judd</dc:creator>
		<pubDate>Thu, 22 Nov 2007 21:17:26 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-117</guid>
		<description>This may be useful to you:

http://www.codinghorror.com/blog/archives/001001.html

Basically, some captchas simply suck and are susceptible to automated OCR - others don&#039;t and aren&#039;t.

FWIW, other strategies include:
- multiple forms hidden by Javascript/CSS (don&#039;t allow users that post to the hidden form)
- change default variable names
- charge default posting URLs
- add extra steps, eg mandatory preview
- queue the first comment from a new user for moderation

There&#039;s no solution that doesn&#039;t involve customisation - automated attackers focus their efforts on &quot;out of the box&quot; configurations.</description>
		<content:encoded><![CDATA[<p>This may be useful to you:</p>
<p><a href="http://www.codinghorror.com/blog/archives/001001.html" rel="nofollow">http://www.codinghorror.com/blog/archives/001001.html</a></p>
<p>Basically, some captchas simply suck and are susceptible to automated OCR &#8211; others don&#8217;t and aren&#8217;t.</p>
<p>FWIW, other strategies include:<br />
- multiple forms hidden by Javascript/CSS (don&#8217;t allow users that post to the hidden form)<br />
- change default variable names<br />
- charge default posting URLs<br />
- add extra steps, eg mandatory preview<br />
- queue the first comment from a new user for moderation</p>
<p>There&#8217;s no solution that doesn&#8217;t involve customisation &#8211; automated attackers focus their efforts on &#8220;out of the box&#8221; configurations.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: john</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-116</link>
		<dc:creator>john</dc:creator>
		<pubDate>Thu, 22 Nov 2007 20:16:05 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-116</guid>
		<description>We&#039;re using the defualt captcha as installed by phpBB. I&#039;m note sure if we can overload it with something else.</description>
		<content:encoded><![CDATA[<p>We&#8217;re using the defualt captcha as installed by phpBB. I&#8217;m note sure if we can overload it with something else.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: kirill volkov</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-115</link>
		<dc:creator>kirill volkov</dc:creator>
		<pubDate>Thu, 22 Nov 2007 20:15:44 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-115</guid>
		<description>Have you seen this article (Has CAPTCHA Been &quot;Broken&quot;?): http://www.codinghorror.com/blog/archives/001001.html
It gives good comparison of different captchas.</description>
		<content:encoded><![CDATA[<p>Have you seen this article (Has CAPTCHA Been &#8220;Broken&#8221;?): <a href="http://www.codinghorror.com/blog/archives/001001.html" rel="nofollow">http://www.codinghorror.com/blog/archives/001001.html</a><br />
It gives good comparison of different captchas.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Glen Barnes</title>
		<link>http://www.projectx.co.nz/2007/11/captcha-is-failing-is-there-another-way/comment-page-1/#comment-114</link>
		<dc:creator>Glen Barnes</dc:creator>
		<pubDate>Thu, 22 Nov 2007 19:43:10 +0000</pubDate>
		<guid isPermaLink="false">http://blog.projectxtech.com/2007/11/23/captcha-is-failing-is-there-another-way/#comment-114</guid>
		<description>What type of CAPTCHA are you using? I was wondering if you have tried the RE-CAPTCHA as I wanted to see if this was any better (digitise books AND hopefully stop SPAM).</description>
		<content:encoded><![CDATA[<p>What type of CAPTCHA are you using? I was wondering if you have tried the RE-CAPTCHA as I wanted to see if this was any better (digitise books AND hopefully stop SPAM).</p>
]]></content:encoded>
	</item>
</channel>
</rss>
<!-- WP Super Cache is installed but broken. The path to wp-cache-phase1.php in wp-content/advanced-cache.php must be fixed! -->
