YanksBlog.com, an unofficial New York Yankees fan blog

My personal blog

 

Attacked…

Two of my communities were attacked by spam bots earlier today. Get this, they register 80 accounts (per site) and make hundreds or thousands of posts within minutes. They make one post per basically every thread on the entire website.

I had it cleaned up in a half hour. First, I went ahead and turned user e-mail activation on, so that they couldn’t do it again (and probably won’t be able to do it again). You see, they register all these accounts with bogus e-mails. So, if they have to confirm them via e-mail to post… they’ll never be able to post. Then I have a nice phpBB hack installed that allows me to delete all inactive accounts with a few clicks.

Anyway, back to today. I found a hack that would allow me to delete all posts made by a certain user. They had spread their posts out across maybe 80-100 user accounts overall, so I just did each username individually over and over and I was done in a little while. Then I deleted all of the bum accounts with a query in phpMyAdmin.

I now have e-mail activation turned on at all of my communities and I recommend that you do the same. I used to say that small communities should do without it, but I’ve changed my tune. The good far outweighs the bad. These guys try to register accounts on my sites all the time, but because I have the e-mail activation turned on and that hack installed, I can delete their accounts within 30 seconds. Piece of cake.

Some people have too much time on their hands.

Related Posts


2 Responses to “Attacked…”

  1. A_Jelly_Doughnut says:

    I was going to reply to this earlier saying it won’t matter…it obviously hasn’t, there have been 5 users spamming over 100 posts each at phpBBhacks.com. I guess it is reduced, but certinally not solved.

    Running a site isn’t always fun :rollseyes:

  2. Patrick says:

    Yeah, not always fun. :)

    But, it does matter. Anytime that you can create one extra step without really bothering real users, it matters. Nothing will be an absolute, but it is something.

Leave a Reply

READ BEFORE COMMENTING: Participation constitutes agreement to my User Guidelines, which are stricter than most other blogs', so please read them before commenting. No advertising (posting links to your site), inflammatory (flaming) remarks, vulgarities (any kind of profanity that you can imagine) or questions about my guidelines or comment deletions. I generally try to maintain a family friendly atmosphere here. Please keep this in mind. Here are a few common examples of comments that will be deleted:

  • Any comment featuring a link to your blog or to any site you are affiliated with - even if you feel it is related - unless I asked for it, specifically. If you have a link to share, awesome, but please contact me directly
  • Asking why your comment was deleted. Please contact me instead. I'm happy to help.
  • Attacking me or fellow commenter instead of attacking their point.
Please be sure to treat your fellow users and my guidelines with respect. I'm happy to have you here.

Please note that all comments made on entries that are at least 14 days old are moderated.