X-Original-To: pgsql-www-postgresql.org@localhost.postgresql.org Received: from localhost (av.hub.org [200.46.204.144]) by postgresql.org (Postfix) with ESMTP id BC14A9DCA1C for ; Tue, 21 Mar 2006 04:12:05 -0400 (AST) Received: from postgresql.org ([200.46.204.71]) by localhost (av.hub.org [200.46.204.144]) (amavisd-new, port 10024) with ESMTP id 97448-10 for ; Tue, 21 Mar 2006 04:12:06 -0400 (AST) X-Greylist: from auto-whitelisted by SQLgrey- Received: from anchor-post-35.mail.demon.net (anchor-post-35.mail.demon.net [194.217.242.85]) by postgresql.org (Postfix) with ESMTP id 6B5929DC97D for ; Tue, 21 Mar 2006 04:12:03 -0400 (AST) Received: from mailgate.vale-housing.co.uk ([194.217.48.34] helo=vale-housing.co.uk) by anchor-post-35.mail.demon.net with esmtp (Exim 4.42) id 1FLbyF-000HX7-Io for pgsql-www@postgresql.org; Tue, 21 Mar 2006 08:12:03 +0000 Content-class: urn:content-classes:message MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable X-MimeOLE: Produced By Microsoft Exchange V6.5 Subject: Re: human validation on post comments Date: Tue, 21 Mar 2006 08:12:05 -0000 Message-ID: X-MS-Has-Attach: X-MS-TNEF-Correlator: Thread-Topic: [pgsql-www] human validation on post comments thread-index: AcZMqkiCjiVSm2TJRA2JegeiCe2YngAFBn5Q From: "Dave Page" To: "David Fetter" , "PostgreSQL WWW" X-Virus-Scanned: by amavisd-new at hub.org X-Spam-Status: No, score=0.32 required=5 tests=[AWL=0.320] X-Spam-Score: 0.32 X-Spam-Level: X-Archive-Number: 200603/116 X-Sequence-Number: 9706 =20 > -----Original Message----- > From: pgsql-www-owner@postgresql.org=20 > [mailto:pgsql-www-owner@postgresql.org] On Behalf Of David Fetter > Sent: 21 March 2006 05:43 > To: PostgreSQL WWW > Subject: Re: [pgsql-www] human validation on post comments >=20 > Actually, they've already got one, and here's how it works: >=20 > 1. Put up a free porn site. > 2. Present somebody else's capcha image as an entry. > 3. Let the person see the porn if they've correctly cracked the > capcha. > 4. Spam site. >=20 > The sad part of this one is that they don't have to crack any single > capcha system. Instead, they've cracked the entire capcha process. Grrr, where's my baseball bat? Actually though that shouldn't be too much of a problem as long as the images timeout after a few minutes- and we still have all the normal moderation in place. Regards, Dave.