• 1

Read this first!

We do not monitor these forums. The forum is provided to exchange information and experience with other users ONLY. Forum responses are not guaranteed.

However, please submit a ticket if you have an active subscription and wish to receive support. Our ticketing system is the only way of getting in touch with RSJoomla! and receiving the official RSJoomla! Customer Support.

For more information, the Support Policy is located here.

Thank you!

TOPIC: Spammer is bypassing Captcha

Spammer is bypassing Captcha 16 years 3 months ago #6382

  • Larnus
  • Larnus's Avatar
  • OFFLINE
  • Fresh Boarder
  • Posts: 7
Hi,

RS-forms is great, and has been a wonderful tool on our website.

However, a spammer seems to have bypassed the captcha protection. At first we thought they were manually bypassing it (by getting actual people to view it), but we noticed the Captcha code they used was 8 characters long.

RS-forms uses 4-character captchas, so this looks like some kind of trick. Any ideas? This same spammer was spamming using our Joomla form, which is why we installed rs-forms with the captcha protection on.

During manual input tests of the form, the protection is working. So 'empty' or 'wrong input' prompts for re-input. So this is a real mystery to us.

I've attached the exported CSV of results (and pasted a concise version below), the top two results are valid, but the ones below are from the spammer/hacker:

Ip Date Added Email Telephone FirstName LastName Captcha
221.127.96.150 30/01/2009 07:33 This e-mail address is being protected from spambots. You need JavaScript enabled to view it 123456 Gary Tong sbky
221.127.98.51 30/01/2009 19:47 This e-mail address is being protected from spambots. You need JavaScript enabled to view it 123456 Gary Tong jnim
91.124.205.27 02/02/2009 15:53 This e-mail address is being protected from spambots. You need JavaScript enabled to view it 123456 BoambNomylogyy BoambNomylogyy annobbyl
91.124.205.27 02/02/2009 12:55 This e-mail address is being protected from spambots. You need JavaScript enabled to view it 123456 BoambNomylogym BoambNomylogym annobbyl


Hope you can give us any ideas!

Thanks.

Gavin
Attachments:
Last Edit: 16 years 3 months ago by Larnus.
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 3 months ago #6383

  • Larnus
  • Larnus's Avatar
  • OFFLINE
  • Fresh Boarder
  • Posts: 7
Here's the attached .csv export file again http://www.360-english.com/tmp/spammed_rsforms.csv. The first upload failed :(
Attachments:
Last Edit: 16 years 3 months ago by Larnus.
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 3 months ago #6393

  • sd.dan
  • sd.dan's Avatar
  • OFFLINE
  • Fresh Boarder
  • Posts: 9
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 2 months ago #6535

  • Larnus
  • Larnus's Avatar
  • OFFLINE
  • Fresh Boarder
  • Posts: 7
I can see the theory why this would work. But the writer's script has some bugs in it, which I rewrote coz php was complaining:

Processed Script should be:
if (isset($_POST['form']['Email']) && $_POST['form']['Email'] != '') {
die();
}

I'd actually thought of renaming the email ID's before, but wasn't sure of the php functions till your post, thanks sd.dan!

I'll let others know if this works for me.
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 2 months ago #6548

  • alexp
  • alexp's Avatar
  • OFFLINE
  • RSJoomla! Official Staff
  • Posts: 2253
  • Thank you received: 180
Hello,

Please submit a ticket to tech support regarding this issue.
Please note: my help is not official customer support. To receive your support, submit a ticket by clicking here
Regards,
RSJoomla! Development Team
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 2 months ago #6582

  • Larnus
  • Larnus's Avatar
  • OFFLINE
  • Fresh Boarder
  • Posts: 7
Thanks again for the post Dan. I can attest that we've been spam free for the past 3-4 days after using that script :D

RS-Forms is once again the love of our site!
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 1 month ago #7050

  • willkey
  • willkey's Avatar
  • OFFLINE
  • Junior Boarder
  • smart, engaged, and curious
  • Posts: 32
OK< i submitted a support ticket, but apparently no one is around to answer it OR because your product is so messed up, you have too many tickets to answer? i want my money back!
-- remember where you've been...it helps with where you're going!

:)
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 1 month ago #7055

  • octavian
  • octavian's Avatar
  • OFFLINE
  • RSJoomla! Official Staff
  • Posts: 783
  • Thank you received: 110
Hello,

You have only submitted one support ticket (or at least one using this username, I couldn't find any other tickets you've submitted) which has already been answered for quite some time. Have you read your email ? Replies from our ticketing system go into your email inbox as well.

Please stop misleading other users. If you actually find any bugs in our software we will sort them out as soon as possible and we have always helped our customers.
Please note: my help is not official customer support. To receive your support, submit a ticket by clicking here
Regards,
RSJoomla! Development Team
The administrator has disabled public write access.

Re:Spammer is bypassing Captcha 16 years 1 month ago #7064

  • willkey
  • willkey's Avatar
  • OFFLINE
  • Junior Boarder
  • smart, engaged, and curious
  • Posts: 32
MY bad. i'm sorry! i feel so stupid for having reacted this way this morning. i am working pro bono for a thankless company and all the spam i was getting put me in a really bad mood and i vented at the wrong place.

:blush:

octavian wrote:
Hello,

You have only submitted one support ticket (or at least one using this username, I couldn't find any other tickets you've submitted) which has already been answered for quite some time. Have you read your email ? Replies from our ticketing system go into your email inbox as well.

Please stop misleading other users. If you actually find any bugs in our software we will sort them out as soon as possible and we have always helped our customers.
-- remember where you've been...it helps with where you're going!

:)
The administrator has disabled public write access.
  • 1

Read this first!

We do not monitor these forums. The forum is provided to exchange information and experience with other users ONLY. Forum responses are not guaranteed.

However, please submit a ticket if you have an active subscription and wish to receive support. Our ticketing system is the only way of getting in touch with RSJoomla! and receiving the official RSJoomla! Customer Support.

For more information, the Support Policy is located here.

Thank you!